AWS Security Hub Findings API

The Findings API from AWS Security Hub — 3 operation(s) for findings.

OpenAPI Specification

aws-security-hub-findings-api-openapi.yml Raw ↑
openapi: 3.1.0
info:
  title: AWS Security Hub Action Targets Findings API
  version: '2018-10-26'
  description: 'AWS Security Hub is a cloud security posture management service that

    aggregates, organizes, and prioritizes security findings from AWS

    services and third-party products. The API exposes REST operations for

    managing security standards, controls, findings, insights, automation

    rules, configuration policies, and member account configuration. All

    requests are signed with AWS Signature Version 4 (SigV4).


    See https://docs.aws.amazon.com/securityhub/1.0/APIReference/Welcome.html

    '
servers:
- url: https://securityhub.{region}.amazonaws.com
  description: AWS Security Hub regional endpoint
  variables:
    region:
      default: us-east-1
security:
- SigV4: []
tags:
- name: Findings
paths:
  /findings:
    post:
      tags:
      - Findings
      operationId: GetFindings
      summary: Get findings
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
    patch:
      tags:
      - Findings
      operationId: BatchUpdateFindings
      summary: Batch update findings
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
  /findings/import:
    post:
      tags:
      - Findings
      operationId: BatchImportFindings
      summary: Batch import findings from a product
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
  /findings/history:
    post:
      tags:
      - Findings
      operationId: GetFindingHistory
      summary: Get finding history
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
components:
  responses:
    OK:
      description: Successful response
      content:
        application/json:
          schema:
            type: object
            additionalProperties: true
  requestBodies:
    JsonBody:
      required: true
      content:
        application/json:
          schema:
            type: object
            additionalProperties: true
  securitySchemes:
    SigV4:
      type: apiKey
      in: header
      name: Authorization
      description: AWS Signature Version 4 signed Authorization header