Kolide
Kolide is a device trust and endpoint security platform, now part of 1Password Extended Access Management. It enforces Zero Trust access by blocking non-compliant devices from authenticating into corporate applications through Okta, Google Workspace or Microsoft Entra, runs continuous security and compliance checks across Linux, macOS, Windows, iOS and Android endpoints, and maintains fleet-wide device inventory built on thousands of osquery-sourced data points. Its distinguishing philosophy is user-first remediation: rather than silently denying access, Kolide educates the end user about the specific problem on their device and guides them through fixing it themselves, cutting helpdesk load. The public developer surface is the K2 API at api.kolide.com — 65 REST operations across devices, people, groups, security checks, compliance issues, live osquery campaigns, approval queues, reporting tables and audit logs — published as OpenAPI 3.0 on dated version lines, with HMAC-signed webhooks, an OpenID Shared Signals Framework (CAEP) event stream, and a first-party MCP server.
Real signal across most facets with visible, nameable gaps — the contract exists but is thin, or the portal is good while governance and commercial terms are absent.
API Evangelist profiles Kolide the way a machine reads it — 23 machine-readable artifacts across 17 APIs, pulled from the provider's own public surface and indexed so a developer, an analyst, or an AI agent can evaluate it against every other provider on the network.
Every provider in the network is reduced to the same set of machine-readable artifacts — OpenAPI contracts, event specifications, GraphQL schemas, runnable collections, pricing and rate-limit signals, security posture, OAuth scopes, and the agent surfaces (MCP servers and skills) that let software drive the API on its own. We profile them because the interface is the part of a company you can actually inspect: it is a truer signal of what a provider does than any marketing page. From those artifacts we compute the Kin Score — Kolide scores 57.7/100 (developing), with a separate agent-readiness read of 61/100 (agent native). The full breakdown is below, followed by every artifact we hold — each card links through to its machine-readable definition on apis.io.
Kin Score
This is the API Evangelist rating — a single, repeatable read computed from the artifacts on this page. Green fill is points earned; the red track is points possible, so every bar shows earned-versus-possible at a glance.
How we profile Kolide
Each block below is one kind of artifact we hold for Kolide. For each we say what it is and why it earns a place in the profile, then list every one we've indexed — capped at two rows, scroll within the panel for the rest.
APIs 17
Each API is captured as its own OpenAPI definition — every operation, parameter, and response. This is the single most useful machine-readable description of what an API does, and it's what lets us score, lint, mock, and generate against it without asking the provider for anything.
Individual APIs this provider publishes, each with its own machine-readable definition.
Kolide Admin Users API
The Admin Users API from Kolide — 2 operation(s) for admin users.
Kolide Audit Logs API
The Audit Logs API from Kolide — 2 operation(s) for audit logs.
Kolide Auth Logs API
The Auth Logs API from Kolide — 2 operation(s) for auth logs.
Kolide Checks API
The Checks API from Kolide — 5 operation(s) for checks.
Kolide Custom Check Drafts API
The Custom Check Drafts API from Kolide — 2 operation(s) for custom check drafts.
Kolide Deprovisioned People API
The Deprovisioned People API from Kolide — 1 operation(s) for deprovisioned people.
Kolide Device Groups API
The Device Groups API from Kolide — 5 operation(s) for device groups.
Kolide Devices API
The Devices API from Kolide — 7 operation(s) for devices.
Kolide Exemption Requests API
The Exemption Requests API from Kolide — 2 operation(s) for exemption requests.
Kolide Issues API
The Issues API from Kolide — 2 operation(s) for issues.
Kolide Live Query Campaigns API
The Live Query Campaigns API from Kolide — 3 operation(s) for live query campaigns.
Kolide Packages API
The Packages API from Kolide — 2 operation(s) for packages.
Kolide People API
The People API from Kolide — 5 operation(s) for people.
Kolide Person Groups API
The Person Groups API from Kolide — 3 operation(s) for person groups.
Kolide Registration Requests API
The Registration Requests API from Kolide — 2 operation(s) for registration requests.
Kolide Reporting API
The Reporting API from Kolide — 6 operation(s) for reporting.
Kolide Whoami API
The Whoami API from Kolide — 1 operation(s) for whoami.
Scroll within the panel for all 17 ·
MCP Servers 1
Model Context Protocol servers expose these APIs directly to AI agents. We profile them because agent-native access is the fastest-growing way this provider's capabilities actually get used.
Model Context Protocol servers that expose these APIs to AI agents.
kolide-mcp.yml
MCP SERVEREvent Specifications 1
Not every API is request/response. AsyncAPI describes the event-driven and streaming side — the webhooks and channels — so the asynchronous half of the interface is documented the same way the synchronous half is.
AsyncAPI definitions for this provider's event-driven and streaming APIs.
Kolide Events
ASYNCAPISecurity Posture 4
Authentication, domain security, vulnerability disclosure, and trust-center signals — the evidence that a provider takes security seriously enough to document it. We profile it because you can't govern what you can't see.
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Resources
Every other property we hold for Kolide — documentation, portals, status pages, policies, and corporate surface — grouped by the job it does, following the integrator's arc from getting started to running in production.
Get Started 3
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 4
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 6
Pagination, idempotency, versioning, errors, and events
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 6
Authentication, authorization, and security posture
Operate 3
Status, limits, changes, and where to get help
Commercial 3
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API
Other 1
Properties that don't map to a standard resource type
← All providers · Data indexed from github.com/api-evangelist/kolide · machine-readable index on apis.io