AptlyStar

Vanta

Query compliance status and manage evidence in Vanta

使用方法

Integrate Vanta into the workflow. Monitor compliance frameworks, controls, and automated tests; find failing test entities; manage evidence documents including file upload, download, and submission; and track people, policies, vendors, monitored computers, vulnerabilities, and risk scenarios. Requires Vanta OAuth client credentials.

ツール

vanta_list_frameworks

List the compliance frameworks (e.g., SOC 2, ISO 27001) available in a Vanta account with completion counts

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
frameworksarrayFrameworks in the Vanta account
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_framework

Get a Vanta compliance framework by ID, including its requirement categories and mapped controls

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
frameworkIdstringはいUnique ID of the framework (e.g., soc2)

出力

パラメータ型説明
frameworkjsonThe requested framework with requirement categories

vanta_list_framework_controls

List the controls that belong to a specific Vanta compliance framework

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
frameworkIdstringはいUnique ID of the framework (e.g., soc2)
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
controlsarrayControls belonging to the framework
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_controls

List the security controls in a Vanta account, optionally filtered by framework

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
frameworkMatchesAnystringいいえComma-separated framework IDs to filter controls by (e.g., soc2,iso27001)
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
controlsarrayControls matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_control

Get a Vanta security control by ID, including its status and evidence pass/fail counts

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
controlIdstringはいUnique ID of the control

出力

パラメータ型説明
controljsonThe requested control with status and evidence counts

vanta_list_control_tests

List the automated tests mapped to a specific Vanta control

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
controlIdstringはいUnique ID of the control
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
testsarrayTests mapped to the control
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_control_documents

List the evidence documents mapped to a specific Vanta control

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
controlIdstringはいUnique ID of the control
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
documentsarrayDocuments mapped to the control
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_tests

List the automated compliance tests in a Vanta account, with filters for status, framework, integration, control, owner, and category

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
statusFilterstringいいえFilter by test status: OK, DEACTIVATED, NEEDS_ATTENTION, IN_PROGRESS, INVALID, or NOT_APPLICABLE
frameworkFilterstringいいえFilter by framework ID (e.g., soc2)
integrationFilterstringいいえFilter by integration ID (e.g., aws)
controlFilterstringいいえFilter by control ID
ownerFilterstringいいえFilter by owner user ID
categoryFilterstringいいえFilter by test category (e.g., ACCOUNTS_ACCESS, COMPUTERS, INFRASTRUCTURE, POLICIES, VULNERABILITY_MANAGEMENT)
isInRolloutbooleanいいえFilter by whether the test is in rollout
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
testsarrayTests matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_test

Get a Vanta automated compliance test by ID, including its status and remediation info

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
testIdstringはいUnique ID of the test (e.g., test-aws-cloudtrail-enabled)

出力

パラメータ型説明
testjsonThe requested test

vanta_list_test_entities

List the failing or deactivated resource entities for a specific Vanta test, useful for finding exactly which resources need remediation

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
testIdstringはいUnique ID of the test (e.g., test-aws-cloudtrail-enabled)
entityStatusstringいいえFilter entities by status: FAILING or DEACTIVATED
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
entitiesarrayResource entities for the test
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_documents

List the evidence documents in a Vanta account, optionally filtered by framework or document status

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
frameworkMatchesAnystringいいえComma-separated framework IDs to filter documents by (e.g., soc2,iso27001)
statusMatchesAnystringいいえComma-separated document statuses to filter by: "Needs document", "Needs update", "Not relevant", "OK"
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
documentsarrayDocuments matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_document

Get a Vanta evidence document by ID, including its renewal schedule and deactivation status

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
documentIdstringはいUnique ID of the document

出力

パラメータ型説明
documentjsonThe requested document

vanta_list_document_uploads

List the files uploaded to a specific Vanta evidence document

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
documentIdstringはいUnique ID of the document
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
uploadsarrayFiles uploaded to the document
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_upload_document_file

Upload an evidence file to a Vanta document. Requires credentials with the vanta-api.documents:upload scope.

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
documentIdstringはいUnique ID of the document to attach the file to
filefileいいえThe evidence file to upload
fileContentstringいいえBase64-encoded file content (alternative to file)
fileNamestringいいえOptional file name override
mimeTypestringいいえMIME type of the file (e.g., application/pdf); used when uploading base64 content, since uploaded files already carry their own type
descriptionstringいいえDescription of the uploaded evidence (e.g., "Q3 access review evidence")
effectiveAtDatestringいいえISO 8601 date indicating when the document is effective from

出力

パラメータ型説明
uploadjsonMetadata of the uploaded file

vanta_download_document_file

Download a file previously uploaded to a Vanta evidence document and store it in execution files

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
documentIdstringはいUnique ID of the document
uploadedFileIdstringはいUnique ID of the uploaded file (from List Document Uploads)

出力

パラメータ型説明
filefileDownloaded file stored in execution files
namestringName of the downloaded file
mimeTypestringMIME type of the downloaded file
sizenumberSize of the downloaded file in bytes

vanta_submit_document

Submit a Vanta document collection for review so uploaded evidence becomes visible to auditors. Requires credentials with write access.

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
documentIdstringはいUnique ID of the document to submit

出力

パラメータ型説明
documentIdstringID of the submitted document
submittedbooleanWhether the document collection was submitted

vanta_list_people

List the people tracked in a Vanta account with employment status, group membership, and security task completion

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
emailAndNameFilterstringいいえFilter people by email address or name
employmentStatusstringいいえFilter by employment status: UPCOMING, CURRENT, ON_LEAVE, INACTIVE, or FORMER
groupIdsMatchesAnystringいいえComma-separated group IDs to filter people by
tasksSummaryStatusMatchesAnystringいいえComma-separated task summary statuses to filter by: NONE, DUE_SOON, OVERDUE, COMPLETE, PAUSED, OFFBOARDING_DUE_SOON, OFFBOARDING_OVERDUE, OFFBOARDING_COMPLETE
taskTypeMatchesAnystringいいえComma-separated task types to filter by: COMPLETE_TRAININGS, ACCEPT_POLICIES, COMPLETE_CUSTOM_TASKS, COMPLETE_CUSTOM_OFFBOARDING_TASKS, INSTALL_DEVICE_MONITORING, COMPLETE_BACKGROUND_CHECKS
taskStatusMatchesAnystringいいえComma-separated task statuses to filter by: COMPLETE, DUE_SOON, OVERDUE, NONE
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
peoplearrayPeople matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_person

Get a person tracked in Vanta by ID, including employment, leave, and security task status

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
personIdstringはいUnique ID of the person

出力

パラメータ型説明
personjsonThe requested person

vanta_list_policies

List the security policies in a Vanta account with approval status and version info

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
policiesarrayPolicies in the Vanta account
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_policy

Get a Vanta security policy by ID, including its approval status and latest approved version documents

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
policyIdstringはいUnique ID of the policy

出力

パラメータ型説明
policyjsonThe requested policy

vanta_list_vendors

List the vendors tracked in a Vanta account with risk levels, contract dates, and security review schedules

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
namestringいいえFilter vendors by name
statusMatchesAnystringいいえComma-separated vendor statuses to filter by: MANAGED, ARCHIVED, IN_PROCUREMENT
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
vendorsarrayVendors matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_vendor

Get a Vanta vendor by ID, including risk levels, contract details, and authentication info

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
vendorIdstringはいUnique ID of the vendor

出力

パラメータ型説明
vendorjsonThe requested vendor

vanta_list_monitored_computers

List the monitored computers in a Vanta account with screenlock, disk encryption, password manager, and antivirus check outcomes

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
complianceStatusFilterMatchesAnystringいいえComma-separated compliance issues to filter by: PWM_NOT_INSTALLED, HD_NOT_ENCRYPTED, AV_NOT_INSTALLED, SCREENLOCK_NOT_CONFIGURED, LAST_CHECK_OVER_14_DAYS
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
computersarrayMonitored computers matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_vulnerabilities

List the vulnerabilities detected across a Vanta account with filters for severity, fixability, SLA deadlines, package, and integration

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
qstringいいえSearch query for vulnerabilities
severitystringいいえFilter by severity: LOW, MEDIUM, HIGH, or CRITICAL
isFixAvailablebooleanいいえFilter by whether a fix is available
isDeactivatedbooleanいいえFilter by whether vulnerability monitoring is deactivated
includeVulnerabilitiesWithoutSlasbooleanいいえInclude vulnerabilities that have no SLA deadline
packageIdentifierstringいいえFilter by the affected package identifier
externalVulnerabilityIdstringいいえFilter by external vulnerability ID (e.g., a CVE identifier)
integrationIdstringいいえFilter by the integration that detected the vulnerability
vulnerableAssetIdstringいいえFilter by the vulnerable asset ID
slaDeadlineAfterDatestringいいえOnly include vulnerabilities with an SLA deadline after this ISO 8601 date
slaDeadlineBeforeDatestringいいえOnly include vulnerabilities with an SLA deadline before this ISO 8601 date
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
vulnerabilitiesarrayVulnerabilities matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_vulnerability_remediations

List remediated vulnerabilities in a Vanta account with detection, SLA deadline, and remediation dates

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
integrationIdstringいいえFilter by the integration that detected the vulnerability
severitystringいいえFilter by severity: LOW, MEDIUM, HIGH, or CRITICAL
isRemediatedOnTimebooleanいいえFilter by whether the vulnerability was remediated before its SLA deadline
remediatedAfterDatestringいいえOnly include remediations completed after this ISO 8601 date
remediatedBeforeDatestringいいえOnly include remediations completed before this ISO 8601 date
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
remediationsarrayVulnerability remediations matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_list_vulnerable_assets

List the assets associated with vulnerabilities in a Vanta account (servers, repositories, workstations, and more)

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
qstringいいえSearch query for vulnerable assets
integrationIdstringいいえFilter by the integration scanning the asset
assetTypestringいいえFilter by asset type: SERVER, SERVERLESS_FUNCTION, CONTAINER, CONTAINER_REPOSITORY, CONTAINER_REPOSITORY_IMAGE, CODE_REPOSITORY, MANIFEST_FILE, WORKSTATION, or OTHER
assetExternalAccountIdstringいいえFilter by the external account ID the asset belongs to
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
assetsarrayVulnerable assets matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_vulnerable_asset

Get a vulnerable asset in Vanta by ID, including the scanners reporting it and per-scanner asset details

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
vulnerableAssetIdstringはいUnique ID of the vulnerable asset

出力

パラメータ型説明
assetjsonThe requested vulnerable asset

vanta_list_risk_scenarios

List the risk scenarios in a Vanta risk register with likelihood/impact scores, treatment decisions, and review status

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
searchStringstringいいえSearch string to filter risk scenarios
includeIgnoredbooleanいいえInclude ignored risk scenarios
typestringいいえFilter by scenario type: "Risk Scenario" or "Enterprise Risk"
ownerMatchesAnystringいいえComma-separated owner emails to filter by
categoryMatchesAnystringいいえComma-separated risk categories to filter by
ciaCategoryMatchesAnystringいいえComma-separated CIA categories to filter by: Confidentiality, Integrity, Availability
treatmentTypeMatchesAnystringいいえComma-separated treatments to filter by: Mitigate, Transfer, Avoid, Accept
inherentScoreGroupMatchesAnystringいいえComma-separated inherent score groups to filter by: "Very low", Low, Med, High, Critical
residualScoreGroupMatchesAnystringいいえComma-separated residual score groups to filter by: "Very low", Low, Med, High, Critical
reviewStatusMatchesAnystringいいえComma-separated review statuses to filter by: APPROVED, DRAFT, NOT_REVIEWED, AWAITING_SUBMISSION, PENDING_APPROVAL, REQUESTED_CHANGES
orderBystringいいえField to order results by: description or createdAt
pageSizenumberいいえMaximum number of items per page (1-100, default 10)
pageCursorstringいいえPagination cursor: pass the endCursor from the previous response to fetch the next page

出力

パラメータ型説明
riskScenariosarrayRisk scenarios matching the filters
pageInfojsonCursor pagination info for the returned page; pass endCursor as pageCursor to fetch the next page

vanta_get_risk_scenario

Get a Vanta risk scenario by ID, including its scores, treatment decision, and review status

入力

パラメータ型必須説明
clientIdstringはいVanta OAuth application client ID
clientSecretstringはいVanta OAuth application client secret
regionstringいいえVanta API region: "us" (api.vanta.com, default) or "gov" (api.vanta-gov.com)
riskScenarioIdstringはいUnique ID of the risk scenario

出力

パラメータ型説明
riskScenariojsonThe requested risk scenario

On this page