Work with this as data
Every API here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for apis
7 MCP tools reach this
find_apisBrowse and filter every API in the catalog.get_api_artifactsOne API's artifacts, grouped by type.get_openapiThe primary OpenAPI for this API.find_similar_apisAPIs that look like this one.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This API
curl "https://apis.io/api/v1/apis/abnormal-tokens-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.
OpenAPI Specification
openapi: 3.2.0
info:
title: Abnormal Security Client Tokens API
version: 1.4.3
description: This is the specification for Abnormal Security Client API which can be used for managing security threats detected by Abnormal Security.
termsOfService: https://legal.abnormalsecurity.com/legal-hub/abnormal-security-api-terms-of-service-6feee5e3
contact:
name: Abnormal Security Support
email: support@abnormalsecurity.com
servers:
- url: https://api.abnormalplatform.com/v1
description: Production Server for managing threats
- url: https://eu.rest.abnormalsecurity.com/v1
description: EU Production Server for managing threats.
security:
- BearerAuth: []
tags:
- name: Tokens
description: API to manage SOAR API tokens
paths:
/soar/tokens:
get:
operationId: v1_soar_tokens_retrieve
description: 'Fetch all API tokens for the authenticated customer from the Go Token Management Service.
This endpoint retrieves tokens with response format containing:
- token_id: UUID of the token
- name: Token name
- version: Token version (v1 or v2)
- status: Token status (active, expired, revoked)
- created_at: ISO 8601 creation timestamp
- expires_at: ISO 8601 expiration timestamp
- permissions: List of permission strings (scope)'
summary: Get a list of API tokens for the authenticated customer
parameters:
- in: header
name: mock-data
schema:
type: string
default: 'False'
enum:
- 'False'
- 'True'
description: Returns test data if set to `True`
- in: query
name: limit
schema:
type: integer
description: Maximum number of tokens to return (1-200, default 50)
- in: query
name: offset
schema:
type: integer
description: Pagination offset (default 0)
- in: query
name: show_all
schema:
type: boolean
description: Include expired/revoked tokens (default false)
- in: query
name: sort_by
schema:
type: string
description: 'Sort field: created_at, -created_at, expires_at, -expires_at'
tags:
- Tokens
responses:
'200':
content:
application/json:
schema:
$ref: '#/components/schemas/TokenListResponseSwagger'
description: A list of API tokens for the customer.
'400':
description: Bad Request - Invalid query parameters
'401':
$ref: '#/components/responses/UnauthorizedError'
'403':
description: Forbidden - Either insufficient permissions or feature not enabled for account
'404':
$ref: '#/components/responses/NotFoundError'
'429':
$ref: '#/components/responses/TooManyRequestsError'
'500':
description: Internal Server Error
components:
responses:
TooManyRequestsError:
description: Request count exceeds allowed number of concurrent requests for this resource type
UnauthorizedError:
description: Access token is missing or invalid
NotFoundError:
description: Invalid user input when using the filter query parameter. Will return various error messages
schemas:
TokenSwagger:
type: object
description: Swagger serializer for token object.
properties:
token_id:
type: string
description: Unique token identifier (UUID)
name:
type: string
description: Token name
version:
type: string
description: Token version (v1 or v2)
status:
type: string
description: Token status (active, expired, revoked)
created_at:
type: string
format: date-time
description: Token creation timestamp (ISO 8601)
expires_at:
type: string
format: date-time
description: Token expiration timestamp (ISO 8601)
permissions:
type: array
items:
type: string
description: List of endpoint permissions (e.g., soar_v1_read_threats, soar_v1_manage_threat)
required:
- created_at
- expires_at
- name
- permissions
- status
- token_id
- version
TokenListResponseSwagger:
type: object
description: Swagger serializer for token list response.
properties:
status:
type: string
default: success
description: Response status
status_code:
type: integer
default: 200
description: HTTP status code
data:
type: array
items:
$ref: '#/components/schemas/TokenSwagger'
description: List of API tokens
pagination:
allOf:
- $ref: '#/components/schemas/PaginationSwagger'
description: Pagination metadata
required:
- data
- pagination
PaginationSwagger:
type: object
description: Swagger serializer for pagination metadata.
properties:
total:
type: integer
description: Total number of tokens matching criteria
limit:
type: integer
description: Maximum tokens returned in this response
offset:
type: integer
description: Number of tokens skipped
required:
- limit
- offset
- total
securitySchemes:
BearerAuth:
type: http
scheme: bearer