Skip to content

CISA Secure by Design Principles API

How do I query CISA Secure by Design Principles data over an API?

Point a GET request at api.theartofservice.com/api/agent/frameworks/CISA Secure by Design Principles, or add the MCP server to Claude Desktop or Cursor with the config below. You get 21 controls, 4 domains and every cross-framework mapping this standard carries. The free tier is 10 calls a day and needs no signup or API key.

21
Controls
4
Domains
475+
Mappings
Free
API Price

Add CISA Secure by Design Principles to Claude Desktop or Cursor in one config block

Copy this config into your MCP client to start querying CISA Secure by Design Principles data with AI:

{
  "mcpServers": {
    "compliance": {
      "url": "https://api.theartofservice.com/mcp"
    }
  }
}

No API key required for up to 10 calls/day. Works with Claude Desktop, Cursor, Windsurf, and any MCP-compatible client.

Three curl calls that return CISA Secure by Design Principles data

Get CISA Secure by Design Principles details

curl https://api.theartofservice.com/api/agent/frameworks/CISA%20Secure%20by%20Design%20Principles

List all CISA Secure by Design Principles controls

curl https://api.theartofservice.com/api/agent/frameworks/CISA%20Secure%20by%20Design%20Principles/controls

Map CISA Secure by Design Principles to another framework

curl "https://api.theartofservice.com/api/agent/cross-map?source=CISA%20Secure%20by%20Design%20Principles&target=SOC%202"

Install the Python or npm client

Python (Langchain)

pip install theartofservice-compliance

npm (MCP Server)

npx @theartofservice/compliance-mcp

Questions developers ask about the CISA Secure by Design Principles API

Is there an API for CISA Secure by Design Principles?
Yes. The Art of Service provides a REST API and MCP server with full CISA Secure by Design Principles data: 21 controls across 4 domains, plus cross-framework mappings to 686 other compliance frameworks. Free tier includes 10 calls/day with no signup.
How do I access CISA Secure by Design Principles controls programmatically?
Use the Compliance Intelligence API at api.theartofservice.com. Call GET /api/agent/frameworks/CISA%20Secure%20by%20Design%20Principles/controls to retrieve all 21 controls with codes, titles, and descriptions. Supports filtering by domain.
Can I map CISA Secure by Design Principles controls to other frameworks?
Yes. The API provides cross-framework mapping with 311K+ verified control-to-control mappings. Call GET /api/agent/cross-map?source=CISA%20Secure%20by%20Design%20Principles&target=TARGET to map CISA Secure by Design Principles controls to any of 686 frameworks.
Does the CISA Secure by Design Principles API work with Claude, ChatGPT, or Cursor?
Yes. The API is available as an MCP (Model Context Protocol) server. Add it to Claude Desktop, Cursor, or any MCP-compatible client with a single JSON config snippet. AI agents can then query CISA Secure by Design Principles data directly.
How much does the CISA Secure by Design Principles API cost?
Anonymous access is free (10 calls/day). Free accounts get 100 calls/month. Professional plans start at $149/month with 10,000 calls included. No credit card required for free tier.

What CISA Secure by Design Principles actually requires

The API returns the data. If you want the standard explained first, with its controls, domains and the frameworks it overlaps with, that is on the CISA Secure by Design Principles framework page.

CISA Secure by Design Principles controls, domains and mappings →
Written and maintained by Gerard Blokdyk, The Art of Service.Last updated .

Start using the CISA Secure by Design Principles API today

No signup required for 10 free API calls per day. Create a free account for 100 calls/month.