Uptycs Platform API

Per-customer JSON REST API over each Uptycs stack covering alerts and alert rules, events and event rules, assets and asset groups/tags, ad-hoc and saved SQL (osquery) queries, threat indicators/sources/vendors, file carves, lookup tables, and users. Authenticated with a per-user API key/secret minted into a short-lived HS256 JWT bearer token. The full API reference is customer-gated in-product; the auth model and command surface are publicly documented through the official Uptycs pack for Cortex XSOAR.

API entry from apis.yml

apis.yml Raw ↑
name: Uptycs Platform API
description: Per-customer JSON REST API over each Uptycs stack covering alerts and alert rules, events
  and event rules, assets and asset groups/tags, ad-hoc and saved SQL (osquery) queries, threat indicators/sources/vendors,
  file carves, lookup tables, and users. Authenticated with a per-user API key/secret minted into a short-lived
  HS256 JWT bearer token. The full API reference is customer-gated in-product; the auth model and command
  surface are publicly documented through the official Uptycs pack for Cortex XSOAR.
humanURL: https://www.uptycs.com/products/cnapp
baseURL: https://{stack}.uptycs.io/public/api/customers/{customerId}
tags:
- Security
- Alerts
- Assets
- Threat Intelligence
- Osquery
properties:
- type: Documentation
  url: https://xsoar.pan.dev/docs/reference/integrations/uptycs
- type: Authentication
  url: authentication/uptycs-authentication.yml