• API Governance Checklist

    Use this form to review API governance readiness, standards, security, documentation, lifecycle, monitoring, and change management.
  • API Overview

  • API Type
  • Environment in Scope
  • Review Date*
     - -
    2 digit month, 2 digit day, 4 digit year
  • Ownership and Governance

  • Governance status*
  • Standards and Design

  • Does the API follow naming conventions?*
  • Is the versioning approach defined?*
  • Is the breaking-change policy documented?*
  • Security and Access Controls

  • Authentication Method*
  • Authorization Model Defined*
  • Rate Limiting/Throttling Enabled*
  • Input Validation and Error Handling Defined*
  • Security Review Result*
  • Documentation and Lifecycle

  • Is public or internal documentation available?*
  • Are onboarding or developer instructions available?*
  • Is a deprecation or retirement plan documented?*
  • Monitoring, Testing, and Change Management

  • Monitoring/logging in place*
  • Alerting defined for failures and thresholds*
  • Change approval process defined*
  • Operational checklist items*
  • Should be Empty:
Select theme: