King Fahd University of Petroleum & Minerals (KFUPM) is a public research university in Dhahran, Saudi Arabia. Its programmable footprint is small, and most of what previously appeared in this profile was not its own: 37 OpenAPI definitions attributed to KFUPM here were the Elsevier Pure Web Services contract (info.title "Pure API", contact pure-support@elsevier.com, version 5.35.3-4) served from the university's Pure tenant at pure.kfupm.edu.sa. That contract is Elsevier's and has been removed; the tenant relationship is recorded instead. What KFUPM genuinely operates is three surfaces on its own infrastructure. Its identity provider at sts.kfupm.edu.sa publishes signed SAML 2.0 federation metadata and an OpenID Connect discovery document, and is registered in eduGAIN through MAEEN, the Saudi identity federation, with scope kfupm.edu.sa — an institution-operated machine-readable surface by definition. The KFUPM ePrints repository (EPrints 3.4.1) serves a live, unauthenticated OAI-PMH 2.0 harvesting interface with six working verbs and six metadata formats, plus record-level and search-level JSON export whose record model carries a KFUPM-local `arabic_abstract` field. The registrar publishes a live course offering system, but it answers only an HTML form POST and returns no machine-readable format. There is no central developer portal, no API documentation, no changelog, no status page, no robots.txt, no sitemap and no llms.txt on the university's own domain. The library discovery surface sits behind a Cloudflare bot challenge. KFUPM does not publish an OpenAPI for anything it operates; the three descriptions in this repo were derived by probing the live endpoints.
King Fahd University of Petroleum & Minerals publishes 3 APIs on the APIs.io network: KFUPM Identity Federation (SAML 2.0 + OpenID Connect), KFUPM ePrints OAI-PMH Repository Interface, and KFUPM ePrints Export & Search (JSON). Tagged areas include University, Higher Education, Education, Research, and Saudi Arabia.
King Fahd University of Petroleum & Minerals’ developer surface includes engineering blog, authentication, and 21 more developer resources.
Regulatory Posture applies to this provider. Its tags matched the
Education & Research regime, so
Regulatory Posture carries 15 points of the composite.
If this regime is wrong for your business, say so on your
provider repo — the
applicability map is public and we will correct it.
Create-or-Update Ergonomics applies to this provider. This API accepts writes, so it
carries 10 points of the composite. It is scored from the published contracts
themselves: whether a caller can create-or-update in one call, whether the write accepts a key the caller already
holds, and whether the response says which branch ran. Without that, every write needs a search-and-branch in
front of it, and the first time that check is skipped a duplicate record is created.
Scored against the observed mean rather than raw — a provider at the catalog average is unchanged by this facet,
not penalised by it.
The six quality facets above are damped to 75 points between them,
because the conditional facet above carries the other
25. That is why each facet's contribution is shown against a damped
maximum: raising a quality facet moves the composite by 75% of its nominal
weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. Every facet and dimension name above is a link: it opens that measurement's own page — what it means, the exact checks that feed it, how the whole catalog distributes on it, and the providers at the top of it. This rating is computed from github.com/api-evangelist/kfupm: open an issue to ask a question, or submit a pull request to add artifacts.
Submit an artifact on GitHub — free →Manage your own listing — the Influence plan, $499/mo →
KFUPM's own identity provider at sts.kfupm.edu.sa (Microsoft AD FS). Publishes signed SAML 2.0 federation metadata (80 KB, entityID http://sts.kfupm.edu.sa/adfs/services/trust, ...
Live OAI-PMH 2.0 harvesting interface for the KFUPM ePrints institutional repository (EPrints 3.4.1), self-hosted on the university's own domain. repositoryIdentifier eprints.kf...
Record-level and search-level JSON from the same self-hosted KFUPM ePrints repository, served without authentication. /cgi/export/eprint/{eprintid}/JSON/{filename} returns the f...
KFUPM runs an Elsevier Pure research information system at pure.kfupm.edu.sa and its Pure Web Services REST API is reachable at /ws/api, authenticated with a Pure api-key header...
aid: kfupm
name: King Fahd University of Petroleum & Minerals
x-type: university
x-category: Public Research University
description: 'King Fahd University of Petroleum & Minerals (KFUPM) is a public research university in Dhahran, Saudi Arabia.
Its programmable footprint is small, and most of what previously appeared in this profile was not its own: 37 OpenAPI definitions
attributed to KFUPM here were the Elsevier Pure Web Services contract (info.title "Pure API", contact pure-support@elsevier.com,
version 5.35.3-4) served from the university''s Pure tenant at pure.kfupm.edu.sa. That contract is Elsevier''s and has been
removed; the tenant relationship is recorded instead.
What KFUPM genuinely operates is three surfaces on its own infrastructure. Its identity provider at sts.kfupm.edu.sa publishes
signed SAML 2.0 federation metadata and an OpenID Connect discovery document, and is registered in eduGAIN through MAEEN,
the Saudi identity federation, with scope kfupm.edu.sa — an institution-operated machine-readable surface by definition.
The KFUPM ePrints repository (EPrints 3.4.1) serves a live, unauthenticated OAI-PMH 2.0 harvesting interface with six working
verbs and six metadata formats, plus record-level and search-level JSON export whose record model carries a KFUPM-local
`arabic_abstract` field. The registrar publishes a live course offering system, but it answers only an HTML form POST and
returns no machine-readable format.
There is no central developer portal, no API documentation, no changelog, no status page, no robots.txt, no sitemap and
no llms.txt on the university''s own domain. The library discovery surface sits behind a Cloudflare bot challenge. KFUPM
does not publish an OpenAPI for anything it operates; the three descriptions in this repo were derived by probing the live
endpoints.'
type: Index
deliveryModel:
model: self-hosted
open_source: false
commercial: false
callable_host: true
label: Institution-operated endpoints · you call their host
confidence: high
source:
- probed
generated: '2026-08-30'
method: probed
accessModel:
pricing: free
onboarding: none
trial: false
try_now: true
public: true
label: Free · No signup, no developer portal
confidence: high
source:
- probed
- authentication
generated: '2026-08-30'
method: probed
position: Consuming
access: Public
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/kfupm.png
url: https://raw.githubusercontent.com/api-evangelist/kfupm/refs/heads/main/apis.yml
tags:
- University
- Higher Education
- Education
- Research
- Saudi Arabia
- Middle East
- Identity Federation
- Research Repository
- Open Access
- OAI-PMH
- Theses
- Course Catalog
created: '2026-06-03'
modified: '2026-08-30'
specificationVersion: '0.23'
apis:
- aid: kfupm:identity-federation
name: KFUPM Identity Federation (SAML 2.0 + OpenID Connect)
x-operator: institution
description: KFUPM's own identity provider at sts.kfupm.edu.sa (Microsoft AD FS). Publishes signed SAML 2.0 federation metadata
(80 KB, entityID http://sts.kfupm.edu.sa/adfs/services/trust, IDPSSODescriptor with HTTP-Redirect and HTTP-POST SSO bindings,
63 attributes) and an OpenID Connect discovery document for issuer https://sts.kfupm.edu.sa/adfs with a two-key RS256
JWKS. Registered in eduGAIN as entity 671205 by MAEEN (SA-MIF) with scope kfupm.edu.sa, first seen 2025-05-12. Discovery
is unauthenticated; relying-party onboarding is not self-serve.
humanURL: https://www.kfupm.edu.sa/
baseURL: https://sts.kfupm.edu.sa
tags:
- Identity Federation
- SAML
- OpenID Connect
- Authentication
- eduGAIN
- Single Sign-On
tags_raw:
- Identity Federation
- SAML
- OpenID Connect
- OAuth 2.0
- eduGAIN
- Single Sign-On
properties:
- type: OpenAPI
url: openapi/kfupm-identity-federation-openapi.yml
- type: Metadata
url: https://sts.kfupm.edu.sa/FederationMetadata/2007-06/FederationMetadata.xml
- type: OpenIDConnectDiscovery
url: https://sts.kfupm.edu.sa/adfs/.well-known/openid-configuration
- type: JWKS
url: https://sts.kfupm.edu.sa/adfs/discovery/keys
- type: Authentication
url: authentication/kfupm-authentication.yml
- type: Scopes
url: scopes/kfupm-scopes.yml
- type: Conformance
url: conformance/kfupm-conformance.yml
- type: Examples
url: examples/kfupm-sts-openid-configuration.json
- type: Vocabulary
url: vocabulary/kfupm-vocabulary.yml
- type: Lifecycle
url: lifecycle/kfupm-lifecycle.yml
- aid: kfupm:eprints-oai-pmh
name: KFUPM ePrints OAI-PMH Repository Interface
x-operator: institution
description: Live OAI-PMH 2.0 harvesting interface for the KFUPM ePrints institutional repository (EPrints 3.4.1), self-hosted
on the university's own domain. repositoryIdentifier eprints.kfupm.edu.sa, adminEmail eprints-system@kfupm.edu.sa, granularity
to the second, deletedRecord policy persistent. All six verbs verified live 2026-08-30; six metadata formats offered (didl,
mets, oai_bibl, oai_dc, rdf, uketd_dc). No authentication. No metadata, data or submission policy is declared — the Identify
response still carries the EPrints defaults, so reuse rights for harvested metadata are undeclared.
humanURL: https://eprints.kfupm.edu.sa/
baseURL: https://eprints.kfupm.edu.sa/cgi/oai2
tags:
- OAI-PMH
- Research Repository
- Harvesting
- Open Access
- Theses
- Metadata
properties:
- type: OpenAPI
url: openapi/kfupm-eprints-oai-pmh-openapi.yml
- type: Documentation
url: https://eprints.kfupm.edu.sa/
- type: Conformance
url: conformance/kfupm-conformance.yml
- type: Examples
url: examples/kfupm-eprints-oai-identify.xml
- type: Examples
url: examples/kfupm-eprints-oai-getrecord.xml
- type: Errors
url: errors/kfupm-errors.yml
- type: Vocabulary
url: vocabulary/kfupm-vocabulary.yml
- type: Lifecycle
url: lifecycle/kfupm-lifecycle.yml
- aid: kfupm:eprints-export
name: KFUPM ePrints Export & Search (JSON)
x-operator: institution
description: Record-level and search-level JSON from the same self-hosted KFUPM ePrints repository, served without authentication.
/cgi/export/eprint/{eprintid}/JSON/{filename} returns the full record as application/json; /cgi/search/simple?q=…&output=JSON
returns a JSON result set. The record model carries a KFUPM-local `arabic_abstract` alongside `english_abstract`, KFUPM
division and subject codes, and embargo state on attached documents. It also exposes personal data — depositor contact_email,
advisor and committee names — and internal EPrints fields (`dir`, `userid`). There is no published contract, rate limit
or terms for these endpoints.
humanURL: https://eprints.kfupm.edu.sa/
baseURL: https://eprints.kfupm.edu.sa/cgi
tags:
- Research Repository
- Search
- JSON
- Open Access
- Theses
properties:
- type: OpenAPI
url: openapi/kfupm-eprints-export-openapi.yml
- type: Documentation
url: https://eprints.kfupm.edu.sa/
- type: JSONSchema
url: json-schema/kfupm-eprints-record-schema.json
- type: Errors
url: errors/kfupm-errors.yml
- type: Lifecycle
url: lifecycle/kfupm-lifecycle.yml
- aid: kfupm:pure-tenant
name: KFUPM Elsevier Pure Web Services (tenant deployment)
x-operator: tenant
x-vendor: Elsevier
x-vendor-product: Pure (Pure API 5.35.3-4)
description: KFUPM runs an Elsevier Pure research information system at pure.kfupm.edu.sa and its Pure Web Services REST
API is reachable at /ws/api, authenticated with a Pure api-key header. The deployment, the tenant and the research data
are KFUPM's; the contract is Elsevier's. Its OpenAPI declares info.title "Pure API", contact pure-support@elsevier.com
and version 5.35.3-4 — the same document at least nine other universities in this catalog were also credited with. It
is recorded here as a relationship and is deliberately NOT saved as a KFUPM contract. Score the interface against Elsevier's
own repo. Pure administration is itself fronted by KFUPM's SAML IdP (/admin/saml2/authenticate/pure).
humanURL: https://pure.kfupm.edu.sa/
baseURL: https://pure.kfupm.edu.sa/ws/api
tags:
- Research Information
- CRIS
- Tenant
- Vendor Contract
- Elsevier Pure
properties:
- type: Documentation
url: https://pure.kfupm.edu.sa/ws/api/
- type: ResearchPortal
url: https://pure.kfupm.edu.sa/
- type: OAI-PMH
url: https://pure.kfupm.edu.sa/ws/oai
name: Pure OAI-PMH endpoint — live and unauthenticated, repositoryName "Pure OAI Repository", adminEmail pure.admin@kfupm.edu.sa,
OpenAIRE CERIF 1.2 profile. Elsevier's implementation on KFUPM's tenant, so it is recorded here rather than credited
as institutional conformance.
common:
- type: Website
url: https://www.kfupm.edu.sa/
- type: TermsOfService
url: https://www.kfupm.edu.sa/terms-of-use
- type: PrivacyPolicy
url: https://www.kfupm.edu.sa/privacy-policy
- type: Blog
url: https://news.kfupm.edu.sa/
- type: LinkedIn
url: https://www.linkedin.com/school/kfupm/
- type: IdentityFederation
url: https://sts.kfupm.edu.sa/FederationMetadata/2007-06/FederationMetadata.xml
name: KFUPM SAML 2.0 identity provider metadata (eduGAIN via MAEEN)
- type: ResearchRepository
url: https://eprints.kfupm.edu.sa/
name: KFUPM ePrints — self-hosted EPrints 3.4.1 institutional repository
- type: ResearchPortal
url: https://pure.kfupm.edu.sa/
name: KFUPM Research Portal — Elsevier Pure tenant
- type: CourseCatalog
url: https://registrar.kfupm.edu.sa/courses-classes/course-offering1/
name: KFUPM course offering — institution-operated, HTML form POST only, no machine-readable format
- type: LibraryCatalog
url: https://library-web.kfupm.edu.sa/
name: KFUPM Library web — reachable (200). No documented public API or discovery endpoint found. The library.kfupm.edu.sa
host is live but returns 403 behind a Cloudflare bot challenge.
- type: AITooling
url: https://www.kfupm.edu.sa/about-us/discover/ai-x
name: KFUPM AI+X — institutional AI programme, including ChatGPT Edu deployment
- type: GitHubOrganization
url: https://github.com/KFUPM-OSC
name: KFUPM Open Source Club — student-run, 2 public repositories
- type: Authentication
url: authentication/kfupm-authentication.yml
- type: Scopes
url: scopes/kfupm-scopes.yml
- type: Conformance
url: conformance/kfupm-conformance.yml
- type: Errors
url: errors/kfupm-errors.yml
- type: Lifecycle
url: lifecycle/kfupm-lifecycle.yml
- type: Vocabulary
url: vocabulary/kfupm-vocabulary.yml
- type: DomainSecurity
url: security/kfupm-domain-security.yml
- type: Plans
url: plans/kfupm-plans-pricing.yml
- type: RateLimits
url: rate-limits/kfupm-rate-limits.yml
- type: FinOps
url: finops/kfupm-finops.yml
- type: Review
url: review.yml
x-coverage:
state: covered
reason: covered
detail: 'Three institution-operated surfaces were found, probed and described: a SAML 2.0 + OpenID Connect identity provider
registered in eduGAIN via MAEEN, a live OAI-PMH 2.0 endpoint on a self-hosted EPrints repository, and unauthenticated
JSON record export and search on the same repository. None of them was previously in this profile. What WAS in this profile
— 37 OpenAPIs and 37 apis[] entries — was one Elsevier Pure contract served from the university''s Pure tenant; it has
been removed and the tenant recorded once instead. KFUPM publishes no developer portal, no API documentation, no OpenAPI,
no changelog, no status page, no robots.txt, no sitemap and no llms.txt on its own domain; the three OpenAPI descriptions
in this repo are derived from live probes and are marked as such. Two further institution-operated surfaces exist but
are not machine-readable: the registrar course offering system answers only an HTML form POST, and library.kfupm.edu.sa
is live behind a Cloudflare bot challenge. Expect this re-profile to lower KFUPM''s score — the previous score was largely
Elsevier''s contract quality.'
generated: '2026-08-30'
method: probed
evidence:
- url: https://sts.kfupm.edu.sa/FederationMetadata/2007-06/FederationMetadata.xml
status: 200
note: application/samlmetadata+xml, 80232 bytes, entityID http://sts.kfupm.edu.sa/adfs/services/trust
- url: https://sts.kfupm.edu.sa/adfs/.well-known/openid-configuration
status: 200
note: OIDC discovery, issuer https://sts.kfupm.edu.sa/adfs
- url: https://sts.kfupm.edu.sa/adfs/discovery/keys
status: 200
note: JWKS, 2 RSA RS256 signing keys
- url: https://technical.edugain.org/api.php?action=list_entities&format=json
status: 200
note: eduGAIN entity 671205, regauth https://www.maeen.sa, code SA-MIF, scope kfupm.edu.sa
- url: https://eprints.kfupm.edu.sa/cgi/oai2?verb=Identify
status: 200
note: OAI-PMH 2.0, KFUPM ePrints, EPrints 3.4.1
- url: https://eprints.kfupm.edu.sa/cgi/oai2?verb=ListMetadataFormats
status: 200
note: didl, mets, oai_bibl, oai_dc, rdf, uketd_dc
- url: https://eprints.kfupm.edu.sa/cgi/oai2?verb=GetRecord&identifier=oai:eprints.kfupm.edu.sa:144629&metadataPrefix=oai_dc
status: 200
- url: https://eprints.kfupm.edu.sa/cgi/oai2?verb=Bogus
status: 200
note: protocol error badVerb/badArgument returned with HTTP 200
- url: https://eprints.kfupm.edu.sa/cgi/export/eprint/144629/JSON/kfupm-eprint-144629.js
status: 200
note: application/json, 14167 bytes
- url: https://eprints.kfupm.edu.sa/cgi/search/simple?q=petroleum&output=JSON
status: 200
note: application/json, 287836 bytes
- url: https://pure.kfupm.edu.sa/ws/api/
status: 200
note: '"Pure API documentation" — Elsevier product docs on a KFUPM tenant subdomain'
- url: https://registrar.kfupm.edu.sa/courses-classes/course-offering1/
status: 200
note: course offering form; POST /course-offerings returns HTML only, no JSON
- url: https://library.kfupm.edu.sa/
status: 403
note: live, Cloudflare bot challenge — machine-unreadable, not dead
- url: https://www.kfupm.edu.sa/robots.txt
status: 404
note: no robots.txt, no sitemap.xml, no llms.txt
- url: https://pure.kfupm.edu.sa/ws/api/524/openapi.json
status: 401
note: '''Request not authorized. Please provide a valid API key for access.'' The Pure OpenAPI on this tenant is NOT publicly
fetchable — the 37 specs previously in this repo could not have come from KFUPM''s host.'
- url: https://pure.kfupm.edu.sa/ws/oai?verb=Identify
status: 200
note: Pure's own OAI-PMH endpoint, unauthenticated. repositoryName 'Pure OAI Repository', adminEmail pure.admin@kfupm.edu.sa,
OpenAIRE CERIF 1.2. Tenant-operated.
- url: https://library-web.kfupm.edu.sa/
status: 200
note: KFUPM Library web; no documented public API found
- url: https://github.com/kfupm
status: 200
note: empty unverified GitHub org — 0 public repos, no description, untouched since 2019. Removed as a pointer; ownership
by the university is unevidenced.
- url: https://www.kfupm.edu.sa/terms-of-use
status: 200
- url: https://www.kfupm.edu.sa/privacy-policy
status: 200
- url: https://www.kfupm.edu.sa/about-us/discover/ai-x
status: 200
- url: https://github.com/KFUPM-OSC
status: 200
note: student Open Source Club, 2 public repositories
maintainers:
- FN: Kin Lane
email: kin@apievangelist.com
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we
store it to create your key and to recognise you if you sign in with another
provider. See our Privacy Policy and
Terms.