Dragos website screenshot

Dragos

Dragos is an industrial (OT/ICS) cybersecurity company whose platform delivers OT asset visibility, threat detection, vulnerability management, and investigation and response purpose-built for industrial control system environments, supporting 600+ ICS protocols. Its public developer surface is the WorldView threat-intelligence API, which exposes Dragos WorldView reports and indicators of compromise (IP, domain, hostname, filename, MD5/SHA1/SHA256) for OT/ICS threats, with STIX 2.0 and CSV exports and tag-based classification. The Dragos Platform additionally offers a customer-gated SiteStore v2 API for tenants to read assets and alerts from the OT monitoring platform. Dragos is ISO/IEC 27001:2022 certified and provides SOC 2 Type II reports under NDA.

Dragos publishes 3 APIs on the APIs.io network: Indicators API, Products API, and Tags API. Tagged areas include Company, Cybersecurity, OT Security, ICS, and Threat Intelligence.

Dragos’ developer surface includes documentation, API reference, getting-started guide, engineering blog, support, changelog, authentication, and 24 more developer resources.

45.6/100 developing ▬ flat Agent 24/100 agent aware saas Full breakdown ↓
scored 2026-08-30 · rubric v0.17.2
AccessSelf serve
1 APIs 1 MCP Servers
CompanyCybersecurityOT SecurityICSThreat IntelligenceIndustrial Control SystemsIndicators of CompromiseSTIXVulnerability ManagementSecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-30 · rubric v0.17.2
Composite quality — 45.6/100 · developing
Contract Quality 12.0 / 25
Developer Ergonomics 13.2 / 20
Access Clarity 5.8 / 20
Operational Transparency 4.8 / 13
Contract Governance 2.2 / 12
Discoverability 7.6 / 10
Agent readiness — 24/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
Documented Reversibility 6 / 6
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 9 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 4 / 4
Delegated User Identity 0 / 6
Protected Resource Metadata 0 / 5
Registration Without a Human 0 / 6
Agentic Commerce Surface 0 / 5
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/dragos: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 4

Individual APIs this provider publishes, each with its own machine-readable definition.

Dragos Platform SiteStore API

Customer-gated Dragos Platform SiteStore v2 API for tenants to read OT assets and alerts from their monitoring platform. Per-tenant host of the form https://.platform.d...

Dragos Indicators API

The Indicators API from Dragos — 3 operation(s) for indicators.

Dragos Products API

The Products API from Dragos — 4 operation(s) for products.

Dragos Tags API

The Tags API from Dragos — 2 operation(s) for tags.

Open Collections 4

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

API Collection

OPEN COLLECTION

MCP Servers 1

Model Context Protocol servers that expose these APIs to AI agents.

Dragos MCP Server

MCP SERVER

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Dragos Authentication

apiKey/oauth2 · 4 schemes

SECURITY

Dragos Domain Security

TLSv1.2 · HSTS · DMARC

SECURITY

Dragos Vulnerability Disclosure

security.txt · contact published

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Dragos Agentic Access

9 operations

9 operations · 0 acting

AGENTIC

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 3

Reference material describing how the API behaves

Agent Surfaces 5

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 5

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 6

Authentication, authorization, and security posture

Operate 3

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 1

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: dragos
name: Dragos
description: Dragos is an industrial (OT/ICS) cybersecurity company whose platform delivers OT asset visibility, threat detection,
  vulnerability management, and investigation and response purpose-built for industrial control system environments, supporting
  600+ ICS protocols. Its public developer surface is the WorldView threat-intelligence API, which exposes Dragos WorldView
  reports and indicators of compromise (IP, domain, hostname, filename, MD5/SHA1/SHA256) for OT/ICS threats, with STIX 2.0
  and CSV exports and tag-based classification. The Dragos Platform additionally offers a customer-gated SiteStore v2 API
  for tenants to read assets and alerts from the OT monitoring platform. Dragos is ISO/IEC 27001:2022 certified and provides
  SOC 2 Type II reports under NDA.
url: https://raw.githubusercontent.com/api-evangelist/dragos/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- canaan-partners
x-tier: stub
x-tier-reason: portfolio-lead
deliveryModel:
  model: saas
  open_source: false
  commercial: true
  callable_host: true
  label: Hosted service · you call their endpoint
  confidence: high
  source:
  - openapi
  - pricing
  generated: '2026-08-28'
  method: derived
accessModel:
  pricing: unknown
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Self-serve signup
  confidence: medium
  source:
  - authentication
  generated: '2026-07-22'
  method: derived
specificationVersion: '0.23'
created: '2026-07-17'
modified: '2026-07-18'
tags:
- Company
- Cybersecurity
- OT Security
- ICS
- Threat Intelligence
- Industrial Control Systems
- Indicators of Compromise
- STIX
- Vulnerability Management
- Security
image: https://www.dragos.com/wp-content/uploads/2021/06/dragos-logo.svg
apis:
- name: Dragos Platform SiteStore API
  description: Customer-gated Dragos Platform SiteStore v2 API for tenants to read OT assets and alerts from their monitoring
    platform. Per-tenant host of the form https://<company>.platform.dragos.cloud. Authenticated with an OAuth 2.0 Bearer
    (JWT) access token (recommended) or a static API key, with role-based access such as asset:read. SiteStore 1.1 API remains
    available for a limited time for backward compatibility.
  humanURL: https://www.dragos.com/cybersecurity-platform/
  baseURL: https://platform.dragos.cloud
  tags:
  - OT Security
  - Asset Visibility
- aid: dragos:dragos-indicators-api
  name: Dragos Indicators API
  description: The Indicators API from Dragos — 3 operation(s) for indicators.
  humanURL: https://portal.dragos.com/api/v1/doc/index.html
  baseURL: https://portal.dragos.com
  tags:
  - Indicators
  properties:
  - type: OpenAPI
    url: openapi/dragos-indicators-api-openapi.yml
  - type: APIReference
    url: https://portal.dragos.com/api/v1/doc/index.html
- aid: dragos:dragos-products-api
  name: Dragos Products API
  description: The Products API from Dragos — 4 operation(s) for products.
  humanURL: https://portal.dragos.com/api/v1/doc/index.html
  baseURL: https://portal.dragos.com
  tags:
  - Product
  tags_raw:
  - Products
  properties:
  - type: OpenAPI
    url: openapi/dragos-products-api-openapi.yml
  - type: APIReference
    url: https://portal.dragos.com/api/v1/doc/index.html
- aid: dragos:dragos-tags-api
  name: Dragos Tags API
  description: The Tags API from Dragos — 2 operation(s) for tags.
  humanURL: https://portal.dragos.com/api/v1/doc/index.html
  baseURL: https://portal.dragos.com
  tags:
  - Tags
  properties:
  - type: OpenAPI
    url: openapi/dragos-tags-api-openapi.yml
  - type: APIReference
    url: https://portal.dragos.com/api/v1/doc/index.html
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: DomainSecurity
  url: security/dragos-domain-security.yml
- type: DeveloperPortal
  url: https://portal.dragos.com/
- type: Documentation
  url: https://docs.dragos.com/
- type: APIReference
  url: https://portal.dragos.com/api/v1/doc/index.html
- type: GettingStarted
  url: https://portal.dragos.com/
- type: Blog
  url: https://www.dragos.com/blog/
- type: GitHubOrganization
  url: https://github.com/dragosinc
- type: Support
  url: https://www.dragos.com/contact/
- type: TermsOfService
  url: https://www.dragos.com/terms/
- type: PrivacyPolicy
  url: https://www.dragos.com/privacy/
- type: OpenAPI
  url: openapi/_original/dragos-worldview-openapi-original.json
- type: Overlay
  url: overlays/dragos-worldview-overlay.yaml
- type: Packages
  url: packages/dragos-packages.yml
- type: SDKs
  url: packages/dragos-packages.yml
- type: WellKnown
  url: well-known/dragos-well-known.yml
- type: SecurityTxt
  url: well-known/dragos-security.txt
- type: MCPServer
  url: mcp/dragos-mcp.yml
- type: LLMsTxt
  url: llms/dragos-llms.txt
- type: Conformance
  url: conformance/dragos-conformance.yml
- type: Compliance
  url: https://www.dragos.com/security-program/
- type: ErrorCatalog
  url: errors/dragos-problem-types.yml
- type: Lifecycle
  url: lifecycle/dragos-lifecycle.yml
- type: Deprecation
  url: lifecycle/dragos-lifecycle.yml
- type: Conventions
  url: conventions/dragos-conventions.yml
- type: ChangeLog
  url: changelog/dragos-changelog.yml
- type: DataModel
  url: data-model/dragos-data-model.yml
- type: Authentication
  url: authentication/dragos-authentication.yml
- type: AgenticAccess
  url: agentic-access/dragos-agentic-access.yml
- type: AgentSkill
  url: skills/_index.yml
- type: VulnerabilityDisclosure
  url: security/dragos-vulnerability-disclosure.yml
- type: Security
  url: https://www.dragos.com/reporting-security-issues-to-dragos/
x-enrichment:
  date: '2026-07-19'
  status: backfilled
  pass: local-v1
  note: backfilled from .gitignore signal + verified work evidence

Work with this as data

Every provider here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for providers

9 MCP tools reach this
  • find_providersBrowse and filter every provider in the catalog.
  • get_provider_artifactsEvery artifact this provider publishes, grouped by type.
  • get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.
  • get_provider_toolsEvery MCP tool they ship, with the operation each wraps.
  • get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.
  • get_provider_ratingPRO — composite, band, trend and facet scores.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This provider
curl "https://apis.io/api/v1/providers/dragos"
All providers
curl "https://apis.io/api/v1/providers?limit=25"
Every operation they expose
curl "https://apis.io/api/v1/providers/dragos/operations?limit=25"
How their score was established
curl "https://apis.io/api/v1/providers/dragos/evidence"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.