StackHawk
StackHawk is an application and API security testing platform that helps engineering teams find, triage, and fix security vulnerabilities in their APIs and web applications. It provides Dynamic Application Security Testing (DAST) with deep OpenAPI spec integration, CI/CD pipeline automation, AI-powered spec generation, and an AppSec Intelligence platform for program-level visibility across the software development lifecycle.
StackHawk publishes 14 APIs on the APIs.io network, including Api Authentication API, Applications API, Global Configuration API, and 11 more. Tagged areas include API Security, Application Security, DAST, Security Testing, and Vulnerability Management.
The StackHawk catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.
StackHawk’s developer surface includes authentication, documentation, API reference, getting-started guide, engineering blog, changelog, pricing, and 10 more developer resources.
Kin Score
APIs 14
Individual APIs this provider publishes, each with its own machine-readable definition.
StackHawk Api Authentication API
Token management and login
StackHawk Applications API
Manage applications and environments
StackHawk Global Configuration API
Organization-level configurations
StackHawk Hosted OAS API
OpenAPI spec uploads and mapping
StackHawk Organization Teams API
Team creation and member assignment
StackHawk Organizations API
Member management and audit logs
StackHawk Perch API
Scan command control
StackHawk Profile Scans API
Profile scan analysis
StackHawk Reports API
Scan report generation
StackHawk Repositories API
Repository management
StackHawk Scan Configuration API
Scan configuration file management
StackHawk Scan Policies API
Security policy management
StackHawk Scan Results API
Scan result reporting and findings
StackHawk User API
Authenticated user information
Scroll for all 14
Postman Collections 14
Ready-to-run Postman collections for exercising this provider's APIs.
Scroll for all 14
Open Collections 16
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONStackHawk Api Authentication API
OPEN COLLECTIONStackHawk Api Authentication Applications API
OPEN COLLECTIONStackHawk Api Authentication Global Configuration API
OPEN COLLECTIONStackHawk Api Authentication Hosted OAS API
OPEN COLLECTIONStackHawk Api Authentication Organization Teams API
OPEN COLLECTIONStackHawk Api Authentication Organizations API
OPEN COLLECTIONStackHawk Api Authentication Perch API
OPEN COLLECTIONStackHawk Api Authentication Profile Scans API
OPEN COLLECTIONStackHawk Api Authentication Reports API
OPEN COLLECTIONStackHawk Api Authentication Repositories API
OPEN COLLECTIONStackHawk Api Authentication Scan Configuration API
OPEN COLLECTIONStackHawk Api Authentication Scan Policies API
OPEN COLLECTIONStackHawk Api Authentication Scan Results API
OPEN COLLECTIONStackHawk Api Authentication User API
OPEN COLLECTIONStackHawk API
OPEN COLLECTIONScroll for all 16
Pricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Stackhawk Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Stackhawk Finops
FINOPSSemantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Stackhawk Context
JSON-LDSpectral Rules 2
Spectral governance rulesets for linting and validating these APIs.
StackHawk API Rules
SPECTRALStackHawk API Rules
SPECTRALJSON Schema 2
Standalone JSON Schema definitions for this provider's data models.
StackHawk Security Finding
JSON SCHEMAStackHawk Scan
JSON SCHEMAJSON Structure 1
JSON Structure definitions describing this provider's data shapes.
Stackhawk Scan Structure
JSON STRUCTUREExamples 1
Example request and response payloads for these APIs.
Security Posture 4
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 2
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 2
MCP servers, agent skills, and machine-readable catalogs
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 4
Authentication, authorization, and security posture
Operate 1
Status, limits, changes, and where to get help
Commercial 1
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for providers
9 MCP tools reach this
find_providersBrowse and filter every provider in the catalog.get_provider_artifactsEvery artifact this provider publishes, grouped by type.get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.get_provider_toolsEvery MCP tool they ship, with the operation each wraps.get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.get_provider_ratingPRO — composite, band, trend and facet scores.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
curl "https://apis.io/api/v1/providers/stackhawk"
curl "https://apis.io/api/v1/providers?limit=25"
curl "https://apis.io/api/v1/providers/stackhawk/operations?limit=25"
curl "https://apis.io/api/v1/providers/stackhawk/evidence"
Discovery needs no key. Ratings and market analysis are Pro.