Tenable Attack type option API

Security profile options relative to attack types (Indicator of Attacks)

Operations 2

GET /api/profiles/{profileId}/attack-types/{attackTypeId}/attack-type-options Get all the attack type options related to a profile and attack type #
POST /api/profiles/{profileId}/attack-types/{attackTypeId}/attack-type-options Create attack type options related to a profile and attack type #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/tenable-attack-type-option-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

tenable-attack-type-option-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Identity Exposure Attack type option API
  description: API to interact with Identity Exposure.
  version: production
servers:
- url: '{protocol}://customer.tenable.ad'
  variables:
    protocol:
      default: https
tags:
- name: Attack type option
  description: Security profile options relative to attack types (Indicator of Attacks)
paths:
  /api/profiles/{profileId}/attack-types/{attackTypeId}/attack-type-options:
    get:
      summary: Get all the attack type options related to a profile and attack type
      description: 'Required license type: ioaPreview, ioa'
      responses:
        '200':
          description: ''
          content:
            application/json:
              schema:
                description: Validates the get /attack-type-options response
                type: array
                items:
                  description: A attack-type-option instance
                  type: object
                  additionalProperties: false
                  required:
                  - id
                  - codename
                  - profileId
                  - attackTypeId
                  - directoryId
                  - value
                  - valueType
                  - staged
                  properties:
                    id:
                      type: number
                      description: ' Unique numeric identifier of the option'
                    codename:
                      type: string
                      description: Unique string identifier of the option
                    profileId:
                      type: number
                      description: Identifier of the profile the option belongs to
                    attackTypeId:
                      type: number
                      description: Identifier of the attack-type the option belongs to
                    directoryId:
                      type:
                      - number
                      - 'null'
                      default: null
                      description: Identifier of the directory on which the option applies, if null it applies on all of them
                    value:
                      type: string
                      description: JSON-stringified value of the option
                    valueType:
                      type: string
                      enum:
                      - string
                      - regex
                      - float
                      - integer
                      - boolean
                      - date
                      - object
                      - array/string
                      - array/regex
                      - array/integer
                      - array/boolean
                      - array/select
                      - array/object
                      - array/cron
                      description: Type of the option value
                    name:
                      type:
                      - string
                      - 'null'
                      default: null
                      description: Localized name of the option
                    description:
                      type:
                      - string
                      - 'null'
                      default: null
                      description: Localized description of the option
                    translations:
                      type: array
                      items:
                        type: string
                    staged:
                      type: boolean
                      description: Whether the option is still in draft
        '401':
          description: Unauthorized
        '500':
          description: Internal server error
      tags:
      - Attack type option
      x-tenablead-required-product-license-type:
      - ioaPreview
      - ioa
      parameters:
      - name: x-api-key
        description: The user's API key
        in: header
        schema:
          type: string
          default: put-your-api-key-here
        required: true
        deprecated: false
      - name: profileId
        in: path
        schema:
          type: string
          pattern: ^[0-9]+$
          x-patternError: should be a numerical string
        required: true
        deprecated: false
      - name: attackTypeId
        in: path
        schema:
          type: string
          pattern: ^[0-9]+$
          x-patternError: should be a numerical string
        required: true
        deprecated: false
      - name: staged
        in: query
        schema:
          type: string
          enum:
          - '0'
          - '1'
        required: false
        deprecated: false
      security:
      - ApiKey: []
      operationId: getApiProfilesByProfileIdAttackTypesByAttackTypeIdAttackTypeOptions
      x-operation-id-source: derived
    post:
      summary: Create attack type options related to a profile and attack type
      description: 'Required license type: ioaPreview, ioa'
      responses:
        '200':
          description: ''
          content:
            application/json:
              schema:
                description: Validates the get /profile/:profileId/attack-types/:attackTypeId/attack-type-options response
                type: array
                items:
                  description: A attack-type-option instance
                  type: object
                  additionalProperties: false
                  required:
                  - id
                  - codename
                  - profileId
                  - attackTypeId
                  - directoryId
                  - value
                  - valueType
                  - staged
                  properties:
                    id:
                      type: number
                      description: ' Unique numeric identifier of the option'
                    codename:
                      type: string
                      description: Unique string identifier of the option
                    profileId:
                      type: number
                      description: Identifier of the profile the option belongs to
                    attackTypeId:
                      type: number
                      description: Identifier of the attack-type the option belongs to
                    directoryId:
                      type:
                      - number
                      - 'null'
                      default: null
                      description: Identifier of the directory on which the option applies, if null it applies on all of them
                    value:
                      type: string
                      description: JSON-stringified value of the option
                    valueType:
                      type: string
                      enum:
                      - string
                      - regex
                      - float
                      - integer
                      - boolean
                      - date
                      - object
                      - array/string
                      - array/regex
                      - array/integer
                      - array/boolean
                      - array/select
                      - array/object
                      - array/cron
                      description: Type of the option value
                    name:
                      type:
                      - string
                      - 'null'
                      default: null
                      description: Localized name of the option
                    description:
                      type:
                      - string
                      - 'null'
                      default: null
                      description: Localized description of the option
                    translations:
                      type: array
                      items:
                        type: string
                    staged:
                      type: boolean
                      description: Whether the option is still in draft
        '401':
          description: Unauthorized
        '500':
          description: Internal server error
      tags:
      - Attack type option
      x-tenablead-required-product-license-type:
      - ioaPreview
      - ioa
      parameters:
      - name: x-api-key
        description: The user's API key
        in: header
        schema:
          type: string
          default: put-your-api-key-here
        required: true
        deprecated: false
      - name: profileId
        in: path
        schema:
          type: string
          pattern: ^[0-9]+$
          x-patternError: should be a numerical string
        required: true
        deprecated: false
      - name: attackTypeId
        in: path
        schema:
          type: string
          pattern: ^[0-9]+$
          x-patternError: should be a numerical string
        required: true
        deprecated: false
      security:
      - ApiKey: []
      requestBody:
        required: true
        content:
          application/json:
            schema:
              description: Validates the POST /profiles/:profileId/attack-types/:attackTypeId/attack-type-options request
              type: array
              items:
                type: object
                additionalProperties: false
                required:
                - codename
                - value
                - valueType
                properties:
                  codename:
                    type: string
                  directoryId:
                    type:
                    - number
                    - 'null'
                    default: null
                  value:
                    type: string
                  valueType:
                    type: string
                    enum:
                    - string
                    - regex
                    - float
                    - integer
                    - boolean
                    - date
                    - object
                    - array/string
                    - array/regex
                    - array/integer
                    - array/boolean
                    - array/select
                    - array/object
                    - array/cron
      operationId: postApiProfilesByProfileIdAttackTypesByAttackTypeIdAttackTypeOptions
      x-operation-id-source: derived
components:
  securitySchemes:
    ApiKey:
      name: x-api-key
      description: The user's API key
      in: header
      type: apiKey
x-readme:
  explorer-enabled: true
  proxy-enabled: true