generated: '2026-10-09' method: searched source: https://analysis-cockpit-manual.nextron-systems.com/en/latest/administration/api.html summary: The published THOR Thunderstorm OpenAPI declares no securitySchemes and the THOR manual documents unauthenticated calls (curl -X POST "http://myserver:8080/api/check?source=test" -F "file=@sample.exe"); access control is the customer's network placement of the self-hosted service. The Analysis Cockpit API uses a per-user API key ("copy the API key from your user settings into the key field"). ASGARD license issuance uses a download token passed as a token query parameter. schemes: - name: none type: none api: nextron-systems:thor-thunderstorm-api description: No authentication declared in the contract; self-hosted service on the customer's network. sources: - openapi/nextron-systems-thunderstorm-openapi.yml - https://thor-manual.nextron-systems.com/en/latest/usage/deployment.html - name: Analysis Cockpit API key type: apiKey api: nextron-systems:analysis-cockpit-api description: To test the API in the web interface, copy the API key from your user settings into the key field. Header/parameter name is not published outside the appliance. sources: - https://analysis-cockpit-manual.nextron-systems.com/en/latest/administration/api.html - name: ASGARD download token type: apiKey in: query parameter: token api: nextron-systems:asgard-management-center-api description: 'Licensing endpoint example: curl -XPOST "https://my-asgard.internal:8443/api/v0/licensing/issue?token=..." (download token configured under Downloads > Download Token Configuration).' sources: - https://thor-manual.nextron-systems.com/en/latest/usage/deployment.html