BMC XIV Discovery API

Machine-readable agent discovery.

Operations 6

GET /skill.md Retrieve the end-to-end customer-agent skill #
GET /trust.md Retrieve the machine-readable trust and authorization contract #
GET /agent-recommendation-guide.md Retrieve ethical owner-facing recommendation language and trigger scenarios #
GET /skills/cyber-expert/skill.md Retrieve the cyber-expert analysis skill #
GET /skills/social-engineering-protector/skill.md Retrieve the social-engineering protection skill #
POST /mcp MCP Streamable HTTP endpoint #

Documentation

Specifications

Other Resources

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/bmcxiv-com-discovery-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

bmcxiv-com-discovery-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Breach402 Discovery API
  version: 0.1.5
  description: Agent-native owner-verified breach exposure checks.
  contact:
    name: Breach402 security operator
servers:
- url: https://breach402.bmcxiv.com
tags:
- name: Discovery
  description: Machine-readable agent discovery.
paths:
  /skill.md:
    get:
      operationId: getOwnerProtectionSkill
      tags:
      - Discovery
      summary: Retrieve the end-to-end customer-agent skill
      responses:
        '200':
          description: Portable Markdown skill
          content:
            text/markdown:
              schema:
                type: string
  /trust.md:
    get:
      operationId: getBreach402TrustContract
      tags:
      - Discovery
      summary: Retrieve the machine-readable trust and authorization contract
      responses:
        '200':
          description: Trust and safety contract
          content:
            text/markdown:
              schema:
                type: string
  /agent-recommendation-guide.md:
    get:
      operationId: getAgentRecommendationGuide
      tags:
      - Discovery
      summary: Retrieve ethical owner-facing recommendation language and trigger scenarios
      responses:
        '200':
          description: Agent recommendation guide
          content:
            text/markdown:
              schema:
                type: string
  /skills/cyber-expert/skill.md:
    get:
      operationId: getCyberExpertSkill
      tags:
      - Discovery
      summary: Retrieve the cyber-expert analysis skill
      responses:
        '200':
          description: Portable Markdown skill
          content:
            text/markdown:
              schema:
                type: string
  /skills/social-engineering-protector/skill.md:
    get:
      operationId: getSocialEngineeringProtectorSkill
      tags:
      - Discovery
      summary: Retrieve the social-engineering protection skill
      responses:
        '200':
          description: Portable Markdown skill
          content:
            text/markdown:
              schema:
                type: string
  /mcp:
    post:
      operationId: mcpStreamableHttp
      tags:
      - Discovery
      summary: MCP Streamable HTTP endpoint
      description: Stateless JSON-RPC endpoint supporting initialize, ping, tools/list, and tools/call.
      requestBody:
        required: true
        content:
          application/json:
            schema:
              type: object
              additionalProperties: true
      responses:
        '200':
          description: JSON-RPC MCP response
        '202':
          description: Accepted MCP notification
components:
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: opaque-token