Dependency-Track
Dependency-Track is an OWASP flagship open source Component Analysis platform for Software Bill of Materials (SBOM) analysis. Per its site, over 20,000 organizations use it to inventory components, find vulnerabilities, and enforce policy across the software supply chain. It is self-hosted (distributed as Docker images) and exposes a REST API, documented with OpenAPI/Swagger, on each deployed instance at /api.
Dependency-Track publishes 48 API contracts indexed on the APIs.io network, including Acl API, Analysis API, Badge API, and 45 more. Tagged areas include Company, SBOM, Software Supply Chain, Vulnerability Management, and Open Source.
The Dependency-Track catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.
Dependency-Track’s developer surface includes authentication, documentation, API reference, getting-started guide, changelog, engineering blog, support, and 30 more developer resources.
Kin Score
APIs 48
Individual APIs this provider publishes, each with its own machine-readable definition.
Dependency-Track Notifications
Protocol Buffers (proto3, package org.dependencytrack.notification.v1) message definitions for Dependency-Track notification payloads, published in the DependencyTrack/docs repo...
Dependency-Track Acl API
The acl API from Dependency-Track — 3 operation(s) for acl.
Dependency-Track Analysis API
The analysis API from Dependency-Track — 1 operation(s) for analysis.
Dependency-Track Badge API
The badge API from Dependency-Track — 4 operation(s) for badge.
Dependency-Track Bom API
The bom API from Dependency-Track — 4 operation(s) for bom.
Dependency-Track Calculator API
The calculator API from Dependency-Track — 2 operation(s) for calculator.
Dependency-Track Component API
The component API from Dependency-Track — 8 operation(s) for component.
Dependency-Track Component Property API
The componentProperty API from Dependency-Track — 2 operation(s) for componentproperty.
Dependency-Track Components API
Endpoints related to components
Dependency-Track Config Property API
The configProperty API from Dependency-Track — 4 operation(s) for configproperty.
Dependency-Track Cwe API
The cwe API from Dependency-Track — 2 operation(s) for cwe.
Dependency-Track Dependency Graph API
The dependencyGraph API from Dependency-Track — 2 operation(s) for dependencygraph.
Dependency-Track Event API
The event API from Dependency-Track — 1 operation(s) for event.
Dependency-Track Extensions API
Endpoints related to extensions
Dependency-Track Finding API
The finding API from Dependency-Track — 5 operation(s) for finding.
Dependency-Track Kev Data Sources API
Endpoints related to KEV data sources
Dependency-Track Ldap API
The ldap API from Dependency-Track — 4 operation(s) for ldap.
Dependency-Track License API
The license API from Dependency-Track — 3 operation(s) for license.
Dependency-Track License Group API
The licenseGroup API from Dependency-Track — 3 operation(s) for licensegroup.
Dependency-Track Metrics API
The metrics API from Dependency-Track — 13 operation(s) for metrics.
Dependency-Track Notification API
The notification API from Dependency-Track — 8 operation(s) for notification.
Dependency-Track OAuth API
Endpoints related to OAuth 2.0 token issuance
Dependency-Track Oidc API
The oidc API from Dependency-Track — 7 operation(s) for oidc.
Dependency-Track Permission API
The permission API from Dependency-Track — 5 operation(s) for permission.
Dependency-Track Policy API
The policy API from Dependency-Track — 3 operation(s) for policy.
Dependency-Track Policy Condition API
The policyCondition API from Dependency-Track — 3 operation(s) for policycondition.
Dependency-Track Project API
The project API from Dependency-Track — 14 operation(s) for project.
Dependency-Track Project Property API
The projectProperty API from Dependency-Track — 1 operation(s) for projectproperty.
Dependency-Track Projects API
Endpoints related to projects
Dependency-Track Repository API
The repository API from Dependency-Track — 4 operation(s) for repository.
Dependency-Track Secrets API
Endpoints related to secrets
Dependency-Track Service Accounts API
Endpoints related to service accounts
Dependency-Track Service API
The service API from Dependency-Track — 3 operation(s) for service.
Dependency-Track System Capabilities API
Endpoints exposing the capabilities of the running server
Dependency-Track Tag API
The tag API from Dependency-Track — 7 operation(s) for tag.
Dependency-Track Task Queues API
Endpoints related to task queue management
Dependency-Track Team API
The team API from Dependency-Track — 7 operation(s) for team.
Dependency-Track User API
The user API from Dependency-Track — 11 operation(s) for user.
Dependency-Track Version API
The version API from Dependency-Track — 1 operation(s) for version.
Dependency-Track Vex API
The vex API from Dependency-Track — 2 operation(s) for vex.
Dependency-Track Violation API
The violation API from Dependency-Track — 3 operation(s) for violation.
Dependency-Track Violationanalysis API
The violationanalysis API from Dependency-Track — 1 operation(s) for violationanalysis.
Dependency-Track Vuln Data Sources API
Endpoints related to vulnerability data sources
Dependency-Track Vuln Policies API
Endpoints related to vulnerability policies
Dependency-Track Vulnerability API
The vulnerability API from Dependency-Track — 11 operation(s) for vulnerability.
Dependency-Track Vulns API
Endpoints related to vulnerabilities
Dependency-Track Workflows API
Endpoints related to workflows
Dependency-Track Workload Identity Providers API
Endpoints related to workload identity providers
Scroll for all 48
Pricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Dependency Track Rate Limits
RATE LIMITSSemantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Dependency Track Context
JSON-LDSpectral Rules 2
Spectral governance rulesets for linting and validating these APIs.
Dependency-Track API Rules
SPECTRALDependency-Track API Rules
SPECTRALOpenAPI Overlays 2
Overlays applied on top of this provider's contracts. Each card says who wrote it: a document the provider publishes, or one API Evangelist derived or generated.
Dependency Track V1 Overlay
GENERATEDDependency Track V2 Overlay
GENERATEDJSON Schema 12
Standalone JSON Schema definitions for this provider's data models.
clone-project-request
JSON SCHEMAComponent
JSON SCHEMAcreate-component-request
JSON SCHEMAcreate-oauth-token-request
JSON SCHEMAcreate-workload-identity-provider-request
JSON SCHEMANotificationRule
JSON SCHEMAPortfolioMetrics
JSON SCHEMAProjectMetrics
JSON SCHEMAProject
JSON SCHEMAupdate-workload-identity-provider-request
JSON SCHEMAVulnerability
JSON SCHEMAworkload-identity-provider
JSON SCHEMAScroll for all 12
Security Posture 2
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 1
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 3
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 10
Pagination, idempotency, versioning, errors, and events
Scroll for all 10
Build 3
SDKs, sample code, and the tooling you integrate with
Access & Security 3
Authentication, authorization, and security posture
Learn 1
Tutorials, courses, talks, and written guidance
Operate 4
Status, limits, changes, and where to get help
Commercial 1
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Other 6
Properties that don't map to a standard resource type
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.