Imprivata website screenshot

Imprivata

Imprivata is a digital identity and access management company built for healthcare and other mission-critical industries. Its platform delivers passwordless and multifactor authentication, single sign-on (Enterprise Access Management, formerly OneSign), privileged access management, mobile and shared device access (Mobile Access Management, formerly GroundControl), and drug enforcement e-prescribing (DEA-EPCS) workflows so that clinicians, partners, and increasingly AI agents can securely access systems and data without slowing down crucial work. Imprivata exposes integration surfaces for software and hardware vendors through the OneSign ProveID Web API and ProveID SDK and a Privileged Access Management REST API, governed through its Access Management Partner (developer) program. These APIs are deployed on customer/instance infrastructure rather than a single public cloud host, so Imprivata publishes integration documentation and a developer partner program rather than a hosted public API portal.

Imprivata is profiled on the APIs.io network. Tagged areas include Company, Identity, Access Management, Authentication, and Single Sign-On.

Imprivata’s developer surface includes documentation, API reference, engineering blog, support, authentication, and 8 more developer resources.

27.7/100 emerging ▬ flat Agent 10/100 human only Full breakdown ↓
scored 2026-07-27 · rubric v0.5
AccessSelf serve
0 APIs
CompanyIdentityAccess ManagementAuthenticationSingle Sign-OnPrivileged Access ManagementHealthcareSecurityPasswordless

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 27.7/100 · emerging
Contract Quality 0.0 / 25
Developer Ergonomics 8.3 / 20
Commercial Clarity 7.4 / 20
Operational Transparency 0.7 / 13
Governance 0.0 / 12
Discoverability 6.8 / 10
Agent readiness — 10/100 · human only
Machine-Readable Contract 0 / 18
Agentic Access Contract 0 / 15
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/imprivata: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Imprivata Authentication

apiKey/http · 2 schemes

SECURITY

Imprivata Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Imprivata Trust Center

SOC 2, ISO 27001:2022, ISO 27701:2019, HIPAA, HITECH, NIST, Cyber Essentials, Cyber Essentials Plus, DEA-EPCS (21 CFR part 1311)

SECURITY

Resources

Get Started 1

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Build 1

SDKs, sample code, and the tooling you integrate with

Access & Security 4

Authentication, authorization, and security posture

Operate 1

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: imprivata
name: Imprivata
description: Imprivata is a digital identity and access management company built for healthcare and other mission-critical
  industries. Its platform delivers passwordless and multifactor authentication, single sign-on (Enterprise Access Management,
  formerly OneSign), privileged access management, mobile and shared device access (Mobile Access Management, formerly GroundControl),
  and drug enforcement e-prescribing (DEA-EPCS) workflows so that clinicians, partners, and increasingly AI agents can securely
  access systems and data without slowing down crucial work. Imprivata exposes integration surfaces for software and hardware
  vendors through the OneSign ProveID Web API and ProveID SDK and a Privileged Access Management REST API, governed through
  its Access Management Partner (developer) program. These APIs are deployed on customer/instance infrastructure rather than
  a single public cloud host, so Imprivata publishes integration documentation and a developer partner program rather than
  a hosted public API portal.
url: https://raw.githubusercontent.com/api-evangelist/imprivata/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- general-catalyst
- sapphire-ventures
x-tier: profiled
x-tier-reason: enriched-from-public-surface
accessModel:
  pricing: unknown
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Self-serve signup
  confidence: medium
  source:
  - authentication
  generated: '2026-07-22'
  method: derived
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-19'
image: https://www.imprivata.com/themes/imprivata/images/logo_v2.svg
tags:
- Company
- Identity
- Access Management
- Authentication
- Single Sign-On
- Privileged Access Management
- Healthcare
- Security
- Passwordless
apis: []
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: Website
  url: https://www.imprivata.com/
- type: DeveloperPortal
  url: https://www.imprivata.com/developers
- type: Documentation
  url: https://docs.imprivata.com/
- type: APIReference
  url: https://docs.imprivata.com/onesign/content/topics/onesign/proveid/proveid_webapi.html
- type: Blog
  url: https://www.imprivata.com/blog
- type: GitHubOrganization
  url: https://github.com/imprivata-idg
- type: Support
  url: https://www.imprivata.com/support
- type: Compliance
  url: https://www.imprivata.com/company/trust-and-security
- type: PrivacyPolicy
  url: https://www.imprivata.com/legal/privacy-policy
- type: TermsOfService
  url: https://www.imprivata.com/legal/imprivata-master-cloud-services-agreement
- type: Authentication
  url: authentication/imprivata-authentication.yml
- type: TrustCenter
  url: security/imprivata-trust-center.yml
- type: DomainSecurity
  url: security/imprivata-domain-security.yml
x-enrichment:
  date: '2026-07-19'
  status: backfilled
  pass: local-v1
  note: backfilled from .gitignore signal + verified work evidence