AutoFi website screenshot

AutoFi

AutoFi ("The Sales Momentum Company") is an AI-powered automotive commerce platform that connects online and in-store car-buying experiences for dealerships, OEMs, lenders, and online marketplaces. Its products span digital retailing (online financing exploration and personalized deal paths with real payments and options), showroom solutions (in-store deal-structuring tools that preserve dealership profitability and buyer transparency), Dealmaker deal structuring, and Smartlink lead management. AutoFi publicly documents a REST API — the Lending-as-a-Service surface — at api.autofi.com covering JWT client credential authorization, loan application creation and retrieval, Dealmaker and credit application submission, dealer lookup, cash/finance/lease payment estimation, and prequalification, with a UAT sandbox that can simulate lender decisions. AutoFi was surfaced as a portfolio company of 500 Global.

AutoFi publishes 1 API on the APIs.io network. Tagged areas include Company, Automotive, Fintech, Digital Retail, and Auto Finance.

The AutoFi catalog on APIs.io includes 1 event-driven AsyncAPI specification.

AutoFi’s developer surface includes documentation, API reference, engineering blog, support, signup flow, authentication, sandbox, and 28 more developer resources.

58.1/100 strong ▲ 49.8 Agent 65/100 agent ready Full breakdown ↓
scored 2026-08-17 · rubric v0.11.0
2 APIs 2 MCP Servers
CompanyAutomotiveFintechDigital RetailAuto FinanceDealershipsSales EnablementSaaSLendingLoan OriginationCredit DecisioningPayment CalculationPrequalification

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-17 · rubric v0.11.0
Composite quality — 58.1/100 · strong
Contract Quality 13.3 / 21
Developer Ergonomics 9.2 / 17
Commercial Clarity 8.5 / 17
Operational Transparency 6.7 / 11
Governance 2.1 / 10
Discoverability 7.4 / 9
Regulatory Posture 10.8 / 15
Agent readiness — 65/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 6 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Regulatory Posture applies to this provider. Its tags matched the Payments regime, so Regulatory Posture carries 15 points of the composite. If this regime is wrong for your business, say so on your provider repo — the applicability map is public and we will correct it.
The six quality facets above are damped to 85 points between them, because the conditional facet above carries the other 15. That is why each facet's contribution is shown against a damped maximum: raising a quality facet moves the composite by 85% of its nominal weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/autofi: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 2

Individual APIs this provider publishes, each with its own machine-readable definition.

AutoFi API

AutoFi's public REST API (OpenAPI 3.0.0) for automotive lending and digital retail. Resource-oriented JSON endpoints for requesting a JWT access token with API client credential...

AutoFi MCP Server

Live, OAuth-protected Model Context Protocol server served from the WordPress installation behind autofi.com, discovered through RFC 9728 protected-resource metadata. It is a si...

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

AutoFi API

OPEN COLLECTION

MCP Servers 2

Model Context Protocol servers that expose these APIs to AI agents.

autofi-mcp.yml

MCP SERVER

mcp-oauth-server

MCP SERVER

Pricing Plans 1

Published pricing tiers and plan structures.

Autofi Plans Pricing

0 plans

PLANS

Rate Limits 1

Documented rate limits and quota policies.

Autofi Rate Limits

2 limits

RATE LIMITS

Event Specifications 1

AsyncAPI definitions for this provider's event-driven and streaming APIs.

Autofi Webhooks

ASYNCAPI

Security Posture 4

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Autofi Authentication

http · 1 scheme

SECURITY

Autofi Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Autofi Vulnerability Disclosure

Hackerone · security.txt · contact published

SECURITY

Autofi Trust Center

SOC 2, SOC 3

SECURITY

Scopes 1

OAuth scopes governing access to this provider's APIs.

Autofi Scopes

7 scopes

7 scopes

SCOPES

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Autofi Agentic Access

11 operations · 9 acting

11 operations · 9 acting

AGENTIC

Resources

Get Started 3

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 5

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 6

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 7

Authentication, authorization, and security posture

Scroll for all 7

Operate 3

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: autofi
accessModel:
  pricing: unknown
  onboarding: sales-gate
  trial: false
  try_now: false
  public: true
  label: Public reference, sales-gated credentials
  confidence: medium
  source:
  - openapi
  - authentication
  generated: '2026-08-14'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/autofi.png
name: AutoFi
description: AutoFi ("The Sales Momentum Company") is an AI-powered automotive commerce platform that connects online and
  in-store car-buying experiences for dealerships, OEMs, lenders, and online marketplaces. Its products span digital retailing
  (online financing exploration and personalized deal paths with real payments and options), showroom solutions (in-store
  deal-structuring tools that preserve dealership profitability and buyer transparency), Dealmaker deal structuring, and Smartlink
  lead management. AutoFi publicly documents a REST API — the Lending-as-a-Service surface — at api.autofi.com covering JWT
  client credential authorization, loan application creation and retrieval, Dealmaker and credit application submission, dealer
  lookup, cash/finance/lease payment estimation, and prequalification, with a UAT sandbox that can simulate lender decisions.
  AutoFi was surfaced as a portfolio company of 500 Global.
url: https://raw.githubusercontent.com/api-evangelist/autofi/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- 500-global
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-08-14'
tags:
- Company
- Automotive
- Fintech
- Digital Retail
- Auto Finance
- Dealerships
- Sales Enablement
- SaaS
- Lending
- Loan Origination
- Credit Decisioning
- Payment Calculation
- Prequalification
apis:
- name: AutoFi API
  description: AutoFi's public REST API (OpenAPI 3.0.0) for automotive lending and digital retail. Resource-oriented JSON
    endpoints for requesting a JWT access token with API client credentials, creating and retrieving loan applications, creating
    Dealmaker deals and credit applications, looking up AutoFi dealers, estimating cash, finance and lease payments, and running
    prequalification. Production runs at api.autofi.com with a UAT sandbox at api-uat.autofi.com that can simulate lender
    decisions per lender code.
  humanURL: https://api.autofi.com/api.html
  baseURL: https://api.autofi.com
  tags:
  - Auto Finance
  - Lending
  - Loan Origination
  - Credit Decisioning
  - Payment Calculation
  - Prequalification
  - Dealerships
  properties:
  - type: OpenAPI
    url: openapi/autofi-api-openapi.yml
  - type: Documentation
    url: https://api.autofi.com/api.html
  - type: APIReference
    url: https://api.autofi.com/api.html
  - type: Authentication
    url: authentication/autofi-authentication.yml
  - type: OAuthScopes
    url: scopes/autofi-scopes.yml
  - type: Conventions
    url: conventions/autofi-conventions.yml
  - type: ErrorCatalog
    url: errors/autofi-problem-types.yml
  - type: DataModel
    url: data-model/autofi-data-model.yml
  - type: Sandbox
    url: sandbox/autofi-sandbox.yml
  - type: RateLimits
    url: rate-limits/autofi-rate-limits.yml
  - type: Webhooks
    url: asyncapi/autofi-webhooks.yml
  - type: PostmanCollection
    url: collections/autofi-api.postman_collection.json
  - type: OpenCollection
    url: collections/autofi-api.opencollection.json
  - type: Overlay
    url: overlays/autofi-api-overlay.yaml
- name: AutoFi MCP Server
  description: Live, OAuth-protected Model Context Protocol server served from the WordPress installation behind autofi.com,
    discovered through RFC 9728 protected-resource metadata. It is a site/content MCP surface on AutoFi's marketing host,
    not an MCP wrapper around the lending API. Anonymous tools/list returns HTTP 401 mcp_unauthorized, so the tool schemas
    require the `mcp` OAuth scope to read.
  humanURL: https://www.autofi.com/.well-known/oauth-protected-resource/
  baseURL: https://www.autofi.com/wp-json/mcp/mcp-oauth-server
  tags:
  - MCP
  - Agent
  - Content
  properties:
  - type: MCPServer
    url: mcp/autofi-mcp.yml
  - type: MCPServer
    url: https://www.autofi.com/wp-json/mcp/mcp-oauth-server
  - type: ToolCrosswalk
    url: mcp/autofi-tool-crosswalk.yml
  - type: WellKnown
    url: well-known/autofi-well-known.yml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: AgenticAccess
  url: agentic-access/autofi-agentic-access.yml
- type: Website
  url: https://autofi.com
- type: Documentation
  url: https://api.autofi.com/api.html
- type: APIReference
  url: https://api.autofi.com/api.html
- type: Blog
  url: https://www.autofi.com/news/
- type: Support
  url: https://www.autofi.com/support/
- type: SignUp
  url: https://www.autofi.com/request-demo/
- type: Login
  url: https://portal.autofi.com/login
- type: TermsOfService
  url: https://www.autofi.com/terms-and-conditions/
- type: PrivacyPolicy
  url: https://autofi.com/privacy-policy/
- type: GitHubOrganization
  url: https://github.com/AutoFi
- type: StatusPage
  url: https://status.autofi.com
- type: TrustCenter
  url: https://trust.autofi.com/
- type: Compliance
  url: https://trust.autofi.com/
- type: Security
  url: https://trust.autofi.com/
- type: DomainSecurity
  url: security/autofi-domain-security.yml
- type: VulnerabilityDisclosure
  url: security/autofi-vulnerability-disclosure.yml
- type: LLMsTxt
  url: llms/autofi-llms.txt
- type: Authentication
  url: authentication/autofi-authentication.yml
- type: OAuthScopes
  url: scopes/autofi-scopes.yml
- type: Conventions
  url: conventions/autofi-conventions.yml
- type: Lifecycle
  url: lifecycle/autofi-lifecycle.yml
- type: Conformance
  url: conformance/autofi-conformance.yml
- type: ErrorCatalog
  url: errors/autofi-problem-types.yml
- type: DataModel
  url: data-model/autofi-data-model.yml
- type: Sandbox
  url: sandbox/autofi-sandbox.yml
- type: RateLimits
  url: rate-limits/autofi-rate-limits.yml
- type: Plans
  url: plans/autofi-plans-pricing.yml
- type: Packages
  url: packages/autofi-packages.yml
- type: MCPServer
  url: mcp/autofi-mcp.yml
- type: ToolCrosswalk
  url: mcp/autofi-tool-crosswalk.yml
- type: WellKnown
  url: well-known/autofi-well-known.yml
- type: Webhooks
  url: asyncapi/autofi-webhooks.yml
- type: AgentSkill
  url: skills/_index.yml
- type: Overlay
  url: overlays/autofi-api-overlay.yaml
x-enrichment:
  date: '2026-08-14'
  status: enriched
  artifacts_added: 31
  pass: local-v1
  note: Round 2 overturned round 1's "no public API surface" finding. The AutoFi OpenAPI 3.0.0 was live the whole time, embedded
    as Redoc hydration state in https://api.autofi.com/api.html — 11 operations, 174 schemas — and a live OAuth-protected
    MCP server was found behind the trailing-slash form of /.well-known/oauth-protected-resource on the marketing host.