# Datavant

**Canonical:** https://apis.io/providers/datavant/  
**Website:** https://www.datavant.com/  
**APIs profiled:** 1

Datavant is a United States health-data logistics company, formed from the 2021 merger of Datavant and Ciox Health, that connects and de-identifies healthcare data across a "network of networks" spanning 350+ real-world data partners, 80,000+ hospitals and clinics, and a majority of the largest US health systems. Its core capabilities are privacy-preserving record linkage using Datavant tokens, HIPAA Expert Determination and de-identification, medical record retrieval / release of information, and real-world evidence generation for life sciences, payers, providers, and government. Datavant publishes a real machine-readable contract for the retrieval side of that business: an OpenAPI 3.1.0 document for the Datavant REST API (36 paths, 54 operations, OAuth 2.0 client credentials, base https://api.datavant.io/v2) is served anonymously at https://developer.datavant.com/openapi.json, even though that host's root returns HTTP 404. Access is still enterprise and contract-gated - there is no self-serve sign-up, no published pricing beyond a single AWS Marketplace listing, no published scopes or rate limits, and no FHIR CapabilityStatement. Home market is the United States.

## Kin Score — 59.0 / 100 (strong)

Scored 2026-08-17 under rubric 0.11.0. Trend: rising (+45.5 from 13.5).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 50.1 |
| Governance | 20.8 |
| Operational Transparency | 47.4 |
| Developer Ergonomics | 63.0 |
| Commercial Clarity | 81.6 |

Regulatory layer — **Health**: 66.3 (matched via tags).

## Agent readiness — 63.1 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | yes |
| MCP Server | yes |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | partial |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | yes |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Enterprise · Partner onboarding — onboarding: unknown, pricing: enterprise, trial: no (confidence: high).

## APIs (1)

- **Datavant REST API** — Datavant's REST API for identified patient medical record retrieval - the programmable side of Datavant Connect Retrieval (the ex-Ciox release-of-information business). Resource...

## MCP servers (1)

- **datavant-mcp.yml**

## Agentic access (1)

- **Datavant Agentic Access** — 54 operations · 28 acting · 2 human-in-the-loop

## Security (4)

- **Datavant Authentication** — oauth2/openIdConnect · 2 schemes
- **Datavant Domain Security** — TLSv1.3 · DNSSEC · DMARC
- **Datavant Vulnerability Disclosure** — Hackerone · security.txt · contact published
- **Datavant Trust Center** — FedRAMP Moderate, SOC 2 Type 2, HIPAA, FIPS 140-2

## Plans (1)

- **Datavant Plans Pricing**

## Tags

Healthcare, United States, Interoperability, Health Data, De-Identification, Tokenization, Real-World Data, Record Retrieval, Data Connectivity, Life Sciences, HIPAA, Medical Records, Release of Information, Privacy, OAuth 2.0, Health Information Exchange

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/datavant/). Scores are computed from the provider's own public artifacts under a published rubric.
