How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Cisco Umbrella Applications API

The Applications API from Cisco Umbrella — 6 operation(s) for applications.

Cisco Umbrella Applications API is one of 85 APIs that Cisco Umbrella publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Application. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 8 operations across 6 paths, and defines 27 schemas. It is described by OpenAPI 3.2.0, at version 2.0.2.

Requests are made against a single base URL, https://api.umbrella.com/{basePath}.

8 operations 6 paths 27 schemas 6 GET2 PATCH

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
2.0.2
Base URL
https://api.umbrella.com/admin/v2
Authentication
OAuth 2.0
Contact
Cloud Security Developer Community
Resource Areas
1

Authentication & Security 1

Cisco Umbrella Applications API declares 1 security scheme for authenticating requests. It supports OAuth 2.0 (oauthFlow) using the clientCredentials flow, exposing 2 scopes.

  • oauthFlow — client credential flow

Paths & Operations 8

Across 6 paths, the API surfaces 8 operations — 6 GET, 2 PATCH. Each is listed below with its method, path, parameters, and response codes.

Applications 8
GET
/appDiscovery/applications
List Applications
getApplicationsAppDiscovery 15 params → 200400401403500
PATCH
/appDiscovery/applications
Update Applications
patchApplications body → 200400401403404500
GET
/appDiscovery/applications/{applicationId}
Get Application
getApplication 1 param → 200400401403404500
PATCH
/appDiscovery/applications/{applicationId}
Update Application
updateApplication 1 param body → 200400401403404500
GET
/appDiscovery/applications/{applicationId}/risk
Get Application Risk
getApplicationRisk 1 param → 200400401403404500
GET
/appDiscovery/applications/{applicationId}/identities
List Application Identities
getApplicationIdentities 6 params → 200400401403404500
GET
/appDiscovery/applications/{applicationId}/attributes
List Application Attributes
getApplicationAttributes 2 params → 200400401403404500
GET
/appDiscovery/applications/info
List Information for Applications
getApplicationsInfo 16 params → 200400401403404500

Schemas 27

The contract defines 27 schemas that model the data the API accepts and returns. The most detailed are ApplicationObject (15 properties), ApplicationInList (11 properties), ApplicationRisk (9 properties), ApplicationIdentity (5 properties). Each schema is shown below with its type and property counts.

ApplicationAttributeCategoryList
object
The list of application attribute category.
1 property
ApplicationAttributeCategory
object
The application's attribute category.
3 properties
FinancialViability
string
Financial risk to the service provider, based on Dun & Bradstreet's Dynamic Risk Score.
ApplicationListWithInfo
object
The properties of the information for the applications.
4 properties
ApplicationInList
object
The list of properties about the discovered apps.
11 properties 11 required
ApplicationIdentity
object
The application identity information.
5 properties 5 required
DataStorage
string
The form of the stored data. Valid values are: noStorage, structured, unstructured, or na.
UsageType
string
The type of usage. Valid values are: personal, corporate (higher risk), or indirect (lower risk, e.g. content delivery network).
AppType
string
The type of the app.
ApplicationIdentityList
object
The list of identity information for the application.
1 property
ApplicationAttribute
object
The application attribute information.
4 properties
subcategory_content_types
array
The list of content types for the subcategory applied to the app.
Label
string
The application label. Valid values are: unreviewed, approved, notApproved, underAudit.
Error
object
The error message returned in the response.
1 property
ApplicationObject
object
The properties of the app.
15 properties 13 required
BusinessRisk
string
The business risk of the app.
ApplicationAttributeValue
object
The app's attribute value information.
4 properties
SwgSource
object
The properties of the app's web requests.
5 properties
DnsSource
object
The properties of the app's DNS requests.
3 properties
ApplicationList
object
The object that contains the list of application properties.
4 properties
CdfwSource
object
The properties of the app's requests that are managed by the cloud-delivered firewall (CDFW).
3 properties
Sources
array
The list of app sources where the sources are DNS, Web (Secure Web Gateway), and cloud-delivered firewall (CDFW) traffic events. The list can contain one or mo…
BulkLabelApplications
object
The properties of multiple apps that are updated at the same time.
2 properties
ApplicationRisk
object
The information about the application risk.
9 properties
WeightedRisk
string
The risk the app poses to the environment.
category
string
The category of the app.
subcategory
string
The subcategory applied to the app.

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

cisco-umbrella-applications-api-openapi.yml Raw ↑

Other APIs Cisco Umbrella publishes across the network.

Cisco Umbrella Activities API
Cisco Umbrella Activity API
Cisco Umbrella API Keys API
Cisco Umbrella API Usage Report API
Cisco Umbrella Application Categories API
Cisco Umbrella Application Lists API
Cisco Umbrella Apps API
Cisco Umbrella AS Information for a Domain API
Cisco Umbrella Bandwidth by Hour API
Cisco Umbrella Bandwidth by Timerange API
Cisco Umbrella Cisco Secure Malware Analytics Integration API
Cisco Umbrella Cnames API
Where this information came from

This is an independent, third-party profile of Cisco Umbrella Applications API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.