AirMDR
AirMDR is an AI-native managed detection and response (MDR) provider whose virtual security analyst, Darryl, automates alert triage, investigation and response across endpoint, cloud, SaaS, identity, email and network tools. The platform ingests alerts from 200+ integrations, runs automated or AI-generated investigation playbooks, and produces documented cases; it is sold as a full-service MDR for small security teams, an AI SOC platform for MSSPs and enterprise SOCs, and a free plan with 100 alert investigations. Programmatic access is a REST API on app.airmdr.com (Case Manager and User Management services, documented in Redoc), authenticated with an API token sent as a Session cookie, plus a webhook endpoint for pushing alerts into the platform.
AirMDR publishes 23 API contracts indexed on the APIs.io network, including Alert Catalog API, Alerts API, Alert Types API, and 20 more. Tagged areas include Security, Managed Detection and Response, Security Operations, Alert Triage, and Incident Response.
The AirMDR catalog on APIs.io includes 1 event-driven AsyncAPI specification.
AirMDR’s developer surface includes authentication, documentation, API reference, getting-started guide, engineering blog, pricing, support, and 34 more developer resources.
What this lets a business do 2
Business capabilities this provider's published APIs can perform, derived from its own contracts. Browse all capabilities →
Kin Score
APIs 23
Individual APIs this provider publishes, each with its own machine-readable definition.
AirMDR Documentation MCP Server
Hosted, unauthenticated Streamable-HTTP MCP server on the AirMDR documentation host (Mintlify-operated) exposing three tools: search the AirMDR documentation, run read-only quer...
AirMDR Alert Catalog API
The AlertCatalog API from AirMDR — 8 operation(s) for alertcatalog.
AirMDR Alerts API
The Alerts API from AirMDR — 15 operation(s) for alerts.
AirMDR Alert Types API
The AlertTypes API from AirMDR — 3 operation(s) for alerttypes.
AirMDR Case Manager API
The Case Manager API from AirMDR — 32 operation(s) for case manager.
AirMDR Case Manager Internal API
The Case Manager Internal API from AirMDR — 10 operation(s) for case manager internal.
AirMDR Case Manager V2 API
The Case Manager V2 API from AirMDR — 43 operation(s) for case manager v2.
AirMDR Case Decision Automation API
The CaseDecisionAutomation API from AirMDR — 4 operation(s) for casedecisionautomation.
AirMDR Dashboard API
The Dashboard API from AirMDR — 20 operation(s) for dashboard.
AirMDR Internal API
The Internal API from AirMDR — 8 operation(s) for internal.
AirMDR Mitre Tactics API
The MitreTactics API from AirMDR — 1 operation(s) for mitretactics.
AirMDR Organization API
Endpoints to manage organizations
AirMDR Password API
Endpoints to manage user password
AirMDR Permission API
Endpoints to read system permissions
AirMDR Ping API
The Ping API from AirMDR — 1 operation(s) for ping.
AirMDR Query DSL API
The Query DSL API from AirMDR — 3 operation(s) for query dsl.
AirMDR Security Review API
The Security Review API from AirMDR — 5 operation(s) for security review.
AirMDR Session API
Endpoints to manage sessions
AirMDR Token API
Endpoints to manage tokens
AirMDR Trial API
The Trial API from AirMDR — 1 operation(s) for trial.
AirMDR User API
Endpoints to manager users
AirMDR User Group API
Endpoints to manage user groups
AirMDR Webhooks API
The Webhooks API from AirMDR — 3 operation(s) for webhooks.
Scroll for all 23
MCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
AirMDR documentation MCP
Remote MCP server at docs.airmdr.com over streamable HTTP; 3 tools listed.
MCP SERVERPricing Plans 1
Published pricing tiers and plan structures.
Airmdr Plans Pricing
PLANSRate Limits 1
Documented rate limits and quota policies.
Airmdr Rate Limits
RATE LIMITSEvent Specifications 1
AsyncAPI definitions for this provider's event-driven and streaming APIs.
Airmdr Webhooks
ASYNCAPIOpenAPI Overlays 2
Overlays applied on top of this provider's contracts. Each card says who wrote it: a document the provider publishes, or one API Evangelist derived or generated.
Airmdr Case Manager Overlay
GENERATEDAirmdr User Management Service Overlay
GENERATEDSecurity Posture 2
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 5
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 6
Pagination, idempotency, versioning, errors, and events
Build 3
SDKs, sample code, and the tooling you integrate with
Access & Security 2
Authentication, authorization, and security posture
Learn 1
Tutorials, courses, talks, and written guidance
Operate 4
Status, limits, changes, and where to get help
Commercial 3
Pricing, plans, and the legal terms of use
Company 6
The organization behind the API
Other 6
Properties that don't map to a standard resource type
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.