# Inrupt

**Canonical:** https://apis.io/providers/inrupt/  
**Website:** https://www.inrupt.com/  
**APIs profiled:** 6

Inrupt is the enterprise company founded by Sir Tim Berners-Lee and John Bruce to commercialize Solid, the open decentralized-data specification he created at MIT. Its flagship product is the Enterprise Solid Server (ESS), a Kubernetes-deployed platform of cooperating services that gives each person or organization a Pod — a personal data store with fine-grained access control, auditing, and W3C Verifiable-Credential-based Access Requests and Grants. ESS ships an Access Grant service, an Authorization service using Access Control Policies (ACP), a Pod Storage service implementing the Solid Protocol, a Notification Delivery service that pushes signed webhooks to remote HTTPS endpoints, a Platform Management service with a token-exchange and admin provisioning API, an optional hybrid keyword-plus-semantic Search service, and — since ESS 3.0 — an MCP Resource Service exposing consent-mediated tools to AI agents. Inrupt also runs PodSpaces, a hosted developer-preview deployment of ESS, and publishes first-party JavaScript and Java client SDKs.

## Kin Score — 69.2 / 100 (exemplar)

Scored 2026-08-25 under rubric 0.14.0. Trend: flat (+0.0 from 69.2).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 55.1 |
| Governance | 30.3 |
| Contract Governance | 30.3 |
| Operational Transparency | 92.1 |
| Developer Ergonomics | 73.2 |
| Commercial Clarity | 50.0 |
| Access Clarity | 50.0 |

Regulatory layer — **Payments**: 71.9 (matched via tags).

## Agent readiness — 45.0 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | served |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | served |
| Protected Resource Metadata | no |
| Dynamic Client Registration | yes |
| Agentic Commerce | no |

## APIs (6)

- **Inrupt Change Notifications API (ESS Notification Delivery Service)** — The ESS Notification Delivery Service lets an authorized agent subscribe to change events on Pod resources and on Access Requests/Grants, and have them delivered as signed webho...
- **Inrupt Pod Storage API (Solid Protocol)** — The ESS Pod Storage Service implements the Solid Protocol over HTTP — LDP-style container and resource CRUD in RDF (Turtle, JSON-LD) and binary form, with Access Control Policy ...
- **Inrupt Solid OpenID Provider** — Inrupt's hosted Solid-OIDC identity provider for PodSpaces WebIDs. It publishes a standard OpenID Connect discovery document at /.well-known/openid-configuration advertising aut...
- **Inrupt Access Grant Service (VC API)** — The ESS Access Grant Service issues, queries, verifies, derives and status-checks W3C Verifiable Credentials that carry Access Requests and Access Grants — the consent receipts ...
- **Inrupt ESS MCP Resource Service** — Added in ESS 3.0, the MCP Resource Service exposes four Model Context Protocol tools — requestAccess, checkAccessRequestStatus, hasMatchingAccessGrant and getResource — over str...
- **Inrupt ESS Platform Management API** — The Platform Management service hosts the ESS Admin API used to provision users before they first log in — creating a provisioning account, attaching a WebID and a storage conta...

## MCP servers (1)

- **Inrupt ESS MCP Resource Service** — Inrupt ships a first-party MCP server as an ESS service. The MCP Resource Service exposes four tools that let an AI agent ask a person for consent to their Pod data, watch for t...

## Security (4)

- **Inrupt Authentication** — openIdConnect/oauth2/http/mutualTLS · 7 schemes
- **Inrupt Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Inrupt Vulnerability Disclosure** — Hackerone · contact published
- **Inrupt Trust Center** — ISO/IEC 27001:2022

## Plans (1)

- **Inrupt Plans Pricing**

## Tags

Company, Solid, Personal Data Stores, Decentralized Identity, Data Privacy, Access Control, Verifiable Credentials, Linked Data, RDF, Consent Management, Data Wallets, Agent Infrastructure, Model Context Protocol, Enterprise Software

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/inrupt/). Scores are computed from the provider's own public artifacts under a published rubric.
