Purpose
Purpose
Supported Versions
Supported Versions
v2 endpoint family; for example, user information is available through /v2/users.Authentication
Authentication
Authorization header using the Bearer authentication scheme. APIs.ioBearer manually unless the AirMDR field specifically requests it. AirMDR handles the authorization header when making requests.Token lifecycleThe AirMDR connection configuration indicates that Adaptive Security tokens:- can have an expiration date selected when they are created;
- can be revoked;
- become unusable after expiration; and
- cause authentication requests to fail when an expired or invalid token remains configured.
Role-based access considerations
Role-based access considerations
Pre-requisites
An active Adaptive Security tenant with Public API access.Access to Adaptive Security Admin Portal athttps://admin.adaptivesecurity.com.
Setup Steps
Sign in to Adaptive Security
- Open a supported web browser.
- Navigate to https://admin.adaptivesecurity.com.
- Sign in using an Adaptive Security administrator account.
Open the API settings
- Open Settings.
- Select API.
Generate an API token
- Select the option to create or generate an API token.
- Enter the requested token information, if prompted.
- Configure an appropriate expiration for the token.
- Review the access configuration displayed in the Adaptive Security UI.
- Generate the token.
Exact button names can change as Adaptive Security updates its Admin Portal. The verified navigation path is Settings → API.
- Copy the generated API token.
Do not add
Bearer, quotation marks, or additional spaces.
For Example:<ADAPTIVE_SECURITY_API_TOKEN>
Adaptive Security Credential Reference Table
Validate Connectivity
You can optionally validate the credential before adding it to AirMDR. Adaptive Security documents the following base URL: https://api.adaptivesecurity.comSample Request
Sample Request
Sample Response
Sample Response
Configure Adaptive Security in AirMDR Integrations Dashboard
- Navigate to AirMDR, provide the credentials and click Login
- Navigate to the AirMDR Integrations Dashboard in the left navigation pane and select ADMIN → Integrations.
- Use the search option, enter the keyword “Adaptive Security”, select the Connections tab, and click + New Connection button.
-
Use the following values in the AirMDR integration configuration screen:
Expand Advanced Configuration if required. (Optional)
- In Remote Agent, select an AirMDR Remote Agent only when the Adaptive Security tenant must be accessed through an approved private network route, proxy, or controlled network environment. If the Adaptive Security API is directly accessible from AirMDR over the public internet, leave this field unselected unless instructed otherwise by your AirMDR administrator.
- In Expiry, select the date on which AirMDR should treat the stored Adaptive Security credentials as expired, according to your organization’s credential-rotation policy.
The Expiry date controls credential validity in AirMDR. It does not automatically rotate, extend, or revoke the API token in Adaptive Security. Generate a replacement token in Adaptive Security, update the AirMDR connection with the new Api_token, validate the connection, and then revoke the previous token when it is no longer required. - Click Save.
Skills provided by this Integration
Security Awareness Training
Security Awareness Training
GET operations.Phishing Campaigns and Simulations
Phishing Campaigns and Simulations
Audit and Administrative Activity
Audit and Administrative Activity
User and Identity Information
User and Identity Information
Additional Information
🧰 Error Handling
🧰 Error Handling
error_code, message, status_code, and request_id.INVALID_TOKENIf AirMDR returns 401 or INVALID_TOKEN:- Open the Adaptive Security Admin Portal.
- Navigate to Settings → API.
- Verify whether the token has expired or been revoked.
- Generate a replacement token if necessary.
- Copy the new token.
- Open the Adaptive Security connection in AirMDR.
- Replace the value in Api_token.
- Update Expiry to match the new token lifecycle.
- Select Save.
- Run an Adaptive Security skill again and confirm that the request succeeds.
- Verify DNS resolution for:
- Confirm outbound HTTPS connectivity.
- Ensure TCP 443 is permitted.
- Verify proxy or firewall configuration.
- If a Remote Agent is selected, verify that the agent is online and has outbound access.
- Retest the integration.
429 as the response when the request rate is exceeded.🔄 Monitoring & Logs
🔄 Monitoring & Logs
- execution timestamp;
- AirMDR skill name;
- HTTP status code;
- API endpoint;
- request ID, when returned;
- error code; and
- error message.
Example diagnostic log
Authentication failure example
INVALID_TOKEN as an authentication error associated with an invalid or expired token. APIs.ioRecommended logging
For normal operation, record:🛑 Security & Access Best Practices
🛑 Security & Access Best Practices
request_id or X-Request-ID values when troubleshooting API failures because they can help Adaptive Security Support investigate the problem.❌ Don’tDon’t expose tokensNever place a real API token in:Bearer to the AirMDR fieldEnter only: <API_TOKEN>not: Bearer <API_TOKEN>in Api_token.Don’t use expired tokensReplace an expired or revoked token immediately.Don’t document unsupported permissionsDo not state that a particular Adaptive Security role or permission is mandatory unless it is verified through the tenant UI or Adaptive Security documentation.Don’t make unverified encryption claimsAvoid statements such as:👉 Support & Maintenance
👉 Support & Maintenance
- 📧 Contact AirMDR Support through your designated support channel.
- 🔁 Rotate credentials regularly. Recommended cadence: Every 90 days or as per internal security policy
- 🔄 Reconnect in AirMDR immediately when API Keys are changed.
🛑 Data Flow & Security
🛑 Data Flow & Security

Network Requirements
- Adaptive Security users
- groups
- training campaigns and training progress
- phishing simulations
- related reporting information

