Zum Hauptinhalt springen

REST-Endpunkte

Neben GraphQL gibt es ein paar einfache HTTP-Endpunkte: die Anmeldung im Browser, Health-Checks und PDF-Berichte. Alles andere läuft über GraphQL.

Basis-URL
https://vulnara-gw.rso.dev

Sign-in

GET/auth/oauth2

Start browser sign-in

Redirects the browser to the Vulnara sign-in page. After sign-in the browser comes back to the callback below.

Antworten

NameBeschreibung
302Redirect to the sign-in page.
Anfrage
curl "https://vulnara-gw.rso.dev/auth/oauth2"

GET/auth/oauth2/callback

Finish browser sign-in

The sign-in page redirects here. The gateway exchanges the code for tokens and hands them to the web app. You do not call this yourself.

Parameter

NameTypBeschreibung
codePflichtquery
statePflichtquery

Antworten

NameBeschreibung
302Redirect to the web app, signed in, or to the sign-in failure page.
Anfrage
curl "https://vulnara-gw.rso.dev/auth/oauth2/callback"

POST/auth/oauth2/refresh

Refresh an access token

Swap a refresh token for a new access token and refresh token.

Antworten

NameBeschreibung
200New tokens.
400The refresh token is missing, expired or revoked. Sign in again.
Anfrage
curl -X POST "https://vulnara-gw.rso.dev/auth/oauth2/refresh" \
  -H "Content-Type: application/json" \
  -d '{"refreshToken":"<refresh token>"}'

Health

GET/health/live

Liveness

Answers while the gateway process is running.

Antworten

NameBeschreibung
200Running.
Anfrage
curl "https://vulnara-gw.rso.dev/health/live"

GET/health/ready

Readiness

Answers 200 when the gateway can serve requests.

Antworten

NameBeschreibung
200Ready.
503Not ready yet.
Anfrage
curl "https://vulnara-gw.rso.dev/health/ready"

Reports

GET/reports/summary

Security summary report

A PDF summary of the security posture of the whole workspace.

Parameter

NameTypBeschreibung
X-TenantheaderWorkspace id. Optional when you belong to one workspace only.

Antworten

NameBeschreibung
200The report as a PDF download.
401Missing or invalid bearer token.
403You are not a member of the requested workspace.
404The item does not exist in this workspace.
502The report could not be generated. Try again.
Anfrage
curl "https://vulnara-gw.rso.dev/reports/summary" \
  -H "Authorization: Bearer $VULNARA_TOKEN" \
  -H "X-Tenant: $VULNARA_TENANT" \
  -o report.pdf

GET/reports/scan/{id}

Scan report

A PDF report for one scan result.

Parameter

NameTypBeschreibung
idPflichtpathId of the scan result.
X-TenantheaderWorkspace id. Optional when you belong to one workspace only.

Antworten

NameBeschreibung
200The report as a PDF download.
401Missing or invalid bearer token.
403You are not a member of the requested workspace.
404The item does not exist in this workspace.
502The report could not be generated. Try again.
Anfrage
curl "https://vulnara-gw.rso.dev/reports/scan/<id>" \
  -H "Authorization: Bearer $VULNARA_TOKEN" \
  -H "X-Tenant: $VULNARA_TENANT" \
  -o report.pdf

GET/reports/workspace/{id}

Git workspace report

A PDF report for one GitHub or GitLab organisation or user.

Parameter

NameTypBeschreibung
idPflichtpathId of the git workspace.
X-TenantheaderWorkspace id. Optional when you belong to one workspace only.

Antworten

NameBeschreibung
200The report as a PDF download.
401Missing or invalid bearer token.
403You are not a member of the requested workspace.
404The item does not exist in this workspace.
502The report could not be generated. Try again.
Anfrage
curl "https://vulnara-gw.rso.dev/reports/workspace/<id>" \
  -H "Authorization: Bearer $VULNARA_TOKEN" \
  -H "X-Tenant: $VULNARA_TENANT" \
  -o report.pdf

GET/reports/repository/{id}

Repository report

A PDF report for one repository.

Parameter

NameTypBeschreibung
idPflichtpathId of the repository.
X-TenantheaderWorkspace id. Optional when you belong to one workspace only.

Antworten

NameBeschreibung
200The report as a PDF download.
401Missing or invalid bearer token.
403You are not a member of the requested workspace.
404The item does not exist in this workspace.
502The report could not be generated. Try again.
Anfrage
curl "https://vulnara-gw.rso.dev/reports/repository/<id>" \
  -H "Authorization: Bearer $VULNARA_TOKEN" \
  -H "X-Tenant: $VULNARA_TENANT" \
  -o report.pdf

Verwalten Sie Ihre Cookie-Einstellungen

Wir verwenden Cookies, um Ihr Erlebnis zu verbessern. Sie können alle Cookies akzeptieren, nicht unbedingt erforderliche Cookies ablehnen oder unten Ihre Einstellungen verwalten. Datenschutzerklärung