OWASP SAMM API
How do I query OWASP SAMM data over an API?
Point a GET request at api.theartofservice.com/api/agent/frameworks/OWASP SAMM, or add the MCP server to Claude Desktop or Cursor with the config below. You get 5 controls, 5 domains and every cross-framework mapping this standard carries. The free tier is 10 calls a day and needs no signup or API key.
Add OWASP SAMM to Claude Desktop or Cursor in one config block
Copy this config into your MCP client to start querying OWASP SAMM data with AI:
{
"mcpServers": {
"compliance": {
"url": "https://api.theartofservice.com/mcp"
}
}
}No API key required for up to 10 calls/day. Works with Claude Desktop, Cursor, Windsurf, and any MCP-compatible client.
Three curl calls that return OWASP SAMM data
Get OWASP SAMM details
curl https://api.theartofservice.com/api/agent/frameworks/OWASP%20SAMMList all OWASP SAMM controls
curl https://api.theartofservice.com/api/agent/frameworks/OWASP%20SAMM/controlsMap OWASP SAMM to another framework
curl "https://api.theartofservice.com/api/agent/cross-map?source=OWASP%20SAMM&target=SOC%202"Install the Python or npm client
Python (Langchain)
pip install theartofservice-compliancenpm (MCP Server)
npx @theartofservice/compliance-mcpQuestions developers ask about the OWASP SAMM API
Is there an API for OWASP SAMM?▾
How do I access OWASP SAMM controls programmatically?▾
Can I map OWASP SAMM controls to other frameworks?▾
Does the OWASP SAMM API work with Claude, ChatGPT, or Cursor?▾
How much does the OWASP SAMM API cost?▾
What OWASP SAMM actually requires
The API returns the data. If you want the standard explained first, with its controls, domains and the frameworks it overlaps with, that is on the OWASP SAMM framework page.
OWASP SAMM controls, domains and mappings →Start using the OWASP SAMM API today
No signup required for 10 free API calls per day. Create a free account for 100 calls/month.