Wallarm website screenshot

Wallarm

Wallarm provides advanced API security and protection solutions for APIs, web applications, and microservices. The platform includes API discovery, real-time attack protection, vulnerability testing, and an open-source API Firewall that enforces OpenAPI specifications as a positive security model. Wallarm supports deployment on Kubernetes, cloud environments, and as an NGINX-based proxy.

Wallarm publishes 9 APIs on the APIs.io network, including Applications API, Attacks API, Integrations API, and 6 more. Tagged areas include API Security, Security Testing, WAF, and Cybersecurity.

The Wallarm catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

Wallarm’s developer surface includes authentication, documentation, code examples, developer console, engineering blog, tooling, and 14 more developer resources.

54.4/100 developing ▬ flat Agent 32/100 agent aware Full breakdown ↓
scored 2026-08-05 · rubric v0.9.1
AccessFreemiumSelf serve⚡ Free to try
9 APIs
API SecuritySecurity TestingWAFCybersecurity

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-05 · rubric v0.9.1
Composite quality — 54.4/100 · developing
Contract Quality 20.0 / 25
Developer Ergonomics 8.3 / 20
Commercial Clarity 7.9 / 20
Operational Transparency 4.8 / 13
Governance 7.0 / 12
Discoverability 6.5 / 10
Agent readiness — 32/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/wallarm: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 9

Individual APIs this provider publishes, each with its own machine-readable definition.

Wallarm Applications API

Application and scope management

Wallarm Attacks API

Attack and incident data management

Wallarm Integrations API

Third-party integrations (SIEM, notifications, etc.)

Wallarm IP Lists API

IP allowlist, denylist, and graylist management

Wallarm Nodes API

Wallarm filter node management

Wallarm Rules API

Security rules and virtual patch management

Wallarm Triggers API

Automated trigger and alert management

Wallarm User API

User account and authentication management

Wallarm Vulnerabilities API

Vulnerability detection and management

Scroll for all 9

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Wallarm API

OPEN COLLECTION

Pricing Plans 1

Published pricing tiers and plan structures.

Wallarm Plans Pricing

3 plans

PLANS

Rate Limits 1

Documented rate limits and quota policies.

Wallarm Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Wallarm Context

9 classes · 14 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Wallarm API Rules

5 rules · 4 warnings 1 info

SPECTRAL

Wallarm API Rules

12 rules · 5 errors 7 warnings

SPECTRAL

JSON Schema 2

Standalone JSON Schema definitions for this provider's data models.

Wallarm Attack

10 properties

JSON SCHEMA

Wallarm Vulnerability

11 properties

JSON SCHEMA

JSON Structure 1

JSON Structure definitions describing this provider's data shapes.

Wallarm Attack Structure

0 properties

JSON STRUCTURE

Examples 3

Example request and response payloads for these APIs.

Wallarm Addiprule Example

2 fields

EXAMPLE

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Wallarm Authentication

apiKey · 1 scheme

SECURITY

Wallarm Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Wallarm Agentic Access

17 operations · 16 acting

17 operations · 16 acting

AGENTIC

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Build 5

SDKs, sample code, and the tooling you integrate with

Access & Security 2

Authentication, authorization, and security posture

Company 3

The organization behind the API

Other 4

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: wallarm
url: https://raw.githubusercontent.com/api-evangelist/wallarm/refs/heads/main/apis.yml
apis:
- aid: wallarm:wallarm-applications-api
  name: Wallarm Applications API
  description: Application and scope management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Applications
  properties:
  - type: OpenAPI
    url: openapi/wallarm-applications-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-attacks-api
  name: Wallarm Attacks API
  description: Attack and incident data management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Attacks
  properties:
  - type: OpenAPI
    url: openapi/wallarm-attacks-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-integrations-api
  name: Wallarm Integrations API
  description: Third-party integrations (SIEM, notifications, etc.)
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Integrations
  properties:
  - type: OpenAPI
    url: openapi/wallarm-integrations-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-ip-lists-api
  name: Wallarm IP Lists API
  description: IP allowlist, denylist, and graylist management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - IP Lists
  properties:
  - type: OpenAPI
    url: openapi/wallarm-ip-lists-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-nodes-api
  name: Wallarm Nodes API
  description: Wallarm filter node management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Nodes
  properties:
  - type: OpenAPI
    url: openapi/wallarm-nodes-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-rules-api
  name: Wallarm Rules API
  description: Security rules and virtual patch management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Rules
  properties:
  - type: OpenAPI
    url: openapi/wallarm-rules-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-triggers-api
  name: Wallarm Triggers API
  description: Automated trigger and alert management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Triggers
  properties:
  - type: OpenAPI
    url: openapi/wallarm-triggers-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-user-api
  name: Wallarm User API
  description: User account and authentication management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - User
  properties:
  - type: OpenAPI
    url: openapi/wallarm-user-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
- aid: wallarm:wallarm-vulnerabilities-api
  name: Wallarm Vulnerabilities API
  description: Vulnerability detection and management
  humanURL: https://docs.wallarm.com/api/overview/
  baseURL: https://us1.api.wallarm.com
  tags:
  - Vulnerabilities
  properties:
  - type: OpenAPI
    url: openapi/wallarm-vulnerabilities-api-openapi.yml
  - type: Documentation
    url: https://docs.wallarm.com/api/overview/
  - type: SwaggerUI
    url: https://apiconsole.us1.wallarm.com/
  - type: SwaggerUI
    url: https://apiconsole.eu1.wallarm.com/
  - type: SpectralRules
    url: rules/wallarm-rules.yml
  - type: JSONSchema
    url: json-schema/wallarm-attack-schema.json
  - type: JSONSchema
    url: json-schema/wallarm-vulnerability-schema.json
  - type: JSONLDContext
    url: json-ld/wallarm-context.jsonld
  - type: Vocabulary
    url: vocabulary/wallarm-vocabulary.yml
name: Wallarm
tags:
- API Security
- Security Testing
- WAF
- Cybersecurity
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/wallarm.png
access: 3rd-Party
created: '2025-01-08'
modified: '2026-05-19'
position: Consumer
description: Wallarm provides advanced API security and protection solutions for APIs, web applications, and microservices.
  The platform includes API discovery, real-time attack protection, vulnerability testing, and an open-source API Firewall
  that enforces OpenAPI specifications as a positive security model. Wallarm supports deployment on Kubernetes, cloud environments,
  and as an NGINX-based proxy.
common:
- type: AgenticAccess
  url: agentic-access/wallarm-agentic-access.yml
- type: DomainSecurity
  url: security/wallarm-domain-security.yml
- type: Authentication
  url: authentication/wallarm-authentication.yml
- type: LinkedIn
  url: https://www.linkedin.com/company/wallarm
- url: https://www.wallarm.com/
  name: Wallarm - Advanced API Security
  type: Website
- url: https://docs.wallarm.com/
  name: Wallarm Documentation
  type: Documentation
- url: https://docs.wallarm.com/api/overview/
  name: Wallarm API Reference
  type: Reference
- url: https://docs.wallarm.com/api/request-examples/
  name: Wallarm API Request Examples
  type: Examples
- url: https://apiconsole.us1.wallarm.com/
  name: Wallarm API Console (US)
  type: Console
- url: https://apiconsole.eu1.wallarm.com/
  name: Wallarm API Console (EU)
  type: Console
- url: https://github.com/wallarm
  name: Wallarm GitHub Organization
  type: GitHubOrganization
- url: https://github.com/wallarm/api-firewall
  name: Wallarm API Firewall
  type: OpenSource
- url: https://lab.wallarm.com/feed/
  name: Wallarm Lab Blog
  type: Blog
- url: https://github.com/wallarm/wallarm-go
  name: Wallarm Go SDK
  type: SDKs
- url: https://github.com/wallarm/terraform-provider-wallarm
  name: Wallarm Terraform Provider
  type: TerraformProvider
- url: https://github.com/wallarm/terraform-aws-wallarm
  name: Wallarm Terraform AWS Module
  type: TerraformModule
- url: https://github.com/wallarm/ingress
  name: Wallarm Kubernetes Ingress Controller
  type: SDKs
- url: https://github.com/wallarm/helm-charts
  name: Wallarm Helm Charts
  type: HelmChart
- url: https://github.com/wallarm/gotestwaf
  name: GoTestWAF - WAF Security Testing Tool
  type: Tools
- url: https://www.wallarm.com/product/integrations
  name: Wallarm Integrations
  type: Integrations
- type: LlmsText
  url: https://docs.wallarm.com/llms.txt
features:
- API Discovery and Inventory
- Real-Time Attack Detection and Blocking
- Vulnerability Assessment and Management
- API Firewall (OpenAPI-based positive security model)
- Shadow and Zombie API Detection
- IP List Management (allowlist, denylist, graylist)
- Custom Security Rules Engine
- SIEM and SOAR Integrations
- Kubernetes-Native Deployment (sidecar, ingress)
- Multi-Cloud and Hybrid Deployment Support
useCases:
- Protect APIs from OWASP Top 10 attacks
- Discover and inventory all APIs in a microservices environment
- Enforce API contract compliance with OpenAPI specifications
- Detect and respond to zero-day API vulnerabilities
- Manage IP reputation lists and block malicious traffic
- Automate security testing in CI/CD pipelines
integrations:
- Splunk
- PagerDuty
- Slack
- Jira
- Microsoft Teams
- OpsGenie
- DataDog
- Sumo Logic
- AWS
- Azure
- Google Cloud
- Kubernetes
- Terraform
solutions:
- API Security
- Web Application Firewall
- API Discovery
- DevSecOps
- Cloud Security
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
specificationVersion: '0.19'