# Amazon CodeArtifact

**Canonical:** https://apis.io/providers/amazon-codeartifact/  
**Website:** https://aws.amazon.com/codeartifact/  
**APIs profiled:** 13

Amazon CodeArtifact is a fully managed, secure artifact repository service that helps organizations store, publish, and share software packages used in their software development process. CodeArtifact works with popular build tools and package managers including npm, yarn, pip, twine, Maven, Gradle, NuGet, and more. It supports Cargo, generic, Maven, npm, NuGet, PyPI, Ruby, and Swift package formats and integrates natively with AWS IAM, AWS KMS, AWS CloudTrail, and Amazon EventBridge.

## Kin Score — 58.4 / 100 (strong)

Scored 2026-08-21 under rubric 0.12.0. Trend: flat (+0.4 from 58.0).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 77.5 |
| Governance | 45.5 |
| Contract Governance | 45.5 |
| Operational Transparency | 18.4 |
| Developer Ergonomics | 57.1 |
| Commercial Clarity | 52.6 |
| Access Clarity | 52.6 |

## Agent readiness — 41.5 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | verified |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | yes |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (13)

- **Amazon CodeArtifact Authorization Token#domain API** — The Authorization Token#domain API from Amazon CodeArtifact — 1 operation(s) for authorization token#domain.
- **Amazon CodeArtifact Domain API** — The Domain API from Amazon CodeArtifact — 3 operation(s) for domain.
- **Amazon CodeArtifact Domain#domain API** — The Domain#domain API from Amazon CodeArtifact — 1 operation(s) for domain#domain.
- **Amazon CodeArtifact Domains API** — The Domains API from Amazon CodeArtifact — 1 operation(s) for domains.
- **Amazon CodeArtifact Package API** — The Package API from Amazon CodeArtifact — 11 operation(s) for package.
- **Amazon CodeArtifact Package#domain&repository&format&package API** — The Package#domain&repository&format&package API from Amazon CodeArtifact — 1 operation(s) for package#domain&repository&format&package.
- **Amazon CodeArtifact Packages#domain&repository API** — The Packages#domain&repository API from Amazon CodeArtifact — 1 operation(s) for packages#domain&repository.
- **Amazon CodeArtifact Repositories API** — The Repositories API from Amazon CodeArtifact — 1 operation(s) for repositories.
- **Amazon CodeArtifact Repository API** — The Repository API from Amazon CodeArtifact — 4 operation(s) for repository.
- **Amazon CodeArtifact Repository#domain&repository API** — The Repository#domain&repository API from Amazon CodeArtifact — 1 operation(s) for repository#domain&repository.
- **Amazon CodeArtifact Tag#resourceArn API** — The Tag#resourceArn API from Amazon CodeArtifact — 1 operation(s) for tag#resourcearn.
- **Amazon CodeArtifact Tags#resourceArn API** — The Tags#resourceArn API from Amazon CodeArtifact — 1 operation(s) for tags#resourcearn.
- **Amazon CodeArtifact Untag#resourceArn API** — The Untag#resourceArn API from Amazon CodeArtifact — 1 operation(s) for untag#resourcearn.

## MCP servers (1)

- **Amazon CodeArtifact MCP Server**

## Agentic access (1)

- **Amazon Codeartifact Agentic Access** — 38 operations · 29 acting

## Security (4)

- **Amazon Codeartifact Authentication** — apiKey · 1 scheme
- **Amazon Codeartifact Domain Security** — TLSv1.3 · HSTS · DMARC
- **Amazon Codeartifact Vulnerability Disclosure** — security.txt · contact published
- **Amazon Codeartifact Trust Center** — PCI DSS, HIPAA, FedRAMP, GDPR, FIPS 140

## Use cases (5)

- **Internal Package Distribution** — Share proprietary software components and internal libraries between multiple applications and development teams within an organization without managing your own artifact storag...
- **Open-Source Dependency Caching** — Proxy and cache open-source packages from public registries to ensure build reproducibility and availability even when upstream registries experience downtime.
- **Software Supply Chain Security** — Control which packages developers can use with package origin controls to protect against dependency confusion and substitution attacks.
- **Multi-Team Package Governance** — Apply organizational policies across multiple repositories in a domain and audit package consumption across development teams using CloudTrail and EventBridge.
- **CI/CD Pipeline Integration** — Integrate with CI/CD systems using native package manager support (npm, Maven, pip, NuGet) to fetch and publish packages as part of automated build and release workflows.

## Tags

Amazon, Artifact Repository, Package Management, DevOps, Software Supply Chain, npm, Maven, PyPI, NuGet

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/amazon-codeartifact/). Scores are computed from the provider's own public artifacts under a published rubric.
