OneTrust website screenshot

OneTrust

OneTrust is an enterprise privacy, security, ethics, and ESG platform. Its developer portal exposes APIs across Privacy Management, Third-Party Risk (Vendorpedia), Cookie Consent (Server-Side CMP), Certification Automation, GRC, AI Guard, and a broad SDK suite for mobile, OTT/CTV, and web.

OneTrust publishes 7 APIs on the APIs.io network, including AI Governance API, Applications API, Consent API, and 4 more. Tagged areas include Privacy, GRC, Compliance, Consent, and TPRM.

OneTrust’s developer surface includes authentication, engineering blog, and 11 more developer resources.

33.4/100 thin ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-08-05 · rubric v0.9.1
AccessEnterpriseSelf serve
12 APIs
PrivacyGRCComplianceConsentTPRM

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-05 · rubric v0.9.1
Composite quality — 33.4/100 · thin
Contract Quality 13.6 / 25
Developer Ergonomics 2.6 / 20
Commercial Clarity 7.4 / 20
Operational Transparency 3.4 / 13
Governance 0.0 / 12
Discoverability 6.5 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/onetrust: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 12

Individual APIs this provider publishes, each with its own machine-readable definition.

OneTrust Platform API

Cross-product REST API reference for the OneTrust platform covering privacy, GRC, ethics, third-party risk, and consent.

Server-Side CMP API

Server-Side Consent Management Platform API for persisting consent, retrieving banner/preference center UI, and logging consent. Supports IAB TCF 2.3 and GPP.

OneTrust AI Guard API

REST API for AI risk classifications and metrics. Includes POST /classifications/v1, POST /metric, and GET /health.

OneTrust Third-Party Risk (Vendorpedia) API

Vendor risk and assessment APIs for the OneTrust Third-Party Risk Management module (formerly Vendorpedia).

OneTrust SDK Suite

Mobile (iOS, Android), OTT/CTV (Roku, Fire TV, Apple TV, Android TV, Web OS, Tizen), and Website CMP SDKs.

OneTrust AI Governance API

The AI Governance API from OneTrust — 1 operation(s) for ai governance.

OneTrust Applications API

The Applications API from OneTrust — 1 operation(s) for applications.

OneTrust Consent API

The Consent API from OneTrust — 4 operation(s) for consent.

OneTrust Cookies API

The Cookies API from OneTrust — 3 operation(s) for cookies.

OneTrust Data Subjects API

The Data Subjects API from OneTrust — 2 operation(s) for data subjects.

OneTrust Domains API

The Domains API from OneTrust — 2 operation(s) for domains.

OneTrust Privacy Notices API

The Privacy Notices API from OneTrust — 2 operation(s) for privacy notices.

Scroll for all 12

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

OneTrust Platform API

OPEN COLLECTION

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Onetrust Rate Limits

1 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Onetrust Authentication

http · 1 scheme

SECURITY

Onetrust Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Onetrust Trust Center

SOC 2, ISO 27001, GDPR

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Onetrust Agentic Access

24 operations · 13 acting

24 operations · 13 acting

AGENTIC

Resources

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Build 1

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Operate 1

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 3

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: onetrust
url: https://raw.githubusercontent.com/api-evangelist/onetrust/refs/heads/main/apis.yml
name: OneTrust
kind: company
description: OneTrust is an enterprise privacy, security, ethics, and ESG platform. Its developer portal exposes APIs across
  Privacy Management, Third-Party Risk (Vendorpedia), Cookie Consent (Server-Side CMP), Certification Automation, GRC, AI
  Guard, and a broad SDK suite for mobile, OTT/CTV, and web.
accessModel:
  pricing: enterprise
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Enterprise · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/onetrust.png
tags:
- Privacy
- GRC
- Compliance
- Consent
- TPRM
created: '2026-05-08'
modified: '2026-05-08'
specificationVersion: '0.19'
apis:
- aid: onetrust:platform-api
  name: OneTrust Platform API
  description: Cross-product REST API reference for the OneTrust platform covering privacy, GRC, ethics, third-party risk,
    and consent.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Privacy
  - GRC
  - REST
  properties:
  - type: Documentation
    url: https://developer.onetrust.com/onetrust/reference
  - type: GettingStarted
    url: https://developer.onetrust.com/onetrust/reference/quick-start-guide
- aid: onetrust:server-side-cmp
  name: Server-Side CMP API
  description: Server-Side Consent Management Platform API for persisting consent, retrieving banner/preference center UI,
    and logging consent. Supports IAB TCF 2.3 and GPP.
  humanURL: https://developer.onetrust.com/onetrust/docs
  tags:
  - Consent
  - CMP
  - Privacy
  - TCF
  - GPP
  properties:
  - type: Documentation
    url: https://developer.onetrust.com/onetrust/docs
- aid: onetrust:ai-guard
  name: OneTrust AI Guard API
  description: REST API for AI risk classifications and metrics. Includes POST /classifications/v1, POST /metric, and GET
    /health.
  humanURL: https://developer.onetrust.com/onetrust/docs
  tags:
  - AI
  - Risk
  - Classification
  properties:
  - type: Documentation
    url: https://developer.onetrust.com/onetrust/docs
- aid: onetrust:vendorpedia
  name: OneTrust Third-Party Risk (Vendorpedia) API
  description: Vendor risk and assessment APIs for the OneTrust Third-Party Risk Management module (formerly Vendorpedia).
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - TPRM
  - Vendor Risk
  - GRC
  properties:
  - type: Documentation
    url: https://developer.onetrust.com/onetrust/reference
- aid: onetrust:sdks
  name: OneTrust SDK Suite
  description: Mobile (iOS, Android), OTT/CTV (Roku, Fire TV, Apple TV, Android TV, Web OS, Tizen), and Website CMP SDKs.
  humanURL: https://developer.onetrust.com/onetrust/docs
  tags:
  - SDK
  - Mobile
  - OTT
  - Web
  properties:
  - type: Documentation
    url: https://developer.onetrust.com/onetrust/docs
- aid: onetrust:onetrust-ai-governance-api
  name: OneTrust AI Governance API
  description: The AI Governance API from OneTrust — 1 operation(s) for ai governance.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - AI Governance
  properties:
  - type: OpenAPI
    url: openapi/onetrust-ai-governance-api-openapi.yml
- aid: onetrust:onetrust-applications-api
  name: OneTrust Applications API
  description: The Applications API from OneTrust — 1 operation(s) for applications.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Applications
  properties:
  - type: OpenAPI
    url: openapi/onetrust-applications-api-openapi.yml
- aid: onetrust:onetrust-consent-api
  name: OneTrust Consent API
  description: The Consent API from OneTrust — 4 operation(s) for consent.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Consent
  properties:
  - type: OpenAPI
    url: openapi/onetrust-consent-api-openapi.yml
- aid: onetrust:onetrust-cookies-api
  name: OneTrust Cookies API
  description: The Cookies API from OneTrust — 3 operation(s) for cookies.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Cookies
  properties:
  - type: OpenAPI
    url: openapi/onetrust-cookies-api-openapi.yml
- aid: onetrust:onetrust-data-subjects-api
  name: OneTrust Data Subjects API
  description: The Data Subjects API from OneTrust — 2 operation(s) for data subjects.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Data Subjects
  properties:
  - type: OpenAPI
    url: openapi/onetrust-data-subjects-api-openapi.yml
- aid: onetrust:onetrust-domains-api
  name: OneTrust Domains API
  description: The Domains API from OneTrust — 2 operation(s) for domains.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Domains
  properties:
  - type: OpenAPI
    url: openapi/onetrust-domains-api-openapi.yml
- aid: onetrust:onetrust-privacy-notices-api
  name: OneTrust Privacy Notices API
  description: The Privacy Notices API from OneTrust — 2 operation(s) for privacy notices.
  humanURL: https://developer.onetrust.com/onetrust/reference
  tags:
  - Privacy Notices
  properties:
  - type: OpenAPI
    url: openapi/onetrust-privacy-notices-api-openapi.yml
common:
- type: AgenticAccess
  url: agentic-access/onetrust-agentic-access.yml
- type: TrustCenter
  url: security/onetrust-trust-center.yml
- type: DomainSecurity
  url: security/onetrust-domain-security.yml
- type: Authentication
  url: authentication/onetrust-authentication.yml
- type: GitHubOrganization
  url: https://github.com/onetrust
- type: LinkedIn
  url: https://www.linkedin.com/company/onetrust
- type: Website
  url: https://www.onetrust.com/
- type: Developer
  url: https://developer.onetrust.com/
- type: Plans
  url: plans/onetrust-plans-pricing.yml
- type: RateLimits
  url: rate-limits/onetrust-rate-limits.yml
- type: FinOps
  url: finops/onetrust-finops.yml
- type: Integrations
  url: https://www.onetrust.com/integrations/
- type: LlmsText
  url: https://developer.onetrust.com/llms.txt
- url: https://www.onetrust.com/blog/
  type: Blog
integrations:
- name: OneTrust logo lockup, black
- name: spinner
- name: Acoustic
- name: Acxiom
- name: Adobe
- name: ALTR
- name: Amazon API Gateway
- name: Amazon Athena
- name: Amazon Dynamo DB
- name: amazon RDS
- name: Amazon Redshift
- name: OneTrust logo symbol, white
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com