Black Duck Software
Black Duck Software is an independent application security company (formerly the Synopsys Software Integrity Group, spun out in October 2024 and backed by Clearlake Capital and Francisco Partners). Its portfolio spans Software Composition Analysis (Black Duck SCA), static analysis (Coverity), dynamic and interactive testing, fuzzing, and the Polaris SaaS platform, helping organizations find and fix open-source, license, and security risk across the SDLC. Black Duck exposes a versioned REST API (custom media types, bearer-token / API-token auth, HAL-style hypermedia), native CI/CD plug-ins, the Detect command-line scanner, webhooks, and an official MCP server (Black Duck Signal) for AI coding assistants.
Black Duck Software is profiled on the APIs.io network. Tagged areas include Company, Security, Application Security, Software Composition Analysis, and Open Source Security.
Black Duck Software’s developer surface includes documentation, API reference, getting-started guide, engineering blog, support, CLI, authentication, and 21 more developer resources.
Kin Score
MCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
black-duck-software-mcp.yml
MCP SERVERSecurity Posture 4
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Black Duck Software Trust Center
SOC 2 Type 2, SOC 3 Type 2, ISO 27001, ISO 27017, ISO 26262, CSA STAR (Self-Assessment / CAIQ), TISAX Level 2, TX-RAMP Level 2
SECURITYResources
Get Started 2
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 3
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 3
Pagination, idempotency, versioning, errors, and events
Build 4
SDKs, sample code, and the tooling you integrate with
Access & Security 6
Authentication, authorization, and security posture
Operate 4
Status, limits, changes, and where to get help
Commercial 2
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API