Universiti Teknologi Malaysia
Universiti Teknologi Malaysia (UTM) is a public research university in Johor Bahru and Kuala Lumpur, Malaysia, one of the five institutions designated a Research University by the Ministry of Higher Education and ranked #181 in the QS World University Rankings 2025. UTM publishes no developer portal, no API documentation and no OpenAPI, AsyncAPI or JSON Schema of its own, and there is no route by which an unaffiliated developer can obtain a credential for anything it runs. Its programmable footprint is entirely made of standards it exposes rather than interfaces it designed, and every one of them sits on UTM's own APNIC allocation (161.139.0.0/16, netname UTM-MY): the UTMIK Repository, a DSpace-CRIS institutional knowledge repository whose OAI-PMH 2.0 endpoint answers anonymously in twelve metadata formats including rioxx, etdms and an OpenAIRE CERIF-for-CRIS profile; the UTM Press journal platform, whose Open Journal Systems OAI-PMH interface has been harvestable since 2011 and whose REST API v1 answers 401; and a Microsoft Entra ID tenant whose signed SAML 2.0 metadata and OpenID Connect discovery document are the most completely specified machine contract in this profile. UTM is registered in ROR, and its own publishing arm, Penerbit UTM Press, is Crossref member 4787 with prefix 10.11113 and 12,640 registered DOIs. The older EPrints repository at eprints.utm.my, still listed by ROAR, OpenDOAR and Sherpa and still linked from the UTM Library, refused connections on both ports from three independent networks on 2026-09-01 and is recorded here as unreachable rather than as a surface.
Universiti Teknologi Malaysia publishes 6 APIs on the APIs.io network. Tagged areas include University, Higher Education, Education, Public Research University, and Technical University.
The Universiti Teknologi Malaysia catalog on APIs.io includes 1 JSON-LD context.
Universiti Teknologi Malaysia’s developer surface includes engineering blog, authentication, and 15 more developer resources.
6 APIs
Individual APIs this provider publishes, each with its own machine-readable definition.
Published pricing tiers and plan structures.
Documented rate limits and quota policies.
Cost, billing, and metering signals for API financial operations.
JSON-LD contexts and semantic vocabularies used across these APIs.
Authentication, domain security, vulnerability disclosure, and trust-center signals.
aid: utm
name: Universiti Teknologi Malaysia
x-type: university
x-category: Public Research University
description: 'Universiti Teknologi Malaysia (UTM) is a public research university in Johor Bahru and Kuala Lumpur, Malaysia,
one of the five institutions designated a Research University by the Ministry of Higher Education and ranked #181 in the
QS World University Rankings 2025. UTM publishes no developer portal, no API documentation and no OpenAPI, AsyncAPI or JSON
Schema of its own, and there is no route by which an unaffiliated developer can obtain a credential for anything it runs.
Its programmable footprint is entirely made of standards it exposes rather than interfaces it designed, and every one of
them sits on UTM''s own APNIC allocation (161.139.0.0/16, netname UTM-MY): the UTMIK Repository, a DSpace-CRIS institutional
knowledge repository whose OAI-PMH 2.0 endpoint answers anonymously in twelve metadata formats including rioxx, etdms and
an OpenAIRE CERIF-for-CRIS profile; the UTM Press journal platform, whose Open Journal Systems OAI-PMH interface has been
harvestable since 2011 and whose REST API v1 answers 401; and a Microsoft Entra ID tenant whose signed SAML 2.0 metadata
and OpenID Connect discovery document are the most completely specified machine contract in this profile. UTM is registered
in ROR, and its own publishing arm, Penerbit UTM Press, is Crossref member 4787 with prefix 10.11113 and 12,640 registered
DOIs. The older EPrints repository at eprints.utm.my, still listed by ROAR, OpenDOAR and Sherpa and still linked from the
UTM Library, refused connections on both ports from three independent networks on 2026-09-01 and is recorded here as unreachable
rather than as a surface.'
type: Index
deliveryModel:
model: saas
open_source: false
commercial: false
callable_host: true
label: Institution-hosted endpoints · anonymous harvesting only
confidence: high
source:
- probed
generated: '2026-09-01'
method: probed
accessModel:
pricing: free
onboarding: none
trial: false
try_now: false
public: true
label: Free · no registration, no credential available to outsiders
confidence: high
source:
- probed
generated: '2026-09-01'
method: probed
position: Consuming
access: 3rd-Party
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/utm.png
url: https://raw.githubusercontent.com/api-evangelist/utm/refs/heads/main/apis.yml
tags:
- University
- Higher Education
- Education
- Public Research University
- Technical University
- Malaysia
- Research
- Open Access
- Institutional Repository
- Research Repository
- Scholarly Publishing
- OAI-PMH
- Identity Federation
- SAML
- Crossref
created: '2026-06-03'
modified: '2026-09-01'
specificationVersion: '0.23'
apis:
- aid: utm:utmik-repository
name: UTMIK Repository (DSpace-CRIS) — OAI-PMH and REST
x-operator: institution
description: 'UTM''s institutional knowledge repository, running DSpace-CRIS on utmik.utm.my (161.139.22.165, inside UTM''s
own APNIC allocation 161.139.0.0/16, netname UTM-MY). The OAI-PMH 2.0 endpoint answers anonymously: Identify returns repositoryName
"UTMIK Repository", adminEmail library.automation@utm.my, earliestDatestamp 2025-01-27, deletedRecord transient, oai-identifier
repositoryIdentifier utmik.utm.my, plus an OpenAIRE CERIF-for-CRIS 1.1 Service description advertising a second base URL
at /server/oai/openairecris. ListMetadataFormats returns twelve prefixes (oai_dc, qdc, mods, mets, didl, ore, rdf, marc,
dim, etdms, rioxx, uketd_dc) and ListSets returns UTM-specific sets including RESEARCH DATA, SCHOLARLY PUBLICATION, UTM
ARCHIVE, UTM LENSES and CITIZEN SCIENCE. The DSpace REST root at /server/api is also anonymously readable and advertises
ORCID synchronisation endpoints, but every collection beneath it answered 403 from this environment. The repository software
is DSpace-CRIS and its generic contract is not saved here; the deployment, the host, the content and the administrative
contact are UTM''s. Verified live 2026-09-01T17:26Z; the host stopped answering from three independent networks later
the same day.'
humanURL: https://utmik.utm.my/
baseURL: https://utmik.utm.my/server/oai/request
tags:
- Institutional Repository
- Research Repository
- OAI-PMH
- DSpace
- OpenAIRE
- Open Access
- Research Data
- ORCID
properties:
- type: APIReference
url: https://utmik.utm.my/server/api
- type: Documentation
url: https://library.utm.my/utm-institutional-repository/
- type: Conformance
url: conformance/utm-conformance.yml
- aid: utm:utmpress-journals-oai
name: UTM Press Journals (Open Journal Systems) — OAI-PMH
x-operator: institution
description: Penerbit UTM Press runs the university's journal estate on PKP Open Journal Systems at journals.utm.my (161.139.22.105,
UTM's own allocation). The site-wide OAI-PMH 2.0 interface answers anonymously as "UTM Press Journal Management powered
by OJS" with adminEmail journal_utm@utm.my and an earliestDatestamp of 2011-12-12, and ListSets resolves the individual
journals. The OJS REST API v1 exists per journal at /{journal}/api/v1 and answers HTTP 401 with a JSON authorization error;
UTM Press publishes no route for an outside caller to request a token. OJS is PKP's software and its generic contract
is not saved here.
humanURL: https://journals.utm.my/
baseURL: https://journals.utm.my/index/oai
tags:
- Scholarly Publishing
- Open Access
- OAI-PMH
- Open Journal Systems
- Journals
- Crossref
properties:
- type: Documentation
url: https://penerbit.utm.my/
- type: Authentication
url: authentication/utm-authentication.yml
- aid: utm:entra-identity-federation
name: UTM identity federation — Microsoft Entra ID tenant (SAML 2.0 / OpenID Connect)
x-operator: federation
description: UTM's institutional identity provider. The tenant (9c827912-3502-4333-ba47-1b242c3d20e6) is bound to UTM by
domain ownership — realm discovery on user@utm.my returns FederationBrandName "Universiti Teknologi Malaysia" and NameSpaceType
"Managed" — and publishes signed SAML 2.0 metadata under entityID https://sts.windows.net/9c827912-3502-4333-ba47-1b242c3d20e6/
with an IDPSSODescriptor, HTTP-Redirect and HTTP-POST SSO bindings, an SLO binding and WS-Federation RoleDescriptors,
alongside a full OpenID Connect discovery document. The metadata host is Microsoft's and shared with every Entra customer,
which is what federation metadata is; the directory it describes is UTM's. No registration_endpoint is published, so the
authorization server is readable by anyone and callable only by clients UTM provisions. UTM does not appear in the eduGAIN
entity export, and SIFULAN, the Malaysian Access Federation, returned 403 to every probe, so no claim is made about SIFULAN
membership.
humanURL: https://my.utm.my/login
baseURL: https://login.microsoftonline.com/9c827912-3502-4333-ba47-1b242c3d20e6/v2.0
tags:
- Identity Federation
- SAML
- OpenID Connect
- Single Sign-On
- Entra ID
- Authentication
properties:
- type: OpenIDConnectDiscovery
url: https://login.microsoftonline.com/utm.my/v2.0/.well-known/openid-configuration
- type: Metadata
url: https://login.microsoftonline.com/9c827912-3502-4333-ba47-1b242c3d20e6/federationmetadata/2007-06/federationmetadata.xml
- type: IdentityFederation
url: identity-federation/utm-identity-federation.yml
- type: Authentication
url: authentication/utm-authentication.yml
- aid: utm:crossref-member
name: Crossref membership — Penerbit UTM Press (member 4787, prefix 10.11113)
x-operator: registry
description: 'UTM''s own university press is a Crossref member in its own right, not a customer of someone else''s prefix:
member id 4787, DOI prefix 10.11113, 12,640 registered DOIs. Its flagship title, Jurnal Teknologi (Sciences & Engineering),
ISSN 0127-9696 / 2180-3722, carries 6,311 DOIs of which 349 are current, with deposits recorded every year from 2011 through
2026. This is a registry membership — a fact about UTM — and the Crossref API''s own contract belongs to Crossref, not
here.'
humanURL: https://penerbit.utm.my/
baseURL: https://api.crossref.org/members/4787
tags:
- Crossref
- DOI
- Scholarly Publishing
- Registry
- Persistent Identifiers
properties:
- type: Registry
url: https://api.crossref.org/journals/2180-3722
- aid: utm:ror-registration
name: ROR registration — https://ror.org/026w31v75
x-operator: registry
description: UTM is registered in the Research Organization Registry as ror.org/026w31v75, with domain utm.my, established
1975, GRID grid.410877.d, ISNI 0000 0001 2296 1505, Wikidata Q24401, and four Crossref Open Funder Registry identifiers
(501100005417, 501100007138, 501100006760, 501100020620) recording UTM as a research funder. The registry membership is
UTM's; the ROR API contract is ROR's.
humanURL: https://ror.org/026w31v75
baseURL: https://api.ror.org/organizations/026w31v75
tags:
- ROR
- Registry
- Persistent Identifiers
- Research
- Funder Registry
- aid: utm:eprints-oai
name: UTM Institutional Repository (UTM-IR) EPrints OAI-PMH — unreachable
x-operator: institution
description: The older EPrints institutional repository, registered with ROAR (record 1358), OpenDOAR and Sherpa (record
987) and still linked from the UTM Library as http://eprints.utm.my. The host resolves to 161.139.21.110 inside UTM's
own allocation, but on 2026-09-01 it refused connections on both port 80 and port 443 from this environment, returned
HTTP 522 through two independent public proxies, and gave ECONNREFUSED from a third egress. It is retained here as a documented
institutional relationship, not credited as a live surface. UTMIK, whose earliest record is dated 2025-01-27, appears
to be its successor.
humanURL: http://eprints.utm.my/
baseURL: http://eprints.utm.my/cgi/oai2
tags:
- Institutional Repository
- OAI-PMH
- Open Access
- EPrints
- Research
- Metadata
properties:
- type: Documentation
url: https://library.utm.my/utm-institutional-repository/
- type: Registry
url: https://opendoar.ac.uk/repository/987
- type: Registry
url: https://roar.eprints.org/1358/
common:
- type: Website
url: https://www.utm.my/
- type: Library
url: https://library.utm.my/
- type: ResearchRepository
url: https://utmik.utm.my/
- type: IdentityFederation
url: https://login.microsoftonline.com/utm.my/v2.0/.well-known/openid-configuration
- type: SingleSignOn
url: https://my.utm.my/login
- type: AIPolicy
url: https://fke.utm.my/wp-content/uploads/2024/11/Guidelines-for-the-Use-of-Generative-Artificial-Intelligence-in-Teaching-and-Learning-UTM-1.pdf
- type: Blog
url: https://news.utm.my/
- type: PrivacyPolicy
url: https://www.utm.my/privacy-policy/
- type: LinkedIn
url: https://www.linkedin.com/school/universiti-teknologi-malaysia/
- type: Authentication
url: authentication/utm-authentication.yml
- type: Conformance
url: conformance/utm-conformance.yml
- type: JSONLD
url: json-ld/utm-context.jsonld
- type: DomainSecurity
url: security/utm-domain-security.yml
- type: Plans
url: plans/utm-plans-pricing.yml
- type: RateLimits
url: rate-limits/utm-rate-limits.yml
- type: FinOps
url: finops/utm-finops.yml
- type: Review
url: review.yml
x-coverage:
state: gated
reason: auth_required
detail: 'UTM operates real institution-owned surfaces and they were read, but nothing it runs is consumable as an API by
an unaffiliated caller. The two anonymously readable interfaces are metadata-harvesting protocols, not APIs UTM designed:
OAI-PMH 2.0 on the UTMIK DSpace-CRIS repository and on the UTM Press OJS journal platform, both on UTM''s own APNIC allocation.
Every REST interface behind them is closed — the OJS REST API v1 answers 401 with a JSON authorization error and publishes
no route to request a token, and the DSpace REST collections answered 403 even though the HAL root is public. The one
fully specified machine contract, UTM''s Microsoft Entra ID tenant, publishes signed SAML 2.0 metadata and an OIDC discovery
document that anyone can read, but no registration_endpoint, so a client_id exists only if UTM Digital creates one. There
is no developer portal: the www.utm.my sitemap contains exactly one policy page and no API, developer or open-data page,
api.utm.my resolves and returns HTTP 200 with a 17-byte empty IIS document and 404s on every documented path, and no official
UTM GitHub organization exists (the two name-matching orgs hold zero and one unrelated repository). Two limits are recorded
rather than treated as findings about UTM. eprints.utm.my, the legacy EPrints repository still listed by ROAR, OpenDOAR
and Sherpa, refused connections on both ports from three independent networks and is not credited as live. And utmik.utm.my
answered fully at 17:26Z on 2026-09-01 — the OAI-PMH responseDate is the server''s own proof — then stopped answering
this environment and two public proxies later the same day, so its pointers may grade dead on a re-probe while the surface
is real. This is a correct thin profile, not a failed probe: more than fifty URLs were fetched successfully across eleven
UTM hosts.'
evidence:
- url: https://utmik.utm.my/server/oai/request?verb=Identify
status: 200
- url: https://utmik.utm.my/server/oai/request?verb=ListMetadataFormats
status: 200
- url: https://utmik.utm.my/server/oai/request?verb=ListSets
status: 200
- url: https://utmik.utm.my/server/api
status: 200
- url: https://utmik.utm.my/server/api/core/communities
status: 403
- url: https://journals.utm.my/index.php/index/oai?verb=Identify
status: 200
- url: https://journals.utm.my/index.php/index/oai?verb=ListSets
status: 200
- url: https://journals.utm.my/jurnalteknologi/api/v1/issues
status: 401
- url: https://login.microsoftonline.com/utm.my/v2.0/.well-known/openid-configuration
status: 200
- url: https://login.microsoftonline.com/9c827912-3502-4333-ba47-1b242c3d20e6/federationmetadata/2007-06/federationmetadata.xml
status: 200
- url: https://login.microsoftonline.com/getuserrealm.srf?login=user@utm.my&json=1
status: 200
- url: https://api.crossref.org/members/4787
status: 200
- url: https://api.crossref.org/journals/2180-3722
status: 200
- url: https://api.ror.org/organizations/026w31v75
status: 200
- url: https://www.utm.my/
status: 200
- url: https://www.utm.my/wp-sitemap.xml
status: 200
note: only one policy page in the whole sitemap; no API, developer or open-data page
- url: https://www.utm.my/privacy-policy/
status: 200
- url: https://www.utm.my/llms.txt
status: 404
- url: https://www.utm.my/.well-known/security.txt
status: 404
- url: https://api.utm.my/
status: 200
note: 17-byte empty IIS document; soft-404, not credited as a surface
- url: https://api.utm.my/swagger/v1/swagger.json
status: 404
- url: https://library.utm.my/utm-institutional-repository/
status: 200
- url: https://my.utm.my/login
status: 200
- url: https://news.utm.my/
status: 200
- url: https://news.utm.my/feed/
status: 403
note: bot-challenged; not emitted as a BlogRSS pointer
- url: https://elearning.utm.my/mod/lti/auth.php
status: 404
note: Moodle is live but exposes no LTI 1.3 or web-service contract
- url: https://technical.edugain.org/api.php?action=list_entities&format=json
status: 200
note: 7.8 MB parsed; zero entities matching utm.my or "teknologi malaysia"
- url: https://www.sifulan.my/
status: 403
note: Malaysian Access Federation unreadable from here; SIFULAN membership neither confirmed nor denied
- url: https://api.datacite.org/clients?query=Universiti+Teknologi+Malaysia
status: 200
note: zero results; UTM mints DOIs through Crossref, not DataCite
- url: http://eprints.utm.my/cgi/oai2?verb=Identify
status: 0
note: connection refused on ports 80 and 443; HTTP 522 via two independent proxies
- url: https://openscience.utm.my/
status: 0
note: linked from the UTM Library but does not connect; not emitted as a pointer
- url: https://hpc.utm.my/
status: 0
note: research-computing host resolves but does not answer; no HPC service catalog found
assessed: '2026-09-01'
method: university pipeline live probe sweep
removed: 1
removed_detail: The `DeveloperPortal` pointer to https://digital.utm.my/ was removed. The host is live and is a genuine
UTM property, but it is the Office of Quality & Digital Transformation (UTMDX), an administrative office site — not a
developer portal, no API documentation, no keys, no registration. Claiming a developer program UTM does not run is the
same presence-is-not-provenance error the university pipeline exists to prevent, and removing it lowers this profile's
score, which is the correct outcome.
maintainers:
- FN: Kin Lane
email: kin@apievangelist.com
Every provider here is available over the APIs.io API and to AI agents over MCP.