# Kibana Security Detections API API

**Canonical:** https://apis.io/apis/kibana/kibana-security-detections-api-api/  
**Provider:** Kibana — https://apis.io/providers/kibana/  
**Base URL:** https://localhost:5601/api  
**Documentation:** https://www.elastic.co/guide/en/kibana/current/api.html

Kibana Security Detections API API is one of 60 APIs that [Kibana](https://apis.io/providers/kibana/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. Tagged areas include Security Detections API. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and authentication docs.

Use the detections APIs to create and manage detection rules. Detection rules search events and external alerts sent to Elastic Security and generate detection alerts from any hits. Alerts are displayed on the **Alerts** page and can be assigned and triaged, using the alert status to mark them as open, closed, or acknowledged. This API supports both key-based authentication and basic authentication. To use key-based authentication, create an API key, then specify the key in the header of your API calls. To use basic authentication, provide a username and password; this automatically creates an API key that matches the current user’s privileges. In both cases, the API key is subsequently used for authorization when the rule runs. > warn > If the API key used for authorization has different privileges than the key that created or most recently updated a rule, the rule behavior might change. > If the API key that created a rule is deleted, or the user that created the rule becomes inactive, the rule will stop running. To create and run rules, the user must meet specific requirements for the Kibana space. Refer to the [Detections requirements](https://www.elastic.co/guide/en/security/current/detections-permissions-section.html) for a complete list of requirements.

## Machine-readable artifacts (3)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/kibana/refs/heads/main/openapi/kibana-security-detections-api-api-openapi.yml
- **Documentation** — https://www.elastic.co/guide/en/kibana/current/api.html
- **Authentication** — https://www.elastic.co/guide/en/kibana/current/api-authentication.html

## Other Kibana APIs (12)

- [Kibana Actions API](https://apis.io/apis/kibana/kibana-actions-api/)
- [Kibana agent builder API](https://apis.io/apis/kibana/kibana-agent-builder-api/)
- [Kibana alerting API](https://apis.io/apis/kibana/kibana-alerting-api/)
- [Kibana APM agent configuration API](https://apis.io/apis/kibana/kibana-apm-agent-configuration-api/)
- [Kibana APM agent keys API](https://apis.io/apis/kibana/kibana-apm-agent-keys-api/)
- [Kibana APM annotations API](https://apis.io/apis/kibana/kibana-apm-annotations-api/)
- [Kibana APM server schema API](https://apis.io/apis/kibana/kibana-apm-server-schema-api/)
- [Kibana APM sourcemaps API](https://apis.io/apis/kibana/kibana-apm-sourcemaps-api/)
- [Kibana cases API](https://apis.io/apis/kibana/kibana-cases-api/)
- [Kibana connectors API](https://apis.io/apis/kibana/kibana-connectors-api/)
- [Kibana Data streams API](https://apis.io/apis/kibana/kibana-data-streams-api/)
- [Kibana data views API](https://apis.io/apis/kibana/kibana-data-views-api/)

## Tags

Security Detections API

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/kibana/kibana-security-detections-api-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/kibana/.
