ConductorOne

ConductorOne (now branded C1) is an identity security and access governance platform that automates access reviews, just-in-time access requests, provisioning, role mining, and least-privilege enforcement across 400+ connected apps and cloud infrastructure, plus governance of AI/MCP access. Its HTTP API lets teams manage apps, entitlements, users, access reviews, automations, connectors, policies, and audit data, and integrate identity security directly into internal tools and developer workflows. The API is documented with a full OpenAPI 3.1 spec and backed by Go and TypeScript SDKs, a Terraform provider, a Postman collection, and the c1i/cone command-line tools.

ConductorOne publishes 1 API on the APIs.io network. Tagged areas include Company, Cloud Saas, Identity Security, Access Governance, and Identity and Access Management.

The ConductorOne catalog on APIs.io includes 1 event-driven AsyncAPI specification.

ConductorOne’s developer surface includes authentication, documentation, API reference, getting-started guide, engineering blog, pricing, CLI, and 27 more developer resources.

51.9/100 developing Agent 71/100 agent native Full breakdown ↓
scored 2026-07-20 · rubric v0.4
1 APIs 1 MCP Servers 0 Features
CompanyCloud SaasIdentity SecurityAccess GovernanceIdentity and Access ManagementAccess ReviewsProvisioningLeast PrivilegeMCP GovernanceSecurity

API Rating

API Evangelist API Evangelist Rating How this is scored →
scored 2026-07-20 · rubric v0.4
Composite quality — 51.9/100 · developing
Contract Quality 9.4 / 25
Developer Ergonomics 16.1 / 20
Commercial Clarity 10.0 / 20
Operational Transparency 7.2 / 13
Governance 0.0 / 12
Discoverability 9.3 / 10
Agent readiness — 71/100 · agent native
Machine-Readable Contract 18 / 18
Agentic Access Contract 15 / 15
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 6 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/conductorone: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs

ConductorOne API

The ConductorOne (C1) API is an HTTP API for managing ConductorOne resources — apps, entitlements, users, access reviews, automations, connectors, policies, requests, and audit ...

MCP Servers

Event Specifications

Resources

Get Started 3

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 4

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 6

Pagination, idempotency, versioning, errors, and events

Build 5

SDKs, sample code, and the tooling you integrate with

Access & Security 7

Authentication, authorization, and security posture

Scroll for all 7

Operate 2

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: conductorone
name: ConductorOne
description: ConductorOne (now branded C1) is an identity security and access governance platform that automates access reviews,
  just-in-time access requests, provisioning, role mining, and least-privilege enforcement across 400+ connected apps and
  cloud infrastructure, plus governance of AI/MCP access. Its HTTP API lets teams manage apps, entitlements, users, access
  reviews, automations, connectors, policies, and audit data, and integrate identity security directly into internal tools
  and developer workflows. The API is documented with a full OpenAPI 3.1 spec and backed by Go and TypeScript SDKs, a Terraform
  provider, a Postman collection, and the c1i/cone command-line tools.
image: https://www.c1.ai/favicon.ico
url: https://raw.githubusercontent.com/api-evangelist/conductorone/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- accel
x-tier: enriched
x-tier-reason: portfolio-lead
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-18'
tags:
- Company
- Cloud Saas
- Identity Security
- Access Governance
- Identity and Access Management
- Access Reviews
- Provisioning
- Least Privilege
- MCP Governance
- Security
apis:
- name: ConductorOne API
  description: The ConductorOne (C1) API is an HTTP API for managing ConductorOne resources — apps, entitlements, users, access
    reviews, automations, connectors, policies, requests, and audit data. It uses OAuth2 client credentials (client credentials
    sent in the request body) or bearer tokens, and is served per-tenant at https://{tenantDomain}.conductor.one.
  humanURL: https://www.c1.ai/docs/conductorone-api/api
  baseURL: https://example.conductor.one
  tags:
  - Identity Security
  - Access Governance
  - IAM
  properties:
  - type: OpenAPI
    url: openapi/conductorone-openapi-original.yml
common:
- type: TrustCenter
  url: https://trust.c1.ai/
- type: VulnerabilityDisclosure
  url: security/conductorone-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/conductorone-domain-security.yml
- type: AgenticAccess
  url: agentic-access/conductorone-agentic-access.yml
- type: OAuthScopes
  url: scopes/conductorone-scopes.yml
- type: Authentication
  url: authentication/conductorone-authentication.yml
- type: Website
  url: https://www.conductorone.com/
- type: DeveloperPortal
  url: https://www.c1.ai/docs/developer/intro
- type: Documentation
  url: https://www.c1.ai/docs/
- type: APIReference
  url: https://www.c1.ai/docs/conductorone-api/api
- type: GettingStarted
  url: https://www.c1.ai/docs/conductorone-api/authenticate
- type: Blog
  url: https://www.c1.ai/blog
- type: GitHubOrganization
  url: https://github.com/conductorone
- type: Pricing
  url: https://www.c1.ai/pricing
- type: Login
  url: https://app.conductor.one/login
- type: PrivacyPolicy
  url: https://www.c1.ai/privacy-policy
- type: Postman
  url: https://github.com/conductorone/conductorone-sdk-postman
- type: Packages
  url: packages/conductorone-packages.yml
- type: SDKs
  url: packages/conductorone-packages.yml
- type: CLI
  url: cli/conductorone-cli.yml
- type: MCPServer
  url: mcp/conductorone-mcp.yml
- type: LLMsTxt
  url: llms/conductorone-llms.txt
- type: Overlay
  url: overlays/conductorone-openapi-overlay.yaml
- type: Conventions
  url: conventions/conductorone-conventions.yml
- type: ErrorCatalog
  url: errors/conductorone-error-codes.yml
- type: DataModel
  url: data-model/conductorone-data-model.yml
- type: Lifecycle
  url: lifecycle/conductorone-lifecycle.yml
- type: StatusPage
  url: https://status.c1.ai/
- type: Conformance
  url: conformance/conductorone-conformance.yml
- type: Compliance
  url: https://trust.c1.ai/
- type: Webhooks
  url: asyncapi/conductorone-webhooks.yml
- type: AgentSkill
  url: skills/_index.yml
- type: ChangeLog
  url: https://www.c1.ai/docs/product/release-notes
- type: Security
  url: https://www.c1.ai/security
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
x-enrichment:
  date: '2026-07-19'
  status: backfilled
  pass: local-v1
  note: backfilled from .gitignore signal + verified work evidence