Anchore
Anchore is a container and software supply chain security company providing open source and enterprise tools for vulnerability scanning, SBOM generation, policy enforcement, and continuous compliance. Core open source products include Syft (SBOM generator for container images and filesystems), Grype (vulnerability scanner), and Grant (license scanner). The Anchore Enterprise platform adds policy engines, CI/CD integrations, registry connectors, Kubernetes admission control, and reporting. Anchore supports CycloneDX and SPDX SBOM formats and integrates with Docker, Kubernetes, GitHub Actions, Jenkins, and major cloud registries.
Anchore publishes 6 APIs on the APIs.io network, including Images API, Policies API, Registries API, and 3 more. Tagged areas include Container Security, Containers, SBOM, Software Supply Chain, and Vulnerability Scanning.
The Anchore catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.
Anchore’s developer surface includes authentication, developer portal, documentation, getting-started guide, engineering blog, support, pricing, and 23 more developer resources.
Kin Score
APIs 6
Individual APIs this provider publishes, each with its own machine-readable definition.
Anchore Images API
The Images API from Anchore — 2 operation(s) for images.
Anchore Policies API
The Policies API from Anchore — 2 operation(s) for policies.
Anchore Registries API
The Registries API from Anchore — 1 operation(s) for registries.
Anchore SBOM API
The SBOM API from Anchore — 1 operation(s) for sbom.
Anchore Subscriptions API
The Subscriptions API from Anchore — 1 operation(s) for subscriptions.
Anchore Vulnerabilities API
The Vulnerabilities API from Anchore — 1 operation(s) for vulnerabilities.
Postman Collections 1
Ready-to-run Postman collections for exercising this provider's APIs.
Anchore Enterprise API
POSTMANArazzo Workflows 6
Multi-step API workflows described with the Arazzo specification.
Anchore Analyze Image End to End
Submit a container image for analysis, poll until analyzed, then pull its vulnerabilities and policy evaluation.
ARAZZOAnchore Create Policy and Evaluate Image
Create a new security policy, then immediately evaluate an analyzed image against it to observe the gate result.
ARAZZOAnchore Image SBOM and Vulnerability Pull
Confirm an image is analyzed, then export its CycloneDX SBOM and its vulnerability report for downstream compliance use.
ARAZZOAnchore Registry Image Onboarding
Confirm a registry is configured, then submit an image from it for analysis and confirm the queue.
ARAZZOAnchore Rescan Active Image and Gate
Find an active analyzed image by tag, force a fresh vulnerability scan, and gate it against policy.
ARAZZOAnchore Subscribe on Policy Failure
Evaluate an analyzed image against policy and, when it fails the gate, subscribe to ongoing policy-evaluation notifications for its tag.
ARAZZOMCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
MCP Server
MCP SERVERPricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Anchore Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Anchore Finops
FINOPSFeatures 10
Notable capabilities this provider offers.
Scroll for all 10
Semantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Spectral Rules 2
Spectral governance rulesets for linting and validating these APIs.
Anchore API Rules
SPECTRALAnchore API Rules
SPECTRALJSON Schema 3
Standalone JSON Schema definitions for this provider's data models.
JSON Structure 1
JSON Structure definitions describing this provider's data shapes.
Anchore Image Structure
JSON STRUCTURESecurity Posture 2
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Use Cases 7
What developers build with this provider.
Scroll for all 7
Resources
Get Started 2
Portal, sign-up, and the first successful call
Documentation 4
Reference material describing how the API behaves
Agent Surfaces 3
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 9
Pagination, idempotency, versioning, errors, and events
Scroll for all 9
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 3
Authentication, authorization, and security posture
Operate 2
Status, limits, changes, and where to get help
Commercial 3
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API