Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Tanium Evidence API

Collect and manage investigation evidence

Tanium Evidence API is one of 22 APIs that Tanium publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Evidence. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, authentication docs, and a getting-started guide.

This API exposes 5 operations across 3 paths, and defines 2 schemas. It is described by OpenAPI 3.1.0, at version 1.0.0.

Requests are made against a single base URL, https://{tanium_server}.

5 operations 3 paths 2 schemas 1 DELETE3 GET1 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.0
API Version
1.0.0
Server
https://{tanium_server}
Authentication
API Key
Resource Areas
1

Authentication & Security 1

Tanium Evidence API declares 1 security scheme for authenticating requests. An API key is passed in the header as session (apiToken). By default, every request must be authenticated.

  • apiToken — API token passed in the session header for authenticating with the Tanium Connect API.

Paths & Operations 5

Across 3 paths, the API surfaces 5 operations — 1 DELETE, 3 GET, 1 POST. Each is listed below with its method, path, parameters, and response codes.

Evidence 5

Collect and manage investigation evidence

GET
/plugin/products/threat-response/api/v1/evidence
List Investigation Evidence
listEvidence 5 params → 200401
POST
/plugin/products/threat-response/api/v1/evidence
Create Evidence From A Process
createEvidence body → 200400
GET
/plugin/products/threat-response/api/v1/evidence/{evidenceId}
Get Evidence By ID
getEvidence 1 param → 200404
DELETE
/plugin/products/threat-response/api/v1/evidence/{evidenceId}
Delete Evidence
deleteEvidence 1 param → 200404
GET
/plugin/products/threat-response/api/v1/evidence/properties
Get Evidence Properties
getEvidenceProperties → 200401

Schemas 2

The contract defines 2 schemas that model the data the API accepts and returns. The most detailed are Evidence (16 properties), Error (2 properties). Each schema is shown below with its type and property counts.

Error
object
2 properties
Evidence
object
16 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

tanium-evidence-api-openapi.yml Raw ↑

Other APIs Tanium publishes across the network.

Tanium API Gateway
Tanium Actions API
Tanium Alerts API
Tanium Authentication API
Tanium Connections API
Tanium Destinations API
Tanium Events API
Tanium File Downloads API
Tanium File Operations API
Tanium Groups API
Tanium Intel Documents API
Tanium Labels API