Elastic Stack (ELK Stack) Cases API

Cases are used to open and track issues. You can add assignees and tags to your cases, set their severity and status, and add alerts, comments, and visualizations. You can also send cases to external incident management systems by configuring connectors.

Operations 29

DELETE /api/cases Delete cases #
PATCH /api/cases Update cases #
POST /api/cases Create a case #
GET /api/cases/_find Search cases #
GET /api/cases/{caseId} Get case information #
GET /api/cases/{caseId}/alerts Get all alerts for a case #
DELETE /api/cases/{caseId}/comments Delete all case comments and alerts #
PATCH /api/cases/{caseId}/comments Update a case comment or alert #
POST /api/cases/{caseId}/comments Add a case comment or alert #
GET /api/cases/{caseId}/comments/_find Find case comments #
DELETE /api/cases/{caseId}/comments/{commentId} Delete a case comment or alert #
GET /api/cases/{caseId}/comments/{commentId} Get a case comment or alert #
POST /api/cases/{caseId}/connector/{connectorId}/_push Push a case to an external service #
GET /api/cases/{caseId}/fields Get the fields applicable to an existing case #
POST /api/cases/{caseId}/files Attach a file to a case #
GET /api/cases/{caseId}/user_actions/_find Find case activity #
GET /api/cases/alerts/{alertId} Get cases for an alert #
GET /api/cases/configure Get case settings #
POST /api/cases/configure Add case settings #
PATCH /api/cases/configure/{configurationId} Update case settings #
GET /api/cases/configure/connectors/_find Get case connectors #
GET /api/cases/fields Get the fields applicable to a case #
GET /api/cases/reporters Get case creators #
GET /api/cases/tags Get case tags #
GET /api/cases/templates Get all case templates #
POST /api/cases/templates Create a case template #
DELETE /api/cases/templates/{template_id} Delete a case template #
GET /api/cases/templates/{template_id} Get a case template by ID #
PUT /api/cases/templates/{template_id} Update a case template #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/elk-stack-cases-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

elk-stack-cases-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  contact:
    name: Kibana Team
  description: The Kibana REST APIs enable you to manage resources such as connectors, data views, and saved objects.
  title: Kibana Cases API
  version: ''
  x-doc-license:
    name: Attribution-NonCommercial-NoDerivatives 4.0 International
    url: https://creativecommons.org/licenses/by-nc-nd/4.0/
  x-feedbackLink:
    label: Feedback
    url: https://github.com/elastic/docs-content/issues/new?assignees=&labels=feedback%2Ccommunity&projects=&template=api-feedback.yaml&title=%5BFeedback%5D%3A+
servers:
- url: https://{kibana_url}
  variables:
    kibana_url:
      default: localhost:5601
security:
- apiKeyAuth: []
- basicAuth: []
tags:


# --- truncated at 32 KB (207 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/elk-stack/refs/heads/main/openapi/elk-stack-cases-api-openapi.yml