Armis website screenshot

Armis

Armis is a cyber exposure management and asset intelligence company. Its Armis Centrix platform discovers, protects, and manages every physical and virtual asset in an enterprise environment — IT, OT, ICS, IoT, IoMT, medical devices, cloud workloads, and applications — giving security teams real-time visibility, risk prioritization, and threat detection across the full attack surface. Armis exposes this intelligence through a tenant-scoped REST API secured with OAuth2 client-credentials, an official Python SDK (armis-sdk), a Go application-security scanning CLI (armis-cli), and two published Model Context Protocol servers (armis-knowledge-mcp and armis-appsec-mcp) for agent-native AppSec workflows. The company was surfaced as a portfolio company of General Catalyst and Insight Partners and enriched by the API Evangelist pipeline from its public developer surface.

Armis is profiled on the APIs.io network. Tagged areas include Company, Defense Government, Security, Cybersecurity, and Asset Intelligence.

Armis’ developer surface includes documentation, engineering blog, support, authentication, CLI, and 11 more developer resources.

23.2/100 emerging ▬ flat Agent 26/100 agent aware Full breakdown ↓
scored 2026-07-27 · rubric v0.5
AccessSelf serve
0 APIs 1 MCP Servers
CompanyDefense GovernmentSecurityCybersecurityAsset IntelligenceExposure ManagementIoTOT SecurityVulnerability ManagementDeveloper Tools

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 23.2/100 · emerging
Contract Quality 0.0 / 25
Developer Ergonomics 12.6 / 20
Commercial Clarity 3.2 / 20
Operational Transparency 0.7 / 13
Governance 0.0 / 12
Discoverability 6.8 / 10
Agent readiness — 26/100 · agent aware
Machine-Readable Contract 0 / 18
Agentic Access Contract 0 / 15
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/armis: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

MCP Servers 1

Model Context Protocol servers that expose these APIs to AI agents.

armis-mcp.yml

MCP SERVER

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Armis Authentication

oauth2/apiKey · 2 schemes

SECURITY

Armis Domain Security

TLSv1.3 · DMARC

SECURITY

Armis Trust Center

SOC 2, ISO/IEC 27001, ISO/IEC 27001 SoA, ISO/IEC 27017:2015, ISO/IEC 27018:2019, ISO/IEC 42001:2023, FedRAMP Certified (Class C), DoD IL5, TX-RAMP Level 2, CSA STAR Level 1, C5,...

SECURITY

Resources

Get Started 1

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 3

MCP servers, agent skills, and machine-readable catalogs

Build 4

SDKs, sample code, and the tooling you integrate with

Access & Security 4

Authentication, authorization, and security posture

Operate 1

Status, limits, changes, and where to get help

Company 2

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: armis
name: Armis
description: Armis is a cyber exposure management and asset intelligence company. Its Armis Centrix platform discovers, protects,
  and manages every physical and virtual asset in an enterprise environment — IT, OT, ICS, IoT, IoMT, medical devices, cloud
  workloads, and applications — giving security teams real-time visibility, risk prioritization, and threat detection across
  the full attack surface. Armis exposes this intelligence through a tenant-scoped REST API secured with OAuth2 client-credentials,
  an official Python SDK (armis-sdk), a Go application-security scanning CLI (armis-cli), and two published Model Context
  Protocol servers (armis-knowledge-mcp and armis-appsec-mcp) for agent-native AppSec workflows. The company was surfaced
  as a portfolio company of General Catalyst and Insight Partners and enriched by the API Evangelist pipeline from its public
  developer surface.
url: https://raw.githubusercontent.com/api-evangelist/armis/refs/heads/main/apis.yml
accessModel:
  pricing: unknown
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Self-serve signup
  confidence: medium
  source:
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://avatars.githubusercontent.com/u/32813597?v=4
x-type: company
x-source: vc-portfolio
x-backed-by:
- general-catalyst
- insight-partners
x-tier: stub
x-tier-reason: portfolio-lead
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-18'
tags:
- Company
- Defense Government
- Security
- Cybersecurity
- Asset Intelligence
- Exposure Management
- IoT
- OT Security
- Vulnerability Management
- Developer Tools
apis: []
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: Website
  url: https://www.armis.com
- type: DeveloperPortal
  url: https://developers.armis.com/
- type: Documentation
  url: https://armis-python-sdk.readthedocs.io
- type: GitHubOrganization
  url: https://github.com/ArmisSecurity
- type: Blog
  url: https://www.armis.com/blog/
- type: Support
  url: https://support.armis.com/
- type: TrustCenter
  url: security/armis-trust-center.yml
- type: Compliance
  url: https://trust.armis.com/
- type: Authentication
  url: authentication/armis-authentication.yml
- type: Packages
  url: packages/armis-packages.yml
- type: SDKs
  url: packages/armis-packages.yml
- type: CLI
  url: cli/armis-cli.yml
- type: MCPServer
  url: mcp/armis-mcp.yml
- type: AgentSkill
  url: skills/_index.yml
- type: DomainSecurity
  url: security/armis-domain-security.yml
- type: LLMsTxt
  url: llms/armis-llms.txt
x-enrichment:
  date: '2026-07-19'
  status: backfilled
  pass: local-v1
  note: backfilled from .gitignore signal + verified work evidence