AI Crawler Index · Authentication Profile

Pathwren Authentication

Authentication

AI Crawler Index declares 0 security scheme(s) across its OpenAPI definitions.

AI crawlersweb crawlersrobots.txtuser agentsbot detectionGPTBotClaudeBotcrawler IP rangesllms.txtopen data
Methods: Schemes: 0 OAuth flows: API key in:

Security Schemes

Source

Authentication Profile

Raw ↑
generated: '2026-09-01'
method: searched
source: https://www.pathwren.workers.dev/.well-known/api-onboarding
docs: https://www.pathwren.workers.dev/api.html
summary: >-
  No authentication of any kind. The OpenAPI 3.1 document declares an empty
  components.securitySchemes and no top-level security requirement; the provider's machine-readable
  onboarding document states authentication.required=false, type "none", with the note "There is no
  key, no token, no signup and no account. Send the GET."
schemes: []
scheme_count: 0
anonymous_access: true
evidence:
- kind: openapi
  url: https://www.pathwren.workers.dev/openapi.json
  detail: components.securitySchemes is empty; no security[] on any of the 68 operations.
- kind: onboarding
  url: https://www.pathwren.workers.dev/.well-known/api-onboarding
  http_status: 200
  detail: 'authentication: {required: false, type: none}'
- kind: plugin-manifest
  url: https://www.pathwren.workers.dev/.well-known/ai-plugin.json
  http_status: 200
  detail: 'auth: {type: none}; api.is_user_authenticated false'
- kind: probe
  url: https://www.pathwren.workers.dev/data/agents.json
  http_status: 200
  detail: Unauthenticated GET returned 200 with the full 74KB payload and Access-Control-Allow-Origin:*.
oauth:
  present: false
  detail: >-
    Probed anonymously on 2026-09-01: /.well-known/oauth-authorization-server 404,
    /.well-known/oauth-protected-resource 404, /.well-known/openid-configuration 404 — each with a
    JSON body. The provider documents these as deliberate machine-readable refusals in
    /.well-known/mcp.json (x-authorization): the servers never issue a 401 and never inspect an
    Authorization header.
mcp_authentication:
  endpoints:
  - https://www.pathwren.workers.dev/mcp
  - https://www.pathwren.workers.dev/mcp/triage
  - https://www.pathwren.workers.dev/mcp/doctor
  required: false
  verified: probed
  detail: tools/list answered HTTP 200 on all three with no credential.
a2a_authentication:
  endpoint: https://www.pathwren.workers.dev/a2a
  required: false
  detail: The agent card declares no securitySchemes and no security requirement.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/pathwren-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.