Bitdefender GravityZone Tools
Written By Christopher Scaminaci
Last updated 7 days ago
Bitdefender GravityZone Tools
gravityzone_ · 138 tools · Free 56 · Pro 82
Endpoint protection with EDR and XDR, patch management, hardening and quarantine, reached through the MSP partner Control Center. Authentication is HTTP Basic where the API key is the user name and the password is empty; there is no token endpoint and no expiry. The Control Center access address is per tenant and is required, because a key minted on one GravityZone instance is meaningless on another. Every call is a JSON-RPC POST, so whether a tool reads or writes is a recorded judgment rather than something the transport reveals, and a failure arrives at HTTP 200 carrying an error member. A key's API groups are fixed when it is minted and cannot be widened, so a group refusal is a configuration fact rather than a bad key, while an HTTP 401 or 403 is definitive. The connection test calls the General group, so a key minted without General can never verify. Page caps are per method rather than one number.
All connector tools · Bitdefender GravityZone setup guide
Bitdefender GravityZone tool groups
- Accounts — 7 tools
- Companies — 12 tools
- General — 1 tool
- Incidents — 18 tools
- Integrations — 12 tools
- Investigation — 5 tools
- Licensing — 7 tools
- Maintenance Windows — 8 tools
- Network — 32 tools
- Packages — 6 tools
- Patch Management — 2 tools
- PHASR — 9 tools
- Policies — 3 tools
- Event Push Service — 5 tools
- Quarantine — 7 tools
- Reports — 4 tools
Accounts
gravityzone_configure_notifications_settings details
gravityzone_configure_notifications_settings details
[Bitdefender GravityZone] Partial-merge write of notification preferences. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: configureNotificationsSettings on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_account details
gravityzone_create_account details
[Bitdefender GravityZone] Creates a console user with a role/rights grant; if password is omitted a generated password is EMAILED to the user (documented). DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createAccount on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_account details
gravityzone_delete_account details
[Bitdefender GravityZone] Deletes a Control Center user account. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteAccount on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_account_details details
gravityzone_get_account_details details
[Bitdefender GravityZone] Single account by id/email. Cloud + partner consoles only. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getAccountDetails on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_accounts_list details
gravityzone_get_accounts_list details
[Bitdefender GravityZone] Paged list of Control Center user accounts. perPage 1-100, default 30. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getAccountsList on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_notifications_settings details
gravityzone_get_notifications_settings details
[Bitdefender GravityZone] Reads notification preferences. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getNotificationsSettings on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_account details
gravityzone_update_account details
[Bitdefender GravityZone] Wholesale account update; takes role (5 = Custom) and a rights object - privilege-widening. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateAccount on the accounts namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Companies
gravityzone_activate_company details
gravityzone_activate_company details
[Bitdefender GravityZone] Reactivates a suspended company (restorative). GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: activateCompany on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_company details
gravityzone_create_company details
[Bitdefender GravityZone] Creates a managed customer company and assigns a license subscription - creates a billable contract. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createCompany on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_custom_field_definition details
gravityzone_create_custom_field_definition details
[Bitdefender GravityZone] Additive: new company custom-field definition. Vendor JSON-RPC method: createCustomFieldDefinition on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_company details
gravityzone_delete_company details
[Bitdefender GravityZone] Deletes a managed company and everything under it. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteCompany on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_custom_field_definition details
gravityzone_delete_custom_field_definition details
[Bitdefender GravityZone] Deletes a custom-field definition and its stored values. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteCustomFieldDefinition on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_find_companies_by_name details
gravityzone_find_companies_by_name details
[Bitdefender GravityZone] Name search over managed companies. Partner console only. Vendor JSON-RPC method: findCompaniesByName on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_company_details details
gravityzone_get_company_details details
[Bitdefender GravityZone] Company record by id. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCompanyDetails on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_company_details_by_user details
gravityzone_get_company_details_by_user details
[Bitdefender GravityZone] Company record for a given user. Partner console only. Vendor JSON-RPC method: getCompanyDetailsByUser on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_custom_fields_definitions details
gravityzone_get_custom_fields_definitions details
[Bitdefender GravityZone] Lists company custom-field definitions. Vendor JSON-RPC method: getCustomFieldsDefinitions on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_suspend_company details
gravityzone_suspend_company details
[Bitdefender GravityZone] Suspends a customer company - stops protection management. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: suspendCompany on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_company_details details
gravityzone_update_company_details details
[Bitdefender GravityZone] Partial-merge update of company name/address/contact. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateCompanyDetails on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_custom_field_definition details
gravityzone_update_custom_field_definition details
[Bitdefender GravityZone] Partial update of a custom-field definition. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateCustomFieldDefinition on the companies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
General
gravityzone_get_api_key_details details
gravityzone_get_api_key_details details
[Bitdefender GravityZone] Zero params. Returns enabledApis[] (the namespaces this key may call) + createdAt. Vendor JSON-RPC method: getApiKeyDetails on the general namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Incidents
gravityzone_add_to_blocklist details
gravityzone_add_to_blocklist details
[Bitdefender GravityZone] Adds a hash/path to the estate-wide blocklist - live enforcement. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: addToBlocklist on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_change_incident_status details
gravityzone_change_incident_status details
[Bitdefender GravityZone] Workflow status field update (open/closed). GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: changeIncidentStatus on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_custom_rule details
gravityzone_create_custom_rule details
[Bitdefender GravityZone] Creates an EDR detection/exclusion rule; an exclusion can silence detection. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createCustomRule on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_isolate_endpoint_task details
gravityzone_create_isolate_endpoint_task details
[Bitdefender GravityZone] Network-isolates a live endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_response_action_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createIsolateEndpointTask on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_response_action details
gravityzone_create_response_action details
[Bitdefender GravityZone] Dispatches an EDR response action against live endpoints. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_response_action_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createResponseAction on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_restore_endpoint_from_isolation_task details
gravityzone_create_restore_endpoint_from_isolation_task details
[Bitdefender GravityZone] Lifts isolation on a live endpoint (dispatch + control removal). DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_response_action_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createRestoreEndpointFromIsolationTask on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_custom_rule details
gravityzone_delete_custom_rule details
[Bitdefender GravityZone] Deletes a custom rule. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteCustomRule on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_blocklist_items details
gravityzone_get_blocklist_items details
[Bitdefender GravityZone] Paged blocklist read. perPage 1-100. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getBlocklistItems on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_custom_rules_list details
gravityzone_get_custom_rules_list details
[Bitdefender GravityZone] Paged custom-rule list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCustomRulesList on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_incident details
gravityzone_get_incident details
[Bitdefender GravityZone] Single incident by id. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getIncident on the incidents namespace (v1.2). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_incidents_by_ids details
gravityzone_get_incidents_by_ids details
[Bitdefender GravityZone] Bulk incident fetch by id array. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getIncidentsByIds on the incidents namespace (v1.2). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_incidents_list details
gravityzone_get_incidents_list details
[Bitdefender GravityZone] Paged incident search. perPage 10-10000, default 30. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. Vendor JSON-RPC method: getIncidentsList on the incidents namespace (v1.2). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_response_action_status details
gravityzone_get_response_action_status details
[Bitdefender GravityZone] Polls a response action. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getResponseActionStatus on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_similar_emails details
gravityzone_get_similar_emails details
[Bitdefender GravityZone] Correlated email search for an email incident. Default perPage 1000. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getSimilarEmails on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_remove_from_blocklist details
gravityzone_remove_from_blocklist details
[Bitdefender GravityZone] Removes a security control (revoke). DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: removeFromBlocklist on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_start_yara_scan details
gravityzone_start_yara_scan details
[Bitdefender GravityZone] Dispatches a YARA scan to live endpoints. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_response_action_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: startYaraScan on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_custom_rule details
gravityzone_update_custom_rule details
[Bitdefender GravityZone] Wholesale replace of a custom rule. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateCustomRule on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_incident_note details
gravityzone_update_incident_note details
[Bitdefender GravityZone] Partial write of a free-text note field. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateIncidentNote on the incidents namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Integrations
gravityzone_configure_amazon_ec2_integration_cross_account_role details
gravityzone_configure_amazon_ec2_integration_cross_account_role details
[Bitdefender GravityZone] Grants cross-account AWS role access - privilege-widening. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: configureAmazonEC2IntegrationUsingCrossAccountRole on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_integration details
gravityzone_create_integration details
[Bitdefender GravityZone] Creates a third-party integration incl. credentials. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createIntegration on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_integration details
gravityzone_delete_integration details
[Bitdefender GravityZone] Deletes an integration. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteIntegration on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_disable_amazon_ec2_integration details
gravityzone_disable_amazon_ec2_integration details
[Bitdefender GravityZone] Disables the EC2 integration. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: disableAmazonEC2Integration on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_generate_amazon_ec2_external_id_cross_account_role details
gravityzone_generate_amazon_ec2_external_id_cross_account_role details
[Bitdefender GravityZone] Mints an AWS external id (credential minting). DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: generateAmazonEC2ExternalIdForCrossAccountRole on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_amazon_ec2_external_id_for_cross_account_role details
gravityzone_get_amazon_ec2_external_id_for_cross_account_role details
[Bitdefender GravityZone] Reads the existing external id. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getAmazonEC2ExternalIdForCrossAccountRole on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_company_details_by_aws_account_id details
gravityzone_get_company_details_by_aws_account_id details
[Bitdefender GravityZone] Company lookup by AWS account id. Partner console only. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCompanyDetailsByAWSAccountId on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_configured_integrations details
gravityzone_get_configured_integrations details
[Bitdefender GravityZone] Paged list of configured integrations. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getConfiguredIntegrations on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_hourly_usage_for_amazon_ec2_instances details
gravityzone_get_hourly_usage_for_amazon_ec2_instances details
[Bitdefender GravityZone] EC2 hourly usage read (billing input). GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getHourlyUsageForAmazonEC2Instances on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_integration_details details
gravityzone_get_integration_details details
[Bitdefender GravityZone] Reads one integration. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getIntegrationDetails on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_manage_integration details
gravityzone_manage_integration details
[Bitdefender GravityZone] Enables/disables an integration. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: manageIntegration on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_integration details
gravityzone_update_integration details
[Bitdefender GravityZone] Wholesale replace of an integration config incl. credentials. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updateIntegration on the integrations namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Investigation
gravityzone_collect_investigation_package details
gravityzone_collect_investigation_package details
[Bitdefender GravityZone] Dispatches forensic collection on a live endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status_network for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: collectInvestigationPackage on the investigation namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_investigation_file_url details
gravityzone_get_investigation_file_url details
[Bitdefender GravityZone] Returns a signed download URL for a collected artifact. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getInvestigationFileUrl on the investigation namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_kill_process_investigation details
gravityzone_kill_process_investigation details
[Bitdefender GravityZone] Terminates a running process on a live endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: killProcess on the investigation namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_start_command_execution_on_endpoint details
gravityzone_start_command_execution_on_endpoint details
[Bitdefender GravityZone] ARBITRARY COMMAND EXECUTION on a live endpoint. Cloud doc set only. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status_network for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: startCommandExecutionOnEndpoint on the investigation namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_start_retrieve_investigation_file_from_endpoint details
gravityzone_start_retrieve_investigation_file_from_endpoint details
[Bitdefender GravityZone] Pulls an arbitrary file off a live endpoint. Cloud doc set only. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status_network for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: startRetrieveInvestigationFileFromEndpoint on the investigation namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Licensing
gravityzone_add_product_key details
gravityzone_add_product_key details
[Bitdefender GravityZone] Adds a product key - spends money / changes entitlement. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: addProductKey on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_license_info details
gravityzone_get_license_info details
[Bitdefender GravityZone] License/subscription read. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getLicenseInfo on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_monthly_usage details
gravityzone_get_monthly_usage details
[Bitdefender GravityZone] Monthly usage read (billing input). GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMonthlyUsage on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_monthly_usage_per_product_type details
gravityzone_get_monthly_usage_per_product_type details
[Bitdefender GravityZone] Monthly usage by product type. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMonthlyUsagePerProductType on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_remove_product_key details
gravityzone_remove_product_key details
[Bitdefender GravityZone] Removes a product key. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: removeProductKey on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_set_license_key details
gravityzone_set_license_key details
[Bitdefender GravityZone] Replaces the license key - can cut protection. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: setLicenseKey on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_set_monthly_subscription details
gravityzone_set_monthly_subscription details
[Bitdefender GravityZone] Sets a customer monthly subscription - billable. Partner console only. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: setMonthlySubscription on the licensing namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Maintenance Windows
gravityzone_assign_maintenance_windows details
gravityzone_assign_maintenance_windows details
[Bitdefender GravityZone] Assigns windows to targets - schedules patch installs/reboots. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: assignMaintenanceWindows on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_patch_management_maintenance_window details
gravityzone_create_patch_management_maintenance_window details
[Bitdefender GravityZone] Additive: creates a maintenance window definition. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createPatchManagementMaintenanceWindow on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_maintenance_window details
gravityzone_delete_maintenance_window details
[Bitdefender GravityZone] Deletes a maintenance window. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteMaintenanceWindow on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_maintenance_window_details details
gravityzone_get_maintenance_window_details details
[Bitdefender GravityZone] One maintenance window. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMaintenanceWindowDetails on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_maintenance_windows_list details
gravityzone_get_maintenance_windows_list details
[Bitdefender GravityZone] Paged maintenance-window list. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMaintenanceWindowsList on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_manually_approved_patches details
gravityzone_get_manually_approved_patches details
[Bitdefender GravityZone] Reads manually approved patches. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getManuallyApprovedPatches on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_unassign_maintenance_windows details
gravityzone_unassign_maintenance_windows details
[Bitdefender GravityZone] Removes windows from targets (revoke). DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: unassignMaintenanceWindows on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_patch_management_maintenance_window details
gravityzone_update_patch_management_maintenance_window details
[Bitdefender GravityZone] Wholesale replace; schedules patching and reboots. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updatePatchManagementMaintenanceWindow on the maintenanceWindows namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Network
gravityzone_add_integrators details
gravityzone_add_integrators details
[Bitdefender GravityZone] Grants an integrator access to a company - privilege-widening. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: addIntegrators on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_assign_policy details
gravityzone_assign_policy details
[Bitdefender GravityZone] Replaces the security policy on targets - can disable protection modules. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: assignPolicy on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_company_folder details
gravityzone_create_company_folder details
[Bitdefender GravityZone] Additive: creates a company folder. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createCompanyFolder on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_custom_group details
gravityzone_create_custom_group details
[Bitdefender GravityZone] Additive: creates an inventory group. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createCustomGroup on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_reconfigure_client_task details
gravityzone_create_reconfigure_client_task details
[Bitdefender GravityZone] Installs/removes protection modules on live endpoints. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createReconfigureClientTask on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_scan_task details
gravityzone_create_scan_task details
[Bitdefender GravityZone] Dispatches a scan to live endpoints. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createScanTask on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_scan_task_by_mac details
gravityzone_create_scan_task_by_mac details
[Bitdefender GravityZone] Dispatches a scan by MAC address. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createScanTaskByMac on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_submit_to_sandbox_analyzer_task details
gravityzone_create_submit_to_sandbox_analyzer_task details
[Bitdefender GravityZone] Uploads a sample for detonation - live dispatch. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createSubmitToSandboxAnalyzerTask on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_company_folder details
gravityzone_delete_company_folder details
[Bitdefender GravityZone] Deletes a company folder. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteCompanyFolder on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_custom_group details
gravityzone_delete_custom_group details
[Bitdefender GravityZone] Deletes an inventory group. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteCustomGroup on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_endpoint details
gravityzone_delete_endpoint details
[Bitdefender GravityZone] Deletes an endpoint from inventory. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteEndpoint on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_task details
gravityzone_delete_task details
[Bitdefender GravityZone] Deletes a task. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteTask on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_companies_list details
gravityzone_get_companies_list details
[Bitdefender GravityZone] Managed companies list. Partner console only. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCompaniesList on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_company_folders_list details
gravityzone_get_company_folders_list details
[Bitdefender GravityZone] Company folder list. Partner console only. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCompanyFoldersList on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_custom_groups_list details
gravityzone_get_custom_groups_list details
[Bitdefender GravityZone] Lists custom groups. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getCustomGroupsList on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_endpoint_tags details
gravityzone_get_endpoint_tags details
[Bitdefender GravityZone] Endpoint tag list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getEndpointTags on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_endpoints_list details
gravityzone_get_endpoints_list details
[Bitdefender GravityZone] Paged endpoint list. perPage 1-1000. THE core read. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getEndpointsList on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_integrators details
gravityzone_get_integrators details
[Bitdefender GravityZone] Lists integrators on a company. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getIntegrators on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_managed_endpoint_details details
gravityzone_get_managed_endpoint_details details
[Bitdefender GravityZone] Full endpoint record incl. agent/module state. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getManagedEndpointDetails on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_network_inventory_items details
gravityzone_get_network_inventory_items details
[Bitdefender GravityZone] Paged inventory across all item types. perPage 1-1000. Rate-limited to 5 rps. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getNetworkInventoryItems on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_root_containers details
gravityzone_get_root_containers details
[Bitdefender GravityZone] Top-level containers. Partner console only. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getRootContainers on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_scan_tasks_list details
gravityzone_get_scan_tasks_list details
[Bitdefender GravityZone] Paged task list. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Vendor JSON-RPC method: getScanTasksList on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_task_status details
gravityzone_get_task_status details
[Bitdefender GravityZone] Task status read. perPage 1-1000. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getTaskStatus on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_kill_process_network details
gravityzone_kill_process_network details
[Bitdefender GravityZone] Terminates a running process on a live endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: killProcess on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_move_company_or_company_folder details
gravityzone_move_company_or_company_folder details
[Bitdefender GravityZone] Relocates a customer/folder in the partner hierarchy. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: moveCompanyOrCompanyFolder on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_move_custom_group details
gravityzone_move_custom_group details
[Bitdefender GravityZone] Moves a group - changes inherited policy. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: moveCustomGroup on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_move_endpoints details
gravityzone_move_endpoints details
[Bitdefender GravityZone] Moves endpoints between groups - changes inherited policy. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: moveEndpoints on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_move_endpoints_between_companies details
gravityzone_move_endpoints_between_companies details
[Bitdefender GravityZone] Cross-tenant endpoint move - licensing/billing impact. Partner console only. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: moveEndpointsBetweenCompanies on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_remove_integrators details
gravityzone_remove_integrators details
[Bitdefender GravityZone] Revokes integrator access. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: removeIntegrators on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_run_gather_logs_task details
gravityzone_run_gather_logs_task details
[Bitdefender GravityZone] Dispatches log collection to a live endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. Vendor JSON-RPC method: runGatherLogsTask on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_run_live_search_query details
gravityzone_run_live_search_query details
[Bitdefender GravityZone] Read in intent, but dispatches a live query to endpoints (Live Search / AWS-backed). Classified W+Destructive under the live-dispatch rule; owner may downgrade to a Free-tier read. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: runLiveSearchQuery on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_set_endpoint_label details
gravityzone_set_endpoint_label details
[Bitdefender GravityZone] Partial write of one label field. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: setEndpointLabel on the network namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Packages
gravityzone_create_package details
gravityzone_create_package details
[Bitdefender GravityZone] Additive: creates an installer package definition. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createPackage on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_package details
gravityzone_delete_package details
[Bitdefender GravityZone] Deletes an installer package. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deletePackage on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_installation_links details
gravityzone_get_installation_links details
[Bitdefender GravityZone] Returns installer download links for a package. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getInstallationLinks on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_package_details details
gravityzone_get_package_details details
[Bitdefender GravityZone] One package definition. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getPackageDetails on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_packages_list details
gravityzone_get_packages_list details
[Bitdefender GravityZone] Paged package list. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getPackagesList on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_update_package details
gravityzone_update_package details
[Bitdefender GravityZone] Wholesale replace of an installer package definition. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: updatePackage on the packages namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Patch Management
gravityzone_get_installed_patches details
gravityzone_get_installed_patches details
[Bitdefender GravityZone] Paged installed-patch inventory. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getInstalledPatches on the patchManagement namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_missing_patches details
gravityzone_get_missing_patches details
[Bitdefender GravityZone] Paged missing-patch inventory - high MSP value. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMissingPatches on the patchManagement namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
PHASR
gravityzone_apply_recommendations details
gravityzone_apply_recommendations details
[Bitdefender GravityZone] Applies PHASR hardening recommendations across endpoints. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: applyRecommendations on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_edit_monitored_rules_access details
gravityzone_edit_monitored_rules_access details
[Bitdefender GravityZone] Changes PHASR access enforcement on identities/resources. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: editMonitoredRulesAccess on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_all_company_identities details
gravityzone_get_all_company_identities details
[Bitdefender GravityZone] PHASR identities list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getAllCompanyIdentities on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_all_company_resources details
gravityzone_get_all_company_resources details
[Bitdefender GravityZone] PHASR resources list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getAllCompanyResources on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_monitored_rule_data details
gravityzone_get_monitored_rule_data details
[Bitdefender GravityZone] PHASR rule data read. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMonitoredRuleData on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_monitored_rules details
gravityzone_get_monitored_rules details
[Bitdefender GravityZone] PHASR monitored rules list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getMonitoredRules on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_phasr_recommendations details
gravityzone_get_phasr_recommendations details
[Bitdefender GravityZone] PHASR recommendation list. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getPhasrRecommendations on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_recommendation_profiles details
gravityzone_get_recommendation_profiles details
[Bitdefender GravityZone] PHASR recommendation profiles. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getRecommendationProfiles on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_take_request_access_action details
gravityzone_take_request_access_action details
[Bitdefender GravityZone] Approves/denies a PHASR access request - privilege grant. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: takeRequestAccessAction on the phasr namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Policies
gravityzone_get_policies_list details
gravityzone_get_policies_list details
[Bitdefender GravityZone] Paged policy list. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getPoliciesList on the policies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_policy_details details
gravityzone_get_policy_details details
[Bitdefender GravityZone] Full policy document. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getPolicyDetails on the policies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_set_policy_modules_state details
gravityzone_set_policy_modules_state details
[Bitdefender GravityZone] Turns protection modules on/off inside a policy. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: setPolicyModulesState on the policies namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Event Push Service
gravityzone_get_push_event_settings details
gravityzone_get_push_event_settings details
[Bitdefender GravityZone] Reads the event-push config. Vendor JSON-RPC method: getPushEventSettings on the push namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_push_event_stats details
gravityzone_get_push_event_stats details
[Bitdefender GravityZone] Push delivery stats and errors. Vendor JSON-RPC method: getPushEventStats on the push namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_reset_push_event_stats details
gravityzone_reset_push_event_stats details
[Bitdefender GravityZone] Purges push statistics/error counters. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. Vendor JSON-RPC method: resetPushEventStats on the push namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_send_test_push_event details
gravityzone_send_test_push_event details
[Bitdefender GravityZone] Emits an event to the customer-configured external endpoint. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. Vendor JSON-RPC method: sendTestPushEvent on the push namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_set_push_event_settings details
gravityzone_set_push_event_settings details
[Bitdefender GravityZone] Wholesale replace of the event-push config; a bad write silences the SIEM feed. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. Vendor JSON-RPC method: setPushEventSettings on the push namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Quarantine
gravityzone_create_add_file_to_quarantine_task details
gravityzone_create_add_file_to_quarantine_task details
[Bitdefender GravityZone] Removes a file from a live endpoint into quarantine. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createAddFileToQuarantineTask on the quarantine namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_empty_quarantine_task details
gravityzone_create_empty_quarantine_task details
[Bitdefender GravityZone] Purges the whole quarantine. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. Vendor JSON-RPC method: createEmptyQuarantineTask on the quarantine namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_release_quarantine_exchange_item_task details
gravityzone_create_release_quarantine_exchange_item_task details
[Bitdefender GravityZone] Releases a quarantined email to the recipient mailbox - reaches a human. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. This method is documented for the "exchange" (Security for Exchange) quarantine only. Vendor JSON-RPC method: createReleaseQuarantineExchangeItemTask on the quarantine/exchange namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_remove_quarantine_item_task details
gravityzone_create_remove_quarantine_item_task details
[Bitdefender GravityZone] Permanently deletes quarantined items. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createRemoveQuarantineItemTask on the quarantine namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_restore_quarantine_exchange_item_task details
gravityzone_create_restore_quarantine_exchange_item_task details
[Bitdefender GravityZone] Restores a quarantined Exchange item. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. This method is documented for the "exchange" (Security for Exchange) quarantine only. Vendor JSON-RPC method: createRestoreQuarantineExchangeItemTask on the quarantine/exchange namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_create_restore_quarantine_item_task details
gravityzone_create_restore_quarantine_item_task details
[Bitdefender GravityZone] Restores a quarantined file back to the endpoint - reintroduces flagged content. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. This DISPATCHES an asynchronous GravityZone task and returns a task id — it is not a completed action. Poll gravityzone_get_task_status for progress before reporting the outcome. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. This method is documented for the "computers" (Computers and Virtual Machines) quarantine only. Vendor JSON-RPC method: createRestoreQuarantineItemTask on the quarantine/computers namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_quarantine_items_list details
gravityzone_get_quarantine_items_list details
[Bitdefender GravityZone] Paged quarantine inventory. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Filters are nested JSON objects, not query strings. Two traps: filters.details.name matches by PREFIX unless you lead the value with * (which switches it to contains), and a filter whose GravityZone license is not active is SILENTLY IGNORED rather than refused — which returns a confidently wrong result set. Confirm the license before trusting a filtered count. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getQuarantineItemsList on the quarantine namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
Reports
gravityzone_create_report details
gravityzone_create_report details
[Bitdefender GravityZone] Creates an instant or scheduled report; emailList delivers it to human recipients. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: createReport on the reports namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_delete_report details
gravityzone_delete_report details
[Bitdefender GravityZone] Deletes a report and its history. DESTRUCTIVE: this changes live customer systems, security posture, billing or console access. Read the parameters carefully before calling it. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: deleteReport on the reports namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_download_links details
gravityzone_get_download_links details
[Bitdefender GravityZone] Returns report download links. GravityZone IDs are opaque strings (24-character hex in every documented example). Never parse, construct or increment one — discover IDs from the matching list tool. Vendor JSON-RPC method: getDownloadLinks on the reports namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
gravityzone_get_reports_list details
gravityzone_get_reports_list details
[Bitdefender GravityZone] Paged scheduled-report list. Paged: page on the response's hasMoreRecords flag, NOT on total or pagesCount — GravityZone returns those two only on page 1, so a loop that reads total from page 3 gets nothing. Vendor JSON-RPC method: getReportsList on the reports namespace (v1.0). If GravityZone answers -32001, this API key was not granted that namespace — grants are chosen when the key is minted and cannot be widened through the API.
More in Tools Reference
Atera ToolsAuvik ToolsAvanan (Check Point Harmony Email) ToolsConnectWise Sell ToolsStill need help? Ask the team