Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Workday Security Security Audit API

Access security-specific audit records including permission changes, security group modifications, and access control events.

Workday Security Security Audit API is one of 13 APIs that Workday Security publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Security Audit. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, authentication docs, and an API reference.

This API exposes 1 operation across 1 path, and defines 2 schemas. It is described by OpenAPI 3.1.0, at version v1.

Requests are made against a single base URL, https://{host}/ccx/api/v1/{tenant}.

1 operations 1 paths 2 schemas 1 GET

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.0
API Version
v1
Base URL
https://wd2-impl-services1.workday.com/ccx/service/
Authentication
HTTP Bearer
Terms of Service
Resource Areas
1

Authentication & Security 1

Workday Security Security Audit API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (JWT) (bearerAuth). By default, every request must be authenticated.

  • bearerAuth — OAuth 2.0 bearer token obtained from the Workday token endpoint.

Paths & Operations 1

Across 1 path, the API surfaces 1 operation — 1 GET. Each is listed below with its method, path, parameters, and response codes.

Security Audit 1

Access security-specific audit records including permission changes, security group modifications, and access control events.

GET
/securityAudit/permissionChanges
Workday Security List security permission changes
listPermissionChanges 5 params → 200401403

Schemas 2

The contract defines 2 schemas that model the data the API accepts and returns. The most detailed are PermissionChange (10 properties), ActorRef (3 properties). Each schema is shown below with its type and property counts.

ActorRef
object
Reference to the actor who performed an audited action, which can be a user account or system process.
3 properties
PermissionChange
object
A record of a change to security permissions within the Workday tenant, including security group membership changes, domain security policy modifications, and…
10 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

workday-security-security-audit-api-openapi.yml Raw ↑

Other APIs Workday Security publishes across the network.

Workday User Activity Logging API
Workday Security Account Signons API
Workday Security Audit Logs API
Workday Security Authentication Configuration API
Workday Security Compliance Reports API
Workday Security Domain Security Policies API
Workday Security OAuth Tokens API
Workday Security Security Group Members API
Workday Security Security Groups API
Workday Security Sessions API
Workday Security Unidentified Signons API
Workday Security User Accounts API