# Hi Bob

**Canonical:** https://apis.io/providers/hi-bob/  
**Website:** https://apidocs.hibob.com/  
**APIs profiled:** 1

HiBob (bob) is an all-in-one HR platform that connects people management, payroll, benefits, and finance for modern, mid-sized and multinational companies. Bob's Public API gives developers programmatic access to core HR data and workflows — employee profiles and org data, time off and attendance, tasks, documents and eSign, goals, job catalog, hiring/ATS, learning, and workforce planning — over a versioned REST API at https://api.hibob.com/v1. Authentication is token-based via API "service users" (HTTP Basic with a service-user ID and token) with granular category and field permissions, plus OAuth 2.0 (authorization code + refresh) for approved Marketplace partners scoped to endpoint-level permissions. The API offers cursor-based pagination, rate limiting with X-RateLimit-* headers, HMAC-signed Webhooks v2 for event notifications, an official hosted Bob MCP Server for AI tools, and a published llms.txt index of the developer docs.

## Kin Score — 56.5 / 100 (strong)

Scored 2026-08-17 under rubric 0.11.0. Trend: flat (+0.0 from 56.5).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 51.6 |
| Governance | 12.5 |
| Operational Transparency | 78.9 |
| Developer Ergonomics | 60.9 |
| Commercial Clarity | 60.5 |

## Agent readiness — 48.2 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| MCP Server | yes |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **Bob Public API** — Bob's Public API for HR data and workflows — employee data, time off, attendance, tasks, documents/eSign, goals, job catalog, hiring, learning, and workforce planning.

## MCP servers (1)

- **hi-bob-mcp.yml**

## Security (4)

- **Hi Bob Authentication** — http/oauth2 · 2 schemes
- **Hi Bob Domain Security** — TLSv1.3 · HSTS · DMARC
- **Hi Bob Vulnerability Disclosure** — Bugcrowd
- **Hi Bob Trust Center** — SOC 2 Type II, ISO 27001:2022, ISO 27018:2019

## Tags

Company, HR, HRIS, Human Resources, Payroll, People Analytics, Time Off, Workforce Planning, Employees, HR Tech

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/hi-bob/). Scores are computed from the provider's own public artifacts under a published rubric.
