Skip to main content

API and Feeds

CAIF uses static API-style files so the public website can stay lightweight and GitHub Pages-ready while still supporting integrations.

Current MVP feeds:

  • /api/standards.json
  • /api/weaknesses.json
  • /api/findings.json
  • /api/cairs.json
  • /api/caif-cvss.json
  • /api/bbp-vdp-programs.json
  • /api/bbp-vdp-programs.rss.xml
  • /api/programs.json
  • /api/tools.json
  • /api/tool-categories.json
  • /api/tools-open-source.json
  • /api/tools-recent.json
  • /api/tools.rss
  • /api/rss.xml

These files are generated during build from repository data files where possible. The Security AI Landscape enrichment workflow refreshes GitHub repository activity metadata without requiring visitor credentials.

No backend required​

The MVP does not require a database, serverless function, paid search service, or private API. The official repository is the system of record.