# P0 Security

**Canonical:** https://apis.io/providers/p0-security/  
**Website:** https://docs.p0.dev/  
**APIs profiled:** 2

P0 Security is a cloud-native Privileged Access Management (PAM) platform that governs runtime authorization for human users, machine/service accounts, and AI agents across hybrid and multi-cloud environments. Its AuthZ Control Plane enforces just-in-time (JIT), least-privilege access to AWS, Google Cloud, Azure, Oracle Cloud, Kubernetes, databases, SSH hosts, Okta, and Google Workspace — provisioning short-lived credentials on request, routing approvals through Slack, Microsoft Teams, the web app, or the CLI, and automatically revoking access when it expires. P0 also provides an access inventory and identity graph, posture scanning for over-privileged and stale access, service-account key rotation, and an agentic authorization control plane with a self-hosted MCP Gateway that enforces least-privilege policy on every MCP tool call. Developers integrate P0 through the official p0 CLI, a Terraform provider, and a bearer-authenticated Just-in-Time Access API (Command, Permission Request, and Access Policies).

## Kin Score — 43.6 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 43.6).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 57.3 |
| Governance | 30.3 |
| Contract Governance | 30.3 |
| Operational Transparency | 18.4 |
| Developer Ergonomics | 49.4 |
| Commercial Clarity | 28.9 |
| Access Clarity | 28.9 |

## Agent readiness — 26.1 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (2)

- **P0 Security Command API** — Submit commands that trigger access workflows.
- **P0 Security Permission Requests API** — Approve, deny, or revoke just-in-time access requests.

## MCP servers (1)

- **P0 MCP Gateway** — The P0 MCP Gateway is a self-hosted runtime enforcement layer for agentic authorization. It sits in the data path between AI agents (MCP clients) and upstream MCP servers: it pr...

## Agentic access (1)

- **P0 Security Agentic Access** — 4 operations · 4 acting · 1 human-in-the-loop

## Security (3)

- **P0 Security Authentication** — http · 1 scheme
- **P0 Security Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **P0 Security Trust Center** — SOC 2 Type II

## Tags

Company, Security, Privileged Access Management, Identity and Access Management, Just-In-Time Access, Cloud Security, Authorization, Zero Trust, Agentic Access, MCP

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/p0-security/). Scores are computed from the provider's own public artifacts under a published rubric.
