Home
Providers
Adaptive Shield
Adaptive Shield
Adaptive Shield (now CrowdStrike Falcon Shield) is a SaaS Security Posture Management (SSPM) platform that continuously monitors, remediates, and governs SaaS application security configurations and identity risks. Acquired by CrowdStrike, the platform covers 200+ SaaS integrations with over 3,500 built-in security checks, helping organizations detect misconfigurations, manage human and non-human identities, discover shadow applications, and maintain compliance across their entire SaaS stack. The REST API (v1) enables programmatic access to alerts, user inventory, device inventory, integrations, security checks, and compliance data.
Adaptive Shield publishes 1 API on the APIs.io network. Tagged areas include SaaS Security, SSPM, Security Posture Management, Cybersecurity, and Cloud Security.
Adaptive Shield’s developer surface includes developer portal, engineering blog, support, and 17 more developer resources.
1 APIs
7 Features
5 Use Cases
On this page
Kin Score
APIs 1
Pricing Plans 1
Rate Limits 1
FinOps 1
Features 7
Security Posture 4
Use Cases 5
Integrations 8
Resources 20
apis.yml
21 Operational Transparency
Composite quality — 27.2/100 · thin
Agent readiness — 5/100 · human only
Individual APIs this provider publishes, each with its own machine-readable definition.
Published pricing tiers and plan structures.
Documented rate limits and quota policies.
Cost, billing, and metering signals for API financial operations.
Notable capabilities this provider offers.
Scroll for all 7
Authentication, domain security, vulnerability disclosure, and trust-center signals.
What developers build with this provider.
Pre-built integrations with other platforms and tools.
Scroll for all 8
Get Started 1
Portal, sign-up, and the first successful call
Agent Surfaces 2
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 1
Pagination, idempotency, versioning, errors, and events
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 6
Authentication, authorization, and security posture
Operate 1
Status, limits, changes, and where to get help
Commercial 3
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Other 1
Properties that don't map to a standard resource type
Source (apis.yml)
aid: adaptive-shield
deliveryModel:
model: unknown
open_source: false
commercial: false
callable_host: false
label: Delivery model not determined — needs a product licence on record
confidence: low
source:
- none
generated: '2026-08-28'
method: derived
accessModel:
pricing: contact-sales
onboarding: unknown
trial: false
try_now: false
public: false
label: Contact sales
confidence: high
source:
- plans/adaptive-shield-plans-pricing.yml
- https://www.crowdstrike.com/en-us/pricing/
generated: '2026-08-30'
method: searched
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/adaptive-shield.png
name: Adaptive Shield
description: Adaptive Shield (now CrowdStrike Falcon Shield) is a SaaS Security Posture Management (SSPM) platform that continuously
monitors, remediates, and governs SaaS application security configurations and identity risks. Acquired by CrowdStrike,
the platform covers 200+ SaaS integrations with over 3,500 built-in security checks, helping organizations detect misconfigurations,
manage human and non-human identities, discover shadow applications, and maintain compliance across their entire SaaS stack.
The REST API (v1) enables programmatic access to alerts, user inventory, device inventory, integrations, security checks,
and compliance data.
url: https://raw.githubusercontent.com/api-evangelist/adaptive-shield/refs/heads/main/apis.yml
created: '2026-03-27'
modified: '2026-08-30'
specificationVersion: '0.23'
tags:
- SaaS Security
- SSPM
- Security Posture Management
- Cybersecurity
- Cloud Security
- Identity Management
- Compliance
apis:
- aid: adaptive-shield:adaptive-shield-api
name: Adaptive Shield REST API
description: The Adaptive Shield REST API v1 provides programmatic access to SaaS security posture data including alerts,
user and device inventory, integration configurations, security check results, violations, and compliance controls. Authentication
uses a per-user API key (access token). Regional endpoints are available for US (api.adaptive-shield.com) and EU (eu.api.adaptive-shield.com)
regions.
humanURL: https://www.crowdstrike.com/en-us/platform/falcon-shield/
tags:
- SaaS Security
- SSPM
- REST API
- Alerts
- Compliance
properties:
- type: Authentication
url: authentication/adaptive-shield-authentication.yml
- type: Conventions
url: conventions/adaptive-shield-conventions.yml
- type: Lifecycle
url: lifecycle/adaptive-shield-lifecycle.yml
- type: Deprecation
url: lifecycle/adaptive-shield-lifecycle.yml
- type: RateLimits
url: rate-limits/adaptive-shield-rate-limits.yml
baseURL: https://api.adaptive-shield.com
common:
- type: TrustCenter
url: security/adaptive-shield-trust-center.yml
- type: VulnerabilityDisclosure
url: security/adaptive-shield-vulnerability-disclosure.yml
- type: DomainSecurity
url: security/adaptive-shield-domain-security.yml
- type: GitHubOrganization
url: https://github.com/adaptiveshield
- type: LinkedIn
url: https://www.linkedin.com/company/adaptiveshield
- type: Website
url: https://www.crowdstrike.com/en-us/platform/falcon-shield/
- type: Portal
url: https://www.crowdstrike.com/en-us/platform/falcon-shield/
- type: Blog
url: https://www.crowdstrike.com/en-us/blog/
- type: Resources
url: https://www.crowdstrike.com/en-us/resources/
- type: Integrations
url: https://www.crowdstrike.com/en-us/platform/falcon-shield/integrations/
- type: Support
url: https://supportportal.crowdstrike.com/
- type: Features
data:
- name: SaaS Misconfiguration Detection
description: Continuously monitors 200+ SaaS applications with 3,500+ built-in security checks to detect and remediate
misconfigurations that expose organizations to security risks.
- name: Identity And Access Governance
description: Manages both human and non-human identities (NHI) across SaaS platforms, detecting over-privileged accounts
and suspicious access patterns.
- name: Shadow App Discovery
description: Discovers unsanctioned and shadow SaaS applications connected to the organization's environment, providing
visibility into unauthorized integrations.
- name: AI Agent Visibility And Control
description: Provides visibility into and governance over AI agents operating within enterprise SaaS platforms including
Microsoft 365, Salesforce, and OpenAI.
- name: Compliance Monitoring
description: Tracks compliance posture across SaaS applications against frameworks such as SOC 2, ISO 27001, GDPR, and
HIPAA using automated security check mappings.
- name: REST API Access
description: Public REST API v1 with API key authentication enables programmatic access to alerts, user/device inventory,
integration data, security check results, violations, and compliance controls. US and EU regional endpoints available.
- name: SIEM And Platform Integrations
description: Integrates with SIEM platforms (Splunk, Datadog), security platforms (CrowdStrike Falcon), and vulnerability
management platforms via API and native connectors.
- type: UseCases
data:
- name: SaaS Security Posture Management
description: Security teams can continuously monitor and remediate misconfigurations across the organization's entire
SaaS stack from a single dashboard.
- name: Identity Risk Detection
description: Detect and remediate over-privileged users, dormant accounts, and suspicious login behavior across all connected
SaaS applications.
- name: Compliance Audit Automation
description: Automate compliance evidence collection and posture monitoring for SOC 2, ISO 27001, GDPR, and other frameworks
across SaaS applications.
- name: Third-Party App Risk Management
description: Identify and assess risk from third-party OAuth apps and browser extensions connected to critical SaaS platforms.
- name: Security Operations Integration
description: Pull SaaS security alerts and posture data into SIEM and SOAR platforms via the REST API for unified security
operations workflows.
- type: Integrations
data:
- name: Microsoft 365
description: SaaS security monitoring for Microsoft 365 suite including Exchange, Teams, SharePoint, and OneDrive.
- name: Salesforce
description: Security posture monitoring and misconfiguration detection for Salesforce CRM.
- name: Slack
description: Configuration monitoring and security checks for Slack workspace settings.
- name: Zoom
description: Security configuration monitoring for Zoom video conferencing accounts.
- name: Okta
description: Identity provider integration for user access and authentication configuration monitoring.
- name: Datadog
description: Sends SaaS posture alerts as Datadog Events via OAuth integration.
- name: Splunk
description: Splunk add-on for ingesting Adaptive Shield security events and alerts.
- name: CrowdStrike Falcon
description: Native integration with CrowdStrike Falcon platform following acquisition.
- type: WellKnown
url: well-known/adaptive-shield-well-known.yml
- type: SecurityTxt
url: well-known/adaptive-shield-security.txt
- type: Security
url: security/adaptive-shield-vulnerability-disclosure.yml
- type: Compliance
url: security/adaptive-shield-trust-center.yml
- type: Conformance
url: conformance/adaptive-shield-conformance.yml
- type: Packages
url: packages/adaptive-shield-packages.yml
- type: LLMsTxt
url: llms/adaptive-shield-llms.txt
- type: Plans
url: plans/adaptive-shield-plans-pricing.yml
- type: PrivacyPolicy
url: https://www.crowdstrike.com/en-us/legal/privacy-notice/
- type: TermsOfService
url: https://www.crowdstrike.com/en-us/legal/terms-conditions/
maintainers:
- FN: Kin Lane
X-twitter: apievangelist
email: info@apievangelist.com
x-enrichment:
date: '2026-08-30'
status: enriched
artifacts_added: 9
pass: local-v1
x-coverage:
state: covered
reason: no-machine-readable-spec
detail: 'Adaptive Shield is fully absorbed into CrowdStrike as Falcon Shield: its REST API v1 hosts still answer but return
a blanket 403 to every unauthenticated path, its developer portal developer.adaptive-shield.com no longer resolves in
DNS, and the Zendesk help centre carrying the API Reference article is closed, so the only surviving description of the
contract is third-party integrator documentation.'
evidence:
- url: https://api.adaptive-shield.com/openapi.json
status: 403
- url: https://adaptive-shield.zendesk.com/hc/en-us/articles/20587718569757-API-Reference
status: 403
- url: https://adaptive-shield.zendesk.com/api/v2/help_center/en-us/articles.json
status: 404
- url: https://www.adaptive-shield.com/
status: 200
checked: '2026-08-30'
x-parent: crowdstrike
x-relationship: acquisition
x-acquired: 2024
Every provider here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for providers
9 MCP tools reach this
find_providersBrowse and filter every provider in the catalog.
get_provider_artifactsEvery artifact this provider publishes, grouped by type.
get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.
get_provider_toolsEvery MCP tool they ship, with the operation each wraps.
get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.
get_provider_ratingPRO — composite, band, trend and facet scores.
apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
resolveTurn a domain, URL or GitHub org into the provider it belongs to.
find_cohortsEvery scored population of providers in the catalog.
All 92 tools →
Call it yourself
curl for this page
This provider
curl "https://apis.io/api/v1/providers/adaptive-shield"
All providers
curl "https://apis.io/api/v1/providers?limit=25"
Every operation they expose
curl "https://apis.io/api/v1/providers/adaptive-shield/operations?limit=25"
How their score was established
curl "https://apis.io/api/v1/providers/adaptive-shield/evidence"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we
store it to create your key and to recognise you if you sign in with another
provider. See our Privacy Policy and
Terms .
A second provider on the same verified email joins the account you already have.