# HashiCorp Vault

**Canonical:** https://apis.io/providers/hvault/  
**Website:** https://www.vaultproject.io/api-docs  
**APIs profiled:** 28

HashiCorp Vault secures, stores, and tightly controls access to tokens, passwords, certificates, API keys, and other secrets in modern computing. Vault handles leasing, key revocation, key rolling, and auditing. Through a unified API, users can access an encrypted Key/Value store and network encryption-as-a-service, or generate AWS IAM/STS credentials, SQL/NoSQL databases, X.509 certificates, SSH credentials, and more.

## Kin Score — 30.4 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 30.4).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 60.3 |
| Governance | 9.8 |
| Contract Governance | 9.8 |
| Operational Transparency | 7.9 |
| Developer Ergonomics | 11.9 |
| Commercial Clarity | 15.8 |
| Access Clarity | 15.8 |

## Agent readiness — 29.1 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (28)

- **HashiCorp Vault AppRole API** — AppRole auth method for machine-to-machine authentication
- **HashiCorp Vault Audit API** — Audit device management
- **HashiCorp Vault Auth API** — Auth method management
- **HashiCorp Vault AWS API** — AWS dynamic credentials secrets engine
- **HashiCorp Vault Configuration API** — General Vault configuration
- **HashiCorp Vault Database API** — Database dynamic credentials secrets engine
- **HashiCorp Vault Entity Alias API** — Identity entity alias management
- **HashiCorp Vault Entity API** — Identity entity management
- **HashiCorp Vault GitHub API** — GitHub auth method for organization-based authentication
- **HashiCorp Vault Group Alias API** — Identity group alias management
- **HashiCorp Vault Group API** — Identity group management
- **HashiCorp Vault Health API** — Health and status endpoints
- **HashiCorp Vault Init API** — Vault initialization
- **HashiCorp Vault JWT/OIDC API** — JWT/OIDC auth method for identity provider authentication
- **HashiCorp Vault Kubernetes API** — Kubernetes auth method for pod authentication
- **HashiCorp Vault KV V2 API** — Key/Value version 2 secrets engine
- **HashiCorp Vault LDAP API** — LDAP auth method for directory-based authentication
- **HashiCorp Vault Leader API** — HA leader status
- **HashiCorp Vault Lookup API** — Identity lookup operations
- **HashiCorp Vault Mounts API** — Secrets engine mount management
- **HashiCorp Vault OIDC API** — OIDC identity provider operations
- **HashiCorp Vault PKI API** — PKI certificate management secrets engine
- **HashiCorp Vault Policy API** — Policy management
- **HashiCorp Vault Seal API** — Seal and unseal operations
- **HashiCorp Vault SSH API** — SSH certificate signing secrets engine
- **HashiCorp Vault Token API** — Token auth method for token lifecycle management
- **HashiCorp Vault Transit API** — Transit encryption-as-a-service secrets engine
- **HashiCorp Vault Userpass API** — Username and password auth method

## Agentic access (1)

- **Hvault Agentic Access** — 116 operations · 76 acting · 5 human-in-the-loop

## Security (2)

- **Hvault Authentication** — apiKey · 1 scheme
- **Hvault Domain Security** — TLSv1.3 · HSTS · DMARC

## Plans (1)

- **Hvault Plans Pricing**

## Tags

Encryption, Identity, Infrastructure, Secrets Management, Security

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/hvault/). Scores are computed from the provider's own public artifacts under a published rubric.
