# AltoIRA

**Canonical:** https://apis.io/providers/altoira/  
**Website:** https://www.altoira.com/  
**APIs profiled:** 5

Alto (AltoIRA) is a Nashville-based self-directed IRA platform that lets everyday investors hold alternative assets — private equity, venture funds, startups, real estate, farmland, private credit and cryptocurrency — inside tax-advantaged Traditional, Roth and SEP retirement accounts. Alto Trust Company acts as the IRA custodian and Alto Securities, LLC (FINRA/SIPC) operates the Alto Marketplace of curated private-market offerings. Alto reports custody of roughly $2B in assets for about 30,000 self-directed IRA investors and support for more than 2,500 issuers who have raised capital on the platform. For issuers and investment platforms, Alto publishes a partner REST API (the "AltoIRA.com API") on a ReadMe developer hub that covers OAuth investor handoff, offering creation, document upload, investor invitation, investment retrieval, refunds, cancellations, distributions and capital calls, plus an investment-status webhook feed.

## Kin Score — 53.5 / 100 (developing)

Scored 2026-08-17 under rubric 0.11.0. Trend: flat (+0.0 from 53.5).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 64.2 |
| Governance | 11.5 |
| Operational Transparency | 28.9 |
| Developer Ergonomics | 62.5 |
| Commercial Clarity | 52.6 |

## Agent readiness — 46.6 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| MCP Server | derived |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | verified |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (5)

- **AltoIRA Handoffs API** — These are the endpoints you will redirect your investors to (these are NOT api endpoints so you cannot use the Try it out tool)
- **AltoIRA Investment API** — The actions are performed as the manager of an offering, not as a specific user. Authentication uses the `Basic Auth` header (same as the Offering endpoints)
- **AltoIRA OAUTH API** — Provides access to an investor's account. Generates a token to be used with the "user" endpoints below
- **AltoIRA Offering API** — The actions are performed as the manager of an offering, not as a specific user. Authentication uses the `Basic Auth` header
- **AltoIRA User API** — These actions are performed within the context of a specific user (uses OAuth2 with an `Authorization: Bearer` header)

## MCP servers (1)

- **altoira-mcp.yml**

## Agentic access (1)

- **Altoira Agentic Access** — 17 operations · 11 acting

## Security (3)

- **Altoira Authentication** — http/oauth2 · 3 schemes
- **Altoira Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Altoira Trust Center** — trust center published

## Tags

Company, Financial Services, Retirement, Self-Directed IRA, Alternative Investments, Private Markets, Fintech, Custody, Cryptocurrency, Wealth Management, Investing, Capital Raising

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/altoira/). Scores are computed from the provider's own public artifacts under a published rubric.
