NordVPN Public Server API

Unauthenticated JSON API that NordVPN's own clients and the open-source Linux client use to enumerate the server estate — servers, countries, cities, groups and technologies. It is publicly reachable and widely consumed, but Nord Security publishes no developer documentation, no OpenAPI and no terms for it, so it should be treated as an internal client API rather than a supported product API.

API entry from apis.yml

apis.yml Raw ↑
name: NordVPN Public Server API
description: Unauthenticated JSON API that NordVPN's own clients and the open-source Linux client use
  to enumerate the server estate — servers, countries, cities, groups and technologies. It is publicly
  reachable and widely consumed, but Nord Security publishes no developer documentation, no OpenAPI and
  no terms for it, so it should be treated as an internal client API rather than a supported product API.
humanURL: https://github.com/NordSecurity/nordvpn-linux
baseURL: https://api.nordvpn.com/v1
tags:
- vpn
- server-directory
- undocumented
properties:
- type: SourceCode
  url: https://github.com/NordSecurity/nordvpn-linux
x-evidence:
  fetched: '2026-08-01'
  probes:
  - url: https://api.nordvpn.com/v1/servers/countries
    http_status: 200
    content_type: application/json
  - url: https://api.nordvpn.com/v1/technologies
    http_status: 200
    content_type: application/json
  - url: https://api.nordvpn.com/openapi.json
    http_status: 403
    note: No OpenAPI published; host bot-protects non-client paths.