from/prod
← All companies

THE COMPANY INDEX TRACKED BLOG

Nordic APIs

Ideas, decisions, and lessons from the team.

nordicapis.com (opens on the source site)LinkedIn X
23Posts tracked
3 days agoLatest publication
1.9Posts / month over the last 12 months

Latest writing

20 of 23 posts

Guide to the OWASP LLM Top 10 (opens on the source site)

Large language models (LLMs) have become mainstream. Recent estimates suggest there are over 1.1 billion ChatGPT users. LLMs and AI agents have become a part of every aspect of our lives, from writing emails to coding and everything in between. Yet, this scenario is a cybersecurity incident waiting to happen. Many developers aren’t used to ...

Read at the source

Why In-Person Tech Conferences Still Matter (opens on the source site)

As we get prepared to meet again in Stockholm for the Nordic APIs Summit (this will be our ninth Summit), I wanted to take a moment to reflect on the importance of in-person events. Especially the importance of in-person technology conferences that get real humans together to talk shop. We all know the excitement, energy, ...

Read at the source

How AI Agents Are Changing API Architecture (opens on the source site)

AI agents have rapidly become a new kind of software consumer. Where traditional applications analyze and recommend, autonomous agents can now interpret goals, make decisions, find tools, and take actions. Through API integrations and interactions, agents can coordinate actions across a range of systems and chain together their own workflows that might initially seem fairly ...

Read at the source

Understanding Determinism and Non-Determinism (opens on the source site)

Non-determinism is a concept that has existed for decades. However, it has rarely been a central part of software design — until the rise of large language models (LLMs). These models enable developers to build probabilistic AI applications, such as autonomous AI agents. Traditionally, developers build deterministic software that initiates concrete, repeatable actions, where they ...

Read at the source

Why Developer Portals Must Evolve in the AI Agent Age (opens on the source site)

The age of AI is firmly upon us — and as more teams adopt artificial intelligence and agentic flows, providers are increasingly finding that their old strategies and approaches need to shift. One area where this is rapidly becoming a concern is in the domain of developer portals. Developer portals were built around a very ...

Read at the source

AI Agent Security in the Enterprise: Interview With Isabelle Mauny (opens on the source site)

AI agents are quickly rising in the enterprise. They’re granting more powers to knowledge workers across sales, finance, engineering, marketing, and other disciplines in the process. Yet, as most quick technological adoptions go, security is often falling by the wayside or being implemented after the fact. Ahead of Nordic APIs Summit 2026, we’re connecting with ...

Read at the source

6 Ways Traditional API Design Has Changed Forever (opens on the source site)

For over two decades, API design and architecture remained remarkably consistent. Perhaps it’s the outsized influence of Roy Fielding’s RESTful dissertation, but API designers have stuck to the principles of stateless architecture, resource-based endpoints, and HTTP commands to an impressive degree. That’s all starting to change, now that we’ve radically recontextualized the way we use ...

Read at the source

Thinking Like A Naturalist: An Interview with Claire Barrett (opens on the source site)

Ahead of Nordic APIs Summit 2026, we catch up with speaker Claire Barrett on the mindset shift needed for adopting AI-enabled strategies. “Imagine driving around an old town,” responds Claire Barrett when asked to describe what it means to be AI-ready from an integration perspective. “Imagine a European city that’s been inhabited for thousands of ...

Read at the source

Beyond the 200 OK: Architecting Observability for AI (opens on the source site)

Traditional monitoring tools, such as application performance monitoring (APM), were engineered to monitor deterministic software where specific inputs reliably lead to predictable outputs through hard-coded logic. When a traditional API fails, it usually throws a 500 Internal Server Error. But when an AI agent fails, it might return a perfectly healthy 200 OK status code ...

Read at the source

Coherence, Connections, and… Spacetime Crystals (opens on the source site)

Ahead of his Nordic APIs Summit 2026 talk on API coherence, London Stock Exchange Group’s Gareth Faull joins us to talk about the art of aligning APIs with organizational intent. Measuring the performance of an API is a relatively straightforward process: ensure observability is in place, follow governance best practices, measure uptime, track usage statistics, ...

Read at the source

MCP Went Stateless: What Now? (opens on the source site)

The latest release of the Model Context Protocol (MCP) specification has created a lot of buzz in tech circles. Why? Primarily because this AI communication protocol has now gone stateless! This shift from stateful to stateless impacts how developers of MCP servers and AI tools use the protocol moving forward. In addition, the change impacts ...

Read at the source

How Identity Federation Empowers Partner API Strategy (opens on the source site)

Business identity is a complex issue rife with risks across the board. Large enterprises often require deep, flexible integrations with dozens or hundreds of partners, but this comes with significant risk — between the potential for information leakage, concerns around replays or data usage for continued insecure access, and the sheer friction of such a ...

Read at the source

10 Tips for Preparing APIs for Agentic Access (opens on the source site)

In May 2026, Cloudflare released a new tool called isitagentready.com. It analyzes a URL for everything an agentic AI would need to interact with a site and then returns a score out of 100. Even better still, it breaks down its assessment by category, letting you know how your site performs for discoverability, accessibility from ...

Read at the source

How Fuzz Testing for APIs Is Evolving (opens on the source site)

Ahead of Nordic APIs Summit 2026, we check in with speaker Andrea Arcuri on how fuzz testing for APIs is evolving. “You cannot really check security properties if all your HTTP calls fail with a 4xx because your techniques can’t generate the right test data to pass the first layer of input validation,” answers Andrea ...

Read at the source

Are We Overengineering Modern Infrastructure? (opens on the source site)

Ahead of his 2026 Nordic APIs Summit talk on scaling data ingestion without turning to Kubernetes, we check in with Bauer Media Group UK’s Faith Sodipe to talk about infrastructure complexity. In the tech space, perhaps more than in any other, we are always looking for the next big thing. Whenever a new platform, standard, ...

Read at the source

API Gateways, AI Gateways, and MCP Gateways: Are Enterprises About to Pay Twice Again? (opens on the source site)

Over the last decade, enterprises invested heavily in API infrastructure. They purchased API management platforms, deployed gateways across business units and regions, built developer portals, introduced security and observability tools, and encouraged teams to adopt API-first development. The business case was compelling. APIs would make enterprise capabilities easier to reuse, shorten integration timelines, improve partner ...

Read at the source

7 Tools for Multi-Agent Infrastructure (opens on the source site)

A single agentic workflow calling a single API is an easily tractable engineering problem — the solutions exist, and it’s ultimately just a problem of visibility and integration. A fleet of specialized agents delegating tasks to each other, sharing state, and discovering tools at runtime is decidedly more difficult — almost an order of magnitude ...

Read at the source

API Marketplaces and the Invisible Economy: Trade Routes of the AI Era (opens on the source site)

APIs are like the backstage crew of the digital economy. They’re not front and center, but they’re essential for putting on a show. Yet, from a business perspective, APIs have traditionally been regarded as a form of “operational plumbing,” with many enterprises treating them as technical infrastructure rather than strategic assets. However, companies like Stripe, ...

Read at the source

What Is a Token? A Developer’s Guide to Every Type (opens on the source site)

If you’re an API or application developer, you likely hear the term “token” a lot. However, that term has entirely different meanings depending on the developer and the industry. Maybe you’re a developer who just implemented token-based authentication or found out the AI agent you built uses far too many LLM tokens. Perhaps you’re experimenting ...

Read at the source

Privacy choices

Reading never requires analytics. These choices last 90 days on this browser.

Essential sign-in and security storage always stays on. Read the privacy notice.