Bureau of Ocean Energy Management · Authentication Profile

Bureau Of Ocean Energy Management Authentication

Authentication

Bureau of Ocean Energy Management declares 0 security scheme(s) across its OpenAPI definitions.

EnergyFederal-GovernmentMarineOceansGISOffshoreEnvironmental
Methods: Schemes: 0 OAuth flows: API key in:

Security Schemes

Source

Authentication Profile

bureau-of-ocean-energy-management-authentication.yml Raw ↑
generated: '2026-09-05'
method: probed
source: >-
  live anonymous probes 2026-09-05 of https://gis.boem.gov/server/rest/services,
  the OGC WMS/WFS endpoints under /server/services/, https://hub.marinecadastre.gov/data.json
  and https://esp-boem.hub.arcgis.com/data.json
note: |
  BOEM's public data surfaces require NO authentication. Every probe below was made anonymously
  with no key, no token and no cookie, and every one returned data. There is no developer
  portal, no signup, no API key issuance and no OAuth authorization server anywhere on the
  estate — /.well-known/openid-configuration and /.well-known/oauth-authorization-server
  returned 404 on all six hosts probed (see well-known/).

  The ArcGIS Server directory does advertise a login and a token endpoint
  (https://gis.boem.gov/server/rest/login and https://gis.boem.gov/server/tokens/). These are
  the stock Esri ArcGIS Server administrative surfaces, not a consumer credential path — they
  exist to let BOEM staff publish services, and nothing in BOEM's own documentation offers a
  reader an account. They are recorded here so a later round does not read them as a public
  auth tier.
schemes: []
surfaces:
  - name: BOEM ArcGIS REST Services
    base: https://gis.boem.gov/server/rest/services
    auth: none
    evidence: >-
      GET /server/rest/services?f=json returned HTTP 200 with the folder list, and
      /BOEM_BSEE/ATL_Layers/MapServer/0/query?where=1=1&returnCountOnly=true&f=json returned
      {"count":975} — both anonymous
  - name: BOEM OGC WMS / WFS
    base: https://gis.boem.gov/server/services
    auth: none
    evidence: >-
      eleven GetCapabilities documents fetched anonymously at HTTP 200; saved verbatim to openapi/
  - name: MarineCadastre.gov DCAT catalog
    base: https://hub.marinecadastre.gov
    auth: none
    evidence: GET /data.json returned HTTP 200, 275 datasets, anonymous
  - name: ESPIS ArcGIS Hub
    base: https://esp-boem.hub.arcgis.com
    auth: none
    evidence: GET /data.json returned HTTP 200, 11 datasets, anonymous
administrative_surfaces:
  - url: https://gis.boem.gov/server/rest/login
    kind: ArcGIS Server administrative sign-in
    public: false
  - url: https://gis.boem.gov/server/tokens/
    kind: ArcGIS Server token service
    public: false
maintainers:
  - FN: Kin Lane
    email: kin@apievangelist.com

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/bureau-of-ocean-energy-management-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.