McAfee (Trellix)
APIs for McAfee Enterprise security products and services. McAfee Enterprise rebranded as Trellix in 2022, but its on-premises and SaaS platforms (ePO, MVISION, ESM, Web Gateway, TIE, DXL) continue to expose REST APIs documented here for centralized security management, threat intelligence, EDR, messaging, and SIEM integration.
McAfee (Trellix) publishes 24 APIs on the APIs.io network, including Alarms API, Authentication API, Cases API, and 21 more. Tagged areas include Antivirus, Cybersecurity, Endpoint Protection, Security, and Threat Intelligence.
The McAfee (Trellix) catalog on APIs.io includes 1 JSON-LD context and 1 Spectral governance ruleset.
McAfee (Trellix)’s developer surface includes authentication, support, and 10 more developer resources.
Kin Score
APIs 26
Individual APIs this provider publishes, each with its own machine-readable definition.
McAfee Threat Intelligence Exchange (TIE) API
Real-time threat intelligence sharing and reputation services API.
McAfee Data Exchange Layer (DXL) API
Messaging fabric for real-time security data exchange and integration.
McAfee (Trellix) Alarms API
Manage security alarms
McAfee (Trellix) Authentication API
Session authentication and management
McAfee (Trellix) Cases API
Manage incident response cases
McAfee (Trellix) Core API
Core server operations and authentication
McAfee (Trellix) Data Sources API
Manage event data sources
McAfee (Trellix) Detections API
EDR detection events and alerts
McAfee (Trellix) Devices API
Manage ESM device hierarchy
McAfee (Trellix) Events API
Query and retrieve security events
McAfee (Trellix) File Operations API
Import and export configuration files
McAfee (Trellix) Investigations API
Threat investigation workflows and actions
McAfee (Trellix) Lists API
Manage URL and IP lists used in filtering
McAfee (Trellix) Monitoring API
Appliance health and traffic monitoring
McAfee (Trellix) Policies API
Manage and assign security policies
McAfee (Trellix) Policy Configuration API
Manage proxy and policy settings
McAfee (Trellix) Queries API
Execute ePO queries and retrieve results
McAfee (Trellix) Real-Time Search API
Real-time data collection from endpoints
McAfee (Trellix) Rule Sets API
Manage web security rule sets
McAfee (Trellix) Software API
Manage software repositories and packages
McAfee (Trellix) System Groups API
Manage the ePO System Tree groups
McAfee (Trellix) Systems API
Manage endpoints and systems registered in ePO
McAfee (Trellix) Tasks API
Manage client tasks and server tasks
McAfee (Trellix) Threat Events API
Retrieve threat event data from managed endpoints
McAfee (Trellix) Threats API
Retrieve and manage detected threats
McAfee (Trellix) Watchlists API
Manage security watchlists
Scroll for all 26
Open Collections 4
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
McAfee ePO API
OPEN COLLECTIONMcAfee ESM API
OPEN COLLECTIONMcAfee MVISION API
OPEN COLLECTIONMcAfee Web Gateway API
OPEN COLLECTIONPricing Plans 1
Published pricing tiers and plan structures.
Mcafee Plans Pricing
PLANSRate Limits 1
Documented rate limits and quota policies.
Mcafee Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Mcafee Finops
FINOPSSemantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Mcafee Context
JSON-LDSpectral Rules 1
Spectral governance rulesets for linting and validating these APIs.
McAfee (Trellix) API Rules
SPECTRALJSON Schema 42
Standalone JSON Schema definitions for this provider's data models.
ApiCommand
JSON SCHEMAApplianceStatus
JSON SCHEMACase
JSON SCHEMAClientTask
JSON SCHEMACommandResult
JSON SCHEMADataSource
JSON SCHEMADetection
JSON SCHEMADetectionListResponse
JSON SCHEMADetectionResponse
JSON SCHEMADevice
JSON SCHEMADeviceListResponse
JSON SCHEMADeviceResponse
JSON SCHEMAMcAfee Managed Endpoint
JSON SCHEMAEsmDevice
JSON SCHEMAFilterList
JSON SCHEMAFilterListDetail
JSON SCHEMAInvestigation
JSON SCHEMAInvestigationListResponse
JSON SCHEMAInvestigationResponse
JSON SCHEMAListEntry
JSON SCHEMALoginResponse
JSON SCHEMAPaginationMeta
JSON SCHEMAPolicy
JSON SCHEMARealTimeSearchResponse
JSON SCHEMARemediationActionResponse
JSON SCHEMARule
JSON SCHEMARuleSet
JSON SCHEMARuleSetDetail
JSON SCHEMASavedQuery
JSON SCHEMAServerTask
JSON SCHEMASoftwarePackage
JSON SCHEMASystem
JSON SCHEMASystemGroup
JSON SCHEMAMcAfee Threat Event
JSON SCHEMAThreat
JSON SCHEMAThreatEvent
JSON SCHEMAThreatListResponse
JSON SCHEMAThreatResponse
JSON SCHEMATokenResponse
JSON SCHEMATrafficStatistics
JSON SCHEMATriggeredAlarm
JSON SCHEMAWatchlist
JSON SCHEMAScroll for all 42
JSON Structure 1
JSON Structure definitions describing this provider's data shapes.
Mcafee Structure
JSON STRUCTURESecurity Posture 2
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Get Started 1
Portal, sign-up, and the first successful call
Documentation 2
Reference material describing how the API behaves
Agent Surfaces 1
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 1
Pagination, idempotency, versioning, errors, and events
Access & Security 2
Authentication, authorization, and security posture
Operate 1
Status, limits, changes, and where to get help
Commercial 2
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API