# Ipsy

**Canonical:** https://apis.io/providers/ipsy/  
**Website:** https://www.ipsy.com  
**APIs profiled:** 0

IPSY is a personalized beauty subscription company founded in 2011 by Michelle Phan, Marcelo Camberos, and Jennifer Goldfarb. Members take a detailed beauty quiz and receive monthly curated "Glam Bag" drops of deluxe samples and full-size makeup, skincare, hair, and fragrance products across tiers (Original, Boxycharm, and Ultimate). IPSY operates as a direct-to-consumer commerce and membership platform under the BFA Industries umbrella; it exposes no public developer API, running on internal GraphQL and REST services with Auth0-based consumer identity. This API Evangelist profile tracks IPSY's public web, security, and identity surface rather than a documented developer program.

## Kin Score — 6.0 / 100 (minimal)

Scored 2026-08-21 under rubric 0.12.0. Trend: flat (+0.0 from 6.0).

| Facet | Score |
|---|---|
| Discoverability | 50.0 |
| Contract Quality | 0.0 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 0.0 |
| Developer Ergonomics | 4.8 |
| Commercial Clarity | 0.0 |
| Access Clarity | 0.0 |

## Agent readiness — 0.0 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## Security (2)

- **Ipsy Domain Security** — TLSv1.3 · HSTS · DMARC
- **Ipsy Vulnerability Disclosure** — contact published

## Tags

Company, Beauty, Cosmetics, Subscription, E-Commerce, Direct to Consumer, Personalization, Membership

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/ipsy/). Scores are computed from the provider's own public artifacts under a published rubric.
