http://localhost:8000.
Authentication
Every request needs a tenant API key as a bearer token:Endpoints
All endpoints are prefixed with/api/v1/registry.
Ingest
One write endpoint, used by the SDK and gateway rather than by you directly:Examples
- List assets
- Asset detail
- Data flows
- Semantic search
Semantic search
/search is a vector search over asset metadata using a pgvector HNSW index, not a substring match. Querying “tools that read customer records” surfaces assets whose descriptions are semantically close, even with no shared keywords.
This is the practical way to answer governance questions like “what touches candidate data?” without knowing in advance how each team named their system.
Every asset carries its evidence
Two fields do most of the work when you consume this API:discovery_source— an array of every channel that detected the assetconfidence—low,medium,high, orverified, computed from that array
Exporting to Ardoq
The repository includesdemo/ardoq_recipe.json, an Ardoq Integration Builder recipe that reads this API and writes vendors, models, use cases, data flows, and risk mappings into Ardoq AI Lens.
ServiceNow and LeanIX connectors are planned but not yet available. Until they ship, the Registry API is a plain REST interface — writing a custom connector is straightforward.