Secure Code Warrior website screenshot

Secure Code Warrior

Secure Code Warrior is a developer-first security platform that provides security training, coaching, and assessments to help developers write secure code from the start. The platform offers over 50 programming language and framework combinations, covering OWASP Top 10 and CWE vulnerability categories through interactive challenges, assessments, tournaments, and guided learning courses. Secure Code Warrior exposes a REST API supporting user management, training progress reporting, assessment assignment and tracking, tournament management, metrics, and audit logging, with GitHub and CI/CD pipeline integrations for contextual in-workflow security coaching.

Secure Code Warrior publishes 10 APIs on the APIs.io network, including Assessments API, Audit API, Courses API, and 7 more. Tagged areas include Application Security, Developer Training, Security Education, AppSec, and Secure Coding.

The Secure Code Warrior catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

Secure Code Warrior’s developer surface includes authentication, documentation, getting-started guide, code examples, engineering blog, and 14 more developer resources.

52.3/100 developing ▬ flat Agent 32/100 agent aware Full breakdown ↓
scored 2026-08-05 · rubric v0.9.1
AccessFreemiumSelf serve⚡ Free to try
11 APIs
Application SecurityDeveloper TrainingSecurity EducationAppSecSecure CodingDevSecOps

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-05 · rubric v0.9.1
Composite quality — 52.3/100 · developing
Contract Quality 16.8 / 25
Developer Ergonomics 6.5 / 20
Commercial Clarity 9.5 / 20
Operational Transparency 4.8 / 13
Governance 8.3 / 12
Discoverability 6.5 / 10
Agent readiness — 32/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/secure-code-warrior: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 11

Individual APIs this provider publishes, each with its own machine-readable definition.

Secure Code Warrior Direct Linking API

The Secure Code Warrior Direct Linking API is a RESTful JSON service that allows partners to retrieve application security training material including links to explainer videos ...

Secure Code Warrior Assessments API

The Assessments API from Secure Code Warrior — 3 operation(s) for assessments.

Secure Code Warrior Audit API

The Audit API from Secure Code Warrior — 1 operation(s) for audit.

Secure Code Warrior Courses API

The Courses API from Secure Code Warrior — 2 operation(s) for courses.

Secure Code Warrior Learning API

The Learning API from Secure Code Warrior — 2 operation(s) for learning.

Secure Code Warrior Metrics API

The Metrics API from Secure Code Warrior — 3 operation(s) for metrics.

Secure Code Warrior Programs API

The Programs API from Secure Code Warrior — 1 operation(s) for programs.

Secure Code Warrior Teams API

The Teams API from Secure Code Warrior — 3 operation(s) for teams.

Secure Code Warrior Tournaments API

The Tournaments API from Secure Code Warrior — 2 operation(s) for tournaments.

Secure Code Warrior Training API

The Training API from Secure Code Warrior — 5 operation(s) for training.

Secure Code Warrior Users API

The Users API from Secure Code Warrior — 4 operation(s) for users.

Scroll for all 11

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Secure Code Warrior Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Secure Code Warrior Context

25 classes · 2 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Secure Code Warrior API Rules

5 rules · 3 warnings 2 info

SPECTRAL

Secure Code Warrior API Rules

10 rules · 2 errors 6 warnings 2 info

SPECTRAL

JSON Schema 1

Standalone JSON Schema definitions for this provider's data models.

Secure Code Warrior User

9 properties

JSON SCHEMA

JSON Structure 1

JSON Structure definitions describing this provider's data shapes.

Secure Code Warrior Training Structure

14 properties

JSON STRUCTURE

Examples 1

Example request and response payloads for these APIs.

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Secure Code Warrior Authentication

apiKey · 1 scheme

SECURITY

Secure Code Warrior Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Secure Code Warrior Agentic Access

31 operations · 10 acting

31 operations · 10 acting

AGENTIC

Resources

Get Started 1

Portal, sign-up, and the first successful call

Documentation 4

Reference material describing how the API behaves

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 4

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Company 2

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: secure-code-warrior
url: https://raw.githubusercontent.com/api-evangelist/secure-code-warrior/refs/heads/main/apis.yml
apis:
- aid: secure-code-warrior:secure-code-warrior-direct-linking-api
  name: Secure Code Warrior Direct Linking API
  tags:
  - Security Training
  - Application Security
  - CWE
  - OWASP
  - GitHub Integration
  humanURL: https://help.securecodewarrior.com/hc/en-us/articles/900005309583-Direct-Linking-API-Documentation
  properties:
  - url: https://help.securecodewarrior.com/hc/en-us/articles/900005309583-Direct-Linking-API-Documentation
    type: Documentation
  description: The Secure Code Warrior Direct Linking API is a RESTful JSON service that allows partners to retrieve application
    security training material including links to explainer videos and training exercises in over 50 programming languages
    and frameworks. The API maps Common Weakness Enumeration (CWE) and OWASP vulnerability references to contextually relevant
    training content, enabling integration with GitHub, SARIF code scanning alerts, and other developer workflow tools.
- aid: secure-code-warrior:secure-code-warrior-assessments-api
  name: Secure Code Warrior Assessments API
  description: The Assessments API from Secure Code Warrior — 3 operation(s) for assessments.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Assessments
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-assessments-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-audit-api
  name: Secure Code Warrior Audit API
  description: The Audit API from Secure Code Warrior — 1 operation(s) for audit.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Audit
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-audit-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-courses-api
  name: Secure Code Warrior Courses API
  description: The Courses API from Secure Code Warrior — 2 operation(s) for courses.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Courses
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-courses-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-learning-api
  name: Secure Code Warrior Learning API
  description: The Learning API from Secure Code Warrior — 2 operation(s) for learning.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Learning
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-learning-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-metrics-api
  name: Secure Code Warrior Metrics API
  description: The Metrics API from Secure Code Warrior — 3 operation(s) for metrics.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Metrics
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-metrics-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-programs-api
  name: Secure Code Warrior Programs API
  description: The Programs API from Secure Code Warrior — 1 operation(s) for programs.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Programs
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-programs-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-teams-api
  name: Secure Code Warrior Teams API
  description: The Teams API from Secure Code Warrior — 3 operation(s) for teams.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Teams
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-teams-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-tournaments-api
  name: Secure Code Warrior Tournaments API
  description: The Tournaments API from Secure Code Warrior — 2 operation(s) for tournaments.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Tournaments
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-tournaments-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-training-api
  name: Secure Code Warrior Training API
  description: The Training API from Secure Code Warrior — 5 operation(s) for training.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Training
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-training-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
- aid: secure-code-warrior:secure-code-warrior-users-api
  name: Secure Code Warrior Users API
  description: The Users API from Secure Code Warrior — 4 operation(s) for users.
  humanURL: https://portal-api.securecodewarrior.com/api/docs/v2/
  baseURL: https://portal-api.securecodewarrior.com/api/v2
  tags:
  - Users
  properties:
  - type: OpenAPI
    url: openapi/secure-code-warrior-users-api-openapi.yml
  - type: Documentation
    url: https://portal-api.securecodewarrior.com/api/docs/v2/
  - type: Documentation
    url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
name: Secure Code Warrior
tags:
- Application Security
- Developer Training
- Security Education
- AppSec
- Secure Coding
- DevSecOps
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/secure-code-warrior.png
access: 3rd-Party
created: '2026-05-02'
modified: '2026-05-19'
position: Consuming
description: Secure Code Warrior is a developer-first security platform that provides security training, coaching, and assessments
  to help developers write secure code from the start. The platform offers over 50 programming language and framework combinations,
  covering OWASP Top 10 and CWE vulnerability categories through interactive challenges, assessments, tournaments, and guided
  learning courses. Secure Code Warrior exposes a REST API supporting user management, training progress reporting, assessment
  assignment and tracking, tournament management, metrics, and audit logging, with GitHub and CI/CD pipeline integrations
  for contextual in-workflow security coaching.
integrations:
- name: asterisk
- name: shield lock
- name: code blocks
- name: service toolbox
- name: school
- name: plug connect
- name: list alt
- name: finance chip
- name: tech
- name: government
- name: directions car
- name: health cross
- name: shoppingmode
- name: security update good
- name: ai
- name: typcn warning outline
- name: simple icons owasp
- name: mdi company
- name: construction
- name: fingerprint
- name: hub
- name: article
- name: event
- name: tabler route
- name: sidekickicons checklist boxes
- name: mdi partnership outline
- name: carbon network 1
- name: mdi contact outline
- name: check box
- name: shield locked
- name: help center
- name: accessibility
- name: SCW
- name: person book
- name: news
- name: cases
- name: Subpage Hero BG
- name: our approach deco
- name: Developer tools
- name: Security Tools
- name: Automation Tools
- name: Educational Tools
- name: Scalable and engaging
- name: Languages and frameworks
- name: Fun & interactive
- name: partner page image
- name: Quotes
- name: colgate palmolive
- name: 66423e90d33575f8134529c1 Derek Fisher
- name: 66423e5d82da5cde6eb735ea Mads Howard
- name: nab
- name: 6695668dcf203e2ba365c744 image 131
- name: image 15
- name: image 16
- name: image 17
- name: image 18
- name: websights
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
specificationVersion: '0.19'
common:
- type: AgenticAccess
  url: agentic-access/secure-code-warrior-agentic-access.yml
- type: TrustCenter
  url: security/secure-code-warrior-trust-center.yml
- type: DomainSecurity
  url: security/secure-code-warrior-domain-security.yml
- type: Authentication
  url: authentication/secure-code-warrior-authentication.yml
- name: Website
  url: https://www.securecodewarrior.com
  type: Website
- name: Portal API Documentation
  url: https://portal-api.securecodewarrior.com/api/docs/v2/
  type: Documentation
- name: Help Center API Section
  url: https://help.securecodewarrior.com/hc/en-us/sections/360006026452-API
  type: Documentation
- name: Direct Linking API
  url: https://help.securecodewarrior.com/hc/en-us/articles/900005309583-Direct-Linking-API-Documentation
  type: Documentation
- name: GitHub Organization
  url: https://github.com/SecureCodeWarrior
  type: GitHubOrganization
- name: GitHub App
  url: https://github.com/marketplace/secure-code-warrior-for-github
  type: GitHubApp
- name: How to Enable API Access
  url: https://help.securecodewarrior.com/hc/en-us/articles/360036036512-How-to-enable-API-access
  type: GettingStarted
- url: json-schema/secure-code-warrior-user-schema.json
  type: JSONSchema
- url: json-structure/secure-code-warrior-training-structure.json
  type: JSONStructure
- url: json-ld/secure-code-warrior-context.jsonld
  type: JSONLDContext
- url: examples/secure-code-warrior-get-leaderboard-example.json
  type: Examples
- url: rules/secure-code-warrior-rules.yml
  type: SpectralRuleset
- url: vocabulary/secure-code-warrior-vocabulary.yml
  type: Vocabulary
- type: Integrations
  url: https://www.securecodewarrior.com/product/integrations
- type: LlmsText
  url: https://www.securecodewarrior.com/llms.txt
- url: https://www.securecodewarrior.com/blog
  type: Blog