Surf AI

Surf AI is an agentic security-operations platform that helps CISOs and modern security teams operationalize their entire program with specialized AI agents. It connects across identity, cloud, SaaS, and data systems to continuously monitor assets, surface exposures, trace issues to their owners, and drive automated remediation so teams can shrink the attack surface before it is exploited. The company integrates with 60+ security, identity, cloud, SIEM, and business tools, and is backed by Accel, Cyberstarts, and Boldstart Ventures. This API Evangelist profile was enriched from public sources; Surf AI markets an enterprise platform and does not publish a public developer API surface.

Surf AI is profiled on the APIs.io network. Tagged areas include Company, Ai, Security, Cybersecurity, and Security Operations.

Surf AI’s developer surface includes engineering blog and 6 more developer resources.

8.6/100 minimal ▬ flat Agent 7/100 human only Full breakdown ↓
scored 2026-07-27 · rubric v0.5
0 APIs
CompanyAiSecurityCybersecuritySecurity OperationsExposure ManagementAgentic AI

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 8.6/100 · minimal
Contract Quality 0.0 / 25
Developer Ergonomics 0.4 / 20
Commercial Clarity 0.0 / 20
Operational Transparency 1.4 / 13
Governance 0.0 / 12
Discoverability 6.8 / 10
Agent readiness — 7/100 · human only
Machine-Readable Contract 0 / 18
Agentic Access Contract 0 / 15
MCP Server 0 / 12
Machine-Readable Auth 0 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 4 / 4
Consent & Bot Identity 3 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/surf-ai: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Surf Ai Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Surf Ai Vulnerability Disclosure

security.txt · contact published

SECURITY

Resources

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Access & Security 4

Authentication, authorization, and security posture

Company 2

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: surf-ai
accessModel:
  pricing: unknown
  onboarding: unknown
  trial: false
  try_now: false
  public: false
  label: Unknown
  confidence: low
  source: []
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/surf-ai.png
name: Surf AI
description: Surf AI is an agentic security-operations platform that helps CISOs and modern security teams operationalize
  their entire program with specialized AI agents. It connects across identity, cloud, SaaS, and data systems to continuously
  monitor assets, surface exposures, trace issues to their owners, and drive automated remediation so teams can shrink the
  attack surface before it is exploited. The company integrates with 60+ security, identity, cloud, SIEM, and business tools,
  and is backed by Accel, Cyberstarts, and Boldstart Ventures. This API Evangelist profile was enriched from public sources;
  Surf AI markets an enterprise platform and does not publish a public developer API surface.
url: https://raw.githubusercontent.com/api-evangelist/surf-ai/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- accel
- cyberstarts
- boldstart-ventures
x-tier: stub
x-tier-reason: portfolio-lead
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-21'
tags:
- Company
- Ai
- Security
- Cybersecurity
- Security Operations
- Exposure Management
- Agentic AI
apis: []
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: Website
  url: https://www.surf.ai/
- type: Blog
  url: https://www.surf.ai/blog
- type: WellKnown
  url: well-known/surf-ai-well-known.yml
- type: SecurityTxt
  url: well-known/surf-ai-security.txt
- type: Security
  url: security/surf-ai-vulnerability-disclosure.yml
- type: VulnerabilityDisclosure
  url: security/surf-ai-vulnerability-disclosure.yml
- type: DomainSecurity
  url: security/surf-ai-domain-security.yml
x-enrichment:
  date: '2026-07-21'
  status: minimal
  artifacts_added: 4
  pass: local-v1