# Bearer

**Canonical:** https://apis.io/providers/bearer/  
**Website:** https://www.bearer.com/  
**APIs profiled:** 0

Bearer is a developer-first static application security testing (SAST) platform whose open-source CLI (written in Go, Elastic License 2.0) scans source code and analyzes data flows to discover, filter, and prioritize security and privacy risks. It detects OWASP Top 10 and CWE Top 25 vulnerabilities, tracks sensitive data (PII/PHI) across a codebase, and produces GDPR / DPIA / PIA privacy reports. Bearer supports Go, Python, PHP, JavaScript, TypeScript, Ruby, and Java, and integrates into CI/CD via SARIF, GitLab SAST, and reviewdog output formats. The company's commercial platform was acquired by Cycode in 2024; the Bearer CLI remains open source. Bearer surfaced in the API Evangelist network as a portfolio company of Partech and Point Nine and has been enriched from its public docs, GitHub org, and live domain probes.

## Kin Score — 21.3 / 100 (emerging)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 21.3).

| Facet | Score |
|---|---|
| Discoverability | 57.4 |
| Contract Quality | 0.0 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 28.9 |
| Developer Ergonomics | 38.1 |
| Commercial Clarity | 21.1 |
| Access Clarity | 21.1 |

## Agent readiness — 0.0 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## Security (1)

- **Bearer Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Company, Infrastructure Saas, Application Security, Static Analysis, SAST, Code Security, Data Privacy, Developer Tools, CLI

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/bearer/). Scores are computed from the provider's own public artifacts under a published rubric.
