Cisco Umbrella Applications API

The Applications API from Cisco Umbrella — 6 operation(s) for applications.

Operations 8

GET /appDiscovery/applications List Applications #
PATCH /appDiscovery/applications Update Applications #
GET /appDiscovery/applications/{applicationId} Get Application #
PATCH /appDiscovery/applications/{applicationId} Update Application #
GET /appDiscovery/applications/{applicationId}/risk Get Application Risk #
GET /appDiscovery/applications/{applicationId}/identities List Application Identities #
GET /appDiscovery/applications/{applicationId}/attributes List Application Attributes #
GET /appDiscovery/applications/info List Information for Applications #

Documentation

📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-admin-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-admin-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-managed-providers-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-managed-providers-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-providers-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-providers-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-s3-key-rotation-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-s3-key-rotation-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-users-roles-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-users-roles-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-authentication/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-authentication/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/cloudlock-api-getting-started/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/cloudlock-api-getting-started/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-internal-domains-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-internal-domains-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-internal-networks-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-internal-networks-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-network-devices-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-network-devices-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-network-tunnels-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-network-tunnels-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-networks-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-networks-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-deployment-policies-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-deployment-policies-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-roaming-computers-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-roaming-computers-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-sites-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-sites-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-swg-devices-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-swg-devices-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-tagging-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-tagging-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-virtual-appliances-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-virtual-appliances-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-investigate-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-investigate-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-application-lists-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-application-lists-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-destination-lists-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-destination-lists-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-api-usage-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-api-usage-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-app-discovery-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-app-discovery-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-reports-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-reports-overview/
📖
Documentation
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-reporting-overview/
📖
APIReference
https://developer.cisco.com/docs/cloud-security/umbrella-api-reference-reporting-overview/

Specifications

Other Resources

🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/key-admin.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/managed-providers.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/providers.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/s3-key-rotation.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/service-providers-console.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/admin/users-roles.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/auth/token.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/cloudlock/cloudlock.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/internal-domains.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/internal-networks.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/network-devices.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/network-tunnels.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/networks.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/policies.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/roaming-computers.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/sites.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/swg-devices.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/tagging.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/deployments/virtual-appliances.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/investigate/investigate.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/policies/application-lists-internet-umb.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/policies/destination-lists.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/reports/api-usage.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/reports/app-discovery.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/reports/provider-consoles.yaml
🔗
OpenAPI Source
https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/reference/reports/reporting.yaml

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/cisco-umbrella-applications-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

cisco-umbrella-applications-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Cisco Umbrella App Discovery Applications API
  description: 'The App Discovery API provides an overall view of application and protocol activity in your environment

    and the potential risk indicated by this network traffic.'
  version: 2.0.2
  contact:
    name: Cloud Security Developer Community
  x-provenance:
    method: harvested
    authored_by: Cisco Umbrella
    harvested_by: API Evangelist
    harvested_on: '2026-08-19'
    first_party: true
    provider_published: true
    source_host: pubhub.devnetcloud.com
    note: 26 first-party OpenAPI 3.0 documents (256 operations) listed by Cisco's own docs-nav config and fetched anonymously. Byte-identity reconfirmed 2026-08-19 by SHA-256 against the live source.
  x-evidence:
  - type: source
    url: https://pubhub.devnetcloud.com/media/cloud-security-apis-in-eft/docs/umbrella-config.json
  - type: source
    url: https://developer.cisco.com/docs/cloud-security/
servers:
- url: https://api.umbrella.com/{basePath}
  variables:
    basePath:
      default: reports/v2
tags:
- name: Applications
paths:
  /appDiscovery/applications:
    get:
      tags:
      - Applications
      summary: List Applications
      description: List all discovered applications.
      operationId: getApplicationsAppDiscovery
      parameters:
      - $ref: '#/components/parameters/sources'
      - $ref: '#/components/parameters/identity'
      - $ref: '#/components/parameters/labels'
      - $ref: '#/components/parameters/controllable'
      - $ref: '#/components/parameters/weightedRisk'
      - $ref: '#/components/parameters/categories'
      - $ref: '#/components/parameters/subcategory'
      - $ref: '#/components/parameters/subcategory_content_types'
      - $ref: '#/components/parameters/appTypes'
      - $ref: '#/components/parameters/date'
      - $ref: '#/components/parameters/limit'
      - $ref: '#/components/parameters/offset'
      - $ref: '#/components/parameters/applicationsSort'
      - $ref: '#/components/parameters/order'
      - $ref: '#/components/parameters/label_timestamp'
      security:
      - oauthFlow:
        - reports.appDiscovery:read
      responses:
        '200':
          description: OK
          headers:
            Link:
              $ref: '#/components/headers/Link'
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationList'
              example:
                items:
                - id: 1234ay7
                  name: Umbrella
                  label: approved
                  weightedRisk: low
                  category: Security
                  subcategory: Content Management
                  subcategory_content_types:
                  - Conversational Chat
                  - Other
                  appType: saas
                  sources:
                  - name: cdfw
                    events: 50
                    blockedEvents: 25
                  - name: dns
                    events: 35
                    blockedRequests: 14
                  - name: swg
                    totalTraffic: 150
                    bytesIn: 50
                    bytesOut: 100
                    blockedBytesOut: 15
                  firstDetected: '2022-01-01T00:00:00.000Z'
                  lastDetected: '2022-01-01T00:00:00.000Z'
                currentPage: 1
                totalPages: 126
                itemsCount: 251
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '500':
          $ref: '#/components/responses/ServerError'
    patch:
      tags:
      - Applications
      summary: Update Applications
      description: Update the labels for the applications.
      operationId: patchApplications
      requestBody:
        $ref: '#/components/requestBodies/BulkApplicationBody'
      security:
      - oauthFlow:
        - reports.appDiscovery:write
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/BulkLabelApplications'
              example:
                timestamp: '2022-01-01T00:00:00.000Z'
                number_of_apps: 45
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
  /appDiscovery/applications/{applicationId}:
    get:
      tags:
      - Applications
      summary: Get Application
      description: Get an application by ID.
      operationId: getApplication
      parameters:
      - $ref: '#/components/parameters/applicationId'
      security:
      - oauthFlow:
        - reports.appDiscovery:read
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationObject'
              example:
                id: eaqYExba
                name: Umbrella
                description: Offers threat intelligence solutions.
                label: approved
                weightedRisk: low
                category: Security
                appType: saas
                url: https://umbrella.cisco.com/products/umbrella-investigate
                vendor: Cisco
                identitiesCount: 5
                sources:
                - name: cdfw
                  events: 50
                  blockedEvents: 25
                - name: dns
                  events: 35
                  blockedRequests: 14
                - name: swg
                  totalTraffic: 150
                  bytesIn: 50
                  bytesOut: 100
                  blockedBytesOut: 15
                firstDetected: '2022-01-01T00:00:00.000Z'
                lastDetected: '2022-01-01T00:00:00.000Z'
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
    patch:
      tags:
      - Applications
      summary: Update Application
      description: Update the label for the application. Provide an application label in the request body.
      operationId: updateApplication
      parameters:
      - $ref: '#/components/parameters/applicationId'
      requestBody:
        content:
          application/json:
            schema:
              type: object
              required:
              - label
              properties:
                label:
                  $ref: '#/components/schemas/Label'
            example:
              label: approved
      security:
      - oauthFlow:
        - reports.appDiscovery:write
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationObject'
              example:
                id: eaqYExba
                name: Umbrella
                description: Offers threat intelligence solutions.
                label: approved
                weightedRisk: low
                category: Security
                appType: saas
                url: https://umbrella.cisco.com/products/umbrella-investigate
                vendor: Cisco
                identitiesCount: 5
                sources:
                - name: cdfw
                  events: 50
                  blockedEvents: 25
                - name: dns
                  events: 35
                  blockedRequests: 14
                - name: swg
                  totalTraffic: 150
                  bytesIn: 50
                  bytesOut: 100
                  blockedBytesOut: 15
                firstDetected: '2022-01-01T00:00:00.000Z'
                lastDetected: '2022-01-01T00:00:00.000Z'
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
  /appDiscovery/applications/{applicationId}/risk:
    get:
      tags:
      - Applications
      summary: Get Application Risk
      description: Get the risk for the application.
      operationId: getApplicationRisk
      parameters:
      - $ref: '#/components/parameters/applicationId'
      security:
      - oauthFlow:
        - reports.appDiscovery:read
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationRisk'
              example:
                id: eaqYExba
                name: Umbrella
                weightedRisk: veryLow
                businessRisk: low
                usageType: indirect
                webReputation: 50
                financialViability: medium
                dataStorage: structured
                vendorCompliance:
                - name: PCI_DSS
                  description: 'The Payment Card Industry Data Security Standard (PCI DSS)

                    is a widely accepted set of policies and procedures intended

                    to optimize the security of credit, debit, and cash card transactions

                    and protect cardholders against misuse of their personal information.'
                  status: true
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
  /appDiscovery/applications/{applicationId}/identities:
    get:
      tags:
      - Applications
      summary: List Application Identities
      description: List all identities for the application.
      operationId: getApplicationIdentities
      parameters:
      - $ref: '#/components/parameters/applicationId'
      - $ref: '#/components/parameters/date'
      - $ref: '#/components/parameters/limit'
      - $ref: '#/components/parameters/offset'
      - $ref: '#/components/parameters/identitiesSort'
      - $ref: '#/components/parameters/order'
      security:
      - oauthFlow:
        - reports.appDiscovery:read
      responses:
        '200':
          description: OK
          headers:
            Link:
              $ref: '#/components/headers/Link'
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationIdentityList'
              example:
                items:
                - id: 10000
                  name: My Identity
                  sources:
                  - name: dns
                    requests: 100
                    blockedRequests: 100
                  firstDetected: '2022-01-01T00:00:00.000Z'
                  lastDetected: '2022-01-01T00:00:00.000Z'
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
  /appDiscovery/applications/{applicationId}/attributes:
    get:
      tags:
      - Applications
      summary: List Application Attributes
      description: List all attributes for the application.
      operationId: getApplicationAttributes
      parameters:
      - $ref: '#/components/parameters/applicationId'
      - $ref: '#/components/parameters/attributeCategories'
      security:
      - oauthFlow:
        - reports.appDiscovery:read
      responses:
        '200':
          description: OK
          headers:
            Link:
              $ref: '#/components/headers/Link'
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationAttributeCategoryList'
              example:
                attributesCategories:
                - id: '2'
                  name: Data Security
                  attributes:
                  - id: '17'
                    name: SSL Cert Key Size
                    description: The SSL certificate key size refers to the length of the cryptographic key
                    values:
                    - name: size
                      value: '2048'
                      createdOn: '2023-07-06T09:23:53.552924+00:00'
                      updatedOn: '2023-08-21T16:49:19.151159+00:00'
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
  /appDiscovery/applications/info:
    get:
      tags:
      - Applications
      description: List the information about the applications.
      operationId: getApplicationsInfo
      summary: List Information for Applications
      parameters:
      - $ref: '#/components/parameters/sources'
      - $ref: '#/components/parameters/identity'
      - $ref: '#/components/parameters/labels'
      - $ref: '#/components/parameters/controllable'
      - $ref: '#/components/parameters/weightedRisk'
      - $ref: '#/components/parameters/categories'
      - $ref: '#/components/parameters/subcategory'
      - $ref: '#/components/parameters/subcategory_content_types'
      - $ref: '#/components/parameters/appTypes'
      - $ref: '#/components/parameters/date'
      - $ref: '#/components/parameters/limit'
      - $ref: '#/components/parameters/offset'
      - $ref: '#/components/parameters/applicationsInfoSort'
      - $ref: '#/components/parameters/order'
      - $ref: '#/components/parameters/label_timestamp'
      - $ref: '#/components/parameters/app_ids'
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationListWithInfo'
              example:
                items:
                - id: 0JdbV4dy
                  name: Twitter
                  label: unreviewed
                  weightedRisk: low
                  category: Social Networking
                  subcategory: Social Networking
                  subcategory_content_types:
                  - Conversational Chat
                  - Other
                  appType: saas
                  sources:
                  - name: cdfw
                    events: 0
                    blockedEvents: 0
                  - name: swg
                    totalTraffic: 0
                    bytesIn: 0
                    bytesOut: 0
                    blockedBytesOut: 0
                  - name: dns
                    requests: 3
                    blockedRequests: 0
                  firstDetected: '2022-01-01T00:00:00.000Z'
                  lastDetected: '2022-01-01T00:00:00.000Z'
                  description: 'Online social networking service that enables users to send

                    and read short messages called tweets.'
                  url: https://twitter.com
                  vendor: Twitter
                  identitiesCount: 1
                currentPage: 1
                totalPages: 126
                itemsCount: 251
        '400':
          $ref: '#/components/responses/InvalidRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '500':
          $ref: '#/components/responses/ServerError'
components:
  schemas:
    ApplicationAttributeCategoryList:
      type: object
      description: The list of application attribute category.
      properties:
        attributesCategories:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationAttributeCategory'
      example:
        attributesCategories:
        - id: '2'
          name: Data Security
          attributes:
          - id: '17'
            name: SSL Cert Key Size
            description: The SSL certificate key size refers to the length of the cryptographic key.
            values:
            - name: size
              value: '2048'
              createdOn: '2023-07-06T09:23:53.552924+00:00'
              updatedOn: '2023-08-21T16:49:19.151159+00:00'
    ApplicationAttributeCategory:
      type: object
      description: The application's attribute category.
      properties:
        id:
          type: string
          description: The ID of the attribute category.
          example: '2'
        name:
          type: string
          description: The name of the attribute category.
          example: Data Security
        attributes:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationAttribute'
      example:
        id: '2'
        name: Data Security
        attributes:
        - id: '17'
          name: SSL Cert Key Size
          description: The SSL certificate key size refers to the length of the cryptographic key.
          values:
          - name: size
            value: '2048'
            createdOn: '2023-07-06T09:23:53.552924+00:00'
            updatedOn: '2023-08-21T16:49:19.151159+00:00'
    FinancialViability:
      type: string
      description: Financial risk to the service provider, based on Dun & Bradstreet's Dynamic Risk Score.
      enum:
      - low
      - medium
      - high
      - veryHigh
      - na
      example: high
    ApplicationListWithInfo:
      type: object
      description: The properties of the information for the applications.
      properties:
        items:
          type: array
          description: The list of information about the applications.
          items:
            $ref: '#/components/schemas/ApplicationObject'
        currentPage:
          type: integer
          description: The index of the current page in the collection.
          example: 1
        totalPages:
          type: integer
          description: The total number of pages in the collection.
          example: 100
        itemsCount:
          type: integer
          description: The number of items in the collection.
          example: 10
      example:
        items:
        - id: 0JdbV4dy
          name: Twitter
          label: unreviewed
          weightedRisk: low
          category: Social Networking
          appType: saas
          sources:
          - name: cdfw
            events: 0
            blockedEvents: 0
          - name: swg
            totalTraffic: 0
            bytesIn: 0
            bytesOut: 0
            blockedBytesOut: 0
          - name: dns
            requests: 3
            blockedRequests: 0
          firstDetected: '2025-01-01T00:00:00.000Z'
          lastDetected: '2025-01-01T00:00:00.000Z'
          description: 'Online social networking service that enables users to send

            and read short messages called tweets.'
          url: https://twitter.com
          vendor: Twitter
          identitiesCount: 1
        currentPage: 1
        totalPages: 126
        itemsCount: 251
    ApplicationInList:
      type: object
      required:
      - id
      - name
      - label
      - weightedRisk
      - category
      - appType
      - sources
      - firstDetected
      - lastDetected
      - subcategory
      - subcategory_content_types
      description: The list of properties about the discovered apps.
      properties:
        id:
          type: string
          description: The ID of the app.
          example: eaqYExba
        name:
          type: string
          description: The name of the app.
          example: Umbrella
        label:
          $ref: '#/components/schemas/Label'
        weightedRisk:
          $ref: '#/components/schemas/WeightedRisk'
        category:
          $ref: '#/components/schemas/category'
        appType:
          $ref: '#/components/schemas/AppType'
        sources:
          $ref: '#/components/schemas/Sources'
        firstDetected:
          type: string
          description: The date and time (ISO 8601 timestamp) when the system first detected the app.
          format: date-time
          example: '2022-01-01T00:00:00.000Z'
        lastDetected:
          type: string
          description: The date and time (ISO 8601 timestamp) when the system last detected the app.
          format: date-time
          example: '2022-01-01T00:00:00.000Z'
        subcategory:
          $ref: '#/components/schemas/subcategory'
        subcategory_content_types:
          $ref: '#/components/schemas/subcategory_content_types'
      example:
        id: ea890ya
        name: Umbrella
        label: approved
        weightedRisk: low
        category: Security
        subcategory: Security
        subcategory_content_types:
        - Conversational Chat
        - Other
        appType: saas
        sources:
        - name: dns
          requests: 100
          blockedRequests: 100
        firstDetected: '2022-01-01T00:00:00.000Z'
        lastDetected: '2022-01-01T00:00:00.000Z'
    ApplicationIdentity:
      type: object
      required:
      - id
      - name
      - sources
      - firstDetected
      - lastDetected
      description: The application identity information.
      properties:
        id:
          type: integer
          description: The ID of the identity.
          example: 10000
        name:
          type: string
          description: The name of the identity.
          example: My Identity
        sources:
          $ref: '#/components/schemas/Sources'
        firstDetected:
          type: string
          format: date-time
          description: The date and time (ISO 8601 timestamp) when the system first detected the identity for the application.
          example: '2022-01-01T00:00:00.000Z'
        lastDetected:
          type: string
          format: date-time
          description: The date and time (ISO 8601 timestamp) when the system last detected the identity for the application.
          example: '2022-01-01T00:00:00.000Z'
      example:
        id: 10000
        name: My identity
        sources:
        - name: dns
          requests: 100
          blockedRequests: 100
        firstDetected: '2022-01-01T00:00:00.000Z'
        lastDetected: '2022-01-01T00:00:00.000Z'
    DataStorage:
      type: string
      description: 'The form of the stored data.

        Valid values are: `noStorage`, `structured`, `unstructured`, or `na`.'
      enum:
      - noStorage
      - structured
      - unstructured
      - na
      example: noStorage
    UsageType:
      type: string
      description: 'The type of usage. Valid values are: `personal`, `corporate` (higher risk), or

        `indirect` (lower risk, e.g. content delivery network).'
      enum:
      - indirect
      - personal
      - corporate
      - na
      example: na
    AppType:
      type: string
      description: The type of the app.
      enum:
      - saas
      - paas
      - iaas
      example: saas
    ApplicationIdentityList:
      type: object
      description: The list of identity information for the application.
      properties:
        items:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationIdentity'
      example:
        items:
        - id: 10000
          name: My Identity
          sources:
          - name: dns
            requests: 100
            blockedRequests: 100
          firstDetected: '2022-01-01T00:00:00.000Z'
          lastDetected: '2022-01-01T00:00:00.000Z'
    ApplicationAttribute:
      type: object
      description: The application attribute information.
      properties:
        id:
          type: string
          description: The ID of the attribute.
          example: '17'
        name:
          type: string
          description: The name of the attribute.
          example: SSL Cert Key Size
        description:
          type: string
          description: The description of the attribute.
          example: The SSL certificate key size refers to the length of the cryptographic key.
        values:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationAttributeValue'
      example:
        id: '17'
        name: SSL Cert Key Size
        description: The SSL certificate key size refers to the length of the cryptographic key
        values:
        - name: size
          value: '2048'
          createdOn: '2023-07-06T09:23:53.552924+00:00'
          updatedOn: '2023-08-21T16:49:19.151159+00:00'
    subcategory_content_types:
      type: array
      description: The list of content types for the subcategory applied to the app.
      items:
        type: string
        description: The content type of the subcategory applied to the app.
      example:
      - Conversational Chat
      - Other
    Label:
      type: string
      description: 'The application label. Valid values are: `unreviewed`, `approved`, `notApproved`, `underAudit`.'
      enum:
      - unreviewed
      - approved
      - notApproved
      - underAudit
      example: approved
    Error:
      type: object
      description: The error message returned in the response.
      properties:
        message:
          type: string
    ApplicationObject:
      type: object
      description: The properties of the app.
      required:
      - id
      - name
      - description
      - label
      - weightedRisk
      - category
      - appType
      - url
      - vendor
      - identitiesCount
      - sources
      - firstDetected
      - lastDetected
      properties:
        id:
          type: string
          description: The ID of the app.
          example: eaqYExba
        name:
          type: string
          description: The name of the app.
          example: Umbrella
        description:
          type: string
          description: The description of the app.
          example: Offers threat intelligence solutions.
        label:
          $ref: '#/components/schemas/Label'
        weightedRisk:
          $ref: '#/components/schemas/WeightedRisk'
        category:
          type: string
          description: The category applied to the app.
          example: Security
        subcategory:
          $ref: '#/components/schemas/subcategory'
        subcategory_content_types:
          $ref: '#/components/schemas/subcategory_content_types'
        appType:
          $ref: '#/components/schemas/AppType'
        url:
          type: string
          description: The URL of the app.
          example: https://umbrella.cisco.com/products/umbrella-investigate
        vendor:
          type: string
          description: The vendor that owns the app.
          example: Cisco
        identitiesCount:
          type: integer
          description: The number of identities.
          example: 5
        sources:
          $ref: '#/components/schemas/Sources'
        firstDetected:
          type: string
          format: date-time
          description: The date and time (ISO 8601 timestamp) when the system first detected the app.
          example: '2022-01-01T00:00:00.000Z'
        lastDetected:
          type: string
          description: The date and time (ISO 8601 timestamp) when the system last detected the app.
          format: date-time
          example: '2022-01-01T00:00:00.000Z'
      example:
        id: eaqYExba
        name: Umbrella
        description: The properties of the app.
        label: unreviewed
        weightedRisk: low
        category: Security
        appType: saas
        url: https://umbrella.cisco.com/products/umbrella-investigate
        vendor: Cisco Systems
        identitiesCount: 25
        sources:
        - name: dns
          requests: 100
          blockedRequests: 100
        firstDetected: '2022-01-01T00:00:00.000Z'
        lastDetected: '2022-01-01T00:00:00.000Z'
    BusinessRisk:
      type: string
      description: The business risk of the app.
      enum:
      - veryLow
      - low
      - medium
      - high
      - veryHigh
      - na
      example: na
    ApplicationAttributeValue:
      type: object
      description: The app's attribute value information.
      properties:
        name:
          type: string
          description: The name of the attribute value.
          example: size
        value:
          type: string
          description: The value of the attribute value.
          example: '2048'
        createdOn:
          type: string
          format: date-time
          description: The date and time (ISO 8601 timestamp) when the system created the application attribute.
          example: '2023-07-06T09:23:53.552924+00:00'
        updatedOn:
          type: string
          format: date-time
          description: The date and time (ISO 8601 timestamp) when the system updated the application attribute.
          example: '2023-08-21T16:49:19.151159+00:00'
      example:
        name: size
        value: '2048'
        createdOn: '2023-07-06T09:23:53.552924+00:00'
        updatedOn: '2023-08-21T16:49:19.151159+00:00'
    SwgSource:
      type: object
      description: The properties of the app's web requests.
      properties:
        name:
          type: string
          description: The type of traffic associated with the source.
          enum:
          - swg
          example: swg
        totalTraffic:
          type: integer
          description: The total number of bytes inbound and outbound for this app in your environment.
          example: 150
        bytesIn:
          type: integer
          description: The number of bytes received (inbound).
          example: 50
        bytesOut:
          type: integer
          description: The number of bytes sent (outbound).
          example: 100
        blockedBytesOut:
          type: integer
          description: The number of bytes of outbound traffic that are blocked.
          example: 90
      example:
        name: swg
        totalTraffic: 200
        bytesIn: 100
        bytesOut: 100
        blockedBytesOut: 49
    DnsSource:
      type: object
      description: The properties of the app's DNS requests.
      properties:
        name:
          type: string
          description: The type of traffic associated with the source.
          enum:
          - dns
          example: dns
        requests:
          type: integer
          description: The number of DNS requests for this app.
          example: 100
        blockedRequests:
          type: integer
          description: The number of DNS requests blocked, based on the policy configurations.
          example: 50
      example:
        name: dns
        requests: 100
        blockedRequests: 35
    ApplicationList:
      type: object
      description: The object that contains the list of application properties.
      properties:
        items:
          type: array
          description: The list of application properties.
          items:
            $ref: '#/components/schemas/ApplicationInList'
        currentPage:
          type: integer
          description: The index of the current page in the collection.
          example: 1
        totalPages:
          type: integer
          description: The total number of pages in the collection.
          example: 100
        itemsCount:
          type: integer
          description: The number of items in the collection.
          example: 10
      example:
        items:
        - id: ea890yb
          name: Umbrella
          label: unreviewed
          weightedRisk: low
          category: Security
          subcategory: Security
          subcategory_content_types:
          - Conversational Chat
          - Other
          appType: saas
          sources:
          - name: dns
            requests: 100
            blockedRequests: 100
          firstDetected: '2022-01-01T00:0

# --- truncated at 32 KB (44 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/cisco-umbrella/refs/heads/main/openapi/cisco-umbrella-applications-api-openapi.yml