How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

SpecterOps

SpecterOps is a cybersecurity company specializing in identity attack path management and offensive security. Its flagship BloodHound platform continuously maps identity relationships and permissions across Active Directory, Entra ID, and cloud/SaaS environments to reveal and eliminate hidden attack paths before they are exploited. Offerings include BloodHound Enterprise (SaaS), BloodHound Community Edition (open source), OpenGraph for custom data sources, Privilege Zones, and the SharpHound/AzureHound collectors, alongside adversary-focused services (red team, penetration testing, attack path assessments) and training. The BloodHound API is a documented REST API (OpenAPI 3.0.3, v2) covering 270+ operations for data ingest, Cypher graph queries, analysis, attack-path findings, and administration.

agent ready

Real signal across most facets with visible, nameable gaps — the contract exists but is thin, or the portal is good while governance and commercial terms are absent.

Kin Score

API Evangelist profiles SpecterOps the way a machine reads it — 50 machine-readable artifacts across 45 APIs, pulled from the provider's own public surface and indexed so a developer, an analyst, or an AI agent can evaluate it against every other provider on the network.

Every provider in the network is reduced to the same set of machine-readable artifacts — OpenAPI contracts, event specifications, GraphQL schemas, runnable collections, pricing and rate-limit signals, security posture, OAuth scopes, and the agent surfaces (MCP servers and skills) that let software drive the API on its own. We profile them because the interface is the part of a company you can actually inspect: it is a truer signal of what a provider does than any marketing page. From those artifacts we compute the Kin Score — SpecterOps scores 53.2/100 (developing), with a separate agent-readiness read of 39/100 (agent ready). The full breakdown is below, followed by every artifact we hold — each card links through to its machine-readable definition on apis.io.

Kin Score

This is the API Evangelist rating — a single, repeatable read computed from the artifacts on this page. Green fill is points earned; the red track is points possible, so every bar shows earned-versus-possible at a glance.

Kin Score Kin Score How this is scored →
scored 2026-08-03 · rubric v0.9
Composite quality — 53.2/100 · developing
Contract Quality 14.9 / 25
Developer Ergonomics 12.5 / 20
Commercial Clarity 10.0 / 20
Operational Transparency 5.1 / 13
Governance 1.4 / 12
Discoverability 9.3 / 10
Agent readiness — 39/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 0 / 10
MCP Server derived 3.0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8.0 / 8
Request/Response Examples partial 3.5 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills derived 1.3 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
SpecterOps Kin Score — API readiness rating by API Evangelist

Put this on your own site. The badge is drawn live from SpecterOps's current Kin Score — paste it once and it updates itself every time the score is recomputed. It follows your visitor's light or dark setting, and it links back here so anyone who sees it can read the full breakdown.

<!-- Kin Score · API Evangelist -->
<a href="https://providers.apievangelist.com/providers/specterops/"
   title="SpecterOps on API Evangelist — API profile and Kin Score">
  <img src="https://apis.io/badge/specterops.svg"
       alt="SpecterOps Kin Score — API readiness rating by API Evangelist" width="150" height="150" loading="lazy">
</a>

More shapes, themes and sizes → · Score as JSON · How badges work

How we profile SpecterOps

Each block below is one kind of artifact we hold for SpecterOps. For each we say what it is and why it earns a place in the profile, then list every one we've indexed — capped at two rows, scroll within the panel for the rest.

APIs 45

Each API is captured as its own OpenAPI definition — every operation, parameter, and response. This is the single most useful machine-readable description of what an API does, and it's what lets us score, lint, mock, and generate against it without asking the provider for anything.

Individual APIs this provider publishes, each with its own machine-readable definition.

SpecterOps AD Base Entities API

The AD Base Entities API from SpecterOps — 3 operation(s) for ad base entities.

SpecterOps AD Users API

The AD Users API from SpecterOps — 11 operation(s) for ad users.

SpecterOps AIA CAs API

The AIA CAs API from SpecterOps — 3 operation(s) for aia cas.

SpecterOps Analysis API

The Analysis API from SpecterOps — 3 operation(s) for analysis.

SpecterOps API Info API

The API Info API from SpecterOps — 2 operation(s) for api info.

SpecterOps API Tokens API

The API Tokens API from SpecterOps — 2 operation(s) for api tokens.

SpecterOps Asset Isolation API

The Asset Isolation API from SpecterOps — 21 operation(s) for asset isolation.

SpecterOps Attack Paths API

The Attack Paths API from SpecterOps — 10 operation(s) for attack paths.

SpecterOps Audit API

The Audit API from SpecterOps — 1 operation(s) for audit.

SpecterOps Auth API

The Auth API from SpecterOps — 12 operation(s) for auth.

SpecterOps Azure Entities API

The Azure Entities API from SpecterOps — 1 operation(s) for azure entities.

SpecterOps BloodHound Users API

The BloodHound Users API from SpecterOps — 6 operation(s) for bloodhound users.

SpecterOps Cert Templates API

The Cert Templates API from SpecterOps — 3 operation(s) for cert templates.

SpecterOps Client Ingest API

The Client Ingest API from SpecterOps — 1 operation(s) for client ingest.

SpecterOps Clients API

The Clients API from SpecterOps — 11 operation(s) for clients.

SpecterOps Collection Uploads API

The Collection Uploads API from SpecterOps — 6 operation(s) for collection uploads.

SpecterOps Collectors API

The Collectors API from SpecterOps — 6 operation(s) for collectors.

SpecterOps Community API

The Community API from SpecterOps — 177 operation(s) for community.

SpecterOps Computers API

The Computers API from SpecterOps — 16 operation(s) for computers.

SpecterOps Config API

The Config API from SpecterOps — 3 operation(s) for config.

SpecterOps Containers API

The Containers API from SpecterOps — 2 operation(s) for containers.

SpecterOps Custom Node Management API

The Custom Node Management API from SpecterOps — 2 operation(s) for custom node management.

SpecterOps Cypher API

The Cypher API from SpecterOps — 7 operation(s) for cypher.

SpecterOps Data Quality API

The Data Quality API from SpecterOps — 6 operation(s) for data quality.

SpecterOps Database API

The Database API from SpecterOps — 1 operation(s) for database.

SpecterOps Datapipe API

The Datapipe API from SpecterOps — 2 operation(s) for datapipe.

SpecterOps Domains API

The Domains API from SpecterOps — 16 operation(s) for domains.

SpecterOps Enterprise API

The Enterprise API from SpecterOps — 230 operation(s) for enterprise.

SpecterOps Enterprise CAs API

The Enterprise CAs API from SpecterOps — 4 operation(s) for enterprise cas.

SpecterOps EULA API

The EULA API from SpecterOps — 1 operation(s) for eula.

SpecterOps Events (Schedules) API

The Events (Schedules) API from SpecterOps — 2 operation(s) for events (schedules).

SpecterOps GPOs API

The GPOs API from SpecterOps — 6 operation(s) for gpos.

SpecterOps Graph API

The Graph API from SpecterOps — 7 operation(s) for graph.

SpecterOps Groups API

The Groups API from SpecterOps — 10 operation(s) for groups.

SpecterOps Jobs API

The Jobs API from SpecterOps — 9 operation(s) for jobs.

SpecterOps Meta Entities API

The Meta Entities API from SpecterOps — 1 operation(s) for meta entities.

SpecterOps NT Auth Stores API

The NT Auth Stores API from SpecterOps — 3 operation(s) for nt auth stores.

SpecterOps OpenGraph (Experimental) API

The OpenGraph (Experimental) API from SpecterOps — 5 operation(s) for opengraph (experimental).

SpecterOps OUs API

The OUs API from SpecterOps — 5 operation(s) for ous.

SpecterOps Permissions API

The Permissions API from SpecterOps — 2 operation(s) for permissions.

SpecterOps Risk Posture API

The Risk Posture API from SpecterOps — 2 operation(s) for risk posture.

SpecterOps Roles API

The Roles API from SpecterOps — 2 operation(s) for roles.

SpecterOps Root CAs API

The Root CAs API from SpecterOps — 3 operation(s) for root cas.

SpecterOps Search API

The Search API from SpecterOps — 2 operation(s) for search.

SpecterOps Tasks API

The Tasks API from SpecterOps — 9 operation(s) for tasks.

Scroll within the panel for all 45 ·

MCP Servers 1

Model Context Protocol servers expose these APIs directly to AI agents. We profile them because agent-native access is the fastest-growing way this provider's capabilities actually get used.

Model Context Protocol servers that expose these APIs to AI agents.

specterops-mcp.yml

MCP SERVER

Security Posture 4

Authentication, domain security, vulnerability disclosure, and trust-center signals — the evidence that a provider takes security seriously enough to document it. We profile it because you can't govern what you can't see.

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Specterops Authentication

apiKey/http · 4 schemes

SECURITY

Specterops Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Specterops Vulnerability Disclosure

disclosure policy published

SECURITY

Specterops Trust Center

SOC 2, ISO 27001, ISO 27017, FedRAMP, GDPR

SECURITY

Resources

Every other property we hold for SpecterOps — documentation, portals, status pages, policies, and corporate surface — grouped by the job it does, following the integrator's arc from getting started to running in production.

Get Started 3

Portal, sign-up, and the first successful call

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 3

MCP servers, agent skills, and machine-readable catalogs

Build 3

SDKs, sample code, and the tooling you integrate with

Operate 3

Status, limits, changes, and where to get help

Commercial 2

Pricing, plans, and the legal terms of use

Company 2

The organization behind the API

Other 1

Properties that don't map to a standard resource type

← All providers · Data indexed from github.com/api-evangelist/specterops · machine-readable index on apis.io

Where this information came from

This is an independent, third-party profile of SpecterOps, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

[email protected] · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.