Field-level permissions and one audit trail.
Jestor sets who sees and who edits each field on the data model, on every plan. Every change, human or AI, lands in one audit trail. That is configuration, not something the app has to be built to do.
ProcessMaker is a low-code business process management platform, now part of Decisions, where analysts and developers model BPMN workflows and pay by the case. Jestor is an operations system you build with AI, change by prompt, and can start for free, with an unlimited-users option.
ProcessMaker is a low-code BPM platform around BPMN 2.0, forms and document processing. Jestor is a no-code operations system built and maintained by Jestor’s team, with unlimited users on Hero AI and Enterprise, and Growth and Pro as per seat or one company price and changes by prompt from any MCP client.
| Feature | Jestor | ![]() ProcessMaker |
|---|---|---|
| Unlimited users | Yes | Yes |
| Change the system by prompt from Claude, Cursor or any MCP client | Yes | No |
| Field-level permissions on every plan, set on the data model | Yes | No |
| Relational database built in (n:m, n:1, 1:1) | Yes | No |
| Kanban boards with conditional stages and SLAs | Yes | No |
| Forms, approvals and automated routing | Yes | Yes |
| AI agents and document reading (OCR / IDP) | Yes | Yes |
| Audit trail | Yes | Yes |
| REST API and webhooks | Yes | Yes |
| Self-host or on-premise deployment | No | Yes |
| BPMN 2.0 standard modeling with import and export | No | Yes |
| ISO 27001 certification and GDPR documentation | No | Yes |
In November 2025 it merged with Decisions; processmaker.com now redirects to decisions.com, and pricing is by custom quote. ProcessMaker is stronger for BPMN modeling, on-premise and ISO 27001 or GDPR; Jestor is stronger when an operations team wants a running system, built for them, at a visible price. Here is how the two platforms compare dimension by dimension, using each vendor's published information.
| Dimension | Jestor | ![]() ProcessMaker |
|---|---|---|
| Users | Unlimited users on Hero AI and Enterprise; seats or company price on Growth and Pro | Unlimited on every plan; pricing is by case volume and tier |
| Best for | Operations teams (5 to 500 people) that want a running system for CRM, back office, field ops and approvals, built for them, without a project team | Mid-market and enterprise organizations in banking, higher education, insurance and manufacturing that need BPMN-standard process orchestration, a rules engine and enterprise compliance documentation |
| Changing the system | By prompt from Claude, Cursor, ChatGPT or any MCP client, or by Jestor’s team at the next review. Changes are edits, not rewrites | A designer edits the BPMN model, screens and scripts, then promotes the new version from development to production; ProcessMaker AI can generate process assets inside the product |
| Data model | Native relational database with n:m, n:1 and 1:1 relations, lookups and roll-ups; the data is the system of record | Collections (record tables) plus request data per case; integration with external systems via REST, scripts in PHP, JavaScript, Python and others, and connectors |
| Automations | 400+ native automations, conditional kanban stages, SLAs, email and WhatsApp agents, OCR; Python, .NET and PHP for custom logic | BPMN process engine with timers, gateways, sub-processes, decision tables (Professional and above), scripts, and Actions by Email |
| Permissions | Field-level permissions on all plans; who sees vs who edits per field | User and group permissions in two layers: process permissions (start, cancel, view, edit per process) and platform permissions (screens, scripts, settings); Super Admin bypasses checks; per-field visibility is built into screen design |
| External users | Included; clients and suppliers get portals and forms at no seat cost | Web entry links let external people submit forms; external portals are custom-built; unlimited users on case-based pricing |
| Apps and interfaces | Kanbans, tables, forms, docs, dashboards, app pages, mobile app; no coding | Task inbox, request screens designed in the Screen Builder, dashboards, mobile app (online only per G2 reviewers), document generation |
| AI | Chat-to-App, Ask Your Data, MCP server, agents for email, WhatsApp and documents; AI inherits the user's permissions and writes to the same audit trail as humans | ProcessMaker AI for asset generation and in-product assistant; Intelligent Document Processing; Decisions adds agentic orchestration and a rules engine; AI governance framed on ISO 42001 |
| Reporting | Dashboards and metrics built in; Power BI connector on Enterprise | Dashboards and reports inside the product; AWS QuickSight partnership for advanced dashboards (per vendor reply on G2, January 2024); Process Intelligence and Task Mining sold separately |
| API | REST API and webhooks included; no fee to export | Full REST API; webhooks and connectors |
| Published limits | Every plan starts with an allowance for records and automation runs and grows with add-ons; when you need more, you activate an add-on for that resource without changing plan. Hero AI and Enterprise include unlimited users; Growth and Pro can be per seat or one company price | Cases per month per tier (1,000 on the last published Standard plan, expandable); two environments on Standard (development and production); test cases in development do not count toward the case total |
| Security | SOC 2 Type I and Type II, LGPD, annual pentest | SOC 2 Type II (report under NDA), ISO 27001:2013, TX-RAMP Level 2, GDPR program and DPA, annual pentest, AES-256 and TLS 1.2, hosting on AWS and Azure with selectable region, on-premise available |
| Ownership and exit | Your data exports to CSV and via API at any time, no fee | Processes export as BPMN and JSON packages; request data via API; open-source core (ProcessMaker 4) available on GitHub |
ProcessMaker data from decisions.com/pricing, decisions.com/security-statement-processmaker, docs.processmaker.com (permissions, SSO), processmaker.com/products/pricing as last indexed before the redirect, and G2, accessed September 16, 2026. Features and prices change; verify with each vendor. Jestor data from jestor.com/plans, jestor.com/ai, jestor.com/main-features and jestor.com/security.
Jestor sets who sees and who edits each field on the data model, on every plan. Every change, human or AI, lands in one audit trail. That is configuration, not something the app has to be built to do.
Those are operations features, configured on the data model, not assembled as workarounds or generated as custom code you then have to maintain. Jestor ships forms, approvals, SLAs and kanban natively, with more than 400 automations. Python, .NET and PHP cover custom logic when you need it.
ProcessMaker AI generates process assets inside the product, but changing a live process still runs through the designer, the screen builder and a deployment from development to production. Jestor exposes the whole system through MCP, so you can change a workflow, a field or an automation from Claude, Cursor, ChatGPT or any MCP client. The AI only sees what you are allowed to see, and every change, human or AI, lands in one audit trail.
Hero AI and Enterprise include unlimited users. Growth and Pro can be one flat company price or per seat. You can start a free trial on Hero AI. Everyone involved in a process can have their own login, from the operations team to field staff, customers and partners. Permissions control what each person sees and edits. When the bill is a credit or usage pool, adding people still makes the system more expensive to run. A flat price keeps the whole operation on one system.
Every employee can use the system, not just the few who justify a seat. Field-level permissions decide what each person can see and edit, so giving more people access doesn't mean giving everyone access to everything.
Security frameworks like SOC 2 rely on three core controls: unique user identification, least-privilege access and fast offboarding. Those controls also support the safeguards LGPD requires. Shared credentials and open links work against all three. Jestor is SOC 2 Type I and Type II compliant, and unlimited users make it practical to keep those controls in place for everyone.
Clients, suppliers and partners can log in to follow requests, submit information or approve steps. They see only what their permissions allow. There are no extra seats to budget for and no separate portal tool to buy.
Features built around people only work when the people are there. You can mention anyone in a chat, assign tasks and approvals to the right person, and send SLAs and notifications to whoever owns each step. The audit trail then shows who did what. Jestor’s AI also follows each user's permissions, which only works when each person has their own user.
You need BPMN 2.0 as a modeling standard your analysts already use, on-premise or private-cloud deployment, ISO 27001 and GDPR documentation for procurement, a decision-table rules engine, or process and task mining across legacy systems at enterprise scale.
You want the system built for you, you want to know the price before a sales call and keep it flat as volume grows, you need field-level permissions and audit trail from day one, or you want to change the system by prompt instead of redeploying a process version.
Jestor is not affiliated with, endorsed by, or sponsored by Decisions or ProcessMaker Inc. "ProcessMaker" is a trademark of its owner. Information about ProcessMaker comes from decisions.com, docs.processmaker.com, processmaker.com and G2, current as of September 16, 2026. Prices last verified September 16, 2026. Features, plans and pricing change frequently; verify current offerings directly with each vendor. Provided as is, without warranty, for informational purposes.