How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

CloudQuery policies API

The policies API from CloudQuery — 10 operation(s) for policies.

CloudQuery policies API is one of 26 APIs that CloudQuery publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Policies. The published artifact set on APIs.io includes an OpenAPI specification.

This API exposes 16 operations across 10 paths, and defines 26 schemas. It is described by OpenAPI 3.2.0, at version 1.0.0.

Requests are made against a single base URL, https://api.cloudquery.io.

16 operations 10 paths 26 schemas 2 DELETE9 GET3 POST2 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0.0
Base URL
https://api.cloudquery.io
Authentication
HTTP Bearer, HTTP Basic, HTTP Cookie
License
Terms of Service
Resource Areas
1

Authentication & Security 3

CloudQuery policies API declares 3 security schemes for authenticating requests. It accepts HTTP bearer tokens (bearerAuth). It accepts HTTP basic authentication (basicAuth). It uses HTTP cookie authentication (cookieAuth). By default, every request must be authenticated.

Paths & Operations 16

Across 10 paths, the API surfaces 16 operations — 2 DELETE, 9 GET, 3 POST, 2 PUT. Each is listed below with its method, path, parameters, and response codes.

policies 16
GET
/policies
List all policies for a team
PlatformListPolicies 9 params → 200401403500
POST
/policies
Create a new policy
PlatformCreatePolicy body → 201401403422500
GET
/policies/{policy_id}
Get a policy by ID
PlatformGetPolicy 1 param → 200401403404500
PUT
/policies/{policy_id}
Update a policy
PlatformUpdatePolicy 1 param body → 200400401403404422500
DELETE
/policies/{policy_id}
Delete a policy
PlatformDeletePolicy 1 param → 204401403404422500
POST
/policies/{policy_id}/toggle
Toggle a policy's status (active/paused)
PlatformTogglePolicy 1 param → 200401403404422500
GET
/policies/{policy_id}/violations
Get violations for a policy
PlatformGetPolicyViolations 4 params → 200401403404500
GET
/policies/{policy_id}/violations-history
Get violation history for a policy
PlatformGetPolicyViolationsHistory 5 params → 200401403404500
GET
/policies/metrics
Get policy metrics summary
PlatformGetPolicyMetrics 3 params → 200401403500
GET
/policies/violations-by-domain
Get violations grouped by domain
PlatformGetViolationsByDomain 3 params → 200401403500
GET
/policies/violations-history
Get violations history over time
PlatformGetViolationsHistory 5 params → 200401403500
GET
/policy-groups
List all policy groups
PlatformListPolicyGroups 2 params → 200401403500
POST
/policy-groups
Create a new policy group
PlatformCreatePolicyGroup body → 201401403422500
GET
/policy-groups/{policy_group_id}
List policies in a policy group
PlatformListPoliciesInGroup 5 params → 200401403404500
PUT
/policy-groups/{policy_group_id}
Update a policy group
PlatformUpdatePolicyGroup 1 param body → 200400401403404422500
DELETE
/policy-groups/{policy_group_id}
Delete a policy group
PlatformDeletePolicyGroup 1 param → 204401403404500

Schemas 26

The contract defines 26 schemas that model the data the API accepts and returns. The most detailed are PlatformPolicy (17 properties), PlatformNotificationDestinationListItem (8 properties), PlatformPolicyViolation (8 properties), PlatformPolicyCreate (7 properties). Each schema is shown below with its type and property counts.

PlatformPolicyUpdate
object
Update a policy
7 properties
PlatformPolicyCreate
object
Create a policy (implicitly creates a query and an enabled alert)
7 properties 4 required
PlatformQueryID
string
The unique ID for the query.
PlatformPolicyID
string
The unique ID for the policy.
PlatformListMetadata
object
4 properties 1 required
PlatformNotificationDestinationID
string
The unique ID for the notification destination.
PlatformPolicyGroupWithCounts
object
Policy Group with policy count and violation counts by severity
10 required
PlatformPolicyGroupID
string
PlatformPolicy
object
Policy
17 properties 12 required
PlatformPolicyGroup
object
Policy Group
5 properties 5 required
PlatformViolationsHistory
object
Violations history over time
2 properties 2 required
PlatformPolicyMetrics
object
Policy metrics summary
3 properties 3 required
PlatformPolicyGroupCreate
object
Create a policy group
3 properties 1 required
PlatformPolicySeverity
string
Policy severity
PlatformPolicyViolation
object
Policy violation resource information
8 properties 6 required
PlatformFieldError
PlatformPolicyStatus
string
Policy status
PlatformNotificationDestinationListItem
object
Notification Destination List Item
8 properties 7 required
PlatformViolationsHistoryMetadata
object
Metadata for violations history query
3 properties 3 required
PlatformPolicyDomain
string
Policy domain
PlatformBasicError
object
Basic Error
2 properties 2 required
PlatformViolationsByDomainItem
object
Violation count for a specific domain
2 properties 2 required
PlatformViolationsByDomain
object
Violations grouped by domain
2 properties 2 required
PlatformPolicyEvaluationLog
object
Policy evaluation log entry
4 properties 4 required
PlatformViolationsHistoryItem
object
Violation count for a specific date
2 properties 2 required
PlatformPolicyGroupUpdate
object
Update a policy group
3 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

cloudquery-policies-api-openapi.yml Raw ↑

Other APIs CloudQuery publishes across the network.

CloudQuery Platform API
CloudQuery admin API
CloudQuery alerts API
CloudQuery api-keys API
CloudQuery apps API
CloudQuery audit-logs API
CloudQuery chat API
CloudQuery custom-columns API
CloudQuery filters API
CloudQuery healthcheck API
CloudQuery insights API
CloudQuery notifications API
Where this information came from

This is an independent, third-party profile of CloudQuery policies API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.