# Amazon CloudHSM

**Canonical:** https://apis.io/providers/amazon-cloudhsm/  
**Website:** https://aws.amazon.com/cloudhsm/  
**APIs profiled:** 1

AWS CloudHSM is a cloud-based hardware security module (HSM) that enables you to manage cryptographic keys on dedicated FIPS 140-2 Level 3 validated, single-tenant HSM instances running within your own VPC for regulatory compliance and data security.

## Kin Score — 34.8 / 100 (thin)

Scored 2026-08-25 under rubric 0.14.0. Trend: flat (+0.0 from 34.8).

| Facet | Score |
|---|---|
| Discoverability | 87.0 |
| Contract Quality | 0.0 |
| Governance | 59.1 |
| Contract Governance | 59.1 |
| Operational Transparency | 18.4 |
| Developer Ergonomics | 33.3 |
| Commercial Clarity | 50.0 |
| Access Clarity | 50.0 |

## Agent readiness — 5.0 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | yes |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | no |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## APIs (1)

- **Amazon CloudHSM API** — API for creating and managing CloudHSM clusters and HSM instances for dedicated hardware-based cryptographic key management.

## MCP servers (1)

- **Amazon CloudHSM MCP Server**

## Security (3)

- **Amazon Cloudhsm Domain Security** — TLSv1.3 · HSTS · DMARC
- **Amazon Cloudhsm Vulnerability Disclosure** — security.txt · contact published
- **Amazon Cloudhsm Trust Center** — PCI DSS, HIPAA, FedRAMP, GDPR, FIPS 140

## Use cases (5)

- **Data Encryption** — Protect sensitive data with hardware-backed encryption keys.
- **SSL/TLS Offloading** — Manage SSL/TLS certificates and private keys in dedicated HSMs.
- **Certificate Authority** — Secure private CA keys for organizations issuing their own certificates.
- **Database Encryption** — Support transparent data encryption (TDE) for Oracle and SQL Server databases.
- **Regulatory Compliance** — Meet PCI DSS, HIPAA, and other regulatory requirements for key management.

## Tags

CloudHSM, Security, Cryptography, HSM, Compliance

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/amazon-cloudhsm/). Scores are computed from the provider's own public artifacts under a published rubric.
