Stellar Cyber website screenshot

Stellar Cyber

Stellar Cyber is an Open XDR platform that provides AI-driven security operations capabilities including threat detection, investigation, and response. The platform offers an OAS-compliant REST API that enables downstream applications to perform complex queries, join results, analyze data, and automate security operations workflows. Stellar Cyber maintains several sample Python Jupyter Notebooks in GitHub that can help build analyses outside of the platform with the API or connect custom applications.

Stellar Cyber publishes 11 APIs on the APIs.io network, including Alerts API, Authentication API, Cases API, and 8 more. Tagged areas include Cybersecurity, Security, XDR, SIEM, and SOAR.

The Stellar Cyber catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

Stellar Cyber’s developer surface includes authentication, developer portal, documentation, pricing, engineering blog, and 8 more developer resources.

56.8/100 strong ▬ flat Agent 31/100 agent aware Full breakdown ↓
scored 2026-08-05 · rubric v0.9.1
AccessFreemiumSelf serve⚡ Free to try
11 APIs
CybersecuritySecurityXDRSIEMSOARAI

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-05 · rubric v0.9.1
Composite quality — 56.8/100 · strong
Contract Quality 16.5 / 25
Developer Ergonomics 7.0 / 20
Commercial Clarity 14.2 / 20
Operational Transparency 4.8 / 13
Governance 7.0 / 12
Discoverability 7.4 / 10
Agent readiness — 31/100 · agent aware
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/stellar-cyber: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 11

Individual APIs this provider publishes, each with its own machine-readable definition.

Stellar Cyber Alerts API

Alert management, tagging, and status updates

Stellar Cyber Authentication API

API key and JWT token management

Stellar Cyber Cases API

Security case creation, retrieval, update, and closure

Stellar Cyber Connectors API

Data connector management for security telemetry ingestion

Stellar Cyber Events API

Security event management and bulk ingestion

Stellar Cyber Playbooks API

ATH Playbook response action management

Stellar Cyber Queries API

Saved query management

Stellar Cyber Reports API

Security report generation and retrieval

Stellar Cyber Sensors API

Sensor monitoring and management

Stellar Cyber Tenants API

Multi-tenant administration and grouping

Stellar Cyber Watchlists API

Watchlist creation and management

Scroll for all 11

Postman Collections 11

Ready-to-run Postman collections for exercising this provider's APIs.

Scroll for all 11

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Stellar Cyber Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Stellar Cyber Context

23 classes · 7 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Stellar Cyber API Rules

5 rules · 4 warnings 1 info

SPECTRAL

Stellar Cyber API Rules

11 rules · 3 errors 8 warnings

SPECTRAL

JSON Schema 2

Standalone JSON Schema definitions for this provider's data models.

Stellar Cyber Alert

8 properties

JSON SCHEMA

Stellar Cyber Case

10 properties

JSON SCHEMA

JSON Structure 1

JSON Structure definitions describing this provider's data shapes.

Stellar Cyber Case Structure

0 properties

JSON STRUCTURE

Examples 2

Example request and response payloads for these APIs.

Security Posture 3

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Stellar Cyber Authentication

http · 1 scheme

SECURITY

Stellar Cyber Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Stellar Cyber Trust Center

SOC 2, ISO 27001, GDPR

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Stellar Cyber Agentic Access

34 operations · 21 acting

34 operations · 21 acting

AGENTIC

Resources

Get Started 2

Portal, sign-up, and the first successful call

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Build 2

SDKs, sample code, and the tooling you integrate with

Access & Security 3

Authentication, authorization, and security posture

Commercial 1

Pricing, plans, and the legal terms of use

Company 3

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: stellar-cyber
name: Stellar Cyber
description: Stellar Cyber is an Open XDR platform that provides AI-driven security operations capabilities including threat
  detection, investigation, and response. The platform offers an OAS-compliant REST API that enables downstream applications
  to perform complex queries, join results, analyze data, and automate security operations workflows. Stellar Cyber maintains
  several sample Python Jupyter Notebooks in GitHub that can help build analyses outside of the platform with the API or connect
  custom applications.
type: Index
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
position: Consumer
access: 3rd-Party
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/stellar-cyber.png
tags:
- Cybersecurity
- Security
- XDR
- SIEM
- SOAR
- AI
created: '2025-02-06'
modified: '2026-05-19'
url: https://raw.githubusercontent.com/api-evangelist/stellar-cyber/refs/heads/main/apis.yml
specificationVersion: '0.19'
apis:
- aid: stellar-cyber:stellar-cyber-alerts-api
  name: Stellar Cyber Alerts API
  description: Alert management, tagging, and status updates
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Alerts
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-alerts-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-authentication-api
  name: Stellar Cyber Authentication API
  description: API key and JWT token management
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Authentication
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-authentication-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-cases-api
  name: Stellar Cyber Cases API
  description: Security case creation, retrieval, update, and closure
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Cases
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-cases-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-connectors-api
  name: Stellar Cyber Connectors API
  description: Data connector management for security telemetry ingestion
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Connectors
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-connectors-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-events-api
  name: Stellar Cyber Events API
  description: Security event management and bulk ingestion
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Events
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-events-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-playbooks-api
  name: Stellar Cyber Playbooks API
  description: ATH Playbook response action management
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Playbooks
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-playbooks-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-queries-api
  name: Stellar Cyber Queries API
  description: Saved query management
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Queries
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-queries-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-reports-api
  name: Stellar Cyber Reports API
  description: Security report generation and retrieval
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Reports
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-reports-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-sensors-api
  name: Stellar Cyber Sensors API
  description: Sensor monitoring and management
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Sensors
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-sensors-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-tenants-api
  name: Stellar Cyber Tenants API
  description: Multi-tenant administration and grouping
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Tenants
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-tenants-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
- aid: stellar-cyber:stellar-cyber-watchlists-api
  name: Stellar Cyber Watchlists API
  description: Watchlist creation and management
  humanURL: https://docs.stellarcyber.ai/
  baseURL: https://{platform-hostname}/connect/api/v1
  tags:
  - Watchlists
  properties:
  - type: OpenAPI
    url: openapi/stellar-cyber-watchlists-api-openapi.yml
  - type: Documentation
    url: https://docs.stellarcyber.ai/
  - type: Reference
    url: https://docs.stellarcyber.ai/6.3.x/Using/API/API-Intro.htm
common:
- type: PostmanWorkspace
  url: https://www.postman.com/kinlaneapi/stellar-cyber/overview
- type: AgenticAccess
  url: agentic-access/stellar-cyber-agentic-access.yml
- type: TrustCenter
  url: security/stellar-cyber-trust-center.yml
- type: DomainSecurity
  url: security/stellar-cyber-domain-security.yml
- type: Authentication
  url: authentication/stellar-cyber-authentication.yml
- type: LinkedIn
  url: https://www.linkedin.com/company/stellar-cyber
- type: Portal
  url: https://stellarcyber.ai/
- type: Documentation
  url: https://docs.stellarcyber.ai/
- type: Website
  url: https://stellarcyber.ai/
- type: Login
  url: https://stellarcyber.ai/login/
- type: Pricing
  url: https://stellarcyber.ai/pricing/
- type: Blog
  url: https://stellarcyber.ai/blog/
- type: GitHubOrganization
  url: https://github.com/stellarcyber
features:
- name: Open XDR Platform
  description: AI-driven security operations platform with 500+ integrations
- name: Case Management API
  description: Create, retrieve, update, and close security cases programmatically
- name: Multi-Tenant Architecture
  description: Full tenant administration, grouping, and isolation capabilities
- name: Connector Management
  description: Manage data connectors for ingesting security telemetry from diverse sources
- name: JWT Authentication
  description: Secure time-limited JWT tokens with automatic expiry and refresh support
- name: ElasticSearch Query API
  description: Direct ElasticSearch query access on platform indices for advanced analytics
- name: Automated Response
  description: ATH Playbook and System Action Center rules for automated threat response
useCases:
- name: SOC Automation
  description: Automate security operations workflows including alert triage, case creation, and response actions
- name: Threat Hunting
  description: Use the query and ElasticSearch APIs to hunt for threats across security telemetry
- name: Custom Integrations
  description: Build custom SIEM, SOAR, and ticketing integrations via the REST API
- name: Multi-Tenant MSSP
  description: Manage multiple customer tenants programmatically with tenant API operations
- name: Compliance Reporting
  description: Generate and retrieve security reports for compliance and audit purposes
integrations:
- name: SIEM Integrations
  description: Ingest logs and alerts from third-party SIEM platforms
- name: Ticketing Systems
  description: Integrate with ServiceNow, Jira, and other ticketing systems for case management
- name: Threat Intelligence
  description: Enrich alerts with threat intelligence via connector API
- name: Endpoint Detection
  description: Integrate with EDR and endpoint security tools for response actions
solutions:
- name: Open XDR
  description: Unified threat detection and response across all security layers
- name: AI SIEM
  description: AI-powered SIEM with automated correlation and detection
- name: NDR
  description: Network Detection and Response capabilities
- name: SOAR
  description: Security Orchestration, Automation, and Response capabilities
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com