# Cisco XDR Workflows API

**Canonical:** https://apis.io/apis/cisco-xdr/cisco-xdr-workflows-api/  
**Provider:** Cisco XDR — https://apis.io/providers/cisco-xdr/  
**Base URL:** https://private.intel.amp.cisco.com  
**Documentation:** https://developer.cisco.com/docs/cisco-xdr/

Cisco XDR Workflows API is one of 83 APIs that [Cisco XDR](https://apis.io/providers/cisco-xdr/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. Tagged areas include Workflows. The published artifact set on APIs.io includes an OpenAPI specification.

The Workflows API from Cisco XDR — 20 operation(s) for workflows.

## Operations (26)

| Method | Path | Summary |
|---|---|---|
| POST | `/v1.1/workflows` | Handler to get all workflows. |
| POST | `/v1.1/workflows/start` | Handler to start workflow execution. |
| POST | `/v1.2/workflows` | Handler to get all workflows. |
| GET | `/v1/workflows` | Handler to get all workflows. |
| POST | `/v1/workflows` | Handler to create a workflow definition. |
| POST | `/v1/workflows/batch_get` | # Handler to retrieve a list of workflows |
| POST | `/v1/workflows/start` | Handler to start workflow execution. |
| GET | `/v1/workflows/start_config` | Handler to return required input parameters for the workflow. |
| GET | `/v1/workflows/summary` | Handler to get a summary of workflows. |
| GET | `/v1/workflows/{workflow_id}` | Handler to return workflow information using workflow ID. |
| PUT | `/v1/workflows/{workflow_id}` | Handler to update the workflow. |
| DELETE | `/v1/workflows/{workflow_id}` | Handler to delete workflow using ID. |
| POST | `/v1/workflows/{workflow_id}/actions` | Handler to add new action to workflow. |
| GET | `/v1/workflows/{workflow_id}/actions/{action_id}` | Handler to return Workflow's action information using action ID. |
| PUT | `/v1/workflows/{workflow_id}/actions/{action_id}` | Handler to update an Action. |
| DELETE | `/v1/workflows/{workflow_id}/actions/{action_id}` | Handler to delete an action from workflow byId. |
| PATCH | `/v1/workflows/{workflow_id}/actions/{action_id}` | Handler to move actions in workflow. |
| POST | `/v1/workflows/{workflow_id}/actions/{action_id}/duplicate` | Handler to duplicate action. |
| PUT | `/v1/workflows/{workflow_id}/lock` | Handler to Lock the workflow. |
| GET | `/v1/workflows/{workflow_id}/references` | Handler to return references for the workflow. |
| GET | `/v1/workflows/{workflow_id}/rules` | Handler to return rules for the workflow. |
| PUT | `/v1/workflows/{workflow_id}/unlock` | Handler to unlock a locked workflow. Param {workflow_id} accepts both an id and unique_name of the workflow |
| POST | `/v1/workflows/{workflow_id}/validate` | Handler to validate workflow. |
| DELETE | `/v1/{workflow_id}/uninstall` | Handler to unintsall a workflow installed through exchange. |
| POST | `/v2/workflows` | Handler to create a workflow definition from a given template. |
| PUT | `/v2/workflows/{workflow_id}` | Handler to update the workflow. |

## Machine-readable artifacts (1)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/cisco-xdr/refs/heads/main/openapi/cisco-xdr-workflows-api-openapi.yml

## Other Cisco XDR APIs (12)

- [Cisco XDR Actor API](https://apis.io/apis/cisco-xdr/cisco-xdr-actor-api/)
- [Cisco XDR Asset API](https://apis.io/apis/cisco-xdr/cisco-xdr-asset-api/)
- [Cisco XDR Asset Mapping API](https://apis.io/apis/cisco-xdr/cisco-xdr-asset-mapping-api/)
- [Cisco XDR Asset Properties API](https://apis.io/apis/cisco-xdr/cisco-xdr-asset-properties-api/)
- [Cisco XDR Attack Pattern API](https://apis.io/apis/cisco-xdr/cisco-xdr-attack-pattern-api/)
- [Cisco XDR Bulk API](https://apis.io/apis/cisco-xdr/cisco-xdr-bulk-api/)
- [Cisco XDR Bundle API](https://apis.io/apis/cisco-xdr/cisco-xdr-bundle-api/)
- [Cisco XDR Campaign API](https://apis.io/apis/cisco-xdr/cisco-xdr-campaign-api/)
- [Cisco XDR Casebook API](https://apis.io/apis/cisco-xdr/cisco-xdr-casebook-api/)
- [Cisco XDR COA API](https://apis.io/apis/cisco-xdr/cisco-xdr-coa-api/)
- [Cisco XDR Deliberate API](https://apis.io/apis/cisco-xdr/cisco-xdr-deliberate-api/)
- [Cisco XDR Event API](https://apis.io/apis/cisco-xdr/cisco-xdr-event-api/)

## Tags

Workflows

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/cisco-xdr/cisco-xdr-workflows-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/cisco-xdr/.
