OneTrust
OneTrust is an enterprise trust, privacy, and AI-governance platform. Its developer portal publishes 37 downloadable OpenAPI definitions covering roughly 631 operations across Universal Consent & Preference Management, Cookie Consent / CMP, Consent Receipts, Data Subject Request (DSR) Automation, Assessment Automation (PIA/DPIA), Data Mapping, Data Catalog and Data Discovery, Incident Management, IT & Security Risk Management, Audit Management, Issues Management, Enterprise Policy Management, Compliance Automation, Third-Party Risk Management, ESG Program Reporting, AI Governance, and the shared platform services (Access Management, SCIM 2.0 User Provisioning, Object Manager, Inventory, Bulk Export, Documents, Integrations, Task Management, Global Activity). Every API is authorized with OAuth 2.0 client credentials against a per-tenant environment host, and the portal also serves an RFC 9727 /.well-known/api-catalog, an llms.txt, and a public remote MCP server.
OneTrust publishes 138 APIs on the APIs.io network, including Activity Log API, Applications API, Assessment Actions API, and 135 more. Tagged areas include Privacy, GRC, Compliance, Consent, and Third-Party Risk Management.
The OneTrust catalog on APIs.io includes 1 event-driven AsyncAPI specification.
OneTrust’s developer surface includes documentation, API reference, getting-started guide, support, engineering blog, pricing, changelog, and 73 more developer resources.
What this lets a business do 7
Business capabilities this provider's published APIs can perform, derived from its own contracts. Browse all capabilities →
Kin Score
Standards implemented 1
Interfaces this provider implements that became standards by being copied rather than ratified. Each is profiled by the API Commons, and the evidence column says how the claim was established — not that it was made.
APIs 138
Individual APIs this provider publishes, each with its own machine-readable definition.
OneTrust Activity Log API
The Activity Log API from OneTrust — 1 operation(s) for activity log.
OneTrust Applications API
The Applications APIs are used to manage application configurations and their associated consent experiences.
OneTrust Assessment Actions API
The Assessment Actions APIs are used to perform workflows on assessments, such as launching, approving, or creating tasks.
OneTrust Assessment Management API
The Assessment Management APIs are used to modify, link, and manage existing assessments.
OneTrust Assessments API
The Assessments APIs are used to retrieve assessment data and details.
OneTrust Attachments API
The Attachments APIs are used to upload and obtain the location of files uploaded in the OneTrust Platform.
OneTrust Attachments V4 API
The Attachments V4 API from OneTrust — 1 operation(s) for attachments v4.
OneTrust Attribute Management API
The Attribute Management APIs are used to manage attributes associated with AI Governance entities.
OneTrust Audit Records API
APIs to manage and retrieve audit logs for user activities, including login history and access patterns. These endpoints help you monitor security events, track user authenticat...
OneTrust Audits API
APIs to manage the complete audit lifecycle including creation, updates, deletion, scope assignment, and retrieval with support for approvers, auditors, and custom attributes.
OneTrust Banner API
APIs to manage cookie consent banner configuration and behavior.
OneTrust Bulk Export API
The Bulk Export APIs are used to extract large volumes of cookie receipts, consent receipts, and data subjects.
OneTrust Carbon Management API
APIs to manage emission factors and emission transactions.
OneTrust Catalog Search V1 API
APIs to manage catalog search operations with basic functionality and providing comprehensive filtering, faceting, and field selection capabilities for data asset discovery.
OneTrust Catalog Search V2 API
APIs to manage catalog search operations with enhanced scalability, featuring continuation token-based pagination for handling large volumes of search results and improved perfo...
OneTrust Categorizations API
The Categorizations API from OneTrust — 2 operation(s) for categorizations.
OneTrust Classification API
The Classification APIs are used to manage custom data classifiers and classification rules for Data Discovery.
OneTrust Collection Points API
The Collection Points APIs are used to manage where and how consent is collected.
OneTrust Collection Points V2 API
The Collection Points V2 APIs are used to manage collection points using version 2 of the API.
OneTrust Consent Attachments API
APIs for managing Consent Attachments.
OneTrust Consent Groups API
APIs for managing Consent Groups and their configurations.
OneTrust Consent Rate Optimization API
API for optimizing consent rate.
OneTrust Consent Receipts API
The Consent Receipts APIs are used to create consent receipts from a collection point to store data subject consent.
OneTrust Contracts API
The Contracts APIs are used to manage vendor contract operations including contract creation, updates, search functionality, contract type management, and schema configuration f...
OneTrust Control Implementations API
APIs to handle control implementation operations including creation, updates, entity associations, attachment management, and comprehensive search across multiple entity types.
OneTrust Control Links API
APIs to create and manage relationships between controls through bulk linking operations with support for various relationship types and custom parameters.
OneTrust Controls API
APIs to manage the complete control lifecycle including creation, updates, deletion, retrieval, and entity type management with framework integration and custom attributes.
OneTrust Cookies API
The Cookies APIs are used to manage cookie definitions, categories, and their properties.
OneTrust Credentials API
APIs to manage credential operations including creation, updates, deletion, retrieval, and secure reference key management for multiple system authentication types.
OneTrust Custom Index Management API
The Custom Index Management API from OneTrust — 2 operation(s) for custom index management.
OneTrust Custom Scan API
APIs to manage and execute custom data discovery scans across specified data sources.
OneTrust Data Asset Attributes API
The Data Asset Attributes API from OneTrust — 2 operation(s) for data asset attributes.
OneTrust Data Asset Management API
The Data Asset Management API from OneTrust — 2 operation(s) for data asset management.
OneTrust Data Assets API
The Data Assets APIs are used to manage data asset metadata.
OneTrust Data Sources API
APIs to manage data sources including creation, retrieval, updates, deletion, and comprehensive filtering with support for multiple system types and asset integration.
OneTrust Data Subject Access Request (DSAR) API
The Data Subject Access Request (DSAR) API from OneTrust — 1 operation(s) for data subject access request (dsar).
OneTrust Data Subject Groups API
The Data Subject Groups APIs are used to manage groups of data subjects.
OneTrust Data Subject Groups V4 API
The Data Subjects V4 APIs are used to manage data subject information, preferences, and consent records.
OneTrust Data Subjects API
The Data Subjects APIs are used to manage individuals whose data is being processed.
OneTrust Data Subjects V2 API
The Data Subjects V2 APIs are used to manage data subjects using version 2 of the API.
OneTrust Data Subjects V3 API
The Data Subjects V3 APIs are used to manage data subject information, preferences, and consent records.
OneTrust Data Subjects V4 API
The Data Subjects V4 APIs are used to manage data subject information, preferences, and consent records.
OneTrust Deduplicate Data Subjects API
The Deduplicate Data Subjects APIs are used to merge duplicate data subject profiles.
OneTrust Deletion Certificates API
APIs to retrieve a paginated list of deletion certificates.
OneTrust Document Attachments API
The Document Attachments APIs are used to manage attachments on document objects such as policies, standards, procedures, and privacy notices.
OneTrust Document Gateway API
The Document Gateway API provides secure document download functionality using tokens from the Document Service V4.
OneTrust Documents API
The Documents APIs are used to manage document objects such as policies, standards, procedures, and privacy notices.
OneTrust Domain Data API
The Domain Data API from OneTrust — 1 operation(s) for domain data.
OneTrust Domains API
The Domains APIs are used to manage domain configurations and cookie scanning settings.
OneTrust DROP Management API
APIs for managing DROP records and privacy requests
OneTrust Engagements API
The Engagements APIs are used to manage vendor engagement operations including creating, retrieving, updating, and searching engagements with comprehensive attribute management,...
OneTrust Entity Management API
The Entity Management APIs are used to manage AI Governance entities.
OneTrust Entity Type Management API
The Entity Type Management APIs are used to manage AI Governance entity types.
OneTrust Entity Types API
APIs to manage risk entity types and source entity types, including retrieval of enabled entity configurations for risk associations.
OneTrust Entity Workflow Management API
The Entity Workflow Management APIs are used to manage AI Governance entity workflows.
OneTrust Evidence Task Implementations API
APIs to manage evidence collection tasks including implementation retrieval, attachment handling (files, links, notes), and comprehensive search with interval-based collection t...
OneTrust Geolocation Rules API
The Geolocation Rules APIs are used to manage geographic rules that determine how consent experiences are applied based on user location.
OneTrust Glossaries API
APIs to manage business glossaries, including retrieving glossary details, listing all available glossaries, and accessing glossary-specific information with associated terms an...
OneTrust Groups V2 API
V2 version APIs to manage Groups.
OneTrust Incidents API
APIs used to create, update, search, and manage incidents, including linking incidents to inventories, retrieving details, and tracking their lifecycle.
OneTrust Initiatives API
The Initiatives APIs are used to manage compliance initiatives for standards and frameworks.
OneTrust Installer API
APIs to retrieve Docker image tags and installation resources for worker node deployment and version management across different environments.
OneTrust Inventory API
APIs used to create and manage inventory records for supported schema types (processing-activities, vendors, assets, entities).
OneTrust Inventory Hierarchies API
APIs used to list, link, and unlink child inventories under a root inventory to model organizational or data-flow trees.
OneTrust Inventory Management Controller API
The inventory-management-controller API from OneTrust — 3 operation(s) for inventory-management-controller.
OneTrust Inventory Relationships V1 API
APIs used to create, update, and delete bidirectional links between inventories and to manage associations to related items (including personal data).
OneTrust Inventory Relationships V2 API
The Inventory Relationships V2 APIs are used to manage V2 inventory relationships.
OneTrust Inventory Schema API
APIs used to define and maintain schema attributes that shape inventory data collection and validation.
OneTrust Issues API
The Issues APIs are used to manage issues, issue tasks, and issue relationships.
OneTrust Jobs API
The Jobs APIs are used to manage scheduled jobs for bulk actions.
OneTrust Log Consent API
APIs to record and retrieve user consent transactions and preferences.
OneTrust Magic Link Tokens API
The Magic Link Tokens APIs are used to generate secure, one-time-use links for authentication.
OneTrust Magic Link Tokens V4 API
The Magic Link Tokens V4 APIs are used to manage secure, time-limited tokens for data subject verification and authentication.
OneTrust Metric Details API
APIs to manage Metric related Information.
OneTrust Mobile App Data API
The Mobile App Data API from OneTrust — 1 operation(s) for mobile app data.
OneTrust Model Management API
The Model Management APIs are used to conduct full management of Model objects.
OneTrust OAuth Token API
APIs to manage OAuth 2.0 authentication for secure API access. Generate access tokens using client credentials, retrieve token information, and manage API authentication for you...
OneTrust Object Attribute Management API
The Object Attribute Management APIs are used to manage object attributes.
OneTrust Object Management API
The Object Management APIs are used to manage objects created via Object Manager, including Projects, Models, and Datasets.
OneTrust Object Relationship Management API
The Object Relationship Management APIs are used to manage relationships between objects.
OneTrust Object Relationship Type Management API
The Object Relationship Type Management APIs are used to manage the types of relationships that can exist between objects.
OneTrust Object Task Management API
The Object Task Management APIs are used to manage tasks associated with objects.
OneTrust Object Type Management API
The Object Type Management APIs are used to manage custom object types.
OneTrust Organizations API
APIs to manage your organizational hierarchy and structure. Create, update, and delete organizations, define parent-child relationships, and configure organization-specific sett...
OneTrust Personal Data API
APIs used to list links to personal-data items for an inventory and update advanced attributes on those associations.
OneTrust Preference Center API
APIs to manage preference center configuration and user consent choices.
OneTrust Preference Centers API
The Preference Centers APIs are used to manage data subjects' preferences in a preference center.
OneTrust Preference Centers V2 API
The Preference Centers V2 APIs are used to manage preference centers using version 2 of the API.
OneTrust Preferences API
The Preferences API from OneTrust — 1 operation(s) for preferences.
OneTrust Preferences V2 API
The Consent Interfaces APIs are used by Consent & Preferences user interfaces to retrieve data subjects' preferences.
OneTrust Privacy Notice V2 API
APIs used to list privacy notices, fetch versions for a notice, and get the notice version active on a given date/time.
OneTrust Project Management API
The Project Management APIs are used to conduct full management of Project objects.
OneTrust Purpose Preferences API
The Purpose Preferences APIs are used to manage preferences related to specific data collection purposes.
OneTrust Purposes API
The Purposes APIs are used to manage the reasons for which data is collected.
OneTrust Purposes V2 API
The Purposes V2 APIs are used to manage purposes using version 2 of the API.
OneTrust Receipts API
The Receipts APIs are used to manage records of consent transactions.
OneTrust Receipts V2 API
APIs for managing consent receipts (V2).
OneTrust Relationship Management API
The Relationship Management APIs are used to manage relationships between AI Governance entities.
OneTrust Request Queues API
APIs used to create, search, update, and manage privacy request queues.
OneTrust Resolutions API
APIs used to create, update, delete, and retrieve resolution codes for privacy requests and subtasks.
OneTrust Resources V3 API
V3 version APIs to manager Resources Type.
OneTrust Results Summary API
APIs used to share results summaries.
OneTrust Risk Actions API
APIs to manage risk workflow actions including submissions, approvals, exceptions, and stage transitions within the risk lifecycle.
OneTrust Risk Management API
APIs to manage risk configurations, scoring settings, categories, and metadata used across the risk management system.
OneTrust Risk Relationships API
APIs to manage relationships between risks and other entities including threats, vulnerabilities, controls, and inventory items.
OneTrust Risk Templates API
APIs to manage risk template retrieval operations, enabling users to access detailed risk template information including inherent and target risk levels, associated threats and ...
OneTrust Risks API
APIs to manage the complete risk lifecycle including creation, updates, deletion, search, and retrieval of risk details and attributes.
OneTrust Scan Jobs API
APIs to control scan job execution including creation, cancellation, status monitoring, and comprehensive job history retrieval with filtering and pagination support.
OneTrust Scan Profiles API
APIs to handle scan profile lifecycle management including creation, updates, deletion, and retrieval with support for catalog and catalog-scan types across various system platf...
OneTrust Scans API
The Scans APIs are used to manage website cookie scanning operations and results.
OneTrust SCIM Schemas V3 API
V3 version APIs to manager Schemas.
OneTrust Scripts API
The Scripts APIs are used to manage publishing of scripts to websites.
OneTrust Service Provider V3 API
V3 version APIs to manager the Service Provider.
OneTrust Subtasks API
APIs used to create, update, complete, and reprocess subtasks associated with privacy requests.
OneTrust System Credentials API
APIs used to create and update system credentials required for integrations, such as authentication keys and connection details.
OneTrust Tags API
APIs to manage tags for data classification, including creating new tags with various types and retrieving tag details with their associated terms.
OneTrust Targeted Data Discovery API
APIs used to add, update, and retrieve structured or unstructured data discovery results linked to privacy requests.
OneTrust Task Management API
The Task Management APIs are used to manage tasks associated with AI Governance entities.
OneTrust Tasks API
The Tasks APIs are used to manage tasks, including creation, updates, and retrieval.
OneTrust Template API
APIs to manage assessment template operations including import and export functionality for cross-tenant migration, retrieval of published template listings with type-based filt...
OneTrust Templates API
The Templates APIs are used to manage reusable consent templates that define the structure and behavior of consent experiences.
OneTrust Terms API
APIs to manage glossary terms, including creating new terms with custom attributes, retrieving term lists with search and pagination capabilities, accessing individual term deta...
OneTrust Threats API
APIs to handle threat library operations including threat creation, modification, deletion, and comprehensive search functionality with framework and category support.
OneTrust Training API
The Training API from OneTrust — 5 operation(s) for training.
OneTrust Transactions API
The Transactions APIs are used to manage consent transactions.
OneTrust Transactions V2 API
APIs for managing consent transactions.
OneTrust UC Purposes API
APIs to manage Universal Consent purposes and their associated metadata.
OneTrust User Groups API
APIs to manage user groups and their memberships. Create groups to organize users, assign permissions collectively, add or remove members, and retrieve information about existin...
OneTrust User Groups V2 API
APIs to manage user groups and their memberships. Create groups to organize users, assign permissions collectively, add or remove members, and retrieve information about existin...
OneTrust User Groups V3 API
V3 version APIs to manager User Groups.
OneTrust Users V2 API
APIs to manage users and their memberships and access levels.
OneTrust Users V3 API
V3 version APIs to manager Users.
OneTrust Vendors API
APIs to manage third-party vendor information and their data processing activities.
OneTrust Verification Methods API
APIs used to create, update, and retrieve methods for verifying a data subject's identity.
OneTrust Vulnerabilities API
APIs to manage vulnerabilities in the vulnerability library including creation, updates, deletion, and retrieval with support for bulk operations and custom attributes.
OneTrust Websites V2 API
The Websites V2 API from OneTrust — 1 operation(s) for websites v2.
OneTrust Workflows V2 API
APIs used to import and export workflows in JSON format for version 2 workflows.
OneTrust Workpapers API
APIs to handle audit workpaper operations including testing results, sampling outcomes, interview findings, control assessments, and workpaper attribute management.
Scroll for all 138
Open Collections 1
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONMCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
OneTrust Developer Portal MCP Server
OneTrust hosts a public remote MCP server on its developer portal. It is documented on a dedicated "MCP Server" page in the API reference, requires no authentication headers, an...
MCP SERVERPricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Onetrust Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Onetrust Finops
FINOPSEvent Specifications 1
AsyncAPI definitions for this provider's event-driven and streaming APIs.
Onetrust Webhooks
ASYNCAPISecurity Posture 4
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Scopes 1
OAuth scopes governing access to this provider's APIs.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 5
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 7
Pagination, idempotency, versioning, errors, and events
Scroll for all 7
Build 4
SDKs, sample code, and the tooling you integrate with
Access & Security 7
Authentication, authorization, and security posture
Scroll for all 7
Operate 5
Status, limits, changes, and where to get help
Commercial 5
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Other 39
Properties that don't map to a standard resource type
Scroll for all 39
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.