# Morf

**Canonical:** https://apis.io/providers/morf/  
**Website:** https://morf.health/  
**APIs profiled:** 1

Morf is a HIPAA-compliant healthcare automation and integration platform that connects EHRs, CRMs, payment systems, and communication tools so digital health teams can eliminate manual work and put patient outreach on autopilot. Workflows are triggered by inbound webhooks from source applications (Healthie, Elation, Medplum, Feathery, athenahealth, Cerbo, DrChrono, Hint Health, and dozens more), which Morf processes into events that fan out to actions across 30+ connected applications. The platform exposes a REST API at api.morf.healthcare secured with API keys and OAuth 2.0 / OpenID Connect (auth.morf.health), a webhook ingestion surface, an integration/action catalog of 170+ pre-built actions, and Flo AI, a no-code workflow co-pilot.

## Kin Score — 45.4 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 45.4).

| Facet | Score |
|---|---|
| Discoverability | 87.0 |
| Contract Quality | 45.1 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 38.1 |
| Commercial Clarity | 46.1 |
| Access Clarity | 46.1 |

Regulatory layer — **Health**: 52.5 (matched via tags).

## Agent readiness — 29.1 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **Morf API** — Morf's REST API and webhook surface for building healthcare automation workflows. Webhooks from source applications are ingested at api.morf.healthcare/webhooks/ and processed i...

## Security (3)

- **Morf Authentication** — apiKey/oauth2/openIdConnect · 4 schemes
- **Morf Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Morf Trust Center** — SOC 2, HIPAA

## Tags

Company, Healthcare, Health IT, Automation, Integration, iPaaS, Webhook, EHR, Patient Communication, HIPAA, Workflows, Digital Health

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/morf/). Scores are computed from the provider's own public artifacts under a published rubric.
