How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

CoreStack Security API

Security Pillar

CoreStack Security API is one of 85 APIs that CoreStack publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Security. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, and authentication docs.

This API exposes 36 operations across 36 paths, and defines 69 schemas. It is described by OpenAPI 3.2.0, at version 1.0.0.

Requests are made against a single base URL, /.

36 operations 36 paths 69 schemas 4 GET32 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0.0
Base URL
https://api.corestack.io/
Authentication
API Key
Terms of Service
Resource Areas
1

Authentication & Security 1

CoreStack Security API declares 1 security scheme for authenticating requests. An API key is passed in the header as X-Auth-Token (auth_token).

Paths & Operations 36

Across 36 paths, the API surfaces 36 operations — 4 GET, 32 POST. Each is listed below with its method, path, parameters, and response codes.

Security 36

Security Pillar

POST
/security/executive_dashboard/threats/by_cloud_accounts
Get Threat by Cloud Accounts
ThreatByAccounts body → 500401400200
POST
/security/executive_dashboard/threats/by_region
Get Threat by Region
ThreatByRegion body → 500401400200
POST
/security/executive_dashboard/threats/by_resource_category
Get Threat by Resource Category
ThreatByResourceCategory body → 500401400200
POST
/security/executive_dashboard/threats/trend_by_severity
Get Threats by Trend
ThreatByTrend body → 500401400200
POST
/security/executive_dashboard/violations/by_cloud_account
Get Config Violation by Cloud Account
violationsByCloudAccount body → 500401400200
POST
/security/executive_dashboard/violations/by_region
Get Config Violation By Region
violationsByRegion body → 500401400200
POST
/security/executive_dashboard/violations/by_resource_category
Get Config Violation by Resource Category
violationsByResourceCategory body → 500401400200
POST
/security/executive_dashboard/violations/trend_by_severity
Get Config Violation trend by severity
violationsTrend body → 500401400200
POST
/security/executive_dashboard/vulnerabilities/by_cloud_account
Get Vulnerability by Cloud Account
VulnerabilityByAccount body → 500401400200
POST
/security/executive_dashboard/vulnerabilities/by_region
Get Vulnerability by Region
VulnerabilityByRegion body → 500401400200
POST
/security/executive_dashboard/vulnerabilities/trend_by_severity
Get Vulnerability by Trend
VulnerabilityByTrend body → 500401400200
GET
/security/posture/visibility/{tenant_id}/get/vulnerability
List Security Vulnerability Details
SecurityVulnerability 3 params → 500401400200
GET
/security/posture/visibility/{tenant_id}/get/{action_name}
List Security Visibility Details
SecurityVisibility 6 params → 500401400200
GET
/security/posture/{tenant_id}/get/securityops
Get Security Posture Details By Tenant
SecurityPostureByTenant 5 params → 500401400200
GET
/security/posture/{tenant_id}/get/securityops/{action_name}
Get Security Posture Details by Cloud Account & Cloud Service Provider
SecurityPosture 7 params → 500401400200
POST
/v1/secops/dashboard/infra_misconfig/summary
Get summary of infra mis-configurations aggregated by region, resource category, or account for a given tenant
InfraMisConfigSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_misconfig/summary_by_resource
Get summary of infra mis-configurations aggregated by resource(s) for a given tenant
InfraMisConfigSummaryByResource body → 500403401400200
POST
/v1/secops/dashboard/infra_misconfig/trend/list
List of infra misconfigurations IDs captured for given summary filters
ListInfraMisConfigurationsTrendSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_misconfig/trend/summary
Retrieves trend summary of infrastructure misconfigurations
InfraMisConfigurationsTrendSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_threats/summary
Get summary of infra threats aggregated by region, resource category, or account for a given tenant
InfraThreatSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_threats/summary_by_resource
Get summary of infra threats aggregated by resource(s) for a given tenant
InfraThreatSummaryByResource body → 500403401400200
POST
/v1/secops/dashboard/infra_threats/trend/list
List of infra threat IDs captured for given summary filters
ListInfraThreatsTrendSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_threats/trend/summary
Retrieves trend summary of infrastructure threats
InfraThreatsTrendSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_vulnerabilities/summary
Get summary of infra vulnerabilities aggregated by region, resource category, or account for a given tenant
InfraVulnerabilitySummary body → 500403401400200
POST
/v1/secops/dashboard/infra_vulnerabilities/summary_by_resource
Get summary of infra vulnerabilities aggregated by resource(s) for a given tenant
InfraVulnerabilitySummaryByResource body → 500403401400200
POST
/v1/secops/dashboard/infra_vulnerabilities/trend/list
List of infra vulnerability IDs captured for given summary filters
ListInfraVulnerabilitiesTrendSummary body → 500403401400200
POST
/v1/secops/dashboard/infra_vulnerabilities/trend/summary
Retrieves trend summary of infrastructure vulnerabilities
InfraVulnerabilitiesTrendSummary body → 500403401400200
POST
/v1/secops/infra_threats/batch
Details of the given batch of threat IDs
BatchThreats body → 500403401400200
POST
/v1/secops/infra_threats/list
Lists of threat IDs captured for cloud resources
ListThreats body → 500403401400200
POST
/v1/secops/infra_vulnerabilities/batch
Details of the given batch of vulnerability IDs
BatchVulnerabilities@@@2 body → 500403401400200
POST
/v1/secops/infra_vulnerabilities/list
List of vulnerability IDs captured for cloud resources
ListVulnerabilities body → 500403401400200
POST
/v2/secops/dashboard/compliance/compliance_by_service_account
List Compliance summary by service accounts
ComplianceServiceAccountSummary body → 500401400200
POST
/v2/secops/dashboard/compliance/compliance_by_tenant
List Compliance summary by tenants
ComplianceTenantSummary body → 500401400200
POST
/v2/security/executive_dashboard/access/by_cloud_account
Get Access Violation by Cloud Account
accessViolationsByCloudAccount body → 500401400200
POST
/v2/security/executive_dashboard/access/by_region
Get Access Violation By Region
accessViolationsByRegion body → 500401400200
POST
/v2/security/executive_dashboard/access/trend_by_severity
Get Access Violation trend by severity
accessViolationsTrend body → 500401400200

Schemas 69

The contract defines 69 schemas that model the data the API accepts and returns. The most detailed are ThreatVulnerabilityBaseResponse (24 properties), InfraMisConfiguration (20 properties), SecurityInfraDashboardSummaryDetails (8 properties), ComplianceControls (7 properties). Each schema is shown below with its type and property counts.

ThreatVulnerabilityBaseResponse
object
24 properties
SecurityInfraIssuesDashboardFilters
object
2 properties 1 required
InfraVulnerabilitiesTrendListFiltersSortCriteria
object
2 properties 1 required
InfraMisConfigurationsTrendListFiltersSortCriteria
object
2 properties 1 required
SecurityVulnerabilitySummaryMonthResponse
object
1 property
SecurityDashboardVulnerabilitySummaryAccountResponse
object
1 property
SecurityInfraDashboardSummaryDetails
object
8 properties
SecurityDashboardThreatsAccountDetails
object
5 properties
InfraVulnerabilitiesTrendSummaryRequest
SecurityDashboardThreatsSummaryAccountResponse
object
1 property
InfraMisConfigurationsTrendListRequestFilters
SecurityVisibilityResponse
object
5 properties 5 required
SecurityPostureResponse
object
4 properties 4 required
ObjectIdBatchRequest
object
1 property
SecurityDashboardViolationAccountDetails
object
5 properties
SecurityDashboardViolationsByResourceCategoryResponse
object
1 property
SecurityDashboardSeverity
object
7 properties
SecurityInfraDashboardSummaryRequest
InfraIssuesTimeRangeFilter
object
3 properties 2 required
SecurityDashboardVulnerabilityRegionValue
object
2 properties
ComplianceServiceAccountSummaryRequest
object
1 property
ComplianceServiceAccountSummary
ThreatResponse
ThreatVulnerabilityRequest
object
3 properties
ModelError
object
1 property 1 required
SecurityDashboardThreatSummaryMonthResponse
object
1 property
SecurityDashboardViolationsByAccountResponse
object
1 property
SecurityDashboardRequest
object
1 property
InfraMisConfigurationsTrendSummary
object
3 properties
InfraThreatsTrendListRequestFilters
SecurityDashboardThreatsByRegionCount
object
3 properties
SecurityDashboardVulnerabilityAccountDetails
object
5 properties 3 required
ListContext
object
3 properties
InfraThreatsTrendListFiltersSortCriteria
object
2 properties 1 required
ComplianceTenantSummary
object
4 properties
SecurityDashboardViolationByRegionCount
object
3 properties
InfraVulnerabilitiesTrendListRequestFilters
SecurityDashboardThreatsByRegionResponse
object
1 property
InfraMisconfigurationTrendResponse
object
2 properties
QueryOperator
object
1 required
SecurityDashboardVulnerabilityRegionCount
object
2 properties
ComplianceControls
object
7 properties
InfraMisConfigurationsTrendSummaryRequest
SecurityDashboardViolationByResourceCategoryCount
object
4 properties
ListResponse
object
2 properties
InfraThreatsTrendListRequest
object
3 properties
SecurityDashboardVulnerabilitySummaryRegionResponse
object
1 property
ThreatVulnerabilitiesFiltersRequestSortCriteria
object
2 properties 1 required
SecurityDashboardThreatsByResourceCategoryResponse
object
1 property
SecurityDashboardAccessViolationByTrend
object
2 properties
SecurityDashboardAccountFilters
object
3 properties
SecurityDashboardConfigViolationMonth
object
2 properties
InfraVulnerabilitiesTrendListRequest
object
3 properties
InfraThreatsTrendSummaryRequest
SecurityDashboardViolationsByMonthResponse
object
1 property
SecurityInfraDashboardBaseFilters
object
2 properties 1 required
SecurityPostureTenantResponse
object
3 properties 3 required
InfraThreatsTrendSummary
object
3 properties
VulnerabilityResponse
InfraMisConfigurationsTrendListRequest
object
3 properties
SecurityDashboardVulnerabilityMonth
object
2 properties
SecurityDashboardThreatsMonth
object
2 properties
SecurityDashboardThreatsByResourceCategoryCount
object
4 properties
InfraMisConfiguration
object
20 properties
ThreatVulnerabilityFilters
InfraVulnerabilitiesTrendSummary
object
3 properties
SecurityDashboardViolationsByRegionResponse
object
1 property
ComplianceTenantSummaryRequest
object
1 property
SecurityVulnerabilityResponse
object
4 properties 4 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

corestack-security-api-openapi.yml Raw ↑

Other APIs CoreStack publishes across the network.

CoreStack MCP Server
CoreStack Access API
CoreStack Account Governance API
CoreStack AI Agent API
CoreStack AI Governance API
CoreStack Application Health API
CoreStack App Sec Ops API
CoreStack Assessment API
CoreStack Attachments API
CoreStack Audit Log API
CoreStack Authorization API
CoreStack Automation API
Where this information came from

This is an independent, third-party profile of CoreStack Security API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.