Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we
store it to create your key and to recognise you if you sign in with another
provider. See our Privacy Policy and
Terms.
openapi: 3.2.0
info:
title: Abnormal Security Client Roles API
version: 1.4.3
description: This is the specification for Abnormal Security Client API which can be used for managing security threats detected by Abnormal Security.
termsOfService: https://legal.abnormalsecurity.com/legal-hub/abnormal-security-api-terms-of-service-6feee5e3
contact:
name: Abnormal Security Support
email: support@abnormalsecurity.com
servers:
- url: https://api.abnormalplatform.com/v1
description: Production Server for managing threats
- url: https://eu.rest.abnormalsecurity.com/v1
description: EU Production Server for managing threats.
security:
- BearerAuth: []
tags:
- name: Roles
description: API to retrieve roles from RBAC system
paths:
/roles:
get:
operationId: v1_roles_retrieve
description: 'Fetch all roles for an account from RBAC system.
This endpoint retrieves a union of both account-specific roles and
global (Abnormal-defined) roles for the authenticated account from
the RBAC service.'
summary: Get a list of roles for an account from RBAC system
parameters:
- in: header
name: mock-data
schema:
type: string
default: 'False'
enum:
- 'False'
- 'True'
description: Returns test data if set to `True`
tags:
- Roles
responses:
'200':
content:
application/json:
schema:
$ref: '#/components/schemas/RoleListResponse'
description: A list of roles available for the account.
'401':
$ref: '#/components/responses/UnauthorizedError'
'403':
description: Forbidden - Insufficient permissions
'404':
$ref: '#/components/responses/NotFoundError'
'429':
$ref: '#/components/responses/TooManyRequestsError'
components:
responses:
TooManyRequestsError:
description: Request count exceeds allowed number of concurrent requests for this resource type
UnauthorizedError:
description: Access token is missing or invalid
NotFoundError:
description: Invalid user input when using the filter query parameter. Will return various error messages
schemas:
PolicySwagger:
type: object
description: Swagger serializer for policy object within a role.
properties:
resource:
type: string
description: The resource name (e.g., 'threats', 'cases')
permissions:
type: array
items:
type: string
description: List of permissions granted on this resource
required:
- permissions
- resource
RoleSwagger:
type: object
description: Swagger serializer for role object.
properties:
id:
type: integer
description: The unique identifier for the role
name:
type: string
description: Name of the role
description:
type: string
default: ''
description: Description of the role
policies:
type: array
items:
$ref: '#/components/schemas/PolicySwagger'
description: Simplified view of permissions granted by this role
required:
- id
- name
- policies
RoleListResponse:
type: object
description: Swagger serializer for role list response.
properties:
status:
type: string
default: success
description: Status of the response
status_code:
type: integer
default: 200
description: HTTP status code
data:
type: array
items:
$ref: '#/components/schemas/RoleSwagger'
description: List of global roles from RBAC system
required:
- data
securitySchemes:
BearerAuth:
type: http
scheme: bearer