openapi: 3.0.0
info:
title: Conduct an audit Auditors Tests API
version: 1.0.0
description: The Auditor API lets audit firms conduct audits from a tool outside of Vanta. Unlock data syncing with Vanta through this API.
termsOfService: https://www.vanta.com/terms
license:
name: UNLICENSED
contact:
name: API Support
url: https://help.vanta.com/
email: support@vanta.com
servers:
- url: https://api.vanta.com/v1
tags:
- name: Tests
description: Automated test results and evidence
paths:
/v1/tests:
get:
operationId: listTests
summary: List Tests
description: Query and filter test results for compliance frameworks.
tags:
- Tests
parameters:
- $ref: '#/components/parameters/pageSize'
- $ref: '#/components/parameters/pageCursor'
- name: status
in: query
schema:
type: string
enum:
- PASS
- FAIL
- DISABLED
- NA
description: Filter tests by status
- name: frameworkId
in: query
schema:
type: string
description: Filter tests by framework
responses:
'200':
description: Paginated list of tests
content:
application/json:
schema:
$ref: '#/components/schemas/TestListResponse'
'401':
$ref: '#/components/responses/Unauthorized'
'429':
$ref: '#/components/responses/RateLimited'
components:
parameters:
pageCursor:
name: pageCursor
in: query
schema:
type: string
description: Cursor for pagination — start from the item following this cursor
pageSize:
name: pageSize
in: query
schema:
type: integer
minimum: 1
maximum: 100
default: 10
description: Number of items to return per page (1-100)
responses:
Unauthorized:
description: Unauthorized — missing or invalid access token
content:
application/json:
schema:
$ref: '#/components/schemas/Error'
RateLimited:
description: Rate limit exceeded
content:
application/json:
schema:
$ref: '#/components/schemas/Error'
schemas:
Test:
type: object
properties:
id:
type: string
description: Unique test identifier
name:
type: string
description: Test name
description:
type: string
description: What this test checks
status:
type: string
enum:
- PASS
- FAIL
- DISABLED
- NA
description: Current test status
controlId:
type: string
description: Associated control identifier
frameworkId:
type: string
description: Associated framework identifier
lastRunAt:
type: string
format: date-time
nullable: true
description: When this test was last executed
TestListResponse:
type: object
properties:
data:
type: array
items:
$ref: '#/components/schemas/Test'
pageInfo:
$ref: '#/components/schemas/PageInfo'
Error:
type: object
properties:
error:
type: string
description: Error code
message:
type: string
description: Human-readable error description
details:
type: array
items:
type: string
description: Additional error details
PageInfo:
type: object
properties:
pageSize:
type: integer
description: Number of items returned
nextPageCursor:
type: string
nullable: true
description: Cursor for the next page of results
hasNextPage:
type: boolean
description: Whether there are more items after this page
securitySchemes:
oauth:
type: oauth2
description: Get an oauth token from the token url and use it as a bearer token to access the Vanta API.
flows:
clientCredentials:
scopes:
auditor-api.audit:read: Grant read-only access to your audits
auditor-api.audit:write: Grant read-write access to your audits
auditor-api.auditor:read: Grant read-only access to your auditors
auditor-api.auditor:write: Grant read-write access to your auditors
tokenUrl: https://api.vanta.com/oauth/token
bearerAuth:
type: http
scheme: bearer