TransUnion website screenshot

TransUnion

A global information and insights company providing credit reporting, risk, fraud, and identity solutions. One of the three largest consumer credit bureaus in the United States, serving businesses and consumers across multiple international markets. Its credit and TruValidate decisioning APIs are contract-gated, but its TruContact Trusted Call Solutions business — acquired with Neustar in December 2021 — publishes an open, MIT-licensed OpenAPI for the STIR/SHAKEN call authentication and verification service.

TransUnion publishes 1 API on the APIs.io network: TruContact Trusted Call Solutions (STI-AS / STI-VS). Tagged areas include Financial, Credit Reporting, Risk, Identity, and Fraud.

TransUnion’s developer surface includes authentication, product news, engineering blog, and 21 more developer resources.

29.0/100 thin ▬ flat Agent 41/100 agent ready Full breakdown ↓
scored 2026-08-20 · rubric v0.12.0
3 APIs
FinancialCredit ReportingRiskIdentityFraudMarketingTelecommunicationsCall AuthenticationSTIR/SHAKEN

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-20 · rubric v0.12.0
Composite quality — 29.0/100 · thin
Contract Quality 11.1 / 21
Developer Ergonomics 3.9 / 17
Access Clarity 0.0 / 17
Operational Transparency 1.5 / 11
Contract Governance 1.7 / 10
Discoverability 6.1 / 9
Regulatory Posture 4.8 / 15
Agent readiness — 41/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 0 / 10
Documented Reversibility 0 / 6
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 5 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Regulatory Posture applies to this provider. Its tags matched the Telecommunications regime, so Regulatory Posture carries 15 points of the composite. If this regime is wrong for your business, say so on your provider repo — the applicability map is public and we will correct it.
The six quality facets above are damped to 85 points between them, because the conditional facet above carries the other 15. That is why each facet's contribution is shown against a damped maximum: raising a quality facet moves the composite by 85% of its nominal weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/transunion: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 3

Individual APIs this provider publishes, each with its own machine-readable definition.

TransUnion TruContact Trusted Call Solutions (STI-AS / STI-VS)

The STIR/SHAKEN call Authentication Service and Verification Service behind TransUnion TruContact Branded Communications. Nine POST operations sign SIP Identity headers (PASSpor...

TransUnion Global Developer Portal

TransUnion's API products for credit reporting, identity verification, fraud prevention and consumer risk decisioning. Access requires a business agreement with TransUnion and c...

TransUnion TruValidate Device Risk

Device recognition and fraud signals, formerly iovation FraudForce. Mobile SDKs collect a device "blackbox" that is submitted to a risk check from your servers. The API host api...

Open Collections 2

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Transunion Rate Limits

0 limits

RATE LIMITS

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Transunion Authentication

apiKey/ip-allowlist/mutualTLS · 3 schemes

SECURITY

Transunion Domain Security

TLSv1.3 · DMARC

SECURITY

Transunion Vulnerability Disclosure

Hackerone · security.txt · contact published

SECURITY

Resources

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 5

Pagination, idempotency, versioning, errors, and events

Build 3

SDKs, sample code, and the tooling you integrate with

Access & Security 4

Authentication, authorization, and security posture

Operate 1

Status, limits, changes, and where to get help

Commercial 1

Pricing, plans, and the legal terms of use

Company 7

The organization behind the API

Scroll for all 7

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: transunion
url: https://raw.githubusercontent.com/api-evangelist/transunion/refs/heads/main/apis.yml
name: TransUnion
type: Index
accessModel:
  pricing: contract
  onboarding: sales-gate
  trial: false
  try_now: false
  public: false
  label: Contract only
  confidence: high
  source:
  - plans/transunion-plans-pricing.yml
  generated: '2026-08-13'
  method: searched
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/transunion.png
tags:
- Financial
- Credit Reporting
- Risk
- Identity
- Fraud
- Marketing
- Telecommunications
- Call Authentication
- STIR/SHAKEN
description: A global information and insights company providing credit reporting, risk, fraud, and identity solutions. One
  of the three largest consumer credit bureaus in the United States, serving businesses and consumers across multiple international
  markets. Its credit and TruValidate decisioning APIs are contract-gated, but its TruContact Trusted Call Solutions business
  — acquired with Neustar in December 2021 — publishes an open, MIT-licensed OpenAPI for the STIR/SHAKEN call authentication
  and verification service.
created: '2026-05-05'
modified: '2026-08-13'
specificationVersion: '0.23'
apis:
- aid: transunion:trucontact-trusted-call-solutions
  name: TransUnion TruContact Trusted Call Solutions (STI-AS / STI-VS)
  description: 'The STIR/SHAKEN call Authentication Service and Verification Service behind TransUnion TruContact Branded
    Communications. Nine POST operations sign SIP Identity headers (PASSporTs) and verify them, with a Call Validation Treatment
    variant that returns calling name and robocall analytics alongside the verdict. The only TransUnion API with a public
    machine-readable contract: the OpenAPI 3.1.0 is published on GitHub under an MIT licence with an open proposal process.'
  image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
  humanURL: https://neustar.github.io/tcs-apis/
  baseURL: https://{hostname}:{port}/{optionalRoutingPath}
  x-base-url-note: Templated by design, not a defect. The AS/VS is deployed inside each carrier's own network under its TruContact
    agreement, so there is no TransUnion-hosted endpoint; the hostname comes from the operator's deployment.
  x-ownership-note: Published under the Neustar brand and logo at github.com/neustar/tcs-apis. Neustar's Communications Solutions
    business became TransUnion TruContact after TransUnion's $3.1B acquisition of Neustar closed in December 2021, and Trusted
    Call Solutions is marketed today at transunion.com/solution/trucontact/branded-communications/trusted-call-solutions.
  tags:
  - Call Authentication
  - STIR/SHAKEN
  - Telecommunications
  - Fraud Prevention
  - Robocall Mitigation
  properties:
  - type: OpenAPI
    url: openapi/transunion-trucontact-tcs-shaken-openapi.yml
  - type: OpenAPI
    url: openapi/transunion-trucontact-3gpp-call-authentication-openapi.yml
  - type: Overlay
    url: overlays/transunion-trucontact-tcs-shaken-overlay.yaml
  - type: Overlay
    url: overlays/transunion-trucontact-3gpp-call-authentication-overlay.yaml
  - type: Documentation
    url: https://neustar.github.io/tcs-apis/
  - type: APIReference
    url: https://neustar.github.io/tcs-apis/
  - type: SourceCode
    url: https://github.com/neustar/tcs-apis
  - type: Solutions
    url: https://www.transunion.com/solution/trucontact/branded-communications/trusted-call-solutions
- aid: transunion:global-developer-portal
  name: TransUnion Global Developer Portal
  description: TransUnion's API products for credit reporting, identity verification, fraud prevention and consumer risk decisioning.
    Access requires a business agreement with TransUnion and credentials issued by an account manager; no machine-readable
    contract is published. The historical portal host developer.transunion.com no longer resolves (NXDOMAIN, checked 2026-08-13),
    so the live technical surface is Client Technical Services.
  image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
  humanURL: https://techservices.transunion.com/
  x-base-url-note: No baseURL recorded. developer.transunion.com — carried here since 2026-05 — is NXDOMAIN as of 2026-08-13,
    and no public TransUnion document states a production API host for these products. Recorded as missing rather than guessed
    from the domain.
  tags:
  - Credit Reporting
  - Identity
  - Fraud Prevention
  - Risk Decisioning
  - Consumer Insights
  properties:
  - type: Documentation
    url: https://techservices.transunion.com/doc-repository
  - type: Solutions
    url: https://www.transunion.com/business
- aid: transunion:truvalidate-device-risk
  name: TransUnion TruValidate Device Risk
  description: Device recognition and fraud signals, formerly iovation FraudForce. Mobile SDKs collect a device "blackbox"
    that is submitted to a risk check from your servers. The API host api.iovation.com is behind mutual TLS — it answers "Unauthorized
    - missing/invalid client certificate" to any anonymous request — and no OpenAPI is published.
  image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg
  humanURL: https://github.com/iovation
  baseURL: https://api.iovation.com
  x-ownership-note: iovation was acquired by TransUnion in 2018 and its device products were rebranded TruValidate; the SDK
    READMEs state it directly — "We have united these solutions under the TransUnion TruValidate brand."
  tags:
  - Fraud Prevention
  - Device Intelligence
  - Identity
  - Authentication
  properties:
  - type: SourceCode
    url: https://github.com/iovation/deviceprint-SDK-iOS
  - type: SourceCode
    url: https://github.com/iovation/deviceprint-SDK-Android
common:
- type: DomainSecurity
  url: security/transunion-domain-security.yml
- type: VulnerabilityDisclosure
  url: security/transunion-vulnerability-disclosure.yml
- type: Security
  url: https://hackerone.com/transunion
- type: Authentication
  url: authentication/transunion-authentication.yml
- type: ErrorCatalog
  url: errors/transunion-problem-types.yml
- type: Conventions
  url: conventions/transunion-conventions.yml
- type: Conformance
  url: conformance/transunion-conformance.yml
- type: Lifecycle
  url: lifecycle/transunion-lifecycle.yml
- type: DataModel
  url: data-model/transunion-data-model.yml
- type: Packages
  url: packages/transunion-packages.yml
- type: SDKs
  url: packages/transunion-packages.yml
- type: AgentSkill
  url: skills/_index.yml
- type: LLMsTxt
  url: llms/transunion-llms.txt
- type: Plans
  url: plans/transunion-plans-pricing.yml
- type: RateLimits
  url: rate-limits/transunion-rate-limits.yml
- type: GitHubOrganization
  url: https://github.com/neustar
- type: LinkedIn
  url: https://www.linkedin.com/company/transunion
- type: Website
  url: https://www.transunion.com/
- type: Business
  url: https://www.transunion.com/business
- type: Solutions
  url: https://www.transunion.com/solutions
- type: News
  url: https://newsroom.transunion.com/
- type: Investors
  url: https://investors.transunion.com/
- type: Careers
  url: https://careers.transunion.com/
- type: About
  url: https://www.transunion.com/about-us
- url: https://newsroom.transunion.com/feed/
  type: Blog
maintainers:
- FN: API Evangelist
  email: info@apievangelist.com
  X: '@apievangelist'
x-enrichment:
  date: '2026-08-13'
  status: enriched
  artifacts_added: 20
  pass: local-v1