# ConductorOne

**Canonical:** https://apis.io/providers/conductorone/  
**Website:** https://www.conductorone.com/  
**APIs profiled:** 1

ConductorOne (now branded C1) is an identity security and access governance platform that automates access reviews, just-in-time access requests, provisioning, role mining, and least-privilege enforcement across 400+ connected apps and cloud infrastructure, plus governance of AI/MCP access. Its HTTP API lets teams manage apps, entitlements, users, access reviews, automations, connectors, policies, and audit data, and integrate identity security directly into internal tools and developer workflows. The API is documented with a full OpenAPI 3.1 spec and backed by Go and TypeScript SDKs, a Terraform provider, a Postman collection, and the c1i/cone command-line tools.

## Kin Score — 48.3 / 100 (developing)

Scored 2026-08-30 under rubric 0.17.2. Trend: flat (-0.6 from 48.9).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 61.0 |
| Governance | 4.5 |
| Contract Governance | 4.5 |
| Operational Transparency | 36.8 |
| Developer Ergonomics | 73.2 |
| Commercial Clarity | 27.6 |
| Access Clarity | 27.6 |

## Agent readiness — 27.1 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | documented |
| MCP Server | no |
| Auth Clarity | bearer |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | no |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (46)

- **ConductorOne Access Conflict API** — The Access Conflict API from ConductorOne — 2 operation(s) for access conflict.
- **ConductorOne App API** — The App API from ConductorOne — 3 operation(s) for app.
- **ConductorOne App Entitlement API** — The App Entitlement API from ConductorOne — 11 operation(s) for app entitlement.
- **ConductorOne App Entitlement Automation API** — The App Entitlement Automation API from ConductorOne — 3 operation(s) for app entitlement automation.
- **ConductorOne App Entitlement Automation Exclusion API** — The App Entitlement Automation Exclusion API from ConductorOne — 1 operation(s) for app entitlement automation exclusion.
- **ConductorOne App Entitlement Monitor Binding API** — The App Entitlement Monitor Binding API from ConductorOne — 2 operation(s) for app entitlement monitor binding.
- **ConductorOne App Entitlement Owner API** — The App Entitlement Owner API from ConductorOne — 3 operation(s) for app entitlement owner.
- **ConductorOne App Entitlement Proxy Binding API** — The App Entitlement Proxy Binding API from ConductorOne — 1 operation(s) for app entitlement proxy binding.
- **ConductorOne App Entitlement User Binding API** — The App Entitlement User Binding API from ConductorOne — 3 operation(s) for app entitlement user binding.
- **ConductorOne App Entitlement User Binding Feed API** — The App Entitlement User Binding Feed API from ConductorOne — 1 operation(s) for app entitlement user binding feed.
- **ConductorOne App Entitlement User Binding History API** — The App Entitlement User Binding History API from ConductorOne — 1 operation(s) for app entitlement user binding history.
- **ConductorOne App Owner API** — The App Owner API from ConductorOne — 3 operation(s) for app owner.
- **ConductorOne App Reports API** — The App Reports API from ConductorOne — 1 operation(s) for app reports.
- **ConductorOne App Resource API** — The App Resource API from ConductorOne — 4 operation(s) for app resource.
- **ConductorOne App Resource Owner API** — The App Resource Owner API from ConductorOne — 2 operation(s) for app resource owner.
- **ConductorOne App Resource Type API** — The App Resource Type API from ConductorOne — 2 operation(s) for app resource type.
- **ConductorOne App Usage Controls API** — The App Usage Controls API from ConductorOne — 1 operation(s) for app usage controls.
- **ConductorOne AppAccessRequestDefaults API** — The AppAccessRequestDefaults API from ConductorOne — 2 operation(s) for appaccessrequestdefaults.
- **ConductorOne AppUsers API** — The AppUsers API from ConductorOne — 5 operation(s) for appusers.
- **ConductorOne Attribute API** — The Attribute API from ConductorOne — 6 operation(s) for attribute.
- **ConductorOne Auth API** — The Auth API from ConductorOne — 1 operation(s) for auth.
- **ConductorOne Automations API** — The Automations API from ConductorOne — 9 operation(s) for automations.
- **ConductorOne AWS External ID Settings API** — The AWS External ID Settings API from ConductorOne — 1 operation(s) for aws external id settings.
- **ConductorOne Compliance Framework API** — The Compliance Framework API from ConductorOne — 2 operation(s) for compliance framework.
- **ConductorOne Connector API** — The Connector API from ConductorOne — 11 operation(s) for connector.
- **ConductorOne Connector Catalog API** — The Connector Catalog API from ConductorOne — 1 operation(s) for connector catalog.
- **ConductorOne Directory API** — The Directory API from ConductorOne — 2 operation(s) for directory.
- **ConductorOne Function API** — The Function API from ConductorOne — 5 operation(s) for function.
- **ConductorOne Function Commit API** — The Function Commit API from ConductorOne — 2 operation(s) for function commit.
- **ConductorOne Function Tag API** — The Function Tag API from ConductorOne — 1 operation(s) for function tag.
- **ConductorOne Org Domain API** — The Org Domain API from ConductorOne — 1 operation(s) for org domain.
- **ConductorOne Personal Client API** — The Personal Client API from ConductorOne — 3 operation(s) for personal client.
- **ConductorOne Policy API** — The Policy API from ConductorOne — 5 operation(s) for policy.
- **ConductorOne Request Catalog API** — The Request Catalog API from ConductorOne — 13 operation(s) for request catalog.
- **ConductorOne Request Schema API** — The Request Schema API from ConductorOne — 2 operation(s) for request schema.
- **ConductorOne Request Schema Entitlement Binding API** — The Request Schema Entitlement Binding API from ConductorOne — 1 operation(s) for request schema entitlement binding.
- **ConductorOne Risk Level API** — The Risk Level API from ConductorOne — 2 operation(s) for risk level.
- **ConductorOne Role API** — The Role API from ConductorOne — 2 operation(s) for role.
- **ConductorOne Session Settings API** — The Session Settings API from ConductorOne — 2 operation(s) for session settings.
- **ConductorOne Step Up Authentication Providers API** — The Step Up Authentication Providers API from ConductorOne — 5 operation(s) for step up authentication providers.
- …and 6 more, listed in full on the page.

## MCP servers (1)

- **ConductorOne MCP Server**

## Agentic access (1)

- **Conductorone Agentic Access** — 243 operations · 164 acting · 6 human-in-the-loop

## Security (4)

- **Conductorone Authentication** — http/oauth2 · 2 schemes
- **Conductorone Domain Security** — TLSv1.3 · HSTS · DMARC
- **Conductorone Vulnerability Disclosure** — disclosure policy published
- **Conductorone Trust Center** — SOC 2

## Tags

Company, Cloud Saas, Identity Security, Access Governance, Identity and Access Management, Access Reviews, Provisioning, Least Privilege, MCP Governance, Security

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/conductorone/). Scores are computed from the provider's own public artifacts under a published rubric.
