# zopa

**Canonical:** https://apis.io/providers/zopa/  
**Website:** https://www.zopa.com/  
**APIs profiled:** 12

Zopa Bank is a UK FCA-authorised, PRA-regulated digital bank offering flexible savings, personal loans, credit cards, car finance and the Biscuit current account. As a registered Account Servicing Payment Service Provider (ASPSP), Zopa exposes UK Open Banking Read/Write v4.0.0 APIs to authorised Third Party Providers: an Account & Transaction API (AIS) for consent-based access to accounts, balances, transactions, statements, standing orders, direct debits, beneficiaries and party data, and a Payment Initiation API (PIS) for domestic payments and standing orders. Access uses OAuth2 (client-credentials for TPPs, authorization-code for PSUs) over mutual TLS with FAPI headers and JWS request signing. Zopa was surfaced as a portfolio company of Balderton Capital, Bessemer Venture Partners, HV Capital, Northzone, QED Investors and SoftBank Vision Fund.

## Kin Score — 43.7 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+1.1 from 42.6).

| Facet | Score |
|---|---|
| Discoverability | 92.6 |
| Contract Quality | 51.7 |
| Governance | 16.7 |
| Contract Governance | 16.7 |
| Operational Transparency | 5.3 |
| Developer Ergonomics | 38.7 |
| Commercial Clarity | 21.1 |
| Access Clarity | 21.1 |

Regulatory layer — **Banking & Open Finance**: 76.6 (matched via tags).

## Agent readiness — 42.9 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | documented |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | verified |
| Event Surface Described | no |
| Agent Skills | derived |
| Well Known Catalog | no |
| Consent Identity | yes |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Self-serve signup — onboarding: self-serve, pricing: unknown, trial: no (confidence: medium).

## APIs (12)

- **zopa Account Access API** — The Account Access API from zopa — 2 operation(s) for account access.
- **zopa Accounts API** — The Accounts API from zopa — 2 operation(s) for accounts.
- **zopa Balances API** — The Balances API from zopa — 1 operation(s) for balances.
- **zopa Beneficiaries API** — The Beneficiaries API from zopa — 1 operation(s) for beneficiaries.
- **zopa Direct Debits API** — The Direct Debits API from zopa — 1 operation(s) for direct debits.
- **zopa Domestic Payments API** — The Domestic Payments API from zopa — 5 operation(s) for domestic payments.
- **zopa Domestic Standing Orders API** — The Domestic Standing Orders API from zopa — 4 operation(s) for domestic standing orders.
- **zopa Offers API** — The Offers API from zopa — 1 operation(s) for offers.
- **zopa Parties API** — The Parties API from zopa — 2 operation(s) for parties.
- **zopa Standing Orders API** — The Standing Orders API from zopa — 1 operation(s) for standing orders.
- **zopa Statements API** — The Statements API from zopa — 1 operation(s) for statements.
- **zopa Transactions API** — The Transactions API from zopa — 1 operation(s) for transactions.

## MCP servers (1)

- **zopa MCP Server**

## Agentic access (1)

- **Zopa Agentic Access** — 23 operations · 6 acting

## Security (3)

- **Zopa Authentication** — oauth2 · 2 schemes
- **Zopa Domain Security** — TLSv1.3 · DMARC
- **Zopa Vulnerability Disclosure** — Intigriti · security.txt · contact published

## Tags

Company, Banking, Fintech, Open Banking, PSD2, Payments, Account Information, Payment Initiation, FAPI, United Kingdom, Digital Bank, Lending

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/zopa/). Scores are computed from the provider's own public artifacts under a published rubric.
