# 42Crunch

**Canonical:** https://apis.io/providers/42crunch/  
**Website:** https://42crunch.com/  
**APIs profiled:** 6

42Crunch is a leading API security company that specializes in protecting and securing APIs. They provide innovative solutions that help organizations safeguard their sensitive data and critical assets from potential cyber threats. With their comprehensive API security platform, 42Crunch offers a range of services such as API scanning, traffic monitoring, and runtime protection to ensure that APIs are secure and compliant with industry standards. Their platform covers the full API security lifecycle from design and audit through dynamic testing and runtime firewall protection.

## Kin Score — 27.1 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 27.1).

| Facet | Score |
|---|---|
| Discoverability | 64.8 |
| Contract Quality | 25.2 |
| Governance | 25.0 |
| Contract Governance | 25.0 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 16.7 |
| Commercial Clarity | 32.9 |
| Access Clarity | 32.9 |

## Agent readiness — 33.3 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | verified |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium — onboarding: unknown, pricing: freemium, trial: no (confidence: medium).

## APIs (6)

- **42Crunch API Security Audit** — The 42Crunch API Security Audit performs automated static analysis of API definitions (OpenAPI 2, 3.0, 3.1 and GraphQL), running over 200 checks across format validation, data d...
- **42Crunch API Scan** — 42Crunch API Scan performs dynamic API security testing (DAST) that evaluates runtime API behavior against its OpenAPI specification. It tests how well an API adheres to its con...
- **42Crunch API Protection** — 42Crunch API Protection deploys an API-native micro firewall (API Firewall) that provides runtime defense against API attacks. The firewall is tailor-made for each API based on ...
- **42Crunch Health API** — Service health check
- **42Crunch Jobs API** — Manage API conformance scan jobs on Kubernetes
- **42Crunch Logs API** — Access job execution logs

## Agentic access (1)

- **42Crunch Agentic Access** — 6 operations · 2 acting

## Security (1)

- **42Crunch Domain Security** — TLSv1.3 · HSTS · DMARC

## Plans (1)

- **42Crunch Plans Pricing**

## Use cases (7)

- **API Security Testing in CI/CD** — Embed automated API security scanning into CI/CD pipelines via GitHub Actions to catch vulnerabilities before they reach production.
- **OpenAPI Specification Review** — Audit OpenAPI definitions for security flaws, missing authentication, weak data validation, and schema gaps before API deployment.
- **Runtime API Protection** — Deploy the API Firewall in front of production APIs to enforce contract compliance and block attacks in real time.
- **DevSecOps API Governance** — Provide development, security, and operations teams with shared visibility into API security posture throughout the API lifecycle.
- **OWASP API Top 10 Compliance** — Systematically identify and remediate OWASP API Security Top 10 vulnerabilities in API definitions and runtime behavior.
- **API Security for Financial Services** — Address regulatory and compliance requirements for API security in banking, financial services, and insurance sectors.
- **Healthcare API Security** — Secure healthcare APIs handling sensitive patient data against unauthorized access and data exposure vulnerabilities.

## Tags

API Security, Platform, Scanning, Security, OpenAPI, DevSecOps

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/42crunch/). Scores are computed from the provider's own public artifacts under a published rubric.
