# OWASP

**Canonical:** https://apis.io/providers/owasp/  
**Website:** https://owasp.org/  
**APIs profiled:** 1

The Open Worldwide Application Security Project (OWASP) is a nonprofit foundation that works to improve the security of software through community-led open source projects, hundreds of chapters worldwide, and educational resources. OWASP does not provide a centralized public API, but maintains many open source projects, standards (such as the OWASP Top 10 and ASVS), and tools (such as ZAP) that include APIs.

## Kin Score — 13.8 / 100 (emerging)

Scored 2026-08-25 under rubric 0.14.0. Trend: flat (+0.0 from 13.8).

| Facet | Score |
|---|---|
| Discoverability | 59.3 |
| Contract Quality | 0.0 |
| Governance | 0.0 |
| Contract Governance | 0.0 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 16.7 |
| Commercial Clarity | 15.8 |
| Access Clarity | 15.8 |

## Agent readiness — 2.5 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | no |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## Access

Freemium — onboarding: unknown, pricing: freemium, trial: no (confidence: medium).

## APIs (1)

- **OWASP** — Open Worldwide Application Security Project providing resources, tools, projects, and standards for application and web security.

## Security (2)

- **Owasp Domain Security** — TLSv1.3 · HSTS · DMARC
- **Owasp Vulnerability Disclosure** — security.txt · contact published

## Plans (1)

- **Owasp Plans Pricing**

## Tags

Application Security, Open-Source, Security, Web Security, Standards

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/owasp/). Scores are computed from the provider's own public artifacts under a published rubric.
