# SPIFFE Workload API

**Canonical:** https://apis.io/apis/spiffe/spiffe-workload-api/  
**Provider:** SPIFFE — https://apis.io/providers/spiffe/  
**Documentation:** https://github.com/spiffe/spiffe/blob/main/standards/SPIFFE_Workload_API.md

SPIFFE Workload API is one of 4 APIs that [SPIFFE](https://apis.io/providers/spiffe/) publishes on the [APIs.io](https://apis.io/) network, described by an AsyncAPI event-driven specification. Tagged areas include gRPC, Identity, JWT, Workload, and X.509. The published artifact set on APIs.io includes API documentation, an API reference, an AsyncAPI specification, and a GitHub repository.

The SPIFFE Workload API is a gRPC streaming interface through which workloads request and receive SPIFFE Verifiable Identity Documents (SVIDs) including X.509-SVIDs and JWT-SVIDs, as well as trust bundle updates. It enables software to obtain cryptographic identities at runtime without requiring secrets to be embedded in configuration or code.

## Machine-readable artifacts (5)

- **Documentation** — https://spiffe.io/docs/latest/spiffe-about/spiffe-concepts/
- **Reference** — https://github.com/spiffe/spiffe/blob/main/standards/SPIFFE_Workload_API.md
- **AsyncAPI** — https://raw.githubusercontent.com/api-evangelist/spiffe/refs/heads/main/asyncapi/spiffe-workload-asyncapi.yml
- **GitHubRepository** — https://github.com/spiffe/spiffe
- **APIsJSON** — https://raw.githubusercontent.com/api-evangelist/spiffe/refs/heads/main/apis.yml

## Other SPIFFE APIs (3)

- [SPIFFE X.509 SVID](https://apis.io/apis/spiffe/spiffe-x509-svid-api/)
- [SPIFFE JWT SVID](https://apis.io/apis/spiffe/spiffe-jwt-svid-api/)
- [SPIFFE Bundle API](https://apis.io/apis/spiffe/spiffe-bundle-api/)

## Tags

gRPC, Identity, JWT, Workload, X.509

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/spiffe/spiffe-workload-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/spiffe/.
