# Bitwarden

**Canonical:** https://apis.io/providers/bitwarden/  
**Website:** https://bitwarden.com/  
**APIs profiled:** 10

Bitwarden is an open-source password and secret management platform. The Bitwarden Public API exposes organization-level resources - members, groups, collections, policies, and event logs - plus a separate Vault Management API for personal vault items, an Identity (OAuth2) endpoint for token issuance, a SCIM endpoint for directory-based provisioning, and the Secrets Manager API for application secrets.

## Kin Score — 32.9 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 32.9).

| Facet | Score |
|---|---|
| Discoverability | 64.8 |
| Contract Quality | 56.5 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 31.0 |
| Commercial Clarity | 23.7 |
| Access Clarity | 23.7 |

## Agent readiness — 35.9 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium (free trial) · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: yes (confidence: high).

## APIs (10)

- **Bitwarden Identity API** — OAuth2 / OpenID Connect token endpoint that issues bearer tokens for the Public API and Vault Management API. Organization API keys use the client_credentials grant with scope a...
- **Bitwarden SCIM API** — SCIM 2.0 endpoint for directory-driven provisioning of users and groups (used by Okta, Entra ID, OneLogin, JumpCloud, Google Workspace via SCIM). Supports automatic invite, upda...
- **Bitwarden Vault Management API** — Local Bitwarden CLI HTTP API for managing personal vault items, folders, sends, collections, organizations, the generator, and miscellaneous operations. Exposed by the bw CLI in...
- **Bitwarden Secrets Manager API** — Secrets Manager API for storing and retrieving application secrets and managing projects, service accounts, secrets, and access tokens used by infrastructure and developer tooling.
- **Bitwarden Collections API** — The Collections API from Bitwarden — 2 operation(s) for collections.
- **Bitwarden Events API** — The Events API from Bitwarden — 1 operation(s) for events.
- **Bitwarden Groups API** — The Groups API from Bitwarden — 3 operation(s) for groups.
- **Bitwarden Members API** — The Members API from Bitwarden — 4 operation(s) for members.
- **Bitwarden Organization API** — The Organization API from Bitwarden — 1 operation(s) for organization.
- **Bitwarden Policies API** — The Policies API from Bitwarden — 3 operation(s) for policies.

## Agentic access (1)

- **Bitwarden Agentic Access** — 24 operations · 13 acting

## Security (3)

- **Bitwarden Authentication** — oauth2 · 1 scheme
- **Bitwarden Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Bitwarden Trust Center** — SOC 2, GDPR

## Plans (1)

- **Bitwarden Plans Pricing**

## Tags

Security, Password Manager, Open-Source, Vault, Identity, SCIM

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/bitwarden/). Scores are computed from the provider's own public artifacts under a published rubric.
