AWS Security Hub Findings API

The Findings API from AWS Security Hub — 3 operation(s) for findings.

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/aws-security-hub-findings-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

aws-security-hub-findings-api-openapi.yml Raw ↑
openapi: 3.1.0
info:
  title: AWS Security Hub Action Targets Findings API
  version: '2018-10-26'
  description: 'AWS Security Hub is a cloud security posture management service that

    aggregates, organizes, and prioritizes security findings from AWS

    services and third-party products. The API exposes REST operations for

    managing security standards, controls, findings, insights, automation

    rules, configuration policies, and member account configuration. All

    requests are signed with AWS Signature Version 4 (SigV4).


    See https://docs.aws.amazon.com/securityhub/1.0/APIReference/Welcome.html

    '
servers:
- url: https://securityhub.{region}.amazonaws.com
  description: AWS Security Hub regional endpoint
  variables:
    region:
      default: us-east-1
security:
- SigV4: []
tags:
- name: Findings
paths:
  /findings:
    post:
      tags:
      - Findings
      operationId: GetFindings
      summary: Get findings
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
    patch:
      tags:
      - Findings
      operationId: BatchUpdateFindings
      summary: Batch update findings
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
  /findings/import:
    post:
      tags:
      - Findings
      operationId: BatchImportFindings
      summary: Batch import findings from a product
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
  /findings/history:
    post:
      tags:
      - Findings
      operationId: GetFindingHistory
      summary: Get finding history
      requestBody:
        $ref: '#/components/requestBodies/JsonBody'
      responses:
        '200':
          $ref: '#/components/responses/OK'
components:
  responses:
    OK:
      description: Successful response
      content:
        application/json:
          schema:
            type: object
            additionalProperties: true
  requestBodies:
    JsonBody:
      required: true
      content:
        application/json:
          schema:
            type: object
            additionalProperties: true
  securitySchemes:
    SigV4:
      type: apiKey
      in: header
      name: Authorization
      description: AWS Signature Version 4 signed Authorization header