# Scanner > Scanner is a cloud-native security data platform that indexes logs directly in Amazon S3 for fast full-text search, continuous streaming threat detection, and programmatic/agent access to security data — an alternative to traditional SIEMs and data lakes. This llms.txt was generated by API Evangelist from the provider's public docs and the artifacts in this repository. ## APIs - [Scanner REST API (v1)](https://docs.scanner.dev/scanner/using-scanner-complete-feature-reference/developer-tools/api): Indexes, detection rules, event sinks, lookup tables, ad hoc queries, and query-capacity info. Bearer API key auth. ## Specs - [OpenAPI (generated)](openapi/scanner-openapi.yml): Faithful OpenAPI 3.1 of the documented v1 endpoints. - [Authentication profile](authentication/scanner-authentication.yml): Bearer API key + Stytch-brokered SSO (Okta/Google/Entra, SCIM). - [MCP server](mcp/scanner-mcp.yml): Published hosted MCP server (https://mcp..scanner.dev/v1/mcp) with 5 tools. - [Conventions](conventions/scanner-conventions.yml): Cursor pagination, async submit-then-poll queries, error envelope, versioning. - [Error catalog](errors/scanner-problem-types.yml): 400/404/504 semantics. - [Data model](data-model/scanner-data-model.yml): Index, DetectionRule, EventSink, LookupTableFile relationships. - [Webhooks / event sinks](asyncapi/scanner-webhooks.yml): Slack/Webhook/PagerDuty alert delivery. ## Docs - [Documentation home](https://docs.scanner.dev/scanner/) - [Quick setup](https://docs.scanner.dev/scanner/getting-started/quick-setup-overview) - [MCP & AI SecOps](https://docs.scanner.dev/scanner/using-scanner-complete-feature-reference/mcp-and-ai-secops/getting-started) - [MCP tools reference](https://docs.scanner.dev/scanner/using-scanner-complete-feature-reference/mcp-and-ai-secops/mcp-tools-reference) - [Detection Rules CLI (scanner-cli)](https://docs.scanner.dev/scanner/using-scanner-complete-feature-reference/detections-and-alerting/detection-rules/detection-rules-as-code/cli) - [Authentication & SSO](https://docs.scanner.dev/scanner/using-scanner-complete-feature-reference/administration/authentication-and-sso) - [Changelog](https://scanner.dev/changelog) - [Pricing](https://scanner.dev/pricing) - [Trust / compliance](https://scanner.dev/trust) ## Optional - [Blog](https://scanner.dev/blog) - [Book a demo](https://scanner.dev/demo) - [Log in](https://app.scanner.dev/)