# Token

**Canonical:** https://apis.io/providers/token/  
**Website:** https://www.token.security/  
**APIs profiled:** 0

Token Security is a cybersecurity company that secures non-human identities (NHIs) and AI agents across on-premises, hybrid, and cloud environments. Its platform continuously discovers every AI agent, service account, and machine identity, maps ownership and security posture, detects identity threats, and automates remediation. Capabilities span NHI inventory, security posture management, lifecycle management, secrets, and identity threat detection and response. The company also ships the Token MCP Server and a native Token AI Agent so security teams can query and act on NHI data conversationally from Claude, ChatGPT, Gemini, or Cursor. Backed by Bloomberg Beta, GGV Capital, and Qiming, Token Security serves enterprise security teams, CISOs, and IAM professionals governing machine and agent identity at scale.

## Kin Score — 16.7 / 100 (emerging)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 16.7).

| Facet | Score |
|---|---|
| Discoverability | 50.0 |
| Contract Quality | 0.0 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 13.2 |
| Developer Ergonomics | 2.4 |
| Commercial Clarity | 36.8 |
| Access Clarity | 36.8 |

## Agent readiness — 4.1 (human-only)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Unknown — onboarding: unknown, pricing: unknown, trial: no (confidence: low).

## MCP servers (1)

- **Token MCP Server** — The Token MCP Server exposes the Token Security non-human identity (NHI) platform to AI assistants and agents over the Model Context Protocol. It lets an operator query and act ...

## Security (3)

- **Token Domain Security** — TLSv1.3 · HSTS · DMARC
- **Token Vulnerability Disclosure** — disclosure policy published
- **Token Trust Center** — SOC 2 Type 2, ISO/IEC 27001:2022

## Tags

Company, Security, Cybersecurity, Non-Human Identity, Identity and Access Management, AI Agents, MCP

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/token/). Scores are computed from the provider's own public artifacts under a published rubric.
