openapi: 3.0.3 info: title: Stellar Cyber Open XDR Alerts Authentication API description: The Stellar Cyber REST API provides programmatic access to the Open XDR platform, enabling automation of security operations including case management, tenant administration, connector management, alert handling, query operations, user management, watchlists, sensors, and security event management. version: '6.3' contact: name: Stellar Cyber Support url: https://stellarcyber.zendesk.com license: name: Proprietary url: https://stellarcyber.ai/terms/ servers: - url: https://{platformHostname}/connect/api/v1 description: Stellar Cyber Platform API variables: platformHostname: description: Your Stellar Cyber platform hostname default: your-platform.stellarcyber.ai security: - bearerAuth: [] tags: - name: Authentication description: API key and JWT token management paths: /access_token: post: operationId: getAccessToken summary: Get Access Token description: Generate a JWT access token using an API key. The JWT expires ten minutes after generation. Use the returned token as a Bearer token in subsequent API calls. tags: - Authentication security: - bearerAuth: [] responses: '200': description: JWT access token generated successfully content: application/json: schema: $ref: '#/components/schemas/AccessTokenResponse' '401': $ref: '#/components/responses/Unauthorized' components: responses: Unauthorized: description: Authentication required or token expired content: application/json: schema: $ref: '#/components/schemas/Error' schemas: AccessTokenResponse: type: object properties: access_token: type: string description: JWT access token token_type: type: string example: bearer expires_in: type: integer description: Token expiry in seconds (default 600) Error: type: object properties: error: type: string message: type: string code: type: integer securitySchemes: bearerAuth: type: http scheme: bearer bearerFormat: JWT description: JWT token obtained from /access_token endpoint. Tokens expire after 10 minutes. API keys can also be used as Bearer tokens for the /access_token call.