# Cubist

**Canonical:** https://apis.io/providers/cubist/  
**Website:** https://cubist.dev  
**APIs profiled:** 30

Cubist builds hardware-backed key management and embedded wallet infrastructure for Web3. Its flagship product, CubeSigner, generates and seals cryptographic keys inside FIPS 140 HSMs running in AWS Nitro Enclaves and enforces transaction approvals with a programmable Policy-as-Code engine. The CubeSigner REST API spans organizations, users, roles, keys, policies, contacts, sessions, and multi-factor approvals, plus multi-chain signing for EVM (Ethereum, Avalanche), Bitcoin/Taproot, Solana, Sui, Tendermint, Ethereum validators (eth2), and Babylon Bitcoin staking. Authentication is a two-stage OIDC-to-session-token exchange with least-privilege scopes and step-up MFA. Cubist is backed by Amplify Partners and Polychain and is SOC 2 compliant.

## Kin Score — 51.2 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 51.2).

| Facet | Score |
|---|---|
| Discoverability | 81.5 |
| Contract Quality | 56.1 |
| Governance | 30.3 |
| Contract Governance | 30.3 |
| Operational Transparency | 13.2 |
| Developer Ergonomics | 51.8 |
| Commercial Clarity | 36.8 |
| Access Clarity | 36.8 |

Regulatory layer — **Payments**: 71.9 (matched via tags).

## Agent readiness — 36.5 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | verified |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## APIs (30)

- **Cubist Account API** — The Account API from Cubist — 1 operation(s) for account.
- **Cubist Accounts API** — The Accounts API from Cubist — 1 operation(s) for accounts.
- **Cubist Audit API** — The Audit API from Cubist — 1 operation(s) for audit.
- **Cubist AuthMigration API** — The AuthMigration API from Cubist — 3 operation(s) for authmigration.
- **Cubist Babylon API** — The Babylon API from Cubist — 2 operation(s) for babylon.
- **Cubist Contact API** — The Contact API from Cubist — 3 operation(s) for contact.
- **Cubist Cube3Signer API** — The Cube3Signer API from Cubist — 1 operation(s) for cube3signer.
- **Cubist Identity API** — The Identity API from Cubist — 4 operation(s) for identity.
- **Cubist Internal API** — The Internal API from Cubist — 4 operation(s) for internal.
- **Cubist Keys API** — The Keys API from Cubist — 10 operation(s) for keys.
- **Cubist Keys In Role API** — The Keys In Role API from Cubist — 2 operation(s) for keys in role.
- **Cubist Login API** — The Login API from Cubist — 2 operation(s) for login.
- **Cubist Metrics API** — The Metrics API from Cubist — 2 operation(s) for metrics.
- **Cubist MFA API** — The MFA API from Cubist — 5 operation(s) for mfa.
- **Cubist Misc API** — The Misc API from Cubist — 1 operation(s) for misc.
- **Cubist MMI API** — The MMI API from Cubist — 6 operation(s) for mmi.
- **Cubist OAuth2 API** — The OAuth2 API from Cubist — 7 operation(s) for oauth2.
- **Cubist Org API** — The Org API from Cubist — 1 operation(s) for org.
- **Cubist Orgs API** — The Orgs API from Cubist — 4 operation(s) for orgs.
- **Cubist Policies API** — The Policies API from Cubist — 11 operation(s) for policies.
- **Cubist Role Access Tokens API** — The Role Access Tokens API from Cubist — 2 operation(s) for role access tokens.
- **Cubist Roles API** — The Roles API from Cubist — 7 operation(s) for roles.
- **Cubist RPC API** — The RPC API from Cubist — 1 operation(s) for rpc.
- **Cubist Sessions API** — The Sessions API from Cubist — 3 operation(s) for sessions.
- **Cubist SignerSession API** — The SignerSession API from Cubist — 1 operation(s) for signersession.
- **Cubist Signing API** — The Signing API from Cubist — 21 operation(s) for signing.
- **Cubist User API** — The User API from Cubist — 11 operation(s) for user.
- **Cubist User Export API** — The User Export API from Cubist — 1 operation(s) for user export.
- **Cubist Users In Org API** — The Users In Org API from Cubist — 9 operation(s) for users in org.
- **Cubist Users In Role API** — The Users In Role API from Cubist — 2 operation(s) for users in role.

## MCP servers (1)

- **Cubist MCP Server**

## Agentic access (1)

- **Cubist Agentic Access** — 173 operations · 126 acting · 13 human-in-the-loop

## Security (3)

- **Cubist Authentication** — oidc-exchange/session-token · 2 schemes
- **Cubist Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Cubist Vulnerability Disclosure** — disclosure policy published

## Tags

Company, Developer Tools, Key Management, Wallets, Digital Signatures, Security, Blockchain, Web3, Custody

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/cubist/). Scores are computed from the provider's own public artifacts under a published rubric.
