# Qoala

**Canonical:** https://apis.io/providers/qoala/  
**Website:** https://qoala.com/  
**APIs profiled:** 2

Qoala is a Southeast Asian omni-channel insurtech, headquartered in Jakarta and operating across Indonesia, Malaysia, Thailand and Vietnam, that distributes personal and embedded insurance through a consumer app, an agent platform (Qoala Plus) and a partner/enterprise API. Qoala for Enterprise exposes a partner-facing REST API covering policy issuance and claim handling across travel (flight, train, bus, hotel, experience), gadget, goods, vehicle, logistics, health, credit and credit-life product lines. Policy creation is asynchronous: partners POST a quotation, receive a quotation number as acknowledgement, and are notified of the issued policy through a partner callback webhook. Authentication is by partner API key in the x-api-key header.

## Kin Score — 43.3 / 100 (developing)

Scored 2026-08-12 under rubric 0.11.0. Trend: flat (+0.0 from 43.3).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 66.0 |
| Governance | 11.5 |
| Operational Transparency | 13.2 |
| Developer Ergonomics | 66.8 |
| Commercial Clarity | 23.7 |

Regulatory layer — **Insurance**: 31.8 (matched via tags).

## Agent readiness — 58.8 (agent-native)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| MCP Server | yes |
| Auth Clarity | yes |
| Idempotency | documented |
| Error Semantics | documented |
| OpenAPI Examples | verified |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (2)

- **Qoala Authentication API** — Session management for the Qoala for Enterprise platform — create an authentication session from an email and security code, and refresh it with a refresh token. Returns a JWT a...
- **Qoala API Specification API** — Policy API documentation consist of create policy, get policy detail or status, policy cancellation and policy activation.

## MCP servers (2)

- **mcp**
- **qoala-mcp.yml**

## Agentic access (1)

- **Qoala Agentic Access** — 51 operations · 35 acting

## Security (2)

- **Qoala Authentication** — apiKey · 1 scheme
- **Qoala Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Insurance, Insurtech, Embedded Insurance, Policies, Claims, Southeast Asia, Indonesia, Financial Services, Partner API

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/qoala/). Scores are computed from the provider's own public artifacts under a published rubric.
