Skip to content

Repository files navigation

Microsoft Defender (microsoft-defender)

About this repository

This is not our API. This repository is an independent, third-party profile of a company's publicly available API surface, maintained by API Evangelist. API Evangelist does not operate, host, resell, or support this company's APIs, and is not affiliated with or endorsed by the company unless stated on the profile.

Where the information came from. Everything here is assembled from material a member of the public can reach with a browser and no credentials — the company's own website, developer portal and documentation, the specifications it publishes for public use (OpenAPI, AsyncAPI, JSON Schema, apis.json, llms.txt and similar), its public repositories, and its public status, pricing and changelog pages. Nothing here is obtained by breaching a system, defeating an access control, or using credentials of any kind.

The rating is an independent assessment. The Kin Score and Agent Readiness rating are independently calculated scores of a company's public API artifacts, produced by API Evangelist against a published rubric. They are not certifications, endorsements, security assessments, or audits, and they score published artifacts — not the quality, safety, or security of the software.

Corrections, re-scores, and removal are free. No partnership, contract, or purchase is required, and you do not need to justify the request.

  • Something wrong? Open an issue on this repository, or email info@apievangelist.com.
  • Published something new? Ask for a re-score and we will re-run the rating.
  • Want the listing taken down? Say so and we will honor it. The profile is reduced to your company name, a factual description, and a link to your own site, and the company is recorded as unrated — never scored zero for having asked.

Response times. Acknowledgement within one business day; removal or restriction within two business days; corrections and re-scores within five business days.

On a security or compliance team? Email info@apievangelist.com with security in the subject line and you will get a person, not a form. We will tell you exactly which public URLs this profile was built from so your team can see the same surface we did, and we will take the listing down on request while you work through it.

Full detail: Where this data comes from

Collection of Microsoft Defender security APIs for threat protection, endpoint security, and security operations.

APIs.json: https://raw.githubusercontent.com/api-evangelist/microsoft-defender/refs/heads/main/apis.yml

Timestamps

  • Created: 2024-01-15
  • Modified: 2026-05-19

APIs

Microsoft Defender for Endpoint API

API for endpoint detection and response, threat and vulnerability management, and automated investigation and remediation.

Tags

  • EDR
  • Endpoint Security
  • Threat Detection
  • Vulnerability Management

Properties

Microsoft Defender for Cloud Apps API

Cloud Access Security Broker (CASB) API for discovering, investigating, and governing cloud apps.

Tags

  • CASB
  • Cloud Security
  • Data Protection
  • Shadow IT

Properties

Microsoft Defender Threat Intelligence API

Access threat intelligence data, indicators of compromise (IOCs), and threat analytics.

Tags

  • IOC
  • Security Intelligence
  • Threat Analytics
  • Threat Intelligence

Properties

Microsoft Graph Security API

Unified API for Microsoft security products including Defender alerts, secure scores, and security actions.

Tags

  • Alerts
  • Secure Score
  • Security Graph
  • Threat Protection

Properties

Microsoft Defender for Office 365 API

API for email and collaboration protection including anti-phishing, anti-malware, and safe attachments.

Tags

  • Collaboration Security
  • Email Security
  • Phishing Protection
  • Safe Attachments

Properties

Microsoft Defender XDR API

Unified extended detection and response API for automating workflows based on shared incident and advanced hunting tables across Microsoft security products.

Tags

  • Advanced Hunting
  • Event Streaming
  • Incidents
  • Threat Protection
  • XDR

Properties

Microsoft Defender for Cloud REST API

REST API for unified security management and advanced threat protection across hybrid cloud workloads in Azure, other clouds, and on-premises.

Tags

  • Azure Security
  • Cloud Security
  • CSPM
  • Security Posture
  • Workload Protection

Properties

Microsoft Defender for Identity API

API for identity-based attack detection and investigation across on-premises Active Directory and hybrid environments, with sensor management via Microsoft Graph.

Tags

  • Active Directory
  • Identity Security
  • Identity Threat Detection
  • Sensor Management

Properties

Common Properties

Maintainers

FN: Kin Lane Email: kin@apievangelist.com