{
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "tool": {
    "slug": "sec-edgar",
    "name": "SEC EDGAR APIs",
    "vendor": "U.S. Securities and Exchange Commission",
    "vendorUrl": "https://www.sec.gov",
    "kind": "http-api",
    "category": "data-providers",
    "summary": "Free JSON APIs from the U.S. Securities and Exchange Commission on data.sec.gov for EDGAR. They return each filer's submission history and the XBRL financial data extracted from company reports, with no key or account.",
    "url": "https://www.anchorterminal.com/tools/sec-edgar",
    "markdownUrl": "https://www.anchorterminal.com/tools/sec-edgar.md",
    "slimMarkdownUrl": "https://www.anchorterminal.com/tools/sec-edgar.min.md",
    "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/sec-edgar.json",
    "license": "Public information. The SEC says information on sec.gov may be copied or further distributed without its permission, and asks for citation. EDGAR names and logos are registered trademarks",
    "transports": [
      "http"
    ],
    "remoteUrl": "https://data.sec.gov",
    "packages": [],
    "auth": "none",
    "authNotes": "No key, account or sign-up. The SEC asks automated callers to declare themselves in the User-Agent header with an organisation name and a contact email address, and says requests from undeclared tools will be managed. The APIs are read-only. A separate set of token-protected APIs for EDGAR filers (submitting filings, managing users) is not part of this listing.",
    "pricing": "free",
    "pricingNotes": "Free, with nothing to buy and no account. The limit is 10 requests a second for each user, whatever the number of machines, and the SEC may block IP addresses that exceed it (https://www.sec.gov/about/privacy-information, checked 2026-10-09).",
    "priceSummary": "Free",
    "where": "hosted",
    "x402": {
      "level": "no",
      "evidence": "No x402, MPP or L402 in the API documentation or the privacy and security policy (checked 2026-10-09).",
      "endpoints": []
    },
    "toolCount": null,
    "popularity": {
      "githubStars": null,
      "npmWeekly": null,
      "pypiWeekly": null,
      "asOf": "2026-10-09"
    },
    "docsUrl": "https://www.sec.gov/search-filings/edgar-application-programming-interfaces",
    "capabilities": [
      "data.company"
    ],
    "tags": [
      "official",
      "government",
      "hosted",
      "free",
      "no-key",
      "open-data",
      "us"
    ],
    "graded": true,
    "anchor": {
      "graded": true,
      "score": 40.8,
      "grade": "E",
      "agentReady": false,
      "rank": 909,
      "ranked": true,
      "rankOf": 950,
      "categoryRank": 9,
      "methodology": "0.4",
      "run": "2026-10-01",
      "scores": {
        "ergonomics": 41,
        "maintenance": 14,
        "payments": 60,
        "reliability": 38,
        "schema": 23,
        "security": 52,
        "transparency": 57
      },
      "pending": [
        "performance",
        "tasks"
      ],
      "breakdown": [
        {
          "key": "reliability",
          "name": "Reliability",
          "weight": 16,
          "effectiveWeight": 20,
          "score": 38,
          "points": 7.6,
          "reason": "Graded as a hosted API. No status page was found for data.sec.gov in the API docs, the developer pages or the FAQ (0), so there is no incident history to read (5). The limit is published, 10 requests a second for each user (15). The policy says an IP address over the limit may be limited until its rate has stayed below the threshold for 10 minutes, with no status code, Retry-After header or backoff guidance documented. Every request is a read (8 of 15). No SLA, and the SEC says it gives no technical support for scripted access (0). The APIs carry no beta label (10). 0 + 5 + 15 + 8 + 0 + 10 = 38."
        },
        {
          "key": "performance",
          "name": "Performance",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes."
        },
        {
          "key": "schema",
          "name": "Schema \u0026 documentation",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 23,
          "points": 3.74,
          "reason": "No OpenAPI file or other machine-readable contract is linked from the docs (0). www.sec.gov/llms.txt returns 404 (0). One page describes the four routes in prose, says what each returns and points large pulls to the bulk files, with nothing on response fields (10 of 20). Path patterns state the 10-digit CIK, the taxonomy, the unit form and the three period formats, with no list of allowed values and no response schema (7 of 15). Example URLs are given, with no example response and no error reference (4 of 15). Paths carry no version and no API changelog was found. The page shows a last update of 8 April 2025 (2 of 15). Total 23."
        },
        {
          "key": "ergonomics",
          "name": "Agent ergonomics",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 41,
          "points": 6.66,
          "reason": "No limit, paging or field selection. `companyconcept` and `frames` narrow a request to one concept, and submissions use compact column arrays, but Apple's submissions file was 164 KB on the day (8 of 25). No query parameters. Older filings are split into extra files listed with their date ranges, and nothing filters by form or date (6 of 20). Errors are not documented, and a missing path answered 404 with an XML `NoSuchKey` body (5 of 20). Every route is a GET on a JSON document and safe to retry (15 of 20). A call needs one CIK and no key, but the CIK comes from a separate file, the User-Agent must be set, and no official SDK was found (7 of 15). Total 41."
        },
        {
          "key": "security",
          "name": "Security \u0026 auth",
          "weight": 14,
          "effectiveWeight": 17.5,
          "score": 52,
          "points": 9.1,
          "reason": "No credential, so there is no secret to leak. The declared User-Agent carries a contact address, not a key (20 of 30). The APIs are read-only (15 of 20). Responses are mostly numbers and filing metadata, with names and descriptions as filers wrote them and no guidance on treating them as untrusted (7 of 15). No account, so no request log or usage view (0 of 15). A Vulnerability Disclosure Policy updated on 21 September 2026 authorises good-faith research, takes reports through a Bugcrowd form and asks for 90 days before disclosure. security.txt returns 404, there is no paid bounty, and no certification was found (10 of 20). Total 52."
        },
        {
          "key": "payments",
          "name": "Payments \u0026 pricing",
          "weight": 10,
          "effectiveWeight": 12.5,
          "score": 60,
          "points": 7.5,
          "reason": "No x402, MPP or L402 (0). Free, stated publicly, with nothing to buy (20). No account or card (20). An agent can call with no sign-up, sending only a declared User-Agent (20). Total 60."
        },
        {
          "key": "tasks",
          "name": "Task success",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "note": "data quality 100, half of this category once the task suite runs",
          "reason": "Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored."
        },
        {
          "key": "maintenance",
          "name": "Maintenance \u0026 community",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 14,
          "points": 1.23,
          "reason": "No dated change to the data APIs was found. The docs page shows a last update of 8 April 2025, 549 days before the check (0 of 30). EDGAR News and Announcements carries three posts in the last 90 days (14 August, 14 September and 7 October 2026), all about the filing system and its taxonomies and none about these APIs, so half credit (10 of 20). The SEC publishes webmaster@sec.gov and opendata@sec.gov for feedback and says it gives no technical support for scripted access. No forum or issue tracker was found (4 of 15). No official SDK (0 of 15). No package to judge (0 of 10). Total 14."
        },
        {
          "key": "transparency",
          "name": "Transparency \u0026 trust",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 57,
          "points": 4.99,
          "note": "editorial 43, provenance 70",
          "reason": "Closed government service. The policy says information on sec.gov is public and may be copied or redistributed without permission, and sets the automated access rules (15 of 30). The privacy policy lists what is logged on each visit, says partial IP addresses are published in response to FOIA requests, and links Privacy Impact Assessments and system of records notices. No retention period for access logs is stated (18 of 30). No deprecation policy for the APIs. The policy says its limits may change (2 of 20). Google Analytics, Foresee, Akamai and GovDelivery are named. The Amazon hosting seen in response headers is not, and no data locations are given (8 of 20). Total 43."
        }
      ],
      "assessment": {
        "date": "2026-10-09",
        "basis": "public evidence",
        "confidence": "medium",
        "notes": {
          "ergonomics": "No limit, paging or field selection. `companyconcept` and `frames` narrow a request to one concept, and submissions use compact column arrays, but Apple's submissions file was 164 KB on the day (8 of 25). No query parameters. Older filings are split into extra files listed with their date ranges, and nothing filters by form or date (6 of 20). Errors are not documented, and a missing path answered 404 with an XML `NoSuchKey` body (5 of 20). Every route is a GET on a JSON document and safe to retry (15 of 20). A call needs one CIK and no key, but the CIK comes from a separate file, the User-Agent must be set, and no official SDK was found (7 of 15). Total 41.",
          "maintenance": "No dated change to the data APIs was found. The docs page shows a last update of 8 April 2025, 549 days before the check (0 of 30). EDGAR News and Announcements carries three posts in the last 90 days (14 August, 14 September and 7 October 2026), all about the filing system and its taxonomies and none about these APIs, so half credit (10 of 20). The SEC publishes webmaster@sec.gov and opendata@sec.gov for feedback and says it gives no technical support for scripted access. No forum or issue tracker was found (4 of 15). No official SDK (0 of 15). No package to judge (0 of 10). Total 14.",
          "payments": "No x402, MPP or L402 (0). Free, stated publicly, with nothing to buy (20). No account or card (20). An agent can call with no sign-up, sending only a declared User-Agent (20). Total 60.",
          "reliability": "Graded as a hosted API. No status page was found for data.sec.gov in the API docs, the developer pages or the FAQ (0), so there is no incident history to read (5). The limit is published, 10 requests a second for each user (15). The policy says an IP address over the limit may be limited until its rate has stayed below the threshold for 10 minutes, with no status code, Retry-After header or backoff guidance documented. Every request is a read (8 of 15). No SLA, and the SEC says it gives no technical support for scripted access (0). The APIs carry no beta label (10). 0 + 5 + 15 + 8 + 0 + 10 = 38.",
          "schema": "No OpenAPI file or other machine-readable contract is linked from the docs (0). www.sec.gov/llms.txt returns 404 (0). One page describes the four routes in prose, says what each returns and points large pulls to the bulk files, with nothing on response fields (10 of 20). Path patterns state the 10-digit CIK, the taxonomy, the unit form and the three period formats, with no list of allowed values and no response schema (7 of 15). Example URLs are given, with no example response and no error reference (4 of 15). Paths carry no version and no API changelog was found. The page shows a last update of 8 April 2025 (2 of 15). Total 23.",
          "security": "No credential, so there is no secret to leak. The declared User-Agent carries a contact address, not a key (20 of 30). The APIs are read-only (15 of 20). Responses are mostly numbers and filing metadata, with names and descriptions as filers wrote them and no guidance on treating them as untrusted (7 of 15). No account, so no request log or usage view (0 of 15). A Vulnerability Disclosure Policy updated on 21 September 2026 authorises good-faith research, takes reports through a Bugcrowd form and asks for 90 days before disclosure. security.txt returns 404, there is no paid bounty, and no certification was found (10 of 20). Total 52.",
          "transparency": "Closed government service. The policy says information on sec.gov is public and may be copied or redistributed without permission, and sets the automated access rules (15 of 30). The privacy policy lists what is logged on each visit, says partial IP addresses are published in response to FOIA requests, and links Privacy Impact Assessments and system of records notices. No retention period for access logs is stated (18 of 30). No deprecation policy for the APIs. The policy says its limits may change (2 of 20). Google Analytics, Foresee, Akamai and GovDelivery are named. The Amazon hosting seen in response headers is not, and no data locations are given (8 of 20). Total 43."
        },
        "sources": [
          {
            "what": "EDGAR Application Programming Interfaces documentation",
            "url": "https://www.sec.gov/search-filings/edgar-application-programming-interfaces",
            "seen": "2026-10-09"
          },
          {
            "what": "Accessing EDGAR Data, fair access and index files",
            "url": "https://www.sec.gov/search-filings/edgar-search-assistance/accessing-edgar-data",
            "seen": "2026-10-09"
          },
          {
            "what": "SEC Web Site Privacy and Security Policy",
            "url": "https://www.sec.gov/about/privacy-information",
            "seen": "2026-10-09"
          },
          {
            "what": "Webmaster FAQ, developer section",
            "url": "https://www.sec.gov/about/webmaster-frequently-asked-questions",
            "seen": "2026-10-09"
          },
          {
            "what": "Developer Resources",
            "url": "https://www.sec.gov/about/developer-resources",
            "seen": "2026-10-09"
          },
          {
            "what": "Vulnerability Disclosure Policy",
            "url": "https://www.sec.gov/about/privacy-information/vulnerability-disclosure-policy",
            "seen": "2026-10-09"
          },
          {
            "what": "EDGAR News and Announcements",
            "url": "https://www.sec.gov/submit-filings/edgar-news-announcements",
            "seen": "2026-10-09"
          },
          {
            "what": "EDGAR Release 26.3 note, 14 September 2026",
            "url": "https://www.sec.gov/submit-filings/edgar-news-announcements/edgar-release-263",
            "seen": "2026-10-09"
          },
          {
            "what": "Submit Filings page, with the three latest announcements",
            "url": "https://www.sec.gov/submit-filings",
            "seen": "2026-10-09"
          },
          {
            "what": "submissions call for Apple (200, JSON, 164 KB)",
            "url": "https://data.sec.gov/submissions/CIK0000320193.json",
            "seen": "2026-10-09"
          },
          {
            "what": "company concept call for Apple (200, JSON, 19 KB)",
            "url": "https://data.sec.gov/api/xbrl/companyconcept/CIK0000320193/us-gaap/AccountsPayableCurrent.json",
            "seen": "2026-10-09"
          },
          {
            "what": "data.sec.gov robots.txt (404, XML NoSuchKey body)",
            "url": "https://data.sec.gov/robots.txt",
            "seen": "2026-10-09"
          },
          {
            "what": "www.sec.gov robots.txt, no Content-Signal line",
            "url": "https://www.sec.gov/robots.txt",
            "seen": "2026-10-09"
          },
          {
            "what": "security.txt (404)",
            "url": "https://www.sec.gov/.well-known/security.txt",
            "seen": "2026-10-09"
          },
          {
            "what": "llms.txt (404)",
            "url": "https://www.sec.gov/llms.txt",
            "seen": "2026-10-09"
          },
          {
            "what": "RDAP record for sec.gov",
            "url": "https://rdap.org/domain/sec.gov",
            "seen": "2026-10-09"
          }
        ],
        "openQuestions": [
          "unchecked: the `companyfacts` and `frames` routes. To keep to a few requests, only `submissions` and `companyconcept` were called, so the size of a company facts response was not seen",
          "unchecked: behaviour over the rate limit. No attempt was made to reach it, so the status code and any Retry-After header are unknown",
          "unchecked: a request with no declared User-Agent. Every request carried one, so the response to an undeclared tool was not seen",
          "unchecked: the Privacy Impact Assessments and system of records notices, which may state how long access logs are kept",
          "unchecked: the token-protected EDGAR filer APIs on api.edgarfiling.sec.gov. They are a separate surface for filers and were not read or graded",
          "No status page for data.sec.gov was found by reading the docs, developer pages and FAQ. Web search was not available to look further",
          "`provenance.terms` and `provenance.privacy` are the same page, the SEC Web Site Privacy and Security Policy, because the API docs name it as the document automated access must comply with and no separate API terms were found",
          "The docs say data.sec.gov does not support CORS. The submissions response on the day carried `access-control-allow-origin: *` and the company concept response did not",
          "`lastRelease` is null because no dated change to the data APIs was found. The date the APIs launched was not found either",
          "The Accessing EDGAR Data page says the SEC does not allow automated tools to crawl the site, while the FAQ says scripted access with a declared User-Agent is allowed. Read together they permit declared, rate-limited access. Recorded as a fact, with no deduction"
        ]
      },
      "negative": 0,
      "verdict": "The official source for US company filings and reported financial figures, free, keyless and, per the SEC, updated in real time as filings are disseminated. Documentation is one page with no OpenAPI file, error reference or changelog, responses cannot be filtered or sized, and there is no status page, SLA or support for scripted access.",
      "bestFor": "Reading a US-listed company's filing history and its reported financial figures from the primary source, with free reuse.",
      "strengths": [
        "No key, account or card. A request needs only a User-Agent header that declares who is calling",
        "The SEC is the primary source. Filings reach the submissions API with a typical delay under a second and the XBRL APIs under a minute, per the docs",
        "Content on sec.gov is public information that may be copied or redistributed without the SEC's permission, per its dissemination statement",
        "The rate limit is published, 10 requests a second for each user across all machines",
        "Nightly bulk ZIP files carry every submissions and company facts record, so large pulls need no API calls"
      ],
      "weaknesses": [
        "No OpenAPI file, llms.txt, response schema, error reference or official SDK was found. The documentation is one page of prose with example URLs",
        "No query parameters. A filing history cannot be filtered by form or date, and the submissions response for Apple was 164 KB uncompressed on 9 October 2026",
        "No status page or SLA was found for data.sec.gov, and the SEC says it gives no technical support for scripted access",
        "No API changelog or deprecation policy was found. The docs page was last updated on 8 April 2025 and the policy says limits may change",
        "Lookups need a 10-digit CIK. Mapping a ticker or name to a CIK uses separate files on www.sec.gov that the SEC does not guarantee"
      ],
      "agentNotes": [
        "Send a User-Agent naming the operator's organisation and a contact email address on every request. The SEC limits or blocks undeclared automated tools",
        "Stay under 10 requests a second in total across all machines. Over the limit, the IP address may be limited until the rate has stayed below the threshold for 10 minutes",
        "Pad the CIK to 10 digits with leading zeros in `submissions/CIK##########.json` and the XBRL paths. Find a CIK in `https://www.sec.gov/files/company_tickers.json`",
        "Prefer `api/xbrl/companyconcept/` for one figure. `companyfacts` returns every concept a company has reported, and `submissions` returns at least 1,000 filings in column arrays",
        "Read older filings from the extra files named in `filings.files`, and check a frame fact's own start and end dates, since frames align company periods to calendar quarters"
      ],
      "metrics": {
        "kind": "remote",
        "measured": false
      },
      "reviewCount": 0,
      "avgRating": 0,
      "history": [
        {
          "basis": "public evidence",
          "confidence": "medium",
          "grade": "E",
          "methodology": "0.4",
          "pending": [
            "performance",
            "tasks"
          ],
          "run": "2026-10-01",
          "runLabel": "October 2026 research run",
          "score": 40.8
        }
      ],
      "editorialScores": {
        "ergonomics": 41,
        "maintenance": 14,
        "payments": 60,
        "reliability": 38,
        "schema": 23,
        "security": 52,
        "transparency": 43
      },
      "provenanceScore": 70,
      "dataQualityScore": 100
    },
    "connect": {
      "http": "curl -H \"User-Agent: $ORG_NAME $CONTACT_EMAIL\" https://data.sec.gov/submissions/CIK0000320193.json"
    },
    "letme": {
      "capability": "https://letme.dev/data.company",
      "tool": "https://letme.dev/sec-edgar"
    },
    "notable": [
      "Four JSON routes on data.sec.gov. `submissions/CIK##########.json` for a filer's history, and `api/xbrl/companyconcept/`, `api/xbrl/companyfacts/` and `api/xbrl/frames/` for XBRL facts (https://www.sec.gov/search-filings/edgar-application-programming-interfaces)",
      "XBRL data comes from forms 10-Q, 10-K, 8-K, 20-F, 40-F and 6-K and their variants, limited to facts in standard taxonomies that apply to the whole filing entity (https://www.sec.gov/search-filings/edgar-application-programming-interfaces)",
      "The docs state a typical processing delay of less than a second for submissions and under a minute for XBRL, longer at peak filing times (https://www.sec.gov/search-filings/edgar-application-programming-interfaces)",
      "Two bulk files, `companyfacts.zip` and `submissions.zip` under `https://www.sec.gov/Archives/edgar/daily-index/`, are rebuilt nightly at about 3:00 a.m. ET (https://www.sec.gov/search-filings/edgar-application-programming-interfaces)",
      "The limit is 10 requests a second for each user. Over it, the IP address may be limited until the rate has stayed under the threshold for 10 minutes (https://www.sec.gov/about/privacy-information)",
      "The SEC says it does not allow unclassified bots or automated tools to crawl the site, permits scripted access with a declared User-Agent, and gives no technical support for it (https://www.sec.gov/about/webmaster-frequently-asked-questions)",
      "On 9 October 2026 the submissions file for Apple (CIK 320193) listed a filing accepted that morning and 1,001 recent filings, with 1,264 older ones from 1994 in a second file (https://data.sec.gov/submissions/CIK0000320193.json)"
    ],
    "area": "web-data",
    "details": [
      {
        "label": "API",
        "value": "Four GET routes on `https://data.sec.gov` returning JSON. `submissions/CIK##########.json`, `api/xbrl/companyconcept/CIK##########/{taxonomy}/{tag}.json`, `api/xbrl/companyfacts/CIK##########.json` and `api/xbrl/frames/{taxonomy}/{tag}/{unit}/{period}.json`. No query parameters"
      },
      {
        "label": "Coverage",
        "value": "Filing history for every EDGAR filer, with name, former names, tickers, exchanges, SIC code and addresses. XBRL facts from forms 10-Q, 10-K, 8-K, 20-F, 40-F and 6-K in standard taxonomies such as us-gaap, ifrs-full, dei and srt"
      },
      {
        "label": "Rate limits",
        "value": "10 requests a second for each user across all machines. Over it, further requests from the IP address may be limited until the rate has stayed below the threshold for 10 minutes"
      },
      {
        "label": "Credentials",
        "value": "None. A User-Agent header with an organisation name and contact email address is requested of automated callers"
      },
      {
        "label": "Response size",
        "value": "No limit, paging or field selection. Submissions hold at least a year or 1,000 of the most recent filings in column arrays, with older filings in extra files listed under `filings.files`. On 9 October 2026 Apple's submissions file was 164 KB (28 KB gzipped) and one company concept 19 KB"
      },
      {
        "label": "Frames",
        "value": "One fact for each reporting entity for a period written `CY2019` (annual), `CY2019Q1` (quarterly) or `CY2019Q1I` (instantaneous). Units with a denominator are written with `-per-`, such as `USD-per-shares`"
      },
      {
        "label": "Errors",
        "value": "Not documented. A request for a path that does not exist on data.sec.gov answered 404 with an XML body carrying the code `NoSuchKey`"
      },
      {
        "label": "Bulk data",
        "value": "`companyfacts.zip` and `submissions.zip`, rebuilt nightly at about 3:00 a.m. ET. EDGAR index files and daily archives sit under `https://www.sec.gov/Archives/edgar/`"
      },
      {
        "label": "Terms",
        "value": "Content is public information that may be copied or redistributed without permission. Automated access must follow the SEC Web Site Privacy and Security Policy. CORS is not supported, per the docs"
      }
    ],
    "provenance": {
      "legalEntity": "U.S. Securities and Exchange Commission",
      "domain": "sec.gov",
      "domainRegistered": "1997-10-02",
      "endpointOnVendorDomain": true,
      "terms": "https://www.sec.gov/about/privacy-information",
      "privacy": "https://www.sec.gov/about/privacy-information",
      "statusPage": "",
      "changelog": "https://www.sec.gov/submit-filings/edgar-news-announcements",
      "securityTxt": "none",
      "checked": "2026-10-09",
      "notes": [
        "The SEC is an independent agency of the United States federal government. The API documentation page says data.sec.gov was created to host its JSON APIs.",
        "No separate API terms were found. The API documentation says automated access must comply with the SEC Web Site Privacy and Security Policy, so the terms link and the privacy link are the same page. Its Internet Security Policy section sets the request limit and its Website Dissemination section covers reuse. The page was last updated on 29 November 2023.",
        "The API answers at data.sec.gov, on the SEC's domain. Response headers on 9 October 2026 carried Amazon API Gateway request identifiers.",
        "www.sec.gov/.well-known/security.txt returns 404. A Vulnerability Disclosure Policy, last updated on 21 September 2026, takes reports through a form hosted by Bugcrowd.",
        "No status page was found for data.sec.gov in the API docs, the developer pages or the FAQ. The EDGAR News and Announcements page says it carries system status for the filing system.",
        "The changelog link is EDGAR News and Announcements, which carries release notes for the EDGAR filing system. No changelog for the data APIs was found.",
        "RDAP for sec.gov gives a registration date of 1997-10-02 through get.gov.",
        "data.sec.gov has no robots.txt (404). www.sec.gov/robots.txt allows `/Archives/edgar/data` and carries no Content-Signal line."
      ],
      "score": 70,
      "checks": [
        {
          "check": "Legal entity named",
          "value": "U.S. Securities and Exchange Commission",
          "points": 20,
          "max": 20,
          "state": "ok"
        },
        {
          "check": "Domain age",
          "value": "sec.gov, registered 1997-10-02 (29 years)",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Endpoint on the vendor's domain",
          "value": "data.sec.gov",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Terms of service",
          "value": "read, states 2 of the 7 things a reader expects, and has 1 clause that costs points",
          "points": 3.7,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Privacy policy",
          "value": "read, states 3 of the 8 things a reader expects",
          "points": 6.3,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Status page",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        },
        {
          "check": "Changelog",
          "value": "published",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "security.txt",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        }
      ],
      "policies": [
        {
          "kind": "terms",
          "url": "https://www.sec.gov/about/privacy-information",
          "state": "read",
          "readAt": "2026-10-09",
          "statedDate": "2023-11-29",
          "words": 4158,
          "points": 3.7,
          "max": 10,
          "expected": [
            {
              "key": "terms.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last Reviewed or Updated: Nov. 29, 2023",
              "says": "Last updated 2023-11-29"
            },
            {
              "key": "terms.law",
              "label": "Names the governing law or courts",
              "found": false
            },
            {
              "key": "terms.liability",
              "label": "States a limit on its liability",
              "found": false
            },
            {
              "key": "terms.termination",
              "label": "Says how the agreement or account can be ended",
              "found": false
            },
            {
              "key": "terms.changes",
              "label": "Says how changes to the terms are announced",
              "found": false
            },
            {
              "key": "terms.use",
              "label": "Lists what users may not do",
              "found": true,
              "quote": "You may not use them in a trade name, trademark, or domain name of an SEC- or EDGAR-related business without a license from the SEC."
            },
            {
              "key": "terms.sla",
              "label": "Refers to a service level or uptime commitment",
              "found": false
            }
          ],
          "toKnow": [
            {
              "key": "terms.automated",
              "label": "Restricts automated access",
              "found": true,
              "quote": "The SEC does not allow \"unclassified\" bots or automated tools to crawl the site.",
              "costsPoints": true
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "Current guidelines limit each user to 10 requests a second in total, however many machines send them.",
              "quote": "Current guidelines limit users to a total of no more than 10 requests per second, regardless of the number of machines used to submit requests."
            },
            {
              "date": "2026-10-08",
              "text": "Information on sec.gov is treated as public information and may be copied or redistributed without the SEC's permission.",
              "quote": "Information presented on sec.gov is considered public information and may be copied or further distributed by users of the web site without the SEC’s permission."
            }
          ]
        },
        {
          "kind": "privacy",
          "url": "https://www.sec.gov/about/privacy-information",
          "state": "read",
          "readAt": "2026-10-09",
          "statedDate": "2023-11-29",
          "words": 4158,
          "points": 6.3,
          "max": 10,
          "expected": [
            {
              "key": "privacy.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last Reviewed or Updated: Nov. 29, 2023",
              "says": "Last updated 2023-11-29"
            },
            {
              "key": "privacy.collected",
              "label": "Says what personal data is collected",
              "found": true,
              "quote": "For the general contact information that may be submitted through www.sec.gov, we have completed a System of Records Notice (SORN) providing details about the privacy protections and redress options for information we collect from the public."
            },
            {
              "key": "privacy.retention",
              "label": "Says how long data is kept",
              "found": false
            },
            {
              "key": "privacy.processors",
              "label": "Says who else receives the data",
              "found": true,
              "quote": "To remediate computer security incidents, such data may be manually analyzed to allow computer security specialists to identify Internet Service Providers (ISPs) and, in extreme cases, to attempt to identify the specific computer and individual involved in an attack on the SEC’s site."
            },
            {
              "key": "privacy.sale",
              "label": "Says whether personal data is sold or shared for advertising",
              "found": false
            },
            {
              "key": "privacy.rights",
              "label": "Says what rights people have over their data",
              "found": false
            },
            {
              "key": "privacy.contact",
              "label": "Gives a privacy contact",
              "found": false
            },
            {
              "key": "privacy.transfers",
              "label": "Says where data is transferred or stored",
              "found": false
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "Parts of the automatically collected visit data, including partial IP addresses, are posted publicly on the website in response to Freedom of Information Act requests.",
              "quote": "Additionally, portions of this data, to include partial IP addresses, are posted publicly on our website in response to frequent Freedom of Information Act (FOIA) requests."
            }
          ]
        }
      ]
    },
    "dataQuality": {
      "coverage": "Every EDGAR filer's submission history, and XBRL financial facts from forms 10-Q, 10-K, 8-K, 20-F, 40-F and 6-K. Facts in a company's own custom taxonomy are left out",
      "coverageRating": 5,
      "freshness": "Updated as filings are disseminated. The docs state a typical delay under a second for submissions and under a minute for XBRL, longer at peak filing times",
      "freshnessClass": "realtime",
      "history": "EDGAR started in 1994 and 1995, per the SEC. Apple's filing history on the day ran from 26 January 1994. XBRL was first required in 2009",
      "historyYears": 32,
      "methodology": "https://www.sec.gov/search-filings/edgar-application-programming-interfaces",
      "sourcesDisclosed": true,
      "licence": "Public information. May be copied or further distributed without the SEC's permission, with citation requested",
      "licenceClass": "open",
      "standing": "The SEC's own electronic filing system, through which companies must file under US federal securities law",
      "standingClass": "statutory",
      "reuse": "Caching, storing and redistribution are permitted. The SEC seal, logos and EDGAR trademarks may not be used in a way that suggests affiliation.",
      "score": 100,
      "checks": [
        {
          "check": "Coverage",
          "value": "Every EDGAR filer's submission history, and XBRL financial facts from forms 10-Q, 10-K, 8-K, 20-F, 40-F and 6-K. Facts in a company's own custom taxonomy are left out (5 of 5)",
          "points": 25,
          "max": 25,
          "state": "ok"
        },
        {
          "check": "Freshness",
          "value": "Updated as filings are disseminated. The docs state a typical delay under a second for submissions and under a minute for XBRL, longer at peak filing times",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "History",
          "value": "EDGAR started in 1994 and 1995, per the SEC. Apple's filing history on the day ran from 26 January 1994. XBRL was first required in 2009",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Methodology published",
          "value": "www.sec.gov/search-filings/edgar-application-programming-interfaces",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Sources disclosed",
          "value": "named",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "Licence",
          "value": "Public information. May be copied or further distributed without the SEC's permission, with citation requested",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "Official standing",
          "value": "The SEC's own electronic filing system, through which companies must file under US federal securities law",
          "points": 10,
          "max": 10,
          "state": "ok"
        }
      ]
    },
    "pageJsonUrl": "https://www.anchorterminal.com/tools/sec-edgar.json",
    "live": {
      "slug": "sec-edgar",
      "probe": {
        "target": "https://data.sec.gov",
        "method": "get",
        "lastAt": "2026-10-10T01:38:06.206350241Z",
        "lastOk": true,
        "lastStatus": 200,
        "lastMs": 489,
        "authRequired": false,
        "uptime24h": 100,
        "uptime30d": 100,
        "p50ms24h": 208,
        "p95ms24h": 489,
        "samples24h": 102,
        "samples30d": 102,
        "days": [
          {
            "date": "2026-10-09",
            "probes": 85,
            "ok": 85
          },
          {
            "date": "2026-10-10",
            "probes": 17,
            "ok": 17
          }
        ]
      },
      "pages": [
        {
          "url": "https://www.sec.gov/submit-filings/edgar-news-announcements",
          "kind": "changelog",
          "status": 200,
          "checkedAt": "2026-10-09T18:53:57.709738263Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "ec313a3ef0d2"
        },
        {
          "url": "https://www.sec.gov/about/privacy-information",
          "kind": "terms",
          "status": 200,
          "checkedAt": "2026-10-09T18:53:55.575168173Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "71e1e5cdb0c4"
        }
      ],
      "updatedAt": "2026-10-10T01:38:06.206350241Z"
    }
  }
}
