API Evangelist API Evangelist
API Learnings
Toolbox
API Evangelist LLC

Cortex XDR API

A REST API for the Cortex XDR extended detection and response platform providing programmatic access to incident management, alert handling, endpoint operations, and threat hunting. Key API modules include incidents (get, update, close), alerts (get details, exclusions), endpoints (isolate, unisolate, scan, get agent info), scripts (execute, get results), and audit logs.

Documentation

Specifications

Schemas & Data

Examples

OpenAPI

palo-alto-cortex-xdr-api-openapi-original.yml Raw ↑