Contrast Security
Contrast Security is an application security platform that uses instrumentation-based agents to provide Interactive Application Security Testing (IAST), Runtime Application Self-Protection (RASP), and Software Composition Analysis (SCA) across Java, .NET, Node.js, Python, PHP, Go, and Ruby applications. The platform identifies, prioritizes, and defends against vulnerabilities and attacks in real time from inside running applications. Contrast's REST API enables programmatic access to TeamServer applications, libraries, vulnerabilities, and traces, authenticated via API key plus Authorization header (Base64 of username:service_key) and an Organization ID.
Contrast Security publishes 4 APIs on the APIs.io network, including Applications API, Organizations API, Rules API, and 1 more. Tagged areas include Application Security, AppSec, IAST, RASP, and SCA.
Contrast Security’s developer surface includes authentication, documentation, pricing, signup flow, engineering blog, and 9 more developer resources.
Kin Score
APIs 5
Individual APIs this provider publishes, each with its own machine-readable definition.
Contrast TeamServer REST API
REST API for interacting with Contrast TeamServer to manage applications, libraries, vulnerabilities, traces, servers, agents, and organization settings. Requires an API key, Au...
Contrast Security Applications API
An application represents an executable unit of code that can be instrumented at runtime by an agent in Contrast. This can be a web app, microservice, or other runnable code and...
Contrast Security Organizations API
An organization represents a grouping of user accounts in Contrast.
Contrast Security Rules API
A rule defines a data flow pattern used to categorize vulnerability and attack types. Some common rules are sql-injection, ssrf, and reflected-xss.
Contrast Security Vulnerabilities API
Vulnerabilities detected in runtime by Contrast Assess are weaknesses in the application code that allow an attacker to cause harm.
Open Collections 1
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
Contrast Assess API
OPEN COLLECTIONMCP Servers 2
Model Context Protocol servers that expose these APIs to AI agents.
MCP Server
MCP SERVERMCP Server Source
MCP SERVERSecurity Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 1
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 4
MCP servers, agent skills, and machine-readable catalogs
Access & Security 3
Authentication, authorization, and security posture
Commercial 1
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API