# Cockroach Labs

**Canonical:** https://apis.io/providers/cockroach-labs/  
**Website:** https://www.cockroachlabs.com/  
**APIs profiled:** 26

Cockroach Labs is the New York-based software company that builds CockroachDB, a cloud-native, distributed, PostgreSQL-compatible SQL database. CockroachDB is offered as Cockroach Labs' fully managed cloud service (Basic, Standard, and Advanced plans) and as self-hosted software. The company provides two primary developer APIs: the CockroachDB Cloud API for managing the lifecycle of cloud-hosted clusters, and the CockroachDB Cluster API exposed by every node for cluster health, monitoring, and operational status. CockroachDB is used in production by banking, retail, gaming, and media companies including Bose, Hard Rock Digital, DoorDash, and Netflix.

## Kin Score — 50.1 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 50.1).

| Facet | Score |
|---|---|
| Discoverability | 74.1 |
| Contract Quality | 68.7 |
| Governance | 9.8 |
| Contract Governance | 9.8 |
| Operational Transparency | 39.5 |
| Developer Ergonomics | 40.5 |
| Commercial Clarity | 55.3 |
| Access Clarity | 55.3 |

## Agent readiness — 35.4 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | documented |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | yes |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (26)

- **Cockroach Labs APIKeys API** — Manage API keys for programmatic access, including creation, retrieval, listing, updating, and deletion.
- **Cockroach Labs AuditLogs API** — Retrieve audit log events for the organization to support compliance and security investigations.
- **Cockroach Labs Auth API** — Authenticate to the Cluster API by creating and terminating API sessions. Session tokens are passed via the X-Cockroach-API-Session header on subsequent requests.
- **Cockroach Labs BackupRestore API** — Manage cluster backups, backup configurations, and restore operations for CockroachDB clusters.
- **Cockroach Labs Billing API** — Retrieve invoices and billing information for the CockroachDB Cloud organization.
- **Cockroach Labs Clusters API** — Create, list, retrieve, update, and delete CockroachDB Serverless and Dedicated clusters within an organization.
- **Cockroach Labs CMEK API** — Manage customer-managed encryption keys (CMEK) for encrypting cluster data at rest using customer-controlled keys.
- **Cockroach Labs Databases API** — Manage databases within a CockroachDB cluster, including creation, listing, updating, and deletion.
- **Cockroach Labs EgressRules API** — Configure egress traffic rules and egress private endpoints for outbound cluster network traffic.
- **Cockroach Labs Folders API** — Organize clusters and other resources into hierarchical folder structures within the organization.
- **Cockroach Labs Health API** — Check the health and readiness of individual CockroachDB nodes. The health endpoint can report whether the node is live and fully operational for accepting SQL connections.
- **Cockroach Labs IPAllowlists API** — Configure IP allowlist entries to control network access to a cluster.
- **Cockroach Labs JWTIssuers API** — Manage JWT issuer configurations for external identity provider integrations.
- **Cockroach Labs LogExport API** — Configure log export to external destinations such as AWS CloudWatch or GCP Cloud Logging.
- **Cockroach Labs MaintenanceWindows API** — Configure maintenance windows and blackout periods for cluster upgrade scheduling.
- **Cockroach Labs MetricExport API** — Configure metric export integrations including AWS CloudWatch, Datadog, and Prometheus.
- **Cockroach Labs Nodes API** — Retrieve information about all nodes in the cluster, including their status, address, locality, and operational metrics.
- **Cockroach Labs Organizations API** — Retrieve information about the caller's CockroachDB Cloud organization.
- **Cockroach Labs PrivateEndpoints API** — Manage private endpoint services and connections for secure VPC-level access to clusters.
- **Cockroach Labs Ranges API** — List and inspect range information for the cluster, including hot ranges by node and detailed information for specific range IDs.
- **Cockroach Labs RoleManagement API** — Manage role-based access control, including assigning and removing roles for users across organization, folder, and cluster scopes.
- **Cockroach Labs Rules API** — Retrieve alerting rules templates for use with Prometheus-compatible alerting systems.
- **Cockroach Labs ServiceAccounts API** — Manage service accounts used for machine-to-machine authentication within the organization.
- **Cockroach Labs Sessions API** — List active SQL sessions across all nodes of the cluster, with optional filtering by username.
- **Cockroach Labs SQLUsers API** — Manage SQL users for a cluster, including creating users, listing users, and updating SQL user passwords.
- **Cockroach Labs VersionDeferral API** — Manage cluster version deferral policies to delay automatic CockroachDB version upgrades.

## Agentic access (1)

- **Cockroach Labs Agentic Access** — 98 operations · 51 acting · 5 human-in-the-loop

## Security (4)

- **Cockroach Labs Authentication** — apiKey/http · 2 schemes
- **Cockroach Labs Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Cockroach Labs Vulnerability Disclosure** — disclosure policy published
- **Cockroach Labs Trust Center** — SOC 2, ISO 27001, PCI DSS, HIPAA, FIPS 140

## Plans (1)

- **Cockroach Labs Plans Pricing**

## Tags

Cluster Management, Cloud, Database, Distributed SQL, Infrastructure, PostgreSQL Compatible, SQL

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/cockroach-labs/). Scores are computed from the provider's own public artifacts under a published rubric.
