# Liferay

**Canonical:** https://apis.io/providers/liferay/  
**APIs profiled:** 1

Liferay DXP is an open-source digital experience platform offering headless REST APIs for managing users, roles, permissions, content, and site configuration. The Roles API lets you list, retrieve, and associate or dissociate regular, site, and organization roles for users.

## Kin Score — 24.2 / 100 (emerging)

Scored 2026-08-25 under rubric 0.14.0. Trend: flat (+0.0 from 24.2).

| Facet | Score |
|---|---|
| Discoverability | 59.3 |
| Contract Quality | 43.5 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 14.3 |
| Commercial Clarity | 15.8 |
| Access Clarity | 15.8 |

## Agent readiness — 19.8 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | bearer |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | no |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (1)

- **Liferay Roles API** — Manage roles and role associations

## Agentic access (1)

- **Liferay Agentic Access** — 8 operations · 6 acting

## Security (3)

- **Liferay Authentication** — http · 1 scheme
- **Liferay Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Liferay Vulnerability Disclosure** — security.txt · contact published

## Plans (1)

- **Liferay Plans Pricing**

## Tags

Open-Source, Digital Experience, DXP, Roles, User, Permissions, Headless

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/liferay/). Scores are computed from the provider's own public artifacts under a published rubric.
