# Credo AI

**Canonical:** https://apis.io/providers/credo-ai/  
**Website:** https://www.credo.ai/  
**APIs profiled:** 3

Credo AI is an enterprise AI governance, risk, and compliance platform used to discover, register, risk-classify, and continuously govern every AI model, application, agent, and third-party AI vendor an organization runs. The platform pairs an AI Registry (use cases, models, vendors, agents, shadow-AI discovery) with a policy engine that turns regulatory frameworks — the EU AI Act, NIST AI RMF, ISO/IEC 42001, NYC Local Law 144, Colorado SB21-169, OMB M-25 — into machine-enforced policy packs, controls, questionnaires, risk scenarios, and audit-ready evidence artifacts. Programmatic access is delivered through a multi-tenant JSON:API REST surface at api.credo.ai (300 operations across use cases, models, vendors, questionnaires, policy packs, policy controls, risks, tasks, teams, users, triggers, and Shadow AI), a first-party Python SDK (pycredoai) and TypeScript SDK (@credo-ai/sdk), and a published Claude Code plugin marketplace of eleven AI-governance Agent Skills backed by a gated Governance Intelligence Pro MCP server.

## Kin Score — 43.7 / 100 (developing)

Scored 2026-08-17 under rubric 0.11.0. Trend: flat (+0.0 from 43.7).

| Facet | Score |
|---|---|
| Discoverability | 81.5 |
| Contract Quality | 32.3 |
| Governance | 20.8 |
| Operational Transparency | 15.8 |
| Developer Ergonomics | 54.3 |
| Commercial Clarity | 60.5 |

## Agent readiness — 23.9 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | yes |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (3)

- **Credo AI Governance Platform API (v2)** — Multi-tenant JSON:API REST interface to the Credo AI Governance Platform. 300 operations across 26 tags cover use cases, use case questionnaires, risk scenarios, controls, polic...
- **Credo AI Audit Logs & Shadow AI API** — OpenAPI 3.0.0 contract covering the audit-log and Shadow AI slice of the Credo AI v2 API — listing, filtering, exporting and retrieving audit log entries, and ingesting, listing...
- **Credo AI Governance Intelligence Pro MCP Server** — Provider-published Model Context Protocol server ("governance-hub") distributed as the npm package @credoai/governance-hub-mcp and run over stdio via npx. Grounds the Credo AI C...

## MCP servers (1)

- **credo-ai-mcp.yml**

## Security (4)

- **Credo Ai Authentication** — apiKey/http · 2 schemes
- **Credo Ai Domain Security** — TLSv1.3 · HSTS · DMARC
- **Credo Ai Vulnerability Disclosure** — disclosure policy published
- **Credo Ai Trust Center** — SOC 2 Type II

## Plans (1)

- **Credo Ai Plans Pricing**

## Tags

Company, ai-governance, ai-risk-management, responsible-ai, compliance, regulatory-technology, model-registry, vendor-risk, eu-ai-act, nist-ai-rmf, iso-42001, shadow-ai, agent-governance, audit, json-api, agent-skills

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/credo-ai/). Scores are computed from the provider's own public artifacts under a published rubric.
