Supported Cloud App Security APIs

This section discusses the following supported Cloud App Security RESTful APIs.

API Type

Actions

Description

Log retrieval

Get security logs

Retrieves security event logs of the services that Cloud App Security protects

Threat investigation

Sweep for email messages

Searches email messages in protected mailboxes for those that match meta information search criteria

This is available for Exchange Online and Gmail.

Threat mitigation

Take actions on user accounts

Takes actions on a batch of specified user accounts

This is available for Office 365 services.

Take actions on email messages

Takes actions on a batch of specified email messages

This is available for Exchange Online and Gmail.

Query action results

Queries the results of actions on specified email messages or user accounts

Threat remediation

Get Blocked Lists

Retrieves all blocked senders, URLs, SHA-1 hash values, and SHA-256 hash values that the administrator has configured through this API on Cloud App Security to quarantine email messages

This is available for Exchange Online.

Update Blocked Lists

Adds or removes senders, URLs, SHA-1 hash values, and/or SHA-256 hash values to or from the blocked lists on Cloud App Security