Binarly
Binarly is a firmware and software supply-chain security company whose Binarly Transparency Platform performs binary-native analysis of compiled software, firmware, and container images without requiring source code. It detects known and unknown vulnerabilities, hardcoded secrets, cryptographic materials, malicious code, and missing hardening mitigations across UEFI, bootloaders, Linux packages, and application binaries, then generates SBOM, VEX, CBOM, and PQC-compliance artifacts for supply-chain assurance. The platform exposes a REST API (v4, Keycloak/OIDC-authenticated) so producers can automate firmware scanning inside CI/CD pipelines and enterprise buyers can programmatically assess vendor software. Binarly also maintains open firmware-research tooling such as the FwHunt rule format and fwhunt-scan. The company was surfaced as a portfolio company of Canaan Partners.
Binarly publishes 20 APIs on the APIs.io network, including Assistant API, Chart API, CustomRules API, and 17 more. Tagged areas include Company, Security, Firmware Security, Supply Chain Security, and Vulnerability Management.
Binarly’s developer surface includes documentation, API reference, getting-started guide, authentication, changelog, engineering blog, support, and 20 more developer resources.
Kin Score
APIs 20
Individual APIs this provider publishes, each with its own machine-readable definition.
Binarly Assistant API
The Assistant API from Binarly — 5 operation(s) for assistant.
Binarly Chart API
The Chart API from Binarly — 7 operation(s) for chart.
Binarly CustomRules API
The CustomRules API from Binarly — 4 operation(s) for customrules.
Binarly Escalation API
The Escalation API from Binarly — 1 operation(s) for escalation.
Binarly File API
The File API from Binarly — 4 operation(s) for file.
Binarly Finding API
The Finding API from Binarly — 4 operation(s) for finding.
Binarly Grid API
The Grid API from Binarly — 12 operation(s) for grid.
Binarly Group API
The Group API from Binarly — 5 operation(s) for group.
Binarly Image API
The Image API from Binarly — 15 operation(s) for image.
Binarly Integration API
The Integration API from Binarly — 10 operation(s) for integration.
Binarly Notification API
The Notification API from Binarly — 1 operation(s) for notification.
Binarly Product API
The Product API from Binarly — 4 operation(s) for product.
Binarly RoleBinding API
The RoleBinding API from Binarly — 3 operation(s) for rolebinding.
Binarly Scan API
The Scan API from Binarly — 5 operation(s) for scan.
Binarly Search API
The Search API from Binarly — 2 operation(s) for search.
Binarly Subscription API
The Subscription API from Binarly — 2 operation(s) for subscription.
Binarly TempFile API
The TempFile API from Binarly — 1 operation(s) for tempfile.
Binarly User API
The User API from Binarly — 3 operation(s) for user.
Binarly UserStorage API
The UserStorage API from Binarly — 2 operation(s) for userstorage.
Binarly Vulnerability API
The Vulnerability API from Binarly — 2 operation(s) for vulnerability.
Scroll for all 20
Open Collections 21
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONBinarly Assistant API
OPEN COLLECTIONBinarly Assistant Chart API
OPEN COLLECTIONBinarly Assistant CustomRules API
OPEN COLLECTIONBinarly Assistant Escalation API
OPEN COLLECTIONBinarly Assistant File API
OPEN COLLECTIONBinarly Assistant Finding API
OPEN COLLECTIONBinarly Assistant Grid API
OPEN COLLECTIONBinarly Assistant Group API
OPEN COLLECTIONBinarly Assistant Image API
OPEN COLLECTIONBinarly Assistant Integration API
OPEN COLLECTIONBinarly Assistant Notification API
OPEN COLLECTIONBinarly Assistant Product API
OPEN COLLECTIONBinarly Assistant RoleBinding API
OPEN COLLECTIONBinarly Assistant Scan API
OPEN COLLECTIONBinarly Assistant Search API
OPEN COLLECTIONBinarly Assistant Subscription API
OPEN COLLECTIONBinarly Assistant TempFile API
OPEN COLLECTIONBinarly Assistant User API
OPEN COLLECTIONBinarly Assistant UserStorage API
OPEN COLLECTIONBinarly Assistant Vulnerability API
OPEN COLLECTIONScroll for all 21
Arazzo Workflows 2
Multi-step API workflows described with the Arazzo specification.
Generate supply-chain compliance artifacts with Binarly
For a scanned image, export the full set of supply-chain assurance artifacts — CycloneDX and SPDX SBOMs, an OpenVEX VEX, a CBOM, and a findings report — for procurement and regu...
ARAZZOScan firmware in CI/CD with Binarly
Create (or reuse) a product, upload a firmware/binary image, run a scan, poll until it completes, then list the findings and pull a PDF report — the core CI/CD gate flow for the...
ARAZZOMCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
Binarly MCP Server
MCP SERVERSecurity Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 4
Portal, sign-up, and the first successful call
Documentation 3
Reference material describing how the API behaves
Agent Surfaces 3
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 2
Pagination, idempotency, versioning, errors, and events
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 4
Authentication, authorization, and security posture
Operate 4
Status, limits, changes, and where to get help
Commercial 3
Pricing, plans, and the legal terms of use
Company 1
The organization behind the API
Other 1
Properties that don't map to a standard resource type
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for providers
9 MCP tools reach this
find_providersBrowse and filter every provider in the catalog.get_provider_artifactsEvery artifact this provider publishes, grouped by type.get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.get_provider_toolsEvery MCP tool they ship, with the operation each wraps.get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.get_provider_ratingPRO — composite, band, trend and facet scores.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
curl "https://apis.io/api/v1/providers/binarly"
curl "https://apis.io/api/v1/providers?limit=25"
curl "https://apis.io/api/v1/providers/binarly/operations?limit=25"
curl "https://apis.io/api/v1/providers/binarly/evidence"
Discovery needs no key. Ratings and market analysis are Pro.