Trellix EDR Action History Alerts API
Endpoint Detection and Response API for advanced threat hunting, investigation, and automated response capabilities. The EDR API supports querying threat data, searching devices, retrieving action history, and executing real-time search and response actions across managed endpoints. Authentication uses OAuth 2.0 client credentials with the soc.act.tg scope. Contact Support: Name: Trellix Support
Overview
Trellix EDR Action History Alerts API is a Postman Collection published by Trellix on the APIs.io network.
Endpoint Detection and Response API for advanced threat hunting, investigation, and automated response capabilities. The EDR API supports querying threat data, searching devices, retrieving action history, and executing real-time search and response actions across managed endpoints. Authentication uses OAuth 2.0 client credentials with the soc.act.tg scope. Contact Support: Name: Trellix Support
The collection contains 1 request organised into 3 folders.
Tagged areas include Cloud Security, Cybersecurity, Endpoint Security, Threat Detection, and Threat Intelligence.
Requests & Folders
Related API Specs
Work with this as data
Every collection here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for collections
4 MCP tools reach this
find_collectionsBrowse and filter every collection in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
curl "https://apis.io/api/v1/collections/postman-trellix-alerts-api"
curl "https://apis.io/api/v1/collections?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.