How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Amazon Inspector Findings API

The Findings API from Amazon Inspector — 4 operation(s) for findings.

Amazon Inspector Findings API is one of 22 APIs that Amazon Inspector publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Findings. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, a getting-started guide, and pricing.

This API exposes 4 operations across 4 paths, and defines 182 schemas. It is described by OpenAPI 3.2.0, at version 1.0.0.

Requests are made against 4 base URLs: http://inspector2.{region}.amazonaws.com, https://inspector2.{region}.amazonaws.com, http://inspector2.{region}.amazonaws.com.cn, https://inspector2.{region}.amazonaws.com.cn.

4 operations 4 paths 182 schemas 4 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0.0
Base URL
https://inspector2.amazonaws.com
Authentication
API Key
Terms of Service
Resource Areas
1

Authentication & Security 1

Amazon Inspector Findings API declares 1 security scheme for authenticating requests. An API key is passed in the header as Authorization (hmac). By default, every request must be authenticated.

  • hmac — Amazon Signature authorization v4

Paths & Operations 4

Across 4 paths, the API surfaces 4 operations — 4 POST. Each is listed below with its method, path, parameters, and response codes.

Findings 4
POST
/findings/details/batch/get
Amazon Inspector Batch Get Finding Details
BatchGetFindingDetails 7 params body → 200480481482483
POST
/findings/aggregation/list
Amazon Inspector List Finding Aggregations
ListFindingAggregations 9 params body → 200480481482
POST
/findings/list
Amazon Inspector List Findings
ListFindings 9 params body → 200480481482
POST
/findings/get
Amazon Inspector Get findings report status
GetFindingsReportStatus → 200

Schemas 182

The contract defines 182 schemas that model the data the API accepts and returns. The most detailed are Finding (21 properties), VulnerablePackage (11 properties), AggregationResponse (11 properties), PackageVulnerabilityDetails (10 properties). Each schema is shown below with its type and property counts.

String
string
ValidationException
AwsEcrContainerSortBy
string
ExecutionRoleArn
string
EvidenceRule
string
FindingTypeSortBy
string
CvssScoreAdjustment
object
Details on adjustments Amazon Inspector made to the CVSS score for a finding.
2 properties 2 required
LambdaFunctionAggregationResponse
object
A response that contains the results of an AWS Lambda function finding aggregation.
7 properties 1 required
EvidenceDetail
string
ListFindingsResponse
object
2 properties
ImageLayerAggregationResponse
object
A response that contains the results of a finding aggregation by image layer.
5 properties 4 required
BatchGetFindingDetailsResponse
object
2 properties
Runtime
string
CweList
array
EpssDetails
object
Details about the Exploit Prediction Scoring System (EPSS) score for a finding.
1 property
FindingStatus
string
PortRangeFilterList
array
VulnerabilityIdList
array
VulnerabilityReferenceUrls
array
AccountAggregation
object
An object that contains details about an aggregation response based on Amazon Web Services accounts.
4 properties
LambdaFunctionSortBy
string
VulnerablePackageRemediation
string
ExploitAvailable
string
VulnerablePackage
object
Information on the vulnerable package identified by a finding.
11 properties 2 required
NetworkReachabilityDetails
object
Contains the details of a network reachability finding.
3 properties 3 required
SubnetId
string
Cwes
array
EvidenceList
array
Integer
integer
Tools
array
Recommendation
object
Details about the recommended course of action to remediate the finding.
2 properties
StringFilterList
array
AggregationResponseList
array
Ec2InstanceAggregation
object
The details that define an aggregation based on Amazon EC2 instances.
6 properties
NetworkProtocol
string
AwsEc2InstanceDetails
object
Details of the Amazon EC2 instance involved in a finding.
10 properties
AmiAggregationResponse
object
A response that contains the results of a finding aggregation by AMI.
4 properties 1 required
Component
string
PackageEpoch
integer
AwsEcrContainerImageDetails
object
The image details of the Amazon ECR container image.
8 properties 3 required
CodeFilePath
object
Contains information on where a code vulnerability is located in your Lambda function.
4 properties 4 required
FindingDetail
object
Details of the vulnerability identified in a finding.
10 properties
AccessDeniedException
Timestamp
string
PortRange
object
Details about the port range associated with a finding.
2 properties 2 required
RepositoryAggregation
object
The details that define an aggregation based on repository.
3 properties
IpV6AddressList
array
IpV6Address
string
FindingDetails
array
Port
integer
AmiAggregation
object
The details that define an aggregation based on Amazon machine images (AMIs).
3 properties
FindingTypeAggregationResponse
object
A response that contains the results of a finding type aggregation.
2 properties
PackageAggregationResponse
object
A response that contains the results of a finding aggregation by image layer.
3 properties 1 required
FindingDetailsError
object
Details about an error encountered when trying to return vulnerability data for a finding.
3 properties 3 required
Ec2InstanceSortBy
string
Architecture
string
ThrottlingException
Double
number
FixAvailable
string
TagMap
object
DateTimeTimestamp
string
StringFilter
object
An object that describes the details of a string filter.
2 properties 2 required
MapComparison
string
ResourceList
array
LambdaLayerAggregationResponse
object
A response that contains the results of an AWS Lambda function layer finding aggregation.
5 properties 4 required
ResourceType
string
PackageAggregation
object
The details that define an aggregation based on operating system package type.
3 properties
Severity
string
Tool
string
TitleAggregation
object
The details that define an aggregation based on finding title.
6 properties
Ec2InstanceAggregationResponse
object
A response that contains the results of a finding aggregation by Amazon EC2 instance.
7 properties 1 required
NetworkPath
object
Information on the network path associated with a finding.
1 property
VulnerabilityId
string
MapValue
string
MapFilter
object
An object that describes details of a map filter.
3 properties 2 required
Platform
string
AggregationType
string
StringList
array
VulnerablePackageList
array
AccountSortBy
string
FindingDetailsErrorList
array
CisaDateAdded
string
Evidence
object
Details of the evidence for a vulnerability identified in a finding.
3 properties
ExploitabilityDetails
object
The details of an exploit available for a finding discovered in your environment.
1 property
NumberFilter
object
An object that describes the details of a number filter.
2 properties
DateFilter
object
Contains details on the time range used to filter findings.
2 properties
SecurityGroupIdList
array
InternalServerException
MapKey
string
SourceLayerHash
string
Version
string
FunctionName
string
IpV4AddressList
array
AccountId
string
FilePath
string
Long
integer
PackageManager
string
AwsEcrContainerAggregationResponse
object
An aggregation of information about Amazon ECR containers.
7 properties 1 required
SortOrder
string
NextToken
string
AggregationResponse
object
A structure that contains details about the results of an aggregation type.
11 properties
PackageSortBy
string
FindingTypeAggregation
object
The details that define an aggregation based on finding type.
4 properties
ImageHash
string
VpcId
string
SortField
string
DetectorTagList
array
LambdaLayerAggregation
object
The details that define a findings aggregation based on an AWS Lambda function's layers.
5 properties
CodeVulnerabilityDetails
object
Contains information on the code vulnerability identified in your Lambda function.
8 properties 4 required
StringComparison
string
InspectorScoreDetails
object
Information about the Amazon Inspector score given to a finding.
1 property
Resource
object
Details about the resource involved in a finding.
6 properties 2 required
IpV4Address
string
ArchitectureList
array
PackageName
string
MapFilterList
array
PackageType
string
LayerList
array
FindingDescription
string
NonEmptyStringList
array
FindingTitle
string
FindingList
array
DateFilterList
array
Ttp
string
SubnetIdList
array
CvssScoreList
array
EvidenceSeverity
string
AmiSortBy
string
ImageLayerSortBy
string
CisaData
object
The Cybersecurity and Infrastructure Security Agency (CISA) details for a specific vulnerability.
3 properties
CisaDateDue
string
ResourceDetails
object
Contains details about the resource involved in the finding.
3 properties
AwsLambdaFunctionDetails
object
A summary of information about the AWS Lambda function.
10 properties 5 required
PackageArchitecture
string
NonEmptyString
string
AggregationFindingType
string
FirstSeen
string
PackageRelease
string
PackageVulnerabilityDetails
object
Information about a package vulnerability finding.
10 properties 2 required
NumberFilterList
array
AccountAggregationResponse
object
An aggregation of findings by Amazon Web Services account ID.
2 properties
EpssScoreValue
number
TitleSortBy
string
RiskScore
integer
CvssScoreAdjustmentList
array
AwsEcrContainerAggregation
object
An aggregation of information about Amazon ECR containers.
7 properties
RepositorySortBy
string
FindingDetailsErrorCode
string
AggregationResourceType
string
PortRangeFilter
object
An object that describes the details of a port range filter.
2 properties
ImageTagList
array
FindingArn
string
CvssScoreDetails
object
Information about the CVSS score.
6 properties 4 required
StepList
array
PackageVersion
string
CisaAction
string
LambdaLayerArn
string
PackageFilterList
array
SecurityGroupId
string
Step
object
Details about the step associated with a finding.
2 properties 2 required
RepositoryAggregationResponse
object
A response that contains details on the results of a finding aggregation by repository.
4 properties 1 required
CvssScore
object
The CVSS score for a finding.
4 properties 4 required
LambdaLayerSortBy
string
PackageFilter
object
Contains information on the details of a package filter.
7 properties
StringInput
string
TitleAggregationResponse
object
A response that contains details on the results of a finding aggregation by title.
4 properties 1 required
LambdaFunctionAggregation
object
The details that define a findings aggregation based on AWS Lambda functions.
6 properties
ExploitObserved
object
Contains information on when this exploit was observed.
2 properties
ImageLayerAggregation
object
The details that define an aggregation based on container image layers.
5 properties
Finding
object
Details about an Amazon Inspector finding.
21 properties 10 required
Cwe
string
FindingType
string
Remediation
object
Information on how to remediate a finding.
1 property
SeverityCounts
object
An object that contains the counts of aggregated finding per severity.
4 properties
AmiId
string
VulnerabilityReferenceUrl
string
ListFindingAggregationsResponse
object
3 properties 1 required
LastSeen
string
ComponentType
string
LambdaVpcConfig
object
The VPC security groups and subnets that are attached to an AWS Lambda function. For more information, see VPC Settings .
3 properties
ReferenceUrls
array
Ttps
array

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

amazon-inspector-findings-api-openapi.yml Raw ↑

Other APIs Amazon Inspector publishes across the network.

Amazon Inspector Accountpermissions API
Amazon Inspector Codesnippet API
Amazon Inspector Configuration API
Amazon Inspector Coverage API
Amazon Inspector Delegatedadminaccounts API
Amazon Inspector Disable API
Amazon Inspector Ec2deepinspectionconfiguration API
Amazon Inspector Ec2deepinspectionstatus API
Amazon Inspector Enable API
Amazon Inspector Encryptionkey API
Amazon Inspector Filters API
Amazon Inspector Freetrialinfo API
Where this information came from

This is an independent, third-party profile of Amazon Inspector Findings API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.