openapi: 3.0.3 info: title: ARMO Platform Access Keys Security Risks API description: 'The ARMO Platform API exposes ARMO''s cloud-native and Kubernetes security data over REST. ARMO is the company behind the open-source Kubescape project; ARMO Platform is a runtime-driven CNAPP covering Kubernetes Security Posture Management (KSPM), vulnerability and image scanning, compliance frameworks, network and seccomp policy generation, security-risk correlation, attack chains, and runtime Cloud Application Detection and Response (CADR). Authentication uses an account access key (Agent Access Key) generated in the ARMO Platform under Settings, sent in the `X-API-KEY` request header. Requests are made against the regional base URL - `https://api.armosec.io/api/v1` for the EU region or `https://api.us.armosec.io/api/v1` for the US region. This description is honestly modeled from ARMO''s public API reference and OpenAPI/Swagger documentation. Paths and methods reflect the documented reference; request and response schemas are simplified and returned data requires a connected ARMO account with reporting clusters. Verify exact payloads against the live Swagger UI at https://api.armosec.io/openapi/v2/swaggerui.' version: '1.0' contact: name: ARMO url: https://www.armosec.io license: name: ARMO Platform Terms url: https://www.armosec.io/terms-of-service/ servers: - url: https://api.armosec.io/api/v1 description: EU region - url: https://api.us.armosec.io/api/v1 description: US region security: - apiKeyAuth: [] tags: - name: Security Risks description: Correlated security risks and attack chains. paths: /security/risks: get: operationId: listSecurityRisks tags: - Security Risks summary: List security risks description: Retrieves the list of correlated security risks. responses: '200': description: A list of security risks. content: application/json: schema: $ref: '#/components/schemas/ListResponse' '401': $ref: '#/components/responses/Unauthorized' /security/risks/resources: get: operationId: listSecurityRiskResources tags: - Security Risks summary: List security-risk resources description: Retrieves resources associated with security risks. responses: '200': description: A list of resources. content: application/json: schema: $ref: '#/components/schemas/ListResponse' '401': $ref: '#/components/responses/Unauthorized' /security/risks/severities: get: operationId: getSecurityRiskSeverities tags: - Security Risks summary: Get security-risk severity summary responses: '200': description: Severity summary. content: application/json: schema: $ref: '#/components/schemas/GenericResponse' '401': $ref: '#/components/responses/Unauthorized' /attack/chains: get: operationId: getAttackChains tags: - Security Risks summary: Get attack chains description: Retrieves attack chains matching the provided filters. responses: '200': description: Attack chains. content: application/json: schema: $ref: '#/components/schemas/ListResponse' '401': $ref: '#/components/responses/Unauthorized' components: schemas: Error: type: object properties: error: type: string message: type: string ListResponse: type: object properties: total: type: object properties: value: type: integer response: type: array items: type: object additionalProperties: true additionalProperties: true GenericResponse: type: object additionalProperties: true responses: Unauthorized: description: Missing or invalid X-API-KEY. content: application/json: schema: $ref: '#/components/schemas/Error' securitySchemes: apiKeyAuth: type: apiKey in: header name: X-API-KEY description: Account access key (Agent Access Key) generated in ARMO Platform under Settings, sent in the X-API-KEY header.