Multi-tenant security operations API. Every token is scoped to one organization and to a set of abilities. Base URL: https://app.gpssone.com/api/v1 · openapi.json
curl -H "Authorization: Bearer sntl_<org>_<token>" https://app.gpssone.com/api/v1/incidents?status=open
/healthHealthlimit(query) cursor(query) /posturePosture · scans.viewlimit(query) cursor(query) /incidentsIncidents · scans.viewlimit(query) cursor(query) /incidentsIncidents · scans.run{
"type": "object",
"required": [
"title",
"severity"
],
"properties": {
"title": {
"type": "string"
},
"severity": {
"type": "string",
"enum": [
"critical",
"high",
"medium",
"low",
"info"
]
},
"asset": {
"type": "string"
},
"description": {
"type": "string"
},
"category": {
"type": "string"
}
}
} /incidents/{id}Incidents · scans.viewid(path) /incidents/{id}/statusIncidents · scans.runid(path) {
"type": "object",
"required": [
"status"
],
"properties": {
"status": {
"type": "string"
},
"note": {
"type": "string"
}
}
} /incidents/{id}/notesIncidents · scans.runid(path) {
"type": "object",
"required": [
"message"
],
"properties": {
"message": {
"type": "string"
}
}
} /alertsAlerts · scans.viewlimit(query) cursor(query) /vulnerabilitiesVulnerabilities · scans.viewlimit(query) cursor(query) /vulnerabilities/{id}Vulnerabilities · scans.viewid(path) /vulnerabilities/{id}/statusVulnerabilities · scans.runid(path) {
"type": "object",
"required": [
"status"
],
"properties": {
"status": {
"type": "string"
},
"note": {
"type": "string"
}
}
} /scansScans · scans.viewlimit(query) cursor(query) /scansScans · scans.run{
"type": "object",
"required": [
"runner",
"target"
],
"properties": {
"runner": {
"type": "string"
},
"target": {
"type": "string"
}
}
} /scans/{id}Scans · scans.viewid(path) /targetsTargets · scans.viewlimit(query) cursor(query) /targetsTargets · targets.manage{
"type": "object",
"required": [
"host"
],
"properties": {
"host": {
"type": "string"
},
"label": {
"type": "string"
}
}
} /targets/{id}/verificationTargets · scans.viewid(path) /iocs/lookupIndicators · scans.viewlimit(query) cursor(query) type(query) value(query) /response/actionsResponse · scans.viewlimit(query) cursor(query) /response/actionsResponse · response.request{
"type": "object",
"required": [
"type",
"target",
"connector_id"
],
"properties": {
"type": {
"type": "string"
},
"target": {
"type": "string"
},
"connector_id": {
"type": "integer"
},
"incident_id": {
"type": "integer"
},
"reason": {
"type": "string"
},
"ttl_minutes": {
"type": "integer"
}
}
} /reportsReports · scans.viewlimit(query) cursor(query) /reports/{id}/downloadReports · scans.viewid(path)