Authenticate and authorize. ...
Implement access control. ...
Encrypt requests and responses. ...
Validate the data. ...
Assess your API risks. ...
Share only necessary information. ...
Choose your web services API. ...
Record APIs in an API registry.