CloudFront
CloudFront is Amazon Web Services' content delivery network (CDN) for delivering data, video, applications, and APIs globally with low latency. This repository is the short-form profile for AWS CloudFront; the canonical AWS service profile lives at amazon-cloudfront in the API Evangelist Network. CloudFront's API is part of the AWS Service Reference and exposes operations for distributions, origins, cache behaviors, invalidations, origin access identities, functions, and Lambda@Edge.
CloudFront publishes 7 APIs on the APIs.io network, including CachePolicies API, Distributions API, Functions API, and 4 more. Tagged areas include CDN, Caching, Content Delivery, Edge Computing, and Lambda@Edge.
CloudFront’s developer surface includes authentication, documentation, pricing, changelog, CLI, API reference, getting-started guide, and 37 more developer resources.
What this lets a business do 1
Business capabilities this provider's published APIs can perform, derived from its own contracts. Browse all capabilities →
Kin Score
What adopting Amazon CloudFront moves on the Kin Score 0
Amazon CloudFront is an area vendor: providers adopt it to run part of their developer surface. This is the Kin Score checks its features can move for a provider that adopts it, what each one really earns, and what it earns nothing for.
CloudFront moves no Kin Score check on its own. Its agent features are real but enforcement-side. AWS WAF Bot Control verifies Web Bot Auth signatures from incoming agents and can answer AI bots with an x402 HTTP 402 (the Monetize action, CloudFront only). Neither produces the /.well-known UCP/ACP document agentic_commerce reads or the signing-key directory consent_identity points at. CloudFront Functions and Lambda@Edge can serve anything, but the credit goes to the file the provider writes, not to the edge.
Nothing the Kin Score reads. Amazon CloudFront's features serve the provider's operations, not the published surface the score measures.
What Amazon CloudFront ships that earns nothing (5)
- AI traffic monetization (Monetize action, x402) — agentic_commerce reads a parsing /.well-known/ucp.json or acp.json. The Monetize action is a per-request x402 402 exchange, and the fetched pages describe no discovery document.
- Web Bot Auth verification — This verifies OTHER parties’ signed agents. The WebBotAuth/HTTPMessageSignatures pointers point at a key directory that only a bot operator publishes.
- AWS WAF rate-based rules — The dimension reads RateLimit headers documented in the provider’s OpenAPI, or a rate_limits artifact. Rate-based rules enforce limits and the fetched docs describe no standard headers.
- CloudFront Functions and Lambda@Edge — A function can serve security.txt or an api-catalog, but the provider writes the document. Any origin could serve the same file.
- AWS WAF Bot Control — Caching, TLS termination, DDoS absorption and bot filtering change nothing any check reads.
A model, not a score. Adopting this vendor changes a provider's Kin Score only when the provider publishes the resulting artifacts on its own surface; nothing here writes a score, and no sponsorship or partnership can. The rating is not for sale → · Full vendor facets artifact
APIs 7
Individual APIs this provider publishes, each with its own machine-readable definition.
AWS CloudFront API (canonical)
The AWS CloudFront REST API exposes operations for managing distributions (CreateDistribution, GetDistribution, UpdateDistribution, DeleteDistribution, ListDistributions), origi...
CloudFront CachePolicies API
The CachePolicies API from CloudFront — 2 operation(s) for cachepolicies.
CloudFront Distributions API
The Distributions API from CloudFront — 3 operation(s) for distributions.
CloudFront Functions API
The Functions API from CloudFront — 2 operation(s) for functions.
CloudFront Invalidations API
The Invalidations API from CloudFront — 2 operation(s) for invalidations.
CloudFront OriginAccessControl API
The OriginAccessControl API from CloudFront — 2 operation(s) for originaccesscontrol.
CloudFront Public Keys API
The Public Keys API from CloudFront — 1 operation(s) for public keys.
Scroll for all 7
Open Collections 8
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONAmazon CloudFront CachePolicies API
OPEN COLLECTIONAmazon CloudFront CachePolicies Distributions API
OPEN COLLECTIONAmazon CloudFront CachePolicies Functions API
OPEN COLLECTIONAmazon CloudFront CachePolicies Invalidations API
OPEN COLLECTIONAmazon CloudFront CachePolicies OriginAccessControl API
OPEN COLLECTIONAmazon CloudFront CachePolicies PublicKeys API
OPEN COLLECTIONAmazon CloudFront API
OPEN COLLECTIONScroll for all 8
MCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
CloudFront MCP Server
MCP SERVERPricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Cloudfront Rate Limits
RATE LIMITSSecurity Posture 4
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 5
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 6
Pagination, idempotency, versioning, errors, and events
Build 5
SDKs, sample code, and the tooling you integrate with
Access & Security 7
Authentication, authorization, and security posture
Scroll for all 7
Operate 6
Status, limits, changes, and where to get help
Commercial 4
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API
Other 4
Properties that don't map to a standard resource type
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.