openapi: 3.2.0 info: title: Dependency Track Dependency Graph API version: 1.0.0 contact: name: The Dependency-Track Authors url: https://github.com/DependencyTrack/dependency-track license: name: Apache-2.0 url: https://www.apache.org/licenses/LICENSE-2.0.html description: 'Operations tagged dependencyGraph across 2 of this provider''s published API definitions: dependency-track-openapi-v1.yaml, dependency-track-openapi.yml. Each path carries the servers of the definition it was published in.' servers: - url: /api tags: - name: dependencyGraph paths: /v1/dependencyGraph/component/{uuid}/directDependencies: get: description: Requires permission VIEW_PORTFOLIO operationId: getComponentsAndServicesByComponentUuid parameters: - description: The UUID of the component in: path name: uuid required: true schema: type: string format: uuid responses: '200': content: application/json: schema: type: array items: $ref: '#/components/schemas/DependencyGraphResponse' description: A list of specific components and services from component UUID '401': description: Unauthorized '403': content: application/problem+json: schema: $ref: '#/components/schemas/ProblemDetails' description: Access to the requested project is forbidden '404': description: Any component can be found security: - ApiKeyAuth: [] - BearerAuth: [] summary: Returns a list of specific components and services from component UUID tags: - dependencyGraph servers: - url: /api /v1/dependencyGraph/project/{uuid}/directDependencies: get: description: Requires permission VIEW_PORTFOLIO operationId: getComponentsAndServicesByProjectUuid parameters: - description: The UUID of the project in: path name: uuid required: true schema: type: string format: uuid responses: '200': content: application/json: schema: type: array items: $ref: '#/components/schemas/DependencyGraphResponse' description: A list of specific components and services from project UUID '401': description: Unauthorized '403': content: application/problem+json: schema: $ref: '#/components/schemas/ProblemDetails' description: Access to the requested project is forbidden '404': description: Any component can be found security: - ApiKeyAuth: [] - BearerAuth: [] summary: Returns a list of specific components and services from project UUID tags: - dependencyGraph servers: - url: /api components: schemas: DependencyGraphResponse: type: object properties: directDependencies: type: string latestVersion: type: string name: type: string purl: type: string uuid: type: string format: uuid version: type: string ProblemDetails: type: object description: An RFC 9457 problem object properties: detail: type: string description: Human-readable explanation specific to this occurrence of the problem example: Example detail instance: type: string format: uri description: Reference URI that identifies the specific occurrence of the problem example: https://api.example.org/foo/bar/example-instance status: type: integer format: int32 description: HTTP status code generated by the origin server for this occurrence of the problem example: 400 title: type: string description: Short, human-readable summary of the problem type example: Example title type: type: string format: uri description: A URI reference that identifies the problem type example: https://api.example.org/foo/bar/example-problem required: - detail - status - title securitySchemes: ApiKeyAuth: description: Authentication via API key. in: header name: X-Api-Key type: apiKey BearerAuth: bearerFormat: Opaque description: 'Authentication via opaque server-issued session token. Tokens are obtained from `POST /api/v1/user/login` or `POST /api/v1/user/oidc/login`.' scheme: bearer type: http x-refined-from: - dependency-track-openapi-v1.yaml - dependency-track-openapi.yml