# Nebulock

**Canonical:** https://apis.io/providers/nebulock/  
**Website:** https://nebulock.io/  
**APIs profiled:** 4

Nebulock is an agentic, contextual security-analytics platform built for hunt-first security operations. A swarm of AI agents continuously hunts across cloud, SaaS, network, endpoint, and identity telemetry, maintaining a behavioral Context Graph to surface endpoint- and identity-based threats, close detection coverage gaps, and catch human and agentic insider threats before they escalate into incidents. The platform runs hypothesis-driven investigations, writes and deploys detection rules (Sigma and scheduled SQL), retrohunts historical data, simulates attacks, and maps coverage against MITRE ATT&CK. Nebulock exposes a customer-facing public API for Findings, Entities (actors/users/hosts correlation), Hunts, hunt suggestions and reports, and detection Rules, authenticated with per-organization API keys. The company raised a $25M Series A and is backed by Bain Capital Ventures.

## Kin Score — 32.6 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 32.6).

| Facet | Score |
|---|---|
| Discoverability | 81.5 |
| Contract Quality | 55.9 |
| Governance | 16.7 |
| Contract Governance | 16.7 |
| Operational Transparency | 2.6 |
| Developer Ergonomics | 32.7 |
| Commercial Clarity | 7.9 |
| Access Clarity | 7.9 |

## Agent readiness — 30.6 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (4)

- **Nebulock Entities API** — Actors, users, and hosts — the identity/asset correlation graph.
- **Nebulock Findings API** — Retrieve and manage security findings and their comments.
- **Nebulock Hunts API** — Threat hunts, hunt suggestions, and hunt reports.
- **Nebulock Rules API** — Create, validate, and run detection rules (Sigma / scheduled SQL).

## MCP servers (1)

- **Nebulock MCP Server**

## Agentic access (1)

- **Nebulock Agentic Access** — 55 operations · 33 acting · 1 human-in-the-loop

## Security (2)

- **Nebulock Authentication** — apiKey · 2 schemes
- **Nebulock Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Company, Security, Threat Hunting, Threat Detection, Security Operations, Detection Engineering, AI Agents, SIEM

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/nebulock/). Scores are computed from the provider's own public artifacts under a published rubric.
