Authzed website screenshot

Authzed

Authzed is a SpiceDB-based authorization platform providing REST and gRPC APIs for Zanzibar-style relationship-based access control. It enables developers to manage schemas, write relationship tuples, and execute fine-grained permission checks at scale. Authzed Cloud delivers hosted SpiceDB infrastructure with pay-as-you-grow billing, processing tens of billions of permission checks daily across enterprise and AI-native applications.

Authzed publishes 5 APIs on the APIs.io network, including Experimental API, Permissions API, Relationships API, and 2 more. Tagged areas include Authorization, Access Control, Permissions, Zanzibar, and SpiceDB.

The Authzed catalog on APIs.io includes 1 JSON-LD context and 1 Spectral governance ruleset.

Authzed’s developer surface includes authentication, documentation, engineering blog, pricing, and 11 more developer resources.

51.8/100 developing ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-07-28 · rubric v0.6
AccessFreemiumSelf serve⚡ Free to try
6 APIs
AuthorizationAccess ControlPermissionsZanzibarSpiceDBgRPCRESTRelationship-Based Access ControlReBACFine-Grained AuthorizationIdentitySecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-28 · rubric v0.6
Composite quality — 51.8/100 · developing
Contract Quality 14.6 / 25
Developer Ergonomics 4.3 / 20
Commercial Clarity 11.6 / 20
Operational Transparency 6.8 / 13
Governance 7.0 / 12
Discoverability 7.4 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/authzed: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 6

Individual APIs this provider publishes, each with its own machine-readable definition.

Authzed Cloud API

The managed cloud offering of SpiceDB by Authzed, providing production-ready authorization infrastructure with hourly metered billing. Includes all SpiceDB API capabilities plus...

Authzed Experimental API

Experimental and preview endpoints subject to change

Authzed Permissions API

Check, expand, and lookup permissions on resources and subjects

Authzed Relationships API

Read, write, delete, and bulk import/export relationship tuples

Authzed Schema API

Manage SpiceDB schema definitions, diff schemas, and reflect schema metadata

Authzed Watch API

Stream real-time relationship change updates

Pricing Plans 1

Published pricing tiers and plan structures.

Authzed Plans Pricing

4 plans

PLANS

Rate Limits 1

Documented rate limits and quota policies.

Authzed Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Authzed Context

4 classes · 34 properties

JSON-LD

Spectral Rules 1

Spectral governance rulesets for linting and validating these APIs.

Authzed API Rules

5 rules · 3 warnings 2 info

SPECTRAL

JSON Schema 16

Standalone JSON Schema definitions for this provider's data models.

CheckPermissionRequest

6 properties

JSON SCHEMA

CheckPermissionResponse

5 properties

JSON SCHEMA

DeleteRelationshipsRequest

5 properties

JSON SCHEMA

DeleteRelationshipsResponse

3 properties

JSON SCHEMA

ObjectReference

2 properties

JSON SCHEMA

PermissionRelationshipTree

4 properties

JSON SCHEMA

ReadRelationshipsRequest

4 properties

JSON SCHEMA

ReadRelationshipsResponse

3 properties

JSON SCHEMA

ReadSchemaResponse

2 properties

JSON SCHEMA

Relationship

5 properties

JSON SCHEMA

SubjectReference

2 properties

JSON SCHEMA

WriteRelationshipsRequest

3 properties

JSON SCHEMA

WriteRelationshipsResponse

1 properties

JSON SCHEMA

WriteSchemaRequest

1 properties

JSON SCHEMA

WriteSchemaResponse

1 properties

JSON SCHEMA

ZedToken

1 properties

JSON SCHEMA

Scroll for all 16

Examples 5

Example request and response payloads for these APIs.

Check Permission Request

4 fields

EXAMPLE

Check Permission Response

2 fields

EXAMPLE

Lookup Resources Request

4 fields

EXAMPLE

Write Schema Request

1 fields

EXAMPLE

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Authzed Authentication

http · 1 scheme

SECURITY

Authzed Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Authzed Trust Center

SOC 2, GDPR

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Authzed Agentic Access

27 operations · 27 acting

27 operations · 27 acting

AGENTIC

Resources

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Build 1

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Operate 2

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Company 3

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: authzed
name: Authzed
description: Authzed is a SpiceDB-based authorization platform providing REST and gRPC APIs for Zanzibar-style relationship-based
  access control. It enables developers to manage schemas, write relationship tuples, and execute fine-grained permission
  checks at scale. Authzed Cloud delivers hosted SpiceDB infrastructure with pay-as-you-grow billing, processing tens of billions
  of permission checks daily across enterprise and AI-native applications.
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/authzed.png
url: https://raw.githubusercontent.com/api-evangelist/authzed/refs/heads/main/apis.yml
created: '2026-06-13'
modified: '2026-06-13'
specificationVersion: '0.19'
tags:
- Authorization
- Access Control
- Permissions
- Zanzibar
- SpiceDB
- gRPC
- REST
- Relationship-Based Access Control
- ReBAC
- Fine-Grained Authorization
- Identity
- Security
apis:
- name: Authzed Cloud API
  description: The managed cloud offering of SpiceDB by Authzed, providing production-ready authorization infrastructure with
    hourly metered billing. Includes all SpiceDB API capabilities plus Authzed-specific features such as Restricted API Access
    with role-based token policies, service account management, and multi-region deployment.
  image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
  humanURL: https://authzed.com/products/authzed-cloud
  baseURL: https://app.authzed.com
  tags:
  - Cloud
  - Managed
  - Authorization
  - Multi-Region
  - Enterprise
  properties:
  - type: Documentation
    url: https://authzed.com/docs
  - type: RestrictedAccessDocs
    url: https://authzed.com/docs/authzed/concepts/restricted-api-access
- aid: authzed:authzed-experimental-api
  name: Authzed Experimental API
  description: Experimental and preview endpoints subject to change
  humanURL: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  baseURL: https://grpc.authzed.com
  tags:
  - Experimental
  properties:
  - type: OpenAPI
    url: openapi/authzed-experimental-api-openapi.yml
  - type: Documentation
    url: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  - type: GrpcDocumentation
    url: https://buf.build/authzed/api/docs/main:authzed.api.v1
  - type: GitHubRepository
    url: https://github.com/authzed/api
  - type: SDKs
    url: https://authzed.com/docs/spicedb/getting-started/client-libraries
- aid: authzed:authzed-permissions-api
  name: Authzed Permissions API
  description: Check, expand, and lookup permissions on resources and subjects
  humanURL: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  baseURL: https://grpc.authzed.com
  tags:
  - Permissions
  properties:
  - type: OpenAPI
    url: openapi/authzed-permissions-api-openapi.yml
  - type: Documentation
    url: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  - type: GrpcDocumentation
    url: https://buf.build/authzed/api/docs/main:authzed.api.v1
  - type: GitHubRepository
    url: https://github.com/authzed/api
  - type: SDKs
    url: https://authzed.com/docs/spicedb/getting-started/client-libraries
- aid: authzed:authzed-relationships-api
  name: Authzed Relationships API
  description: Read, write, delete, and bulk import/export relationship tuples
  humanURL: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  baseURL: https://grpc.authzed.com
  tags:
  - Relationships
  properties:
  - type: OpenAPI
    url: openapi/authzed-relationships-api-openapi.yml
  - type: Documentation
    url: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  - type: GrpcDocumentation
    url: https://buf.build/authzed/api/docs/main:authzed.api.v1
  - type: GitHubRepository
    url: https://github.com/authzed/api
  - type: SDKs
    url: https://authzed.com/docs/spicedb/getting-started/client-libraries
- aid: authzed:authzed-schema-api
  name: Authzed Schema API
  description: Manage SpiceDB schema definitions, diff schemas, and reflect schema metadata
  humanURL: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  baseURL: https://grpc.authzed.com
  tags:
  - Schema
  properties:
  - type: OpenAPI
    url: openapi/authzed-schema-api-openapi.yml
  - type: Documentation
    url: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  - type: GrpcDocumentation
    url: https://buf.build/authzed/api/docs/main:authzed.api.v1
  - type: GitHubRepository
    url: https://github.com/authzed/api
  - type: SDKs
    url: https://authzed.com/docs/spicedb/getting-started/client-libraries
- aid: authzed:authzed-watch-api
  name: Authzed Watch API
  description: Stream real-time relationship change updates
  humanURL: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  baseURL: https://grpc.authzed.com
  tags:
  - Watch
  properties:
  - type: OpenAPI
    url: openapi/authzed-watch-api-openapi.yml
  - type: Documentation
    url: https://authzed.com/docs/spicedb/getting-started/discovering-spicedb
  - type: GrpcDocumentation
    url: https://buf.build/authzed/api/docs/main:authzed.api.v1
  - type: GitHubRepository
    url: https://github.com/authzed/api
  - type: SDKs
    url: https://authzed.com/docs/spicedb/getting-started/client-libraries
common:
- type: AgenticAccess
  url: agentic-access/authzed-agentic-access.yml
- type: TrustCenter
  url: security/authzed-trust-center.yml
- type: DomainSecurity
  url: security/authzed-domain-security.yml
- type: Authentication
  url: authentication/authzed-authentication.yml
- type: Website
  url: https://authzed.com
- type: Documentation
  url: https://authzed.com/docs
- type: GitHubOrg
  url: https://github.com/authzed
- type: LinkedIn
  url: https://www.linkedin.com/company/authzed
- type: Blog
  url: https://authzed.com/blog
- type: Pricing
  url: https://authzed.com/pricing
- type: StatusPage
  url: https://status.authzed.com/
- type: X
  url: https://twitter.com/authzed
- type: Plans
  url: plans/authzed-plans-pricing.yml
- type: RateLimits
  url: rate-limits/authzed-rate-limits.yml
- type: FinOps
  url: finops/authzed-finops.yml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com