# Huntress

**Canonical:** https://apis.io/providers/huntress/  
**Website:** https://www.huntress.com  
**APIs profiled:** 1

Huntress is a managed cybersecurity platform built for small and mid-sized businesses and the MSPs/MSSPs that serve them, pairing purpose-built software with a human-powered 24/7 Security Operations Center (SOC). Its products span Managed EDR (including macOS and Managed Microsoft Defender), Managed ITDR for Microsoft 365 identities, Managed SIEM, and Managed Security Awareness Training. The Huntress REST API (api.huntress.io/v1) gives partners programmatic access to accounts, organizations, agents, incident reports, remediations, escalations, platform actions, signals, external recon, billing and reseller subscriptions, plus a SIEM ES|QL query endpoint — secured with HTTP Basic API keys, cursor-paginated, with real-time webhooks and an official remote MCP server for AI agents.

## Kin Score — 51.0 / 100 (developing)

Scored 2026-08-30 under rubric 0.17.2. Trend: flat (-0.6 from 51.6).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 66.5 |
| Governance | 4.5 |
| Contract Governance | 4.5 |
| Operational Transparency | 36.8 |
| Developer Ergonomics | 47.0 |
| Commercial Clarity | 60.5 |
| Access Clarity | 60.5 |

## Agent readiness — 55.6 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | verified |
| Auth Clarity | served |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | partial |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | served |
| Protected Resource Metadata | verified |
| Dynamic Client Registration | yes |
| Agentic Commerce | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (17)

- **Huntress Accounts API** — Operations about Accounts
- **Huntress Actor API** — Operations about Actors
- **Huntress Agents API** — Operations about Agents
- **Huntress Escalations API** — Operations about Escalations
- **Huntress External Recon API** — Operations about External Recons
- **Huntress Identities API** — Operations about Identities
- **Huntress Incident Reports API** — Operations about Incident Reports
- **Huntress Invoices API** — Operations about Invoices
- **Huntress Known VPNs API** — Operations about Known VPNs
- **Huntress Organizations API** — Operations about Organizations
- **Huntress Platform Actions API** — Operations about Platform Actions
- **Huntress Reseller API** — Operations for Reseller-level API credentials. These are mostly the same endpoints available in the rest of the API. However, the account ID is included in the URL, so that you ...
- **Huntress SIEM API** — Query your SIEM logs programmatically using <a href="https://support.huntress.io/hc/en-us/articles/30113222043155-Searching-Logs-ESQL">ES|QL (Elasticsearch Query Language)</a>.
- **Huntress Signals API** — Operations about Signals
- **Huntress Summary Reports API** — Operations about Summary Reports
- **Huntress Unwanted Access Rules API** — Operations about Unwanted Access Rules
- **Huntress Users API** — Operations about Users

## MCP servers (1)

- **Huntress MCP Server** — Huntress operates an official remote MCP server fronting the Huntress API, discoverable via RFC 8414 OAuth Authorization Server metadata and RFC 9728 OAuth Protected Resource me...

## Agentic access (1)

- **Huntress Agentic Access** — 92 operations · 37 acting · 1 human-in-the-loop

## Security (4)

- **Huntress Authentication** — http · 1 scheme
- **Huntress Domain Security** — TLSv1.2 · HSTS · DMARC
- **Huntress Vulnerability Disclosure** — security.txt · contact published
- **Huntress Trust Center** — SOC 2, GDPR

## Tags

Company, Security, Cybersecurity, Managed Detection and Response, Endpoint Security, SOC, SIEM, Identity Threat Detection, MSP, Webhook

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/huntress/). Scores are computed from the provider's own public artifacts under a published rubric.
