# IRONSCALES

**Canonical:** https://apis.io/providers/ironscales/  
**Website:** https://ironscales.com/  
**APIs profiled:** 10

IRONSCALES is an AI-powered, API-based email security platform protecting organizations against phishing, business email compromise (BEC), account takeover (ATO), VIP impersonation, QR-code phishing, malicious URLs and attachments, and deepfake-assisted social engineering. Rather than sitting inline as a secure email gateway, IRONSCALES connects to Microsoft 365 and Google Workspace through their APIs and operates at the mailbox level — no MX record changes — combining adaptive AI detection, computer-vision analysis, automated multi-mailbox remediation, a crowdsourced threat-intelligence network, phishing simulation testing, and security awareness training in one platform. The public IRONSCALES Management API (appapi.ironscales.com) exposes incidents, mitigation statistics, escalated emails, mailbox management, deepfake SIEM events, phishing-simulation campaigns, SAT training campaigns, and tenant security settings, and is the surface behind the company's SIEM/SOAR/XDR integrations. IRONSCALES also operates an OAuth-protected remote MCP server for agent-based access.

## Kin Score — 57.0 / 100 (strong)

Scored 2026-08-17 under rubric 0.11.0. Trend: flat (+0.0 from 57.0).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 54.0 |
| Governance | 11.5 |
| Operational Transparency | 63.2 |
| Developer Ergonomics | 62.5 |
| Commercial Clarity | 60.5 |

## Agent readiness — 50.2 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| MCP Server | yes |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | verified |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (10)

- **IRONSCALES MCP Server** — Remote Model Context Protocol server operated by IRONSCALES at mcp.ironscales.com, served over streamable HTTP at /mcp/. Access is OAuth 2.0 protected — an unauthenticated tools...
- **IRONSCALES Authorization API** — The Authorization API from IRONSCALES — 1 operation(s) for authorization.
- **IRONSCALES Campaigns API** — The Campaigns API from IRONSCALES — 3 operation(s) for campaigns.
- **IRONSCALES Deepfake API** — The Deepfake API from IRONSCALES — 1 operation(s) for deepfake.
- **IRONSCALES Emails API** — The Emails API from IRONSCALES — 1 operation(s) for emails.
- **IRONSCALES Incident API** — The Incident API from IRONSCALES — 10 operation(s) for incident.
- **IRONSCALES Mailboxes API** — The Mailboxes API from IRONSCALES — 3 operation(s) for mailboxes.
- **IRONSCALES Mitigation API** — The Mitigation API from IRONSCALES — 8 operation(s) for mitigation.
- **IRONSCALES SAT API** — The SAT API from IRONSCALES — 15 operation(s) for sat.
- **IRONSCALES Settings API** — The Settings API from IRONSCALES — 4 operation(s) for settings.

## MCP servers (2)

- **ironscales-mcp.yml**
- **mcp**

## Security (4)

- **Ironscales Authentication** — apiKey/oauth2 · 2 schemes
- **Ironscales Domain Security** — TLSv1.3 · HSTS · DMARC
- **Ironscales Vulnerability Disclosure** — contact published
- **Ironscales Trust Center** — ISO/IEC 27001:2022, ISO/IEC 42001:2023, SOC 2 Type 2

## Tags

email-security, cybersecurity, phishing, anti-phishing, business-email-compromise, account-takeover, threat-intelligence, incident-response, security-awareness-training, phishing-simulation, microsoft-365, google-workspace, soc-automation, deepfake-detection, mcp

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/ironscales/). Scores are computed from the provider's own public artifacts under a published rubric.
