Kubescape
Kubescape is an open-source (Apache 2.0) Kubernetes security platform and CNCF incubating project, originally contributed by ARMO. It provides risk analysis, security and compliance posture scanning, misconfiguration detection, image and runtime vulnerability scanning, and eBPF-based runtime threat detection across the IDE, CI/CD pipelines, and live clusters. The core Kubescape is a CLI and an in-cluster Operator whose components expose OpenAPI/Swagger-documented HTTP APIs in-cluster (there is no single hosted public REST endpoint for the open-source tool). ARMO Platform is the commercial multi-cluster, multi-cloud SaaS built on Kubescape and exposes a documented hosted Customer API (base https://api.armosec.io) for posture, compliance, vulnerabilities, runtime incidents, attack paths, network policies, and registry/repository scanning, authenticated with an X-API-KEY access key.
Kubescape publishes 6 APIs on the APIs.io network, including Access Keys API, Network Policies API, Posture & Compliance API, and 3 more. Tagged areas include Kubernetes Security, Cloud Native Security, Container Security, DevSecOps, and Kubernetes.
Kubescape’s developer surface includes authentication, documentation, engineering blog, and 8 more developer resources.
Kin Score
APIs 7
Individual APIs this provider publishes, each with its own machine-readable definition.
Kubescape In-Cluster Component API (Open Source)
The open-source Kubescape Operator's in-cluster components (storage, kubevuln, gateway, operator, node-agent) each expose an OpenAPI/Swagger-documented HTTP API reachable inside...
Kubescape Access Keys API
Agent access keys and exception policies.
Kubescape Network Policies API
Generated NetworkPolicies and seccomp profiles.
Kubescape Posture & Compliance API
Framework, control, and resource posture results.
Kubescape Registry & Repository API
Registry scans and Git repository posture.
Kubescape Runtime Security API
Runtime incidents, attack chains, and security risks.
Kubescape Vulnerabilities API
Image and workload vulnerability scanning and results.
Scroll for all 7
Open Collections 8
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONARMO Platform Customer API (Kubescape) Access Keys API
OPEN COLLECTIONARMO Platform Customer API (Kubescape)
OPEN COLLECTIONScroll for all 8
Pricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Kubescape Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Kubescape Finops
FINOPSSecurity Posture 2
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Documentation 1
Reference material describing how the API behaves
Agent Surfaces 1
MCP servers, agent skills, and machine-readable catalogs
Build 1
SDKs, sample code, and the tooling you integrate with
Access & Security 2
Authentication, authorization, and security posture
Operate 1
Status, limits, changes, and where to get help
Commercial 2
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for providers
9 MCP tools reach this
find_providersBrowse and filter every provider in the catalog.get_provider_artifactsEvery artifact this provider publishes, grouped by type.get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.get_provider_toolsEvery MCP tool they ship, with the operation each wraps.get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.get_provider_ratingPRO — composite, band, trend and facet scores.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
curl "https://apis.io/api/v1/providers/kubescape"
curl "https://apis.io/api/v1/providers?limit=25"
curl "https://apis.io/api/v1/providers/kubescape/operations?limit=25"
curl "https://apis.io/api/v1/providers/kubescape/evidence"
Discovery needs no key. Ratings and market analysis are Pro.