Amazon CloudTrail
AWS CloudTrail enables governance, compliance, operational auditing, and risk auditing of your AWS account by tracking user activity and API usage across AWS environments, hybrid setups, and multicloud deployments with immutable audit trails.
Amazon CloudTrail publishes 3 APIs on the APIs.io network: Event Data Stores API, Events API, and Trails API. Tagged areas include CloudTrail, Audit, Compliance, Governance, and Security.
The Amazon CloudTrail catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.
Amazon CloudTrail’s developer surface includes developer portal, documentation, support, engineering blog, developer console, signup flow, YouTube channel, and 24 more developer resources.
Kin Score
APIs 3
Individual APIs this provider publishes, each with its own machine-readable definition.
Amazon CloudTrail Event Data Stores API
Operations for managing CloudTrail Lake event data stores
Amazon CloudTrail Events API
Operations for looking up and querying events
Amazon CloudTrail Trails API
Operations for creating and managing CloudTrail trails
Open Collections 4
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
API Collection
OPEN COLLECTIONAmazon CloudTrail Event Data Stores API
OPEN COLLECTIONAmazon CloudTrail Event Data Stores Events API
OPEN COLLECTIONAmazon CloudTrail Event Data Stores Trails API
OPEN COLLECTIONMCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
Amazon CloudTrail MCP Server
MCP SERVERFeatures 5
Notable capabilities this provider offers.
Event Aggregation
Consolidate activity events from AWS, external providers, on-premises, and SaaS into a unified audit trail.
Immutable Audit Logs
Store audit-worthy events immutably to ensure tamper-proof compliance records.
CloudTrail Insights
Detect unusual API activity patterns with anomaly detection on management and data events.
SQL Query Support
Investigate issues using SQL queries or natural language with Amazon Athena integration.
Multi-Region Trails
Create trails that capture events from all AWS regions in a single S3 bucket.
Semantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Amazon Cloudtrail Context
JSON-LDSpectral Rules 2
Spectral governance rulesets for linting and validating these APIs.
Amazon CloudTrail API Rules
SPECTRALAmazon CloudTrail API Rules
SPECTRALJSON Schema 9
Standalone JSON Schema definitions for this provider's data models.
Amazon CloudTrail Event
JSON SCHEMACreateEventDataStoreRequest
JSON SCHEMACreateEventDataStoreResponse
JSON SCHEMACreateTrailRequest
JSON SCHEMACreateTrailResponse
JSON SCHEMADescribeTrailsResponse
JSON SCHEMAListEventDataStoresResponse
JSON SCHEMALookupEventsRequest
JSON SCHEMALookupEventsResponse
JSON SCHEMAScroll for all 9
JSON Structure 8
JSON Structure definitions describing this provider's data shapes.
Cloudtrail Create Event Data Store Request Structure
JSON STRUCTURECloudtrail Create Event Data Store Response Structure
JSON STRUCTURECloudtrail Create Trail Request Structure
JSON STRUCTURECloudtrail Create Trail Response Structure
JSON STRUCTURECloudtrail Describe Trails Response Structure
JSON STRUCTURECloudtrail List Event Data Stores Response Structure
JSON STRUCTURECloudtrail Lookup Events Request Structure
JSON STRUCTURECloudtrail Lookup Events Response Structure
JSON STRUCTUREScroll for all 8
Examples 8
Example request and response payloads for these APIs.
Scroll for all 8
Security Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Use Cases 4
What developers build with this provider.
Compliance Auditing
Demonstrate adherence to SOC, PCI DSS, and HIPAA regulations with audit logs.
Security Monitoring
Record and monitor user and API activity for security incident detection.
Operational Debugging
Investigate operational issues by querying historical API activity.
Governance
Track who made changes to AWS resources and when for governance accountability.
Integrations 5
Pre-built integrations with other platforms and tools.
Amazon S3
Store CloudTrail logs in S3 buckets with lifecycle management.
Amazon Athena
Query CloudTrail logs using SQL via Athena integration.
Amazon CloudWatch
Stream CloudTrail events to CloudWatch Logs for real-time monitoring.
AWS Lambda
Trigger Lambda functions based on CloudTrail events for automated response.
AWS Security Hub
Send CloudTrail findings to Security Hub for centralized security management.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 1
Reference material describing how the API behaves
Agent Surfaces 4
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 5
Pagination, idempotency, versioning, errors, and events
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 5
Authentication, authorization, and security posture
Learn 1
Tutorials, courses, talks, and written guidance
Operate 4
Status, limits, changes, and where to get help
Commercial 2
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API
Other 1
Properties that don't map to a standard resource type
Source (apis.yml)
Work with this as data
Every provider here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for providers
9 MCP tools reach this
find_providersBrowse and filter every provider in the catalog.get_provider_artifactsEvery artifact this provider publishes, grouped by type.get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.get_provider_toolsEvery MCP tool they ship, with the operation each wraps.get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.get_provider_ratingPRO — composite, band, trend and facet scores.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
curl "https://apis.io/api/v1/providers/amazon-cloudtrail"
curl "https://apis.io/api/v1/providers?limit=25"
curl "https://apis.io/api/v1/providers/amazon-cloudtrail/operations?limit=25"
curl "https://apis.io/api/v1/providers/amazon-cloudtrail/evidence"
Discovery needs no key. Ratings and market analysis are Pro.