Drata
Drata is a continuous security and compliance automation platform supporting SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, and more, with policies, evidence, and trust center. Drata exposes a public REST API plus the SafeBase Trust API (acquired) and a Custom Connections framework for evidence collection.
Drata publishes 51 APIs on the APIs.io network, including Account Members API, Accounts API, Assets API, and 48 more. Tagged areas include GRC, Compliance, SOC 2, ISO 27001, and Security.
Drata’s developer surface includes authentication, changelog, code examples, documentation, API reference, getting-started guide, support, and 35 more developer resources.
3 APIs
1 MCP Servers
Business capabilities this provider's published APIs can perform, derived from its own
contracts. Browse all capabilities →
Individual APIs this provider publishes, each with its own machine-readable definition.
Drata's hosted remote Model Context Protocol server (Beta). MCP-compatible clients (Claude, ChatGPT, Cursor, Microsoft Copilot) connect over OAuth 2.1 with PKCE to regional endp...
The Account Members API from Drata — 3 operation(s) for account members.
The Accounts API from Drata — 3 operation(s) for accounts.
Assets let you build an inventory of policies, personnel and computer infrastructure. The [help docs](https://help.drata.com/en/collections/10485424) have more information.
The Audit Requests API from Drata — 2 operation(s) for audit requests.
Audits represent compliance assessments for a specific framework and time period. Audit Requests are evidence requests associated with an audit.
Background checks verify a person’s identity, history, and qualifications to ensure they meet legal, regulatory, or policy standards. The [help docs](https://help.drata.com/en/a...
The Company tracks essential information about your organization. The [help docs](https://help.drata.com/en/articles/8283910) have more information on the purpose of each field.
The Control Library is a catalog of pre-built Control Templates that can be provisioned into a Workspace. Each item carries default mappings to Tests, Policies, Evidence, and Fr...
Control Notes allow you to provide additional information about Controls.
Control Owners are the Users responsible for Controls. They ensure the right evidence is associated, that any automated tests are passing, and help prepare for an audit.
Controls are a strategic measure or safeguard that an organization puts in place to protect its assets and meet the requirements of specific compliance frameworks.
Custom Connections allow users to integrate external systems with Drata. CUSTOM connections push arbitrary JSON evidence records using a user-defined schema. MDM and HRIS connec...
Custom Data Records are JSON evidence records pushed to a Custom Connection resource. Use the session management endpoints to batch upload records and track the status of bulk o...
Custom Field Definitions describe the schema - name, required, type, options, entity placements, and framework scope - of the Custom Fields configured on your account. Use them ...
Device Documents allow you to provide manual evidence of Devices compliance. Using the Drata Agent or an MDM connection automatically provides this information.
Devices are computers used by personnel. The data is provided by the Drata Agent or an MDM connection.
The Documents API from Drata — 4 operation(s) for documents.
Events record the activity of User and automated processes in the Drata platform.
Evidence items hold one or more artifacts, the files, URLs, or ticket references that demonstrate a control is operating.
Use the evidence-files endpoint to pre-upload a fi...
Drata's Evidence Library serves as a repository for all the evidence you need to collect across your controls. The [help docs](https://help.drata.com/en/articles/8288579-evidenc...
Frameworks are collections of controls that are used to assess compliance with specific standards or regulations. The [help docs](https://help.drata.com/en/articles/5329593-fram...
Groups are collections of Users that can be used to manage permissions and access to resources.
HR user identity records for a Custom HRIS connection. Use the batch upsert endpoint to submit employee records keyed by your own `identityId`, then use the update endpoint to r...
The Knowledge Base API from Drata — 3 operation(s) for knowledge base.
Monitoring Tests are compliance tests used to determine whether a person, system, process, or organization is adhering to standards set by compliance controls within a framework...
The Organization API from Drata — 4 operation(s) for organization.
Personnel are people who work for your organization. The [help docs](https://help.drata.com/en/collections/2653981) have more information.
A policy is a document that outlines an organization’s commitment to following standards relevant to its operations. The [help docs](https://help.drata.com/en/articles/9202419-p...
Policy Languages let an organization publish the same Policy Version in several languages. Settings endpoints expose the languages an organization has configured and which one i...
The Portals API from Drata — 1 operation(s) for portals.
The Procurement Connection Mappings API from Drata — 1 operation(s) for procurement connection mappings.
The Products API from Drata — 1 operation(s) for products.
The Questionnaires API from Drata — 2 operation(s) for questionnaires.
The Requests API from Drata — 3 operation(s) for requests.
Risk Documents are supporting documents, evidence, or other materials that are associated with a risk.
The Risk Library is a collection of Risks that can be copied into a Risk Register. The [help docs](https://help.drata.com/en/articles/13371089-drata-s-risk-library-new-experienc...
Risk Notes allow you to provide additional information about Risks.
Risk Registers are a collection of Risks. They are used to organize and manage Risks.
Risks are potential events that could impact the security, reputation, and financial health of a company.
The Tags API from Drata — 1 operation(s) for tags.
Tasks are individual units of work that can be assigned to users.
The Trust Center Updates API from Drata — 4 operation(s) for trust center updates.
Uploads let you request a pre-signed S3 URL to upload a file for a given purpose (e.g. Evidence), then reference the resulting object key when creating the associated resource.
User Documents allow you to provide manual evidence of User and Personnel compliance.
User's Assigned Policies track the acknowledgement of Policy Versions by Users.
**Users** are are people with access to the Drata platform. **Roles** grant permissions to Users. The [help docs](https://help.drata.com/en/collections/5993507) have more inform...
Vendor Documents provide compliance-related documentation, such as bridge letters, questionnaires, and SOC reports.
Vendor Security Reviews track the status of security reviews for Vendors. You can create a security review, upload questionnaires, and track the progress of the review. The [hel...
Vendor Types are user-defined classifications used to categorize and organize vendors.
Vendors are third-parties that your organization is working with. Drata allows you to track and review risks associated with these third-parties. The [help docs](https://help.dr...
Workspaces allow you to represent different products or business lines that have different compliance requirements. Each Workspace can have its own Frameworks and Controls. The ...
Model Context Protocol servers that expose these APIs to AI agents.
Published pricing tiers and plan structures.
Documented rate limits and quota policies.
Cost, billing, and metering signals for API financial operations.
Authentication, domain security, vulnerability disclosure, and trust-center signals.
OAuth scopes governing access to this provider's APIs.
Recommended x-agentic-access execution contracts for AI agents.
aid: drata
url: https://raw.githubusercontent.com/api-evangelist/drata/refs/heads/main/apis.yml
name: Drata
kind: company
description: Drata is a continuous security and compliance automation platform supporting SOC 2, ISO 27001, HIPAA, PCI DSS,
GDPR, and more, with policies, evidence, and trust center. Drata exposes a public REST API plus the SafeBase Trust API (acquired)
and a Custom Connections framework for evidence collection.
deliveryModel:
model: saas
open_source: false
commercial: true
callable_host: true
label: Hosted service · you call their endpoint
confidence: high
source:
- openapi
- pricing
generated: '2026-08-28'
method: derived
accessModel:
pricing: paid
onboarding: self-serve
trial: false
try_now: false
public: false
label: Paid · Self-serve signup
confidence: high
source:
- plans
- authentication
generated: '2026-07-22'
method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/drata.png
tags:
- GRC
- Compliance
- SOC 2
- ISO 27001
- Security
- Risk Management
- Trust Center
- Audit
- Vendor Risk Management
- Compliance Automation
created: '2026-05-08'
modified: '2026-08-27'
specificationVersion: '0.23'
apis:
- aid: drata:mcp
name: Drata MCP Server
description: Drata's hosted remote Model Context Protocol server (Beta). MCP-compatible clients (Claude, ChatGPT, Cursor,
Microsoft Copilot) connect over OAuth 2.1 with PKCE to regional endpoints for the US, EU and APAC, and read live compliance
data — controls, policies, monitoring tests, risks, risk registers, workspaces and assigned policies — bounded by the
intersection of the granted OAuth scopes and the user's Drata role.
humanURL: https://developers.drata.com/developer-portal/v2/recipes/mcp-oauth-setup/
tags:
- MCP
- Artificial Intelligence
- Compliance
tags_raw:
- MCP
- AI
- Compliance
properties:
- type: MCPServer
url: mcp/drata-mcp.yml
- type: ToolCrosswalk
url: mcp/drata-tool-crosswalk.yml
- type: Documentation
url: https://developers.drata.com/developer-portal/v2/recipes/mcp-oauth-setup/
- type: OAuthScopes
url: scopes/drata-scopes.yml
- type: Blog
url: https://drata.com/blog/introducing-mcp-built-for-ai
baseURL: https://mcp.drata.com/mcp/
- aid: drata:drata-account-members-api
name: Drata Account Members API
description: The Account Members API from Drata — 3 operation(s) for account members.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Account Members
properties:
- type: OpenAPI
url: openapi/drata-account-members-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-accounts-api
name: Drata Accounts API
description: The Accounts API from Drata — 3 operation(s) for accounts.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Account
tags_raw:
- Accounts
properties:
- type: OpenAPI
url: openapi/drata-accounts-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-assets-api
name: Drata Assets API
description: Assets let you build an inventory of policies, personnel and computer infrastructure. The [help docs](https://help.drata.com/en/collections/10485424)
have more information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Assets
properties:
- type: OpenAPI
url: openapi/drata-assets-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-audit-requests-api
name: Drata Audit Requests API
description: The Audit Requests API from Drata — 2 operation(s) for audit requests.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Audit Requests
properties:
- type: OpenAPI
url: openapi/drata-audit-requests-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-audits-api
name: Drata Audits API
description: Audits represent compliance assessments for a specific framework and time period. Audit Requests are evidence
requests associated with an audit.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Audits
properties:
- type: OpenAPI
url: openapi/drata-audits-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-background-checks-api
name: Drata Background Checks API
description: Background checks verify a person’s identity, history, and qualifications to ensure they meet legal, regulatory,
or policy standards. The [help docs](https://help.drata.com/en/articles/5833999-background-check-management) have more
information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Background Checks
properties:
- type: OpenAPI
url: openapi/drata-background-checks-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-company-api
name: Drata Company API
description: The Company tracks essential information about your organization. The [help docs](https://help.drata.com/en/articles/8283910)
have more information on the purpose of each field.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Company
properties:
- type: OpenAPI
url: openapi/drata-company-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-control-library-api
name: Drata Control Library API
description: The Control Library is a catalog of pre-built Control Templates that can be provisioned into a Workspace. Each
item carries default mappings to Tests, Policies, Evidence, and Framework Requirements.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Control Library
properties:
- type: OpenAPI
url: openapi/drata-control-library-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-control-notes-api
name: Drata Control Notes API
description: Control Notes allow you to provide additional information about Controls.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Control Notes
properties:
- type: OpenAPI
url: openapi/drata-control-notes-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-control-owners-api
name: Drata Control Owners API
description: Control Owners are the Users responsible for Controls. They ensure the right evidence is associated, that any
automated tests are passing, and help prepare for an audit.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Control Owners
properties:
- type: OpenAPI
url: openapi/drata-control-owners-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-controls-api
name: Drata Controls API
description: Controls are a strategic measure or safeguard that an organization puts in place to protect its assets and
meet the requirements of specific compliance frameworks.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Controls
properties:
- type: OpenAPI
url: openapi/drata-controls-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-custom-connections-api
name: Drata Custom Connections API
description: Custom Connections allow users to integrate external systems with Drata. CUSTOM connections push arbitrary
JSON evidence records using a user-defined schema. MDM and HRIS connections use a fixed common model for device management
and HR identity data respectively. The [help docs for custom connections and tests](https://help.drata.com/en/articles/11995676-part-1-custom-connections-and-tests)
and [custom device connections](https://help.drata.com/en/articles/12014143-custom-device-connections) have more information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Custom Connections
properties:
- type: OpenAPI
url: openapi/drata-custom-connections-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-custom-data-records-api
name: Drata Custom Data Records API
description: Custom Data Records are JSON evidence records pushed to a Custom Connection resource. Use the session management
endpoints to batch upload records and track the status of bulk operations. You can create monitors on this data to provide
continuous compliance. The [help docs](https://help.drata.com/en/articles/11995676-part-1-custom-connections-and-tests)
have more information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Custom Data Records
properties:
- type: OpenAPI
url: openapi/drata-custom-data-records-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-custom-field-definitions-api
name: Drata Custom Field Definitions API
description: Custom Field Definitions describe the schema - name, required, type, options, entity placements, and framework
scope - of the Custom Fields configured on your account. Use them to discover the option IDs required to write OPTIONS
values via the API.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Custom Field Definitions
properties:
- type: OpenAPI
url: openapi/drata-custom-field-definitions-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-device-documents-api
name: Drata Device Documents API
description: Device Documents allow you to provide manual evidence of Devices compliance. Using the Drata Agent or an MDM
connection automatically provides this information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Device Documents
properties:
- type: OpenAPI
url: openapi/drata-device-documents-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-devices-api
name: Drata Devices API
description: Devices are computers used by personnel. The data is provided by the Drata Agent or an MDM connection.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Devices
properties:
- type: OpenAPI
url: openapi/drata-devices-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-documents-api
name: Drata Documents API
description: The Documents API from Drata — 4 operation(s) for documents.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Documents
properties:
- type: OpenAPI
url: openapi/drata-documents-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-events-api
name: Drata Events API
description: Events record the activity of User and automated processes in the Drata platform.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Event
tags_raw:
- Events
properties:
- type: OpenAPI
url: openapi/drata-events-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-evidence-api
name: Drata Evidence API
description: Evidence items hold one or more artifacts, the files, URLs, or ticket references that demonstrate a control
is operating. <br/>Use the evidence-files endpoint to pre-upload a file, then reference the returned fileKey when creating
or updating an Evidence item.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Evidence
properties:
- type: OpenAPI
url: openapi/drata-evidence-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-evidence-library-api
name: Drata Evidence Library API
description: 'Drata''s Evidence Library serves as a repository for all the evidence you need to collect across your controls.
The [help docs](https://help.drata.com/en/articles/8288579-evidence-library-overview) have more information. <br/>Note:
these are the legacy single-artifact endpoints; new integrations should use the Evidence endpoints.'
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Evidence Library
properties:
- type: OpenAPI
url: openapi/drata-evidence-library-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-frameworks-api
name: Drata Frameworks API
description: Frameworks are collections of controls that are used to assess compliance with specific standards or regulations.
The [help docs](https://help.drata.com/en/articles/5329593-frameworks) have more information.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Frameworks
properties:
- type: OpenAPI
url: openapi/drata-frameworks-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-groups-api
name: Drata Groups API
description: Groups are collections of Users that can be used to manage permissions and access to resources.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Group
tags_raw:
- Groups
properties:
- type: OpenAPI
url: openapi/drata-groups-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-hris-user-identities-api
name: Drata HRIS User Identities API
description: HR user identity records for a Custom HRIS connection. Use the batch upsert endpoint to submit employee records
keyed by your own `identityId`, then use the update endpoint to reflect employment changes (e.g. set `separatedAt` when
an employee leaves). Deleting a record is intended for data submitted in error, not for offboarding. Changes are not applied
immediately — they are incorporated the next time identity sync runs, which happens nightly by default. A sync can also
be triggered manually from the Personnel page.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- HRIS User Identities
properties:
- type: OpenAPI
url: openapi/drata-hris-user-identities-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-knowledge-base-api
name: Drata Knowledge Base API
description: The Knowledge Base API from Drata — 3 operation(s) for knowledge base.
humanURL: https://developers.drata.com/openapi/reference/v2/overview/
baseURL: https://public-api.drata.com/public/v2
tags:
- Knowledge Base
properties:
- type: OpenAPI
url: openapi/drata-knowledge-base-api-openapi.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: APIReference
url: https://developers.drata.com/openapi/reference/v2/overview/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/create-an-api-key/
- type: Authentication
url: authentication/drata-authentication.yml
- type: Documentation
url: https://developers.drata.com/openapi/reference/v2/tag/Custom-Connections/
- type: GettingStarted
url: https://developers.drata.com/developer-portal/v2/recipes/custom-connections/
- type: Documentation
url: https://docs.safebase.io/reference/getaccounts
- type: APIReference
url: https://docs.safebase.io/reference/getaccounts
- aid: drata:drata-monitoring-tests-api
name: Drata Monitoring Tests API
description: Monitoring Tests are compliance tests used to determine whether a person, system, process, or organization
is adhering to standards set
# --- truncated at 32 KB (66 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/drata/refs/heads/main/apis.yml
Every provider here is available over the APIs.io API and to AI agents over MCP.