# Epic Systems

**Canonical:** https://apis.io/providers/epic-systems/  
**Website:** https://www.epic.com/  
**APIs profiled:** 6

Epic Systems Corporation is a privately held electronic health record (EHR/EMR) software company founded in 1979 and headquartered in Verona, Wisconsin, United States. Epic's software supports the medical records of a large share of U.S. hospital systems and academic medical centers, and its "Epic on FHIR" developer program (fhir.epic.com / open.epic.com) exposes a standards-based HL7 FHIR interoperability surface for patient- and provider-facing apps. Epic serves live, public sandbox FHIR endpoints across three FHIR versions - R4 (4.0.1), STU3 (3.0.1), and DSTU2 (1.0.2) - aligned to the US Core implementation guides, with SMART on FHIR / OAuth 2.0 authorization, CDS Hooks, and FHIR Bulk Data ($export) access. Production access requires client registration and a health system's participation; the developer sandbox, specifications, and CapabilityStatements are openly published. Epic is a core node of the U.S. healthcare interoperability landscape shaped by the ONC/CMS 21st Century Cures Act information-blocking rules and TEFCA.

## Kin Score — 57.1 / 100 (strong)

Scored 2026-08-17 under rubric 0.11.0. Trend: rising (+15.1 from 42.0).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 55.0 |
| Governance | 3.1 |
| Operational Transparency | 73.7 |
| Developer Ergonomics | 63.0 |
| Commercial Clarity | 55.3 |

Regulatory layer — **Health**: 60.0 (matched via tags).

## Agent readiness — 48.6 (agent-native)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | documented |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | yes |
| Agent Skills | yes |
| Well Known Catalog | no |
| Consent Identity | yes |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Enterprise · Sandbox self-serve · Production partner-gated — onboarding: unknown, pricing: enterprise, trial: yes (confidence: high).

## APIs (6)

- **Epic FHIR R4 API** — Epic's HL7 FHIR R4 (4.0.1) REST API, aligned to the US Core implementation guides and exposing 59 resource types (Patient, Encounter, Observation, Condition, MedicationRequest, ...
- **Epic FHIR STU3 API** — Epic's HL7 FHIR STU3 (3.0.1) REST API for clinical and administrative resources, authorized with SMART on FHIR / OAuth 2.0. A live public sandbox CapabilityStatement was harvest...
- **Epic FHIR DSTU2 API** — Epic's HL7 FHIR DSTU2 (1.0.2) REST API, published as a FHIR Conformance resource covering the legacy DSTU2 resource set. A live public sandbox Conformance statement was harveste...
- **Epic SMART on FHIR Authorization** — Epic's SMART on FHIR / OAuth 2.0 authorization surface backing the FHIR APIs. The live .well-known/smart-configuration advertises authorize/token endpoints, grant types (authori...
- **Epic FHIR Bulk Data Access API** — Epic's implementation of the HL7 FHIR Bulk Data Access (Flat FHIR) specification, providing backend system-level population export via the $export operation, authorized with OAu...
- **Epic CDS Hooks API** — Epic's support for the CDS Hooks specification, letting external clinical decision support services return cards and SMART app launch links at documented workflow hook points in...

## Security (3)

- **Epic Systems Authentication** — 0 schemes
- **Epic Systems Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Epic Systems Vulnerability Disclosure** — security.txt · contact published

## Plans (1)

- **Epic Systems Plans Pricing**

## Tags

Healthcare, United States, EHR, EMR, FHIR, HL7, Interoperability, SMART on FHIR, US Core, Clinical Data

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/epic-systems/). Scores are computed from the provider's own public artifacts under a published rubric.
