Socket
Socket is a developer-first software supply chain security platform that protects applications from supply chain attacks by deeply inspecting open source dependencies across npm, PyPI, Maven, Go, NuGet, RubyGems, Cargo and more. Socket detects malware, hidden code, typosquats, install scripts, protestware, and risky capabilities in packages, scores their quality and risk, and enforces security and license policies across repositories through a REST API, CLI, GitHub App, MCP server, and static reachability analysis. Founded by Feross Aboukhadijeh and backed by a16z, Socket is used by engineering teams at organizations including Vercel, Replit, and Brave.
Socket publishes 20 APIs on the APIs.io network, including alerts API, api-tokens API, audit-log API, and 17 more. Tagged areas include Company, Security, Software Supply Chain Security, Dependency Scanning, and Software Composition Analysis.
The Socket catalog on APIs.io includes 1 event-driven AsyncAPI specification.
Socket’s developer surface includes documentation, getting-started guide, API reference, support, authentication, changelog, CLI, and 27 more developer resources.
Kin Score
APIs 20
Individual APIs this provider publishes, each with its own machine-readable definition.
Socket alerts API
The alerts API from Socket — 6 operation(s) for alerts.
Socket api-tokens API
The api-tokens API from Socket — 6 operation(s) for api-tokens.
Socket audit-log API
The audit-log API from Socket — 1 operation(s) for audit-log.
Socket dependencies API
The dependencies API from Socket — 2 operation(s) for dependencies.
Socket deprecated API
The deprecated API from Socket — 17 operation(s) for deprecated.
Socket diff-scans API
The diff-scans API from Socket — 7 operation(s) for diff-scans.
Socket fixes API
The fixes API from Socket — 1 operation(s) for fixes.
Socket full-scans API
The full-scans API from Socket — 13 operation(s) for full-scans.
Socket license-policy API
The license-policy API from Socket — 4 operation(s) for license-policy.
Socket metadata API
The metadata API from Socket — 5 operation(s) for metadata.
Socket org-settings API
The org-settings API from Socket — 2 operation(s) for org-settings.
Socket org-snapshots API
The org-snapshots API from Socket — 1 operation(s) for org-snapshots.
Socket packages API
The packages API from Socket — 2 operation(s) for packages.
Socket repo-labels API
The repo-labels API from Socket — 5 operation(s) for repo-labels.
Socket repos API
The repos API from Socket — 2 operation(s) for repos.
Socket security-policy API
The security-policy API from Socket — 1 operation(s) for security-policy.
Socket telemetry API
The telemetry API from Socket — 1 operation(s) for telemetry.
Socket threat-feed API
The threat-feed API from Socket — 1 operation(s) for threat-feed.
Socket triage API
The triage API from Socket — 2 operation(s) for triage.
Socket webhooks API
The webhooks API from Socket — 2 operation(s) for webhooks.
Scroll for all 20
MCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
Socket MCP Server
Socket's official MCP server exposes the depscore tool so AI assistants can query dependency scores from the Socket API; hosted at https://mcp.socket.dev/ or run locally.
MCP SERVERRate Limits 1
Documented rate limits and quota policies.
Socket Rate Limits
RATE LIMITSEvent Specifications 1
AsyncAPI definitions for this provider's event-driven and streaming APIs.
Socket Webhooks
ASYNCAPISecurity Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Scopes 1
OAuth scopes governing access to this provider's APIs.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 5
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 6
Pagination, idempotency, versioning, errors, and events
Build 4
SDKs, sample code, and the tooling you integrate with
Access & Security 6
Authentication, authorization, and security posture
Operate 5
Status, limits, changes, and where to get help
Commercial 1
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API