Vergent Bioscience · Authentication Profile

Vergent Bioscience Authentication

Authentication

Vergent Bioscience publishes no REST/GraphQL API and therefore no OpenAPI securitySchemes. The only callable surface on its own hosts is the anonymous Wix Site MCP endpoint, whose access model was established by direct probe and is stated in the company's own llms.txt.

Vergent Bioscience declares 0 security scheme(s) across its OpenAPI definitions.

CompanyBiotechnologyLife SciencesHealthcareMedical ImagingOncologySurgeryClinical TrialsModel Context Protocol
Methods: Schemes: 0 OAuth flows: API key in:

Security Schemes

Source

Authentication Profile

vergent-bioscience-authentication.yml Raw ↑
generated: '2026-09-02'
method: probed
source: https://www.vergentbio.com/_api/mcp
description: >-
  Vergent Bioscience publishes no REST/GraphQL API and therefore no OpenAPI securitySchemes.
  The only callable surface on its own hosts is the anonymous Wix Site MCP endpoint, whose
  access model was established by direct probe and is stated in the company's own llms.txt.
surfaces:
  - name: Site MCP endpoint
    url: https://www.vergentbio.com/_api/mcp
    schemes:
      - type: none
        applies_to: transport + tools/list + read tools (GetBusinessDetails, SearchInSite, docs tools)
        evidence: >-
          POST tools/list with no Authorization header returned HTTP 200 and the full 9-tool
          manifest on 2026-09-02; a tools/call of GetBusinessDetails likewise returned 200.
        docs: https://www.vergentbio.com/llms.txt
        docs_quote: 'No authentication required to connect to the MCP endpoint'
      - type: bearer-visitor-token
        applies_to: CallWixSiteAPI, ExecuteWixAPI
        obtained_via: GenerateVisitorToken tool on the same endpoint
        anonymous_issuance: true
        evidence: >-
          The probed inputSchema for both tools marks visitorToken as required; the
          GenerateVisitorToken tool takes no parameters and mints a session for any caller.
        note: >-
          This is a session identity, not a credential the provider issues to a developer.
          There is no key, no signup, and no account.
oauth2: false
openid_connect: false
mutual_tls: false
api_keys: false
scopes: none
notes:
  - >-
    scopes/ is deliberately absent: there is no OAuth surface to enumerate, and an empty
    scopes artifact would misrepresent the model.
  - >-
    Company hosts serve no /.well-known/openid-configuration or /.well-known/
    oauth-authorization-server (both HTTP 400 — see well-known/).

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/vergent-bioscience-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.