# Conjur

**Canonical:** https://apis.io/providers/conjur/  
**Website:** https://conjur.org  
**APIs profiled:** 1

Conjur is CyberArk's open-source secrets management platform. It automatically secures secrets used by privileged users and machine identities across CI/CD, cloud, and Kubernetes environments. Conjur uses a role-based access control (RBAC) model, policy-as-code, and pluggable cloud-native authenticators (AWS IAM, Azure, GCP, Kubernetes, JWT, OIDC, LDAP) to issue short-lived access tokens and broker secret retrieval, rotation, and auditing. Originally Conjur Inc. (backed by Amplify Partners), it was acquired by CyberArk and is now part of Palo Alto Networks. The Conjur / CyberArk Secrets Manager REST API is published as an OpenAPI 3.1 definition with official Ruby, Python, Go, Java, and .NET client libraries, a CLI, and an official MCP server.

## Kin Score — 32.1 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 32.1).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 37.1 |
| Governance | 16.7 |
| Contract Governance | 16.7 |
| Operational Transparency | 18.4 |
| Developer Ergonomics | 54.2 |
| Commercial Clarity | 0.0 |
| Access Clarity | 0.0 |

## Agent readiness — 32.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **Conjur / CyberArk Secrets Manager API** — REST API for authenticating machine and human identities, retrieving and rotating secrets, loading policy-as-code, and inspecting RBAC roles and resources. Compatible with Conju...

## MCP servers (1)

- **CyberArk Secrets Manager MCP server**

## Security (2)

- **Conjur Authentication** — apiKey/http · 3 schemes
- **Conjur Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Company, Cybersecurity, Secrets Management, Identity and Access Management, DevSecOps, Kubernetes, Machine Identity, Open-Source

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/conjur/). Scores are computed from the provider's own public artifacts under a published rubric.
