# Zimbra

**Canonical:** https://apis.io/providers/zimbra/  
**Website:** https://www.zimbra.com/  
**APIs profiled:** 1

Zimbra is an open-source email and collaboration platform serving more than 200 million users worldwide, offering email, calendar, contacts, tasks, group chat, file storage (Briefcase), and an in-browser office suite. It is deployed self-hosted (on-premises, private cloud, or regional data center) to give organizations full data sovereignty over their communications. Zimbra's programmatic surface is a SOAP API (account, mail, and admin namespaces) wrapped by a first-party GraphQL/JavaScript client (@zimbra/api-client); it also speaks the IMAP, POP3, SMTP, CalDAV, CardDAV, and Exchange ActiveSync standards. There is no public OpenAPI/REST contract. Backed by Redpoint Ventures; added to the API Evangelist network from a VC-portfolio lead and enriched from Zimbra's public developer surface.

## Kin Score — 25.3 / 100 (emerging)

Scored 2026-08-19 under rubric 0.12.0. Trend: flat (+0.4 from 24.9).

| Facet | Score |
|---|---|
| Discoverability | 66.7 |
| Contract Quality | 0.0 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 13.2 |
| Developer Ergonomics | 39.3 |
| Commercial Clarity | 34.2 |
| Access Clarity | 34.2 |

## Agent readiness — 8.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | no |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (1)

- **Zimbra SOAP API** — SOAP API (XML and JSON encodings) for Zimbra Collaboration — account, mail, and admin operations, POSTed to /service/soap on a Zimbra deployment. Self-hosted, so the base host i...

## Security (3)

- **Zimbra Authentication** — soap-auth-token/preauth/oauth2 · 4 schemes
- **Zimbra Domain Security** — TLSv1.3 · HSTS · DMARC
- **Zimbra Vulnerability Disclosure** — disclosure policy published

## Tags

Email, Collaboration, Calendar, Messaging, Open Source, SOAP, GraphQL, Productivity

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/zimbra/). Scores are computed from the provider's own public artifacts under a published rubric.
