Fetch and filter asset alerts from Orca Security via REST API

domain: docs.orcasecurity.io · 6 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Generate an API token in Settings > API Tokens inside your Orca tenant and store it securely.
  2. Determine your regional base URL: app.us.orcasecurity.io for US tenants or app.eu.orcasecurity.io for EU tenants.
  3. Send GET requests to /api/alerts with the header Authorization: Token YOUR_TOKEN to list alerts; add query parameters such as type (vulnerability, malware) and severity to filter results.
  4. Page through results using the offset and limit query parameters returned in the response envelope.
  5. Parse the returned JSON to extract fields such as asset_unique_id, severity, state, and recommendation for each alert.
  6. Automate periodic polling by scheduling the request on a cron or pipeline step and forwarding results to your SIEM or ticketing system.

Known gotchas

Related routes

Create and manage alerts in Opsgenie using the REST API
support.atlassian.com · 5 steps · unrated
Authenticate to the NoiseAware (Rest) API and pull property noise-event and threshold data for short-term rental monitoring
noiseaware.readme.io · 5 steps · unrated
Automate Splunk saved searches and alert actions via the REST API
docs.splunk.com · 5 steps · unrated

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans