BNSF · Authentication Profile
Bnsf Authentication
Authentication
The BNSF Customer API has exactly one authentication mechanism: certificate-based mutual TLS. There is no API key, no bearer token, no OAuth and no OpenID Connect anywhere on the surface. Identity is the client certificate itself, and authorisation — which shipments a caller may see — is bound to the company on that certificate through the BNSF.com profile it is registered against.
BNSF secures its APIs with mutualTLS across 2 declared security schemes, as derived from its OpenAPI definitions.
FreightRailroadShippingTrainsIntermodalLogisticsSupply ChainTransportation
Methods: mutualTLS
Schemes: 2
OAuth flows:
API key in:
Security Schemes
MutualTLS mutualTLS
Restricted mutualTLS
Source
Authentication Profile
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.