generated: '2026-09-07' method: probed source: >- live fetches of https://sso.essendant.com/adfs/.well-known/openid-configuration, https://sso.essendant.com/adfs/services/trust/mex, https://sso.essendant.com/FederationMetadata/2007-06/FederationMetadata.xml and https://www.essendant.com/llms.txt note: >- Essendant publishes no API contract, so every contract-shaped standard below is recorded false with the probe that established it. The true entries are identity and content standards it demonstrably serves. Its trading-partner integration surface is EDI (ANSI ASC X12 / UN-EDIFACT purchase orders, ASNs and invoices) plus the ECDB product content feed, both of which are arranged per customer and were not verifiable from a public document — so they are recorded as unverified rather than as conformance. standards: - id: openid-connect-discovery conforms: true evidence: >- https://sso.essendant.com/adfs/.well-known/openid-configuration returns 200 with a parsing OIDC discovery document (issuer, jwks_uri, authorization_endpoint, token_endpoint, userinfo_endpoint); the same at login.essendant.com. - id: oauth2 conforms: true evidence: >- grant_types_supported includes authorization_code, client_credentials, refresh_token and urn:ietf:params:oauth:grant-type:device_code in both discovery documents. - id: rfc8628-device-authorization conforms: true evidence: device_authorization_endpoint https://sso.essendant.com/adfs/oauth2/devicecode - id: saml2 conforms: true evidence: >- https://sso.essendant.com/FederationMetadata/2007-06/FederationMetadata.xml returns a signed urn:oasis:names:tc:SAML:2.0:metadata EntityDescriptor (entityID http://sso.essendant.com/adfs/services/trust); same shape at login.essendant.com. - id: ws-trust conforms: true evidence: >- https://sso.essendant.com/adfs/services/trust/mex returns a WSDL 1.1 SecurityTokenService definition. Microsoft AD FS stock contract, not an Essendant-authored service. - id: llmstxt conforms: true evidence: >- https://www.essendant.com/llms.txt returns 200 text/plain, 19,870 bytes, generated by All in One SEO Pro v4.9.7.2 — a real llms.txt index of the site's posts and pages. - id: rfc8414-oauth-authorization-server-metadata conforms: false evidence: /.well-known/oauth-authorization-server 503 on sso, 404 on login/adfs. - id: rfc9728-oauth-protected-resource conforms: false evidence: /.well-known/oauth-protected-resource returned no document on any host. - id: rfc9116-security-txt conforms: false evidence: /.well-known/security.txt 404 on www.essendant.com, 503 on the identity hosts. - id: openapi conforms: false evidence: >- No OpenAPI/Swagger document at any probed root on www.essendant.com, essendant.com, api.essendant.com (404), sso/login.essendant.com or www.biggestbook.com. - id: asyncapi conforms: false evidence: No event, streaming or webhook specification published. - id: graphql conforms: false evidence: No /graphql surface found on any Essendant host. - id: mcp conforms: false evidence: No hosted or stdio MCP server published or listed in any registry. - id: a2a-agent-card conforms: false evidence: >- /.well-known/agent-card.json and /.well-known/agent.json returned 404 on www.essendant.com, 503 on the identity hosts, and the SPA catch-all shell on www.biggestbook.com. No card exists. - id: rfc9457-problem-details conforms: false evidence: No API contract to evaluate. - id: apis-json conforms: false evidence: /apis.json, /apis.yml and /.well-known/apis.json returned no index on any host. domain_standards: - id: ansi-x12-edi conforms: unverified market: wholesale distribution / supply chain evidence: >- Essendant is documented by multiple EDI VANs and integrators as a trading partner exchanging 850/855/856/810 documents, but no Essendant-published EDI implementation guide or trading-partner spec is reachable without a customer account, so this is recorded unverified rather than as a conformance claim. - id: gs1-gtin-upc conforms: unverified market: wholesale distribution evidence: >- https://info.essendant.com/ecdb-std (200) describes an ECDB item table carrying a "Retail UPC" column, implying GTIN-keyed product content; the feed and its technical guide are distributed inside the customer download folder, not published. - id: ghs-sds conforms: true market: hazardous materials labelling evidence: >- https://www.essendant.com/ghs-compliance/ is published in Essendant's own llms.txt as its GHS (Globally Harmonized System) hazard-communication page, and the ECDB feed documents MSDS image URLs per item.