# bunq

**Canonical:** https://apis.io/providers/bunq/  
**Website:** https://www.bunq.com/  
**APIs profiled:** 9

bunq is a European (Dutch) neobank offering personal and business accounts across the EU. Its Public API is a REST API over HTTPS (https://api.bunq.com/v1, sandbox https://public-api.sandbox.bunq.com/v1) that lets account holders and licensed third parties read accounts, initiate SEPA and internal payments, send and answer payment requests, manage cards, export statements, upload attachments, and subscribe to event callbacks. bunq uses a distinctive multi-step handshake - installation (register an RSA public key), device-server, then session-server - after which requests are RSA-signed with X-Bunq-Client-Signature and authenticated with a session token in X-Bunq-Client-Authentication.

## Kin Score — 37.7 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 37.7).

| Facet | Score |
|---|---|
| Discoverability | 74.1 |
| Contract Quality | 58.0 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 26.3 |
| Developer Ergonomics | 27.4 |
| Commercial Clarity | 36.8 |
| Access Clarity | 36.8 |

Regulatory layer — **Banking & Open Finance**: 27.8 (matched via tags).

## Agent readiness — 29.1 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (9)

- **bunq Attachment API** — Upload and retrieve attachment content.
- **bunq Card API** — Debit and credit cards linked to monetary accounts.
- **bunq Customer Statement API** — Generate and download account statement exports (CSV, MT940, PDF).
- **bunq Handshake API** — Installation, device registration, and session bootstrap. Establishes the RSA-signed API context.
- **bunq Monetary Account API** — Bank, savings, and joint accounts holding money.
- **bunq Notification Filter API** — Manage URL (webhook) and push notification callbacks for account events.
- **bunq Payment API** — Execute and read payments (including SEPA) for a monetary account.
- **bunq Request Inquiry API** — Create and read payment requests (money you ask another party to pay).
- **bunq User API** — The authenticated user (person, company, or payment service provider).

## Agentic access (1)

- **Bunq Agentic Access** — 28 operations · 11 acting

## Security (3)

- **Bunq Authentication** — apiKey/signature · 3 schemes
- **Bunq Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Bunq Vulnerability Disclosure** — security.txt · contact published

## Plans (1)

- **Bunq Plans Pricing**

## Tags

Banking, Neobank, Payments, Account, SEPA, Open Banking, Fintech, Europe, Netherlands

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/bunq/). Scores are computed from the provider's own public artifacts under a published rubric.
