# StrongDM

**Canonical:** https://apis.io/providers/strongdm/  
**Website:** https://www.strongdm.com/  
**APIs profiled:** 1

StrongDM is a Zero Trust Privileged Access Management (PAM) platform that brokers and governs access to infrastructure — databases, servers, Kubernetes clusters, cloud resources, network devices, and internal web apps — through a central control plane. It enforces policy and authorization continuously with adaptive action controls, full session recording and audit, and no standing privileges. Automation is exposed through the StrongDM Admin API, a gRPC-based control-plane API that first-party SDKs (Go, Java, Python, Ruby, C#) wrap with REST-like ergonomics and request signing, plus a Terraform provider and the sdm command-line client. This profile was enriched by the API Evangelist pipeline from StrongDM's public developer surface.

## Kin Score — 37.9 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 37.9).

| Facet | Score |
|---|---|
| Discoverability | 75.9 |
| Contract Quality | 0.0 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 65.8 |
| Developer Ergonomics | 71.4 |
| Commercial Clarity | 26.3 |
| Access Clarity | 26.3 |

## Agent readiness — 11.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **StrongDM Admin API** — The StrongDM control-plane API for automating management of resources, accounts, roles, access grants, gateways, relays, secret stores, and audit logs. The transport is gRPC wit...

## Security (3)

- **Strongdm Authentication** — apiKey · 1 scheme
- **Strongdm Domain Security** — TLSv1.3 · HSTS · DMARC
- **Strongdm Trust Center** — SOC 2, PCI DSS, GDPR

## Tags

Company, Security, Privileged Access Management, Zero Trust, Access Management, Identity, Infrastructure, Audit, Compliance, DevOps

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/strongdm/). Scores are computed from the provider's own public artifacts under a published rubric.
