McAfee (Trellix) · Schema
Detection
AntivirusCybersecurityEndpoint ProtectionSecurityThreat Intelligence
Properties
| Name | Type | Description |
|---|---|---|
| id | string | Unique detection ID |
| type | string | |
| attributes | object |
JSON Schema
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"$id": "#/components/schemas/Detection",
"title": "Detection",
"type": "object",
"properties": {
"id": {
"type": "string",
"description": "Unique detection ID"
},
"type": {
"type": "string",
"enum": [
"detections"
]
},
"attributes": {
"type": "object",
"properties": {
"ruleName": {
"type": "string",
"description": "Detection rule name"
},
"ruleId": {
"type": "string",
"description": "Detection rule identifier"
},
"severity": {
"type": "string",
"enum": [
"informational",
"low",
"medium",
"high",
"critical"
],
"description": "Detection severity"
},
"detectedAt": {
"type": "string",
"format": "date-time",
"description": "Detection timestamp"
},
"hostName": {
"type": "string",
"description": "Hostname where detection occurred"
},
"processName": {
"type": "string",
"description": "Triggering process name"
},
"processId": {
"type": "integer",
"description": "Process ID"
},
"parentProcessName": {
"type": "string",
"description": "Parent process name"
},
"commandLine": {
"type": "string",
"description": "Process command line"
},
"sha256": {
"type": "string",
"description": "SHA-256 hash of the file"
},
"mitreAttackTactic": {
"type": "string",
"description": "MITRE ATT&CK tactic"
},
"mitreAttackTechnique": {
"type": "string",
"description": "MITRE ATT&CK technique"
}
}
}
}
}
Work with this as data
Every JSON Schema here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for schemas
4 MCP tools reach this
find_json_schemasBrowse and filter every JSON Schema in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This JSON Schema
curl "https://apis.io/api/v1/json-schemas/mcafee-detection"
All schemas
curl "https://apis.io/api/v1/json-schemas?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.