# Everly Health > Everly Health (Everly Well, Inc.) is an Austin, Texas digital health company behind the > Everlywell at-home lab testing brand, Everly Health Solutions (formerly PWNHealth and > Home Access Health) for enterprise lab connectivity and clinician oversight, and the > Natalist fertility and pregnancy brand. It runs a real platform API and a real developer > hub for enterprise lab-connectivity customers — but BOTH are gated. No OpenAPI, SDK, > AsyncAPI or A2A agent card is published anywhere anonymously. This file was generated by API Evangelist from publicly reachable pages and live probes. It is not published by Everly Health. Last verified 2026-08-15. ## APIs - [Everly Health Solutions (PWNHealth) Platform API](https://docs.pwnhealth.com/): Live AWS API Gateway host at `https://api.pwnhealth.com`. `GET /ping` returns HTTP 200 `healthy` anonymously; every other path returns HTTP 403 `{"message":"Missing Authentication Token"}`. Reference lives in a ReadMe hub titled "PWNHealth APIs" at `https://docs.pwnhealth.com/`, behind a site-wide password wall (302 to `/password?redirect=/`) — password-protected since at least 2019. A staging host, `api-staging.pwnhealth.com`, answers the same 403. Ownership: `pwnhealth.com` 301s to `www.everlywell.com/enterprise/labs/`. - [Everly Health Identity (OAuth 2.0 / OpenID Connect)](https://secure.everlywell.com/.well-known/openid-configuration): Authorization server behind the Everlywell member account. Authorize, token, revoke, introspect and userinfo endpoints; authorization_code, refresh_token and password grants; PKCE (S256 and plain); scopes `openid` and `public`. Undocumented as a developer product — discovered via RFC 8414 / OIDC Discovery. `secure.everlywell.com/api-docs` exists but self-redirects to `/api-docs/login`. ## Specs and discovery documents - [OpenID Connect Discovery document](https://secure.everlywell.com/.well-known/openid-configuration): OIDC Discovery 1.0, HTTP 200, application/json. - [OAuth 2.0 Authorization Server Metadata](https://secure.everlywell.com/.well-known/oauth-authorization-server): RFC 8414, HTTP 200, byte-identical to the OIDC document. - [JWKS](https://secure.everlywell.com/jwks/signature): RFC 7517 signing keys, HTTP 200. ## Agent surface - MCP endpoint: `https://docs.pwnhealth.com/mcp` — live, but `tools/list` returns HTTP 401 `{"code":-32001,"message":"Authorization required"}`. It is the documentation MCP server ReadMe provisions for the hub, served on Everly Health's host but not authored by Everly Health, and behind the same password wall. No tool names or input schemas are readable. - No A2A agent card: `/.well-known/agent-card.json` and `/.well-known/agent.json` return 404 or an HTML catch-all on every Everly Health host. - No `llms.txt`, no `/.well-known/api-catalog`, no `/.well-known/security.txt` anywhere. ## Packages - [@everlywell/ui-kit](https://www.npmjs.com/package/@everlywell/ui-kit): v1.48.1, published 2026-08-14, 197 releases since 2023-12-14. First-party React/Chakra design system. - [@everlywell/consumer-ui](https://www.npmjs.com/package/@everlywell/consumer-ui): v1.48.1, published 2026-08-14, 90 releases since 2024-10-01. Consumer-surface components. - Neither is an API client library. There is **no** first-party SDK for any Everly Health API in any registry (npm, PyPI, RubyGems, Packagist, crates.io, NuGet, Maven, Go). ## Artifacts (API Evangelist) - [apis.yml](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/apis.yml): APIs.json 0.20 index for this profile. - [Authentication profile](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/authentication/everly-health-authentication.yml) - [OAuth scopes](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/scopes/everly-health-scopes.yml) - [Well-known index](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/well-known/everly-health-well-known.yml) - [Conformance](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/conformance/everly-health-conformance.yml) - [Domain security](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/security/everly-health-domain-security.yml) - [Packages](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/packages/everly-health-packages.yml) - [Components](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/components/everly-health-components.yml) - [MCP](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/mcp/everly-health-mcp.yml) - [Lifecycle](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/lifecycle/everly-health-lifecycle.yml) - [Plans](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/plans/everly-health-plans-pricing.yml) - [Rate limits](https://raw.githubusercontent.com/api-evangelist/everly-health/refs/heads/main/rate-limits/everly-health-rate-limits.yml) ## Company - [Everlywell](https://www.everlywell.com/): Consumer at-home lab collection and testing. - [Everly Health Solutions](https://www.everlyhealthsolutions.com/): Enterprise lab connectivity, clinician network, health plans, employers, life sciences. Redirects to www.everlywell.com/enterprise/home. - [Natalist](https://natalist.com/): Fertility and pregnancy products. - [Blog](https://www.everlywell.com/blog/) - [Support / help center](https://support.everlywell.com/) - [HIPAA compliance statement](https://support.everlywell.com/article/559-is-everlywell-hipaa-compliant): help-centre article, last updated 2020-06-17; claims independent third-party verification, names no auditor or certification. - [Careers](https://www.everlywell.com/careers/) - [GitHub organization](https://github.com/EverlyWell): 26 public repos — interview challenges, marketing glue, and forks of other vendors' SDKs (Stripe, PayPal, Checkout.com, Spree). No first-party client library. - [Sign up / register a kit](https://results.everlywell.com/register) - [Login](https://secure.everlywell.com/login) - [Terms of use](https://www.everlywell.com/terms-of-use/) - [Privacy policy](https://www.everlywell.com/privacy-policy/) - [Consumer health data privacy notice](https://www.everlywell.com/consumer-health-data-privacy-notice/) ## Not published Probed 2026-08-04 and re-probed 2026-08-15 across everlywell.com, secure.everlywell.com, results.everlywell.com, everlyhealth.com, everlyhealthsolutions.com, natalist.com, pwnhealth.com, api.pwnhealth.com and docs.pwnhealth.com — not found: OpenAPI/Swagger, AsyncAPI, GraphQL SDL, gRPC/protobuf, A2A agent card, llms.txt, /.well-known/security.txt, /.well-known/api-catalog, /.well-known/oauth-protected-resource, status page, trust center, changelog, versioning or deprecation policy, SLA, published rate limits, published API pricing or plans, first-party API SDK, CLI, Postman collection, sandbox, and any public developer portal.