# Hush Security

**Canonical:** https://apis.io/providers/hush-security/  
**Website:** https://www.hush.security/  
**APIs profiled:** 1

Hush Security delivers identity-first access management for AI agents, workloads, and non-human identities (NHIs), replacing static secrets and long-lived API keys with dynamic, identity-based access at runtime. The platform provides runtime discovery and inventory of non-human identities, secrets detection and remediation, risk and posture management, and identity-based access for workloads and agentic AI through an "identity as code" model. Hush exposes a REST API (api.us.hush-security.com/v1) secured with OAuth 2.0 client-credentials, a Terraform provider, Helm charts, a Kubernetes Universal Access Management (UAM) operator with AccessCredential / AccessPrivilege / AccessPolicy CRDs, and first-party Claude Code agent skills. The company is SOC 2 and ISO 27001 certified.

## Kin Score — 35.8 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 35.8).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 0.0 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 2.6 |
| Developer Ergonomics | 78.6 |
| Commercial Clarity | 50.0 |
| Access Clarity | 50.0 |

## Agent readiness — 16.2 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | yes |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **Hush Security API** — REST API for the Hush Security platform, secured with OAuth 2.0 client-credentials (API Key ID + Secret exchanged at POST /v1/oauth/token for a Bearer access token). Region-scop...

## Security (3)

- **Hush Security Authentication** — oauth2 · 1 scheme
- **Hush Security Domain Security** — TLSv1.3 · HSTS · DMARC
- **Hush Security Trust Center** — SOC 2, ISO 27001

## Tags

Company, Security, Non-Human Identity, Identity and Access Management, Secrets Management, AI Agents, Agentic AI, Kubernetes, Cloud Security, Workload Identity

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/hush-security/). Scores are computed from the provider's own public artifacts under a published rubric.
