Apache Ranger website screenshot

Apache Ranger

Apache Ranger is a framework to enable, monitor, and manage comprehensive data security across the Hadoop platform. It provides centralized security administration for fine-grained authorization policies across Hadoop ecosystem components.

Apache Ranger publishes 5 APIs on the APIs.io network, including Audit API, Groups API, Policies API, and 2 more. Tagged areas include Access Control, Authorization, Hadoop, Policy Management, and Security.

The Apache Ranger catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

Apache Ranger’s developer surface includes authentication, documentation, and 7 more developer resources.

46.8/100 developing ▼ -5.1 Agent 31/100 agent aware Full breakdown ↓
scored 2026-07-28 · rubric v0.6
AccessFreemiumSelf serve⚡ Free to try
5 APIs 7 Features 4 Use Cases
Access ControlAuthorizationHadoopPolicy ManagementSecurityApacheOpen Source

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-28 · rubric v0.6
Composite quality — 46.8/100 · developing
Contract Quality 15.5 / 25
Developer Ergonomics 3.9 / 20
Commercial Clarity 7.9 / 20
Operational Transparency 4.8 / 13
Governance 8.3 / 12
Discoverability 6.5 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/apache-ranger: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 5

Individual APIs this provider publishes, each with its own machine-readable definition.

Apache Ranger Audit API

The Audit API from Apache Ranger — 1 operation(s) for audit.

Apache Ranger Groups API

The Groups API from Apache Ranger — 1 operation(s) for groups.

Apache Ranger Policies API

The Policies API from Apache Ranger — 2 operation(s) for policies.

Apache Ranger Services API

The Services API from Apache Ranger — 2 operation(s) for services.

Apache Ranger Users API

The Users API from Apache Ranger — 1 operation(s) for users.

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Apache Ranger Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Features 7

Notable capabilities this provider offers.

Centralized Policy Management

Manage security policies for all Hadoop services from a single interface

Fine-Grained Access Control

Column-level, row-level, and data masking policies for Hive and HBase

Attribute-Based Access Control

Context-aware policies based on user attributes and tag classifications

Audit Logging

Comprehensive audit trail of all resource access events

Multi-Service Support

Supports HDFS, Hive, HBase, Kafka, Storm, Solr, Kudu, and more

LDAP/AD Integration

Sync users and groups from Active Directory or LDAP

Security Zones

Delegate policy administration with security zones

Scroll for all 7

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Apache Ranger Context

13 classes · 42 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Apache Ranger API Rules

5 rules · 3 warnings 2 info

SPECTRAL

Apache Ranger API Rules

15 rules · 5 errors 9 warnings 1 info

SPECTRAL

JSON Schema 13

Standalone JSON Schema definitions for this provider's data models.

AccessType

2 properties

JSON SCHEMA

AuditEntry

12 properties

JSON SCHEMA

AuditList

2 properties

JSON SCHEMA

GroupList

2 properties

JSON SCHEMA

PolicyItem

4 properties

JSON SCHEMA

PolicyList

4 properties

JSON SCHEMA

PolicyResource

3 properties

JSON SCHEMA

Policy

9 properties

JSON SCHEMA

RangerGroup

4 properties

JSON SCHEMA

RangerService

6 properties

JSON SCHEMA

RangerUser

7 properties

JSON SCHEMA

ServiceList

2 properties

JSON SCHEMA

UserList

2 properties

JSON SCHEMA

Scroll for all 13

JSON Structure 13

JSON Structure definitions describing this provider's data shapes.

Apache Ranger Access Type Structure

2 properties

JSON STRUCTURE

Apache Ranger Audit Entry Structure

12 properties

JSON STRUCTURE

Apache Ranger Audit List Structure

2 properties

JSON STRUCTURE

Apache Ranger Group List Structure

2 properties

JSON STRUCTURE

Apache Ranger Policy Item Structure

4 properties

JSON STRUCTURE

Apache Ranger Policy List Structure

4 properties

JSON STRUCTURE

Apache Ranger Policy Resource Structure

3 properties

JSON STRUCTURE

Apache Ranger Policy Structure

9 properties

JSON STRUCTURE

Apache Ranger Ranger Group Structure

4 properties

JSON STRUCTURE

Apache Ranger Ranger Service Structure

6 properties

JSON STRUCTURE

Apache Ranger Ranger User Structure

7 properties

JSON STRUCTURE

Apache Ranger Service List Structure

2 properties

JSON STRUCTURE

Apache Ranger User List Structure

2 properties

JSON STRUCTURE

Scroll for all 13

Examples 13

Example request and response payloads for these APIs.

Scroll for all 13

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Apache Ranger Authentication

http · 1 scheme

SECURITY

Apache Ranger Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Apache Ranger Vulnerability Disclosure

security.txt · contact published

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Apache Ranger Agentic Access

13 operations · 6 acting

13 operations · 6 acting

AGENTIC

Use Cases 4

What developers build with this provider.

Data Lake Security

Enforce column and row-level security on Hadoop data lake

Regulatory Compliance

Meet GDPR, HIPAA, and SOX requirements with audit logs and masking

Multi-Tenant Authorization

Isolate access between teams and business units

Kafka Topic Authorization

Control which applications can produce and consume Kafka topics

Integrations 5

Pre-built integrations with other platforms and tools.

Apache Hadoop

Native HDFS and YARN authorization integration

Apache Hive

Column-level and row-level security for Hive queries

Apache HBase

Table and column family security for HBase

Apache Kafka

Topic-level authorization for Kafka producers and consumers

Apache Atlas

Tag-based policies using Atlas data classifications

Resources

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 3

Pagination, idempotency, versioning, errors, and events

Build 1

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Source (apis.yml)

apis.yml Raw ↑
aid: apache-ranger
name: Apache Ranger
description: Apache Ranger is a framework to enable, monitor, and manage comprehensive data security across the Hadoop platform.
  It provides centralized security administration for fine-grained authorization policies across Hadoop ecosystem components.
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
position: Consumer
access: 3rd-Party
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/apache-ranger.png
tags:
- Access Control
- Authorization
- Hadoop
- Policy Management
- Security
- Apache
- Open Source
created: '2026-03-16'
modified: '2026-05-19'
url: https://raw.githubusercontent.com/api-evangelist/apache-ranger/refs/heads/main/apis.yml
specificationVersion: '0.19'
apis:
- aid: apache-ranger:apache-ranger-audit-api
  name: Apache Ranger Audit API
  description: The Audit API from Apache Ranger — 1 operation(s) for audit.
  humanURL: https://ranger.apache.org/apidocs/index.html
  tags:
  - Audit
  properties:
  - type: OpenAPI
    url: openapi/apache-ranger-audit-api-openapi.yml
  - type: Documentation
    url: https://ranger.apache.org/apidocs/index.html
  - type: Documentation
    url: https://ranger.apache.org/
- aid: apache-ranger:apache-ranger-groups-api
  name: Apache Ranger Groups API
  description: The Groups API from Apache Ranger — 1 operation(s) for groups.
  humanURL: https://ranger.apache.org/apidocs/index.html
  tags:
  - Groups
  properties:
  - type: OpenAPI
    url: openapi/apache-ranger-groups-api-openapi.yml
  - type: Documentation
    url: https://ranger.apache.org/apidocs/index.html
  - type: Documentation
    url: https://ranger.apache.org/
- aid: apache-ranger:apache-ranger-policies-api
  name: Apache Ranger Policies API
  description: The Policies API from Apache Ranger — 2 operation(s) for policies.
  humanURL: https://ranger.apache.org/apidocs/index.html
  tags:
  - Policies
  properties:
  - type: OpenAPI
    url: openapi/apache-ranger-policies-api-openapi.yml
  - type: Documentation
    url: https://ranger.apache.org/apidocs/index.html
  - type: Documentation
    url: https://ranger.apache.org/
- aid: apache-ranger:apache-ranger-services-api
  name: Apache Ranger Services API
  description: The Services API from Apache Ranger — 2 operation(s) for services.
  humanURL: https://ranger.apache.org/apidocs/index.html
  tags:
  - Services
  properties:
  - type: OpenAPI
    url: openapi/apache-ranger-services-api-openapi.yml
  - type: Documentation
    url: https://ranger.apache.org/apidocs/index.html
  - type: Documentation
    url: https://ranger.apache.org/
- aid: apache-ranger:apache-ranger-users-api
  name: Apache Ranger Users API
  description: The Users API from Apache Ranger — 1 operation(s) for users.
  humanURL: https://ranger.apache.org/apidocs/index.html
  tags:
  - Users
  properties:
  - type: OpenAPI
    url: openapi/apache-ranger-users-api-openapi.yml
  - type: Documentation
    url: https://ranger.apache.org/apidocs/index.html
  - type: Documentation
    url: https://ranger.apache.org/
maintainers:
- FN: Kin Lane
  email: info@apievangelist.com
common:
- type: AgenticAccess
  url: agentic-access/apache-ranger-agentic-access.yml
- type: VulnerabilityDisclosure
  url: security/apache-ranger-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/apache-ranger-domain-security.yml
- type: Authentication
  url: authentication/apache-ranger-authentication.yml
- type: GitHubOrganization
  url: https://github.com/apache/ranger
- type: Documentation
  url: https://ranger.apache.org/
- type: SpectralRules
  url: rules/apache-ranger-spectral-rules.yml
- type: Vocabulary
  url: vocabulary/apache-ranger-vocabulary.yaml
- type: JSONLD
  url: json-ld/apache-ranger-context.jsonld
- type: Features
  data:
  - name: Centralized Policy Management
    description: Manage security policies for all Hadoop services from a single interface
  - name: Fine-Grained Access Control
    description: Column-level, row-level, and data masking policies for Hive and HBase
  - name: Attribute-Based Access Control
    description: Context-aware policies based on user attributes and tag classifications
  - name: Audit Logging
    description: Comprehensive audit trail of all resource access events
  - name: Multi-Service Support
    description: Supports HDFS, Hive, HBase, Kafka, Storm, Solr, Kudu, and more
  - name: LDAP/AD Integration
    description: Sync users and groups from Active Directory or LDAP
  - name: Security Zones
    description: Delegate policy administration with security zones
- type: UseCases
  data:
  - name: Data Lake Security
    description: Enforce column and row-level security on Hadoop data lake
  - name: Regulatory Compliance
    description: Meet GDPR, HIPAA, and SOX requirements with audit logs and masking
  - name: Multi-Tenant Authorization
    description: Isolate access between teams and business units
  - name: Kafka Topic Authorization
    description: Control which applications can produce and consume Kafka topics
- type: Integrations
  data:
  - name: Apache Hadoop
    description: Native HDFS and YARN authorization integration
  - name: Apache Hive
    description: Column-level and row-level security for Hive queries
  - name: Apache HBase
    description: Table and column family security for HBase
  - name: Apache Kafka
    description: Topic-level authorization for Kafka producers and consumers
  - name: Apache Atlas
    description: Tag-based policies using Atlas data classifications