emerging · 1.0 market domain

Zero Trust

Score 23.1 / 100 101 providers +5 via APIs 30 APIs Search apis.io →

Providers using this tag (101)

Ranked by API Evangelist rating — Exemplar and Strong are expanded by default.

Exemplar 1 Complete, well-documented, and agent-ready
Strong 12 Solid coverage with minor gaps
Developing 20 Usable, with meaningful gaps to close
Thin 28 Limited public surface area
TailscaleVPNMesh NetworkingWireGuard1 API39.1BeyondTrustAccessAccess ManagementComplianceCredentials6 APIs38.9NetskopeSecuritySASESSECASB4 APIs38.4WanderaCompanyCybersecurityMobile Security2 APIs37.9NetBirdNetworkingVPNOpen Source1 API37.3WatchGuardCloud SecurityEndpoint SecurityFirewallMFA2 APIs37.3AviatrixCompanyCloud NetworkingCloud SecurityMulti-Cloud37.2AryakaCompanyNetworkingSASESD-WAN36.9Google BeyondCorpAccess ControlEnterprise SecurityIdentitySecurity1 API36.9Cisco Secure ClientEndpoint SecurityRemote AccessSecurityVPN1 API36.6RubrikBackupCyber RecoveryData SecurityData Security Posture Management1 API36.5ZscalerCloud SecuritySASENetwork Security5 APIs36.5Via ScienceCompanySecurityIdentityAuthentication1 API35.9Zero Trust Network AccessAccess ControlCloud SecurityCybersecurityIdentity Management1 API35.9Ambient MeshService MeshIstioKubernetes1 API35.2Consul ConnectConsulEnvoyHashiCorpIntentions1 API35.0VirsecCompanySecurityCybersecurityApplication Security2 APIs32.3SPIFFEAuthenticationCloud-NativeGraduatedIdentity1 API31.4IllumioCompanySecurityCybersecurity1 API30.8Versa NetworksCompanyNetworkingSecuritySASE2 APIs30.1JumpCloudIdentityDirectory ServicesSSOMFA1 API29.6ibossCompanySecurityCybersecurity1 API29.5Duo SecurityAuthenticationMFAIdentity1 API28.9CentrifyCompanyIdentityPrivileged Access ManagementAccess Management1 API28.7Perimeter 81CompanyCybersecuritySASE1 API28.6HyporiCompanySecurityMobileVirtualization1 API28.5Secret Double OctopusCompanyAuthenticationIdentity and Access ManagementPasswordless1 API28.2Cato NetworksCompanyCybersecuritySASESSE1 API27.6
Emerging 28 Early or largely undocumented
SilverfortCompanyIdentitySecurityAuthentication1 API25.7TodylCompanyCybersecuritySecurityManaged Service Providers1 API25.7AppaegisCompanySecurityEnterprise Browser1 API25.5Zero-Trust Security ModelAccess ControlCybersecurityFederalIdentity Management5 APIs25.4CyberArk IdentityIdentityAccess ManagementIdentity and Access ManagementSSO1 API24.8UnisysFortune 1000SecurityNetwork Security4 APIs23.9ForescoutCompanyCybersecurityNetwork SecurityDevice Visibility3 APIs23.6API DynamicsAPI SecurityAPI DiscoveryAPI Observability1 API23.2Zero Trust ArchitectureAccess ControlAuthenticationAuthorizationCybersecurity5 APIs23.2GreymatterEnterpriseKubernetesNetworkingService Mesh3 APIs18.0OtterizeCompanyBusiness ApplicationsKubernetesAccess Control17.8SonicWallCybersecurityNetwork SecurityFirewallNext-Generation Firewall17.8AdytonCompanyEnterprise SaasDefense17.7ElisityCompanyCybersecurityMicrosegmentation17.1VeniceCompanySecurityPrivileged Access ManagementIdentity Security16.1XageCompanySecurityCybersecurity15.6OpenVPNVPNNetwork SecurityRemote Access2 APIs15.5NewCoreCompanySecurityIdentityIdentity and Access Management15.4Menlo SecurityCompanySecurityCybersecurityBrowser Security15.3SpirlCompanySecurityIdentityNon-Human Identity15.0AceissCompanySecurityIdentity and Access ManagementAccess Control14.8Banyan SecurityCompanySecurityNetworks14.8IslandCompanyCybersecurityEnterprise Browser13.8TwingateZTNANetwork AccessVPN Replacement1 API13.1IvantiEndpoint ManagementIT Asset ManagementITSMPatch Management5 APIs12.2NileNetworkingEnterprise NetworkingNetwork as a ServiceNaaS12.1Red AccessCompanySecurityCybersecuritySecure Service Edge11.9WenspiredataCompanyCybersecurityPrivileged Access Management11.4
Minimal 9 Almost no public developer surface
Unrated 3 Not yet scored

APIs with this tag (29)

Ranked by the provider's API Evangelist rating — the Kin Score is scored per provider, not per API, so every API of a provider shares its band. How the rating works →

Exemplar 1 Complete, well-documented, and agent-ready
Strong 3 Solid coverage with minor gaps
Developing 4 Usable, with meaningful gaps to close
Thin 8 Limited public surface area
Emerging 12 Early or largely undocumented
NIST SP 800-207 Zero Trust ArchitectureThe foundational specification of the Zero Trust security model. Defines the seven tenets, the PDP/PEP/PA l...25.4API Dynamics PlatformThe APIDynamics platform provides AI-driven API security and observability including API discovery, traffic...23.2NIST SP 800-207 Zero Trust ArchitectureNIST Special Publication 800-207 defines zero trust architecture (ZTA) and provides a roadmap for organizat...23.2NIST SP 800-207A ZTA for Cloud-Native ApplicationsNIST SP 800-207A extends the original ZTA guidance to cover cloud-native applications in multi-cloud enviro...23.2Open Policy Agent (OPA)Open Policy Agent is a CNCF-graduated open source general-purpose policy engine that enables unified, conte...23.2SPIFFE - Secure Production Identity Framework for EveryoneSPIFFE is a CNCF-graduated open standard for workload identity in dynamic environments. It provides a frame...23.2SPIRE - SPIFFE Runtime EnvironmentSPIRE is the reference implementation of SPIFFE, a CNCF-graduated production-ready toolchain for establishi...23.2HPE Aruba Networking SSE APIThe HPE Aruba Networking SSE (Security Service Edge) API exposes the Axis Security / HPE SSE cloud-delivere...22.3Greymatter Platform APIThe Greymatter Platform API provides programmatic access to configure and manage the Greymatter zero trust ...18.0CloudConnexa Public APIREST API for managing CloudConnexa Zero Trust networks, users, networks, connectors, DNS, routes, and acces...15.5Twingate Admin APIGraphQL Admin API for managing Twingate resources, remote networks, connectors, users, groups, devices, ser...13.1Ivanti Neurons for Zero-Trust AccessREST API for Ivanti Neurons for Zero-Trust Access, providing programmatic configuration of zero-trust polic...12.2
Minimal 1 Almost no public developer surface

Companies reaching this through an API (5)

These companies publish an API, specification or operation carrying “Zero Trust” but do not classify their business under it. Listed unranked and kept out of the count above, because one tagged operation is not a statement about what a company does.

APIs.io Engineering Platform Cloudflare HPE Aruba Networking SSH VPN

Score breakdown

Frequency
57.7
log-scaled weighted occurrences
Breadth
2.6
spread across providers
Quality lift
40.2
mean composite of providers using it
Cohesion
0.0
strength of nearest seed neighbor

Related tags

Network Security 25 co-occurrences SASE 18 co-occurrences Cloud Security 22 co-occurrences ZTNA 10 co-occurrences VPN 11 co-occurrences Privileged Access Management 10 co-occurrences Identity and Access Management 12 co-occurrences Microsegmentation 8 co-occurrences

Where this tag comes from

Provider tag101
Api tag30

Cohort brief

Auto-generated

The 97 providers in the APIs.io catalog tagged Zero Trust, scored on the Kin Score. Every figure below is computed from the catalog — nothing here is written.

Providers
97
all scored
Mean Kin Score
33
+10.1 vs catalog 22.9
Mean Agent Readiness
15.3
+3.4 vs catalog 11.9
Spread
0–72.6
median 35 · σ 16.7
How the 97 split by band
Exemplar 1Strong 12Developing 20Thin 28Emerging 28Minimal 8
Facet averages, against the whole catalog
FacetThis cohortCatalogDifferenceScored
Developer Ergonomics 37 23.2 +13.8 97
Operational Transparency 22.3 13.7 +8.6 97
Contract Quality 26 17.6 +8.4 97
Access Clarity 34.4 26.5 +7.9 97
Contract Governance 12.9 6.3 +6.6 97
Discoverability 64.2 58.1 +6.1 97

A facet is averaged over the members that carry it, not over the whole cohort — the “Scored” column is that count. Averaging an absent facet as zero would score our own coverage gaps as the providers’ posture.

What this cohort publishes
ArtifactThis cohortCatalogDifference
MCP server (any) 15% 14% +1
MCP server (first-party) 10% 12% -2
Agent Skills 0% 0% 0
OAuth scopes 9% 11% -2
Security 97% 98% -1
Arazzo workflows 2% 2% 0
Governance rules 25% 14% +11

mcp_pct counts any mcp/ artifact including ones API Evangelist derived from the provider OpenAPI; mcp_first_party_pct counts only servers the provider publishes. Prefer the latter.

Top by Kin Score
  1. 1 Aembit 72.6
  2. 2 ZeroTier 64.8
  3. 3 Cisco Umbrella 62.1
  4. 4 Cisco Identity Services Engine 61.9
  5. 5 Microsoft Active Directory 61.4
  6. 6 Graphiant 59.8
  7. 7 AppOmni 59
  8. 8 Microsoft Entra 58.5
  9. 9 Amazon WorkSpaces Web 56.8
  10. 10 Beyond Identity 56.7
Top by Agent Readiness
  1. 1 Aembit 54.6
  2. 2 Nord Security 43.5
  3. 3 Tigera 39.1
  4. 4 Cisco Identity Services Engine 38.3
  5. 5 BeyondTrust 36.8
  6. 6 AppOmni 36.7
  7. 7 CyberArk 35.7
  8. 8 Beyond Identity 33.1
  9. 9 Netskope 32.4
  10. 10 Amazon WorkSpaces Web 32
All 101 members of this roster resolve to a scored provider in the catalog.Generated from the catalog build of 5 October 2026, across 29093 providers, using the same computation served by the APIs.io cohort API. Briefs are published for rosters of 5 or more scored providers; below that a distribution is not meaningful.

Work with this as data

Every tag here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for tags

7 MCP tools reach this
  • find_tagsBrowse and filter every tag in the catalog.
  • get_cohortThis tag as a scored cohort — every provider carrying it, with scores.
  • cohort_statsPRO — the distribution across this tag: mean, median, band split, adoption rates.
  • cohort_rankingsPRO — the leaderboard, on composite AND agent-readiness axes.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This tag
curl "https://apis.io/api/v1/tags/zero-trust"
All tags
curl "https://apis.io/api/v1/tags?limit=25"
As a scored cohort
curl "https://apis.io/api/v1/cohorts/tag/zero-trust"
The distribution (Pro)
curl "https://apis.io/api/v1/cohorts/tag/zero-trust/stats" \
  -H "X-API-Key: $APIS_IO_KEY"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.