HealthVerity website screenshot

HealthVerity

HealthVerity is a United States life-sciences data platform, headquartered in Philadelphia, Pennsylvania, that operates what it describes as the nation's largest real-world data (RWD) ecosystem - more than 150 billion de-identified transactions covering over 330 million U.S. patients across 75-plus data sources spanning medical and pharmacy claims, labs, and EHR (following its integration of Symphony Health). Its products are organized around the IPGE framework (Identity, Privacy, Governance, Exchange) and include HealthVerity Marketplace (verified RWD datasets), Identity Manager and Census (privacy-safe probabilistic identity resolution that replaces PII with a universal HealthVerity ID / HVID), Governance Manager, HealthVerity FLOW, and eXOs (an AI-native real-world-evidence agent). HealthVerity is a HIPAA-aligned, tokenization-and-de-identification company serving pharma, payers, and government - not a self-serve, standards-based clinical interoperability vendor. Unlike EHR and FHIR-network players, it exposes no public developer portal, no FHIR CapabilityStatement, and no downloadable OpenAPI; the only vendor-named programmatic surface is the gated, enterprise HealthVerity Identity API for real-time de-identification, described conceptually on the Identity Manager product page but without public reference documentation, base URL, or self-serve onboarding.

HealthVerity publishes 1 API on the APIs.io network. Tagged areas include Healthcare, United States, Life Sciences, Real-World Data, and Identity Resolution.

HealthVerity’s developer surface includes engineering blog, support, signup flow, and 18 more developer resources.

22.6/100 emerging ▬ flat Agent 6/100 human only Full breakdown ↓
scored 2026-08-17 · rubric v0.11.0
AccessPaid
1 APIs
HealthcareUnited StatesLife SciencesReal-World DataIdentity ResolutionDe-IdentificationTokenizationData MarketplaceHIPAAClaims

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-17 · rubric v0.11.0
Composite quality — 22.6/100 · emerging
Contract Quality 0.0 / 21
Developer Ergonomics 1.1 / 17
Commercial Clarity 7.2 / 17
Operational Transparency 1.7 / 11
Governance 1.3 / 10
Discoverability 5.7 / 9
Regulatory Posture 5.6 / 15
Agent readiness — 6/100 · human only
Machine-Readable Contract 0 / 18
Agentic Access Contract 0 / 10
MCP Server 0 / 12
Machine-Readable Auth 0 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 3 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Regulatory Posture applies to this provider. Its tags matched the Health regime, so Regulatory Posture carries 15 points of the composite. If this regime is wrong for your business, say so on your provider repo — the applicability map is public and we will correct it.
The six quality facets above are damped to 85 points between them, because the conditional facet above carries the other 15. That is why each facet's contribution is shown against a damped maximum: raising a quality facet moves the composite by 85% of its nominal weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/healthverity: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 1

Individual APIs this provider publishes, each with its own machine-readable definition.

HealthVerity Identity API

Gated, enterprise real-time de-identification API named on the HealthVerity Identity Manager product page. Under the "sync on demand" modality, customers write records to the He...

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Healthverity Rate Limits

0 limits

RATE LIMITS

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Healthverity Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Healthverity Vulnerability Disclosure

Hackerone · security.txt · contact published

SECURITY

Healthverity Trust Center

trust center published

SECURITY

Resources

Get Started 2

Portal, sign-up, and the first successful call

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 2

Pagination, idempotency, versioning, errors, and events

Build 2

SDKs, sample code, and the tooling you integrate with

Access & Security 5

Authentication, authorization, and security posture

Operate 2

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Company 3

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: healthverity
url: https://raw.githubusercontent.com/api-evangelist/healthverity/refs/heads/main/apis.yml
name: HealthVerity
kind: company
description: HealthVerity is a United States life-sciences data platform, headquartered in Philadelphia, Pennsylvania, that
  operates what it describes as the nation's largest real-world data (RWD) ecosystem - more than 150 billion de-identified
  transactions covering over 330 million U.S. patients across 75-plus data sources spanning medical and pharmacy claims, labs,
  and EHR (following its integration of Symphony Health). Its products are organized around the IPGE framework (Identity,
  Privacy, Governance, Exchange) and include HealthVerity Marketplace (verified RWD datasets), Identity Manager and Census
  (privacy-safe probabilistic identity resolution that replaces PII with a universal HealthVerity ID / HVID), Governance Manager,
  HealthVerity FLOW, and eXOs (an AI-native real-world-evidence agent). HealthVerity is a HIPAA-aligned, tokenization-and-de-identification
  company serving pharma, payers, and government - not a self-serve, standards-based clinical interoperability vendor. Unlike
  EHR and FHIR-network players, it exposes no public developer portal, no FHIR CapabilityStatement, and no downloadable OpenAPI;
  the only vendor-named programmatic surface is the gated, enterprise HealthVerity Identity API for real-time de-identification,
  described conceptually on the Identity Manager product page but without public reference documentation, base URL, or self-serve
  onboarding.
accessModel:
  pricing: paid
  onboarding: sales
  trial: false
  try_now: false
  public: false
  label: Enterprise · Sales-led (gated)
  confidence: medium
  source:
  - website
  generated: '2026-07-24'
  method: manual
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
tags:
- Healthcare
- United States
- Life Sciences
- Real-World Data
- Identity Resolution
- De-Identification
- Tokenization
- Data Marketplace
- HIPAA
- Claims
created: '2026-07-24'
modified: '2026-08-15'
specificationVersion: '0.19'
apis:
- aid: healthverity:healthverity-identity-api
  name: HealthVerity Identity API
  description: Gated, enterprise real-time de-identification API named on the HealthVerity Identity Manager product page.
    Under the "sync on demand" modality, customers write records to the HealthVerity Identity API and records are processed
    in real time, replacing PII with a universal HealthVerity ID (HVID) while all PII remains with the data owner. No public
    reference documentation, base URL, authentication details, or self-serve onboarding are published; access is via a commercial/partner
    agreement.
  humanURL: https://healthverity.com/identity-manager/
  tags:
  - Identity Resolution
  - De-Identification
  - Real-Time
  properties:
  - type: Documentation
    url: https://healthverity.com/identity-manager/
common:
- type: Website
  url: https://healthverity.com/
- type: Blog
  url: https://blog.healthverity.com/
- type: GitHubOrganization
  url: https://github.com/healthverity
- type: LinkedIn
  url: https://www.linkedin.com/company/healthverity
- type: Support
  url: https://healthverity.com/contact/
- type: PrivacyPolicy
  url: https://healthverity.com/privacy-policy/
- type: TermsOfService
  url: https://healthverity.com/terms-and-conditions/
- type: SecurityTxt
  url: well-known/healthverity-security.txt
- type: WellKnown
  url: well-known/healthverity-well-known.yml
- type: DomainSecurity
  url: security/healthverity-domain-security.yml
- type: VulnerabilityDisclosure
  url: security/healthverity-vulnerability-disclosure.yml
- type: Security
  url: https://healthverity.com/vulnerability-disclosure/
- type: TrustCenter
  url: https://healthverity.com/trust/
- type: LLMsTxt
  url: llms/healthverity-llms.txt
- type: Login
  url: https://marketplace.healthverity.com/
- type: SignUp
  url: https://healthverity.com/exos-demo/
- type: Packages
  url: packages/healthverity-packages.yml
- type: Conformance
  url: conformance/healthverity-conformance.yml
- type: Lifecycle
  url: lifecycle/healthverity-lifecycle.yml
- type: Plans
  url: plans/healthverity-plans-pricing.yml
- type: RateLimits
  url: rate-limits/healthverity-rate-limits.yml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
x-enrichment:
  date: '2026-08-15'
  status: minimal
  artifacts_added: 6
  pass: local-v1
x-coverage:
  state: gated
  reason: sales-gate
  detail: The vendor-named HealthVerity Identity API has no reference anywhere on the public web - /api and /developers return
    404, every api./docs./developer./ portal./platform. subdomain is NXDOMAIN, and the only route to it is the identity-manager-request
    sales form; the single live application host, marketplace.healthverity.com, 301s to /login/ and its robots.txt disallows
    all crawling.
  evidence:
  - url: https://healthverity.com/api
    status: 404
  - url: https://healthverity.com/identity-manager-request/
    status: 200
  - url: https://marketplace.healthverity.com/
    status: 301
  - url: https://healthverity.com/openapi.json
    status: 404
  - url: https://healthverity.com/.well-known/agent-card.json
    status: 404
  checked: '2026-08-15'