cyberark.com
CyberArk provides identity security and privileged access products for managing identities, secrets, and secure access across cloud and hybrid environments. Its documentation spans SaaS platform services such as access management, secrets management, secure infrastructure access, and secure AI agent controls.
CyberArk exposes a tenant-scoped Idira platform API catalog (mostly REST plus one documented GraphQL endpoint) authenticated with bearer tokens minted from an Identity service account, and it also documents a downloadable Secrets Manager MCP server without a public connect URL.
- Secrets Manager MCP serverdiscovered
- CyberArk Idira platform APIsdiscovered
- Discovery & Context GraphQL APIdiscovered
In the Identity Administration portal, create a service user under Core Services > Users > Add User. Set a Login name, Display name, and Password, then enable Is OAuth confidential client. Add the service user to the product roles needed for the target API. Then exchange the service user's Login name and Password for a bearer token by POSTing grant_type=client_credentials, client_id, and client_secret to https://<identity-tenant-id>.id.cyberark.cloud/oauth2/platformtoken as described in Create an API token.
conventions · 1/8 published
- integrations.json✗
/.well-known/integrations.json - llms.txt✓https://cyberark.com/llms.txt
- API catalog✗
/.well-known/api-catalog - OpenAPI document✗
/api/schema/, /openapi.json, /swagger.json, /api/openapi.json, or /v1/openapi.json - MCP server card✗
/.well-known/mcp/server-card.json - OAuth protected resource✗
/.well-known/oauth-protected-resource - Agent card✗
/.well-known/agent-card.json - Agent skills✗
/.well-known/agent-skills/index.json
Publish these signals → /publishing