# Cerby

**Canonical:** https://apis.io/providers/cerby/  
**Website:** https://www.cerby.com/  
**APIs profiled:** 3

Cerby is an identity, access, and password management platform for nonfederated and disconnected applications — the enterprise software that does not support SAML, SCIM, or an integration API of its own. Cerby extends existing IAM, IGA, and PAM systems to those applications through browser and robotic automation, adding provisioning and deprovisioning, credential rotation, MFA enrollment, and access governance where no standards-based integration exists. Cerby publishes a public RESTful API (JSON:API-style envelope, X-API-Key authentication, scoped API keys) over eight resources — accounts, secrets, collections, users, teams, integrations, jobs, and vaults — plus a signed webhook notification service, a cross-platform CLI, and SCIM 2.0 endpoints for provisioning from Okta, Entra ID, and OneLogin.

## Kin Score — 46.4 / 100 (developing)

Scored 2026-08-17 under rubric 0.11.0. Trend: flat (+0.0 from 46.4).

| Facet | Score |
|---|---|
| Discoverability | 81.5 |
| Contract Quality | 51.6 |
| Governance | 12.5 |
| Operational Transparency | 44.7 |
| Developer Ergonomics | 58.7 |
| Commercial Clarity | 31.6 |

## Agent readiness — 38.3 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | documented |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (3)

- **Cerby API** — The public Cerby REST API. Programmatic access to accounts, secrets, collections, users, teams, integrations, jobs, and vaults in a Cerby workspace. Requests are authenticated w...
- **Cerby Webhooks** — Cerby's webhook notification service delivers real-time signed HTTPS events for account, credential, MFA, and automation lifecycle changes. Deliveries carry a fixed JSON envelop...
- **Cerby SCIM 2.0** — Cerby exposes SCIM 2.0 endpoints so an identity provider can automatically provision and deprovision users and groups into a Cerby workspace. Documented for Okta, Microsoft Entr...

## Security (4)

- **Cerby Authentication** — apiKey/http · 3 schemes
- **Cerby Domain Security** — TLSv1.3 · HSTS · DMARC
- **Cerby Vulnerability Disclosure** — Hackerone
- **Cerby Trust Center** — trust center published

## Tags

Identity, Access Management, Security, Password Management, Provisioning, SCIM, Identity Governance, Nonfederated Applications, Automation, Webhooks

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/cerby/). Scores are computed from the provider's own public artifacts under a published rubric.
