Skip to main content
Tools Reference

intelliGRC Tools

Written By Christopher Scaminaci

Last updated 7 days ago

intelliGRC Tools

igrc_ · 33 tools · Free 25 · Pro 8 Governance, risk and compliance assessments. The credential is a client id, client secret and tenant id sent as static headers; there is no OAuth and nothing to refresh. The production host is the default, and the instance address can point at a sandbox instead. The tenant id defaults from the credential and every tool takes an optional override - list them with igrc_list_tenants. No pagination is documented. Evidence upload is a multipart form. Id types are mixed: some entities use integers and some use GUIDs.

All connector tools · intelliGRC setup guide

intelliGRC tool groups

Lookups

ToolPlanAccessSummary
igrc_lookup_action_plan_categoriesFreeRead-onlyList the Action Plan category reference values (id + name).
igrc_lookup_action_plan_levels_of_effortFreeRead-onlyList the Action Plan level-of-effort reference values (id + name), used for the levelOfEffortId field on action-plan projects/tasks/subtasks.
igrc_lookup_action_plan_priority_levelsFreeRead-onlyList the Action Plan priority-level reference values (id + name), used for the priorityLevelId field on action-plan projects/tasks/subtasks.
igrc_lookup_action_plan_project_statusesFreeRead-onlyList the Action Plan project-status reference values (id + name), used for the statusId field when creating an action-plan project (igrc_create_action_plan_project).
igrc_lookup_action_plan_subcategoriesFreeRead-onlyList the Action Plan subcategory reference values (id + name), used for the subCategoryId field on action-plan projects/tasks/subtasks.
igrc_lookup_action_plan_subtask_statusesFreeRead-onlyList the Action Plan subtask-status reference values (id + name), used for the statusId field when creating an action-plan subtask (igrc_create_action_plan_subtask).
igrc_lookup_action_plan_task_statusesFreeRead-onlyList the Action Plan task-status reference values (id + name), used for the statusId field when creating an action-plan task (igrc_create_action_plan_task).
igrc_lookup_action_plan_task_typesFreeRead-onlyList the Action Plan task-type reference values (id + name), used for the taskTypeId field when creating an action-plan task (igrc_create_action_plan_task).
igrc_lookup_assessment_objective_statusesFreeRead-onlyList the Assessment Objective status reference values (id + name), used for the statusId field when updating an assessment objective (igrc_update_assessment_objective).
igrc_lookup_boundary_availability_levelsFreeRead-onlyList the Boundary availability-level reference values (id + name), used for the availabilityId field when creating a boundary (igrc_create_boundary).
igrc_lookup_boundary_confidentiality_levelsFreeRead-onlyList the Boundary confidentiality-level reference values (id + name), used for the confidentialityId field when creating a boundary (igrc_create_boundary).
igrc_lookup_boundary_information_system_typesFreeRead-onlyList the Boundary information-system-type reference values (id + name), used for the systemTypeId / informationSystemTypeId fields when creating a boundary (igrc_create_boundary).
igrc_lookup_boundary_integrity_levelsFreeRead-onlyList the Boundary integrity-level reference values (id + name), used for the integrityId field when creating a boundary (igrc_create_boundary).
igrc_lookup_boundary_operational_statusesFreeRead-onlyList the Boundary operational-status reference values (id + name), used for the operationalStatusId field when creating a boundary (igrc_create_boundary).

[intelliGRC] List the Action Plan category reference values (id + name). Use the ids when creating action-plan projects/tasks/subtasks. Optional tenantId overrides the credential's default intelliGRC tenant for this call (discover tenants with igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan level-of-effort reference values (id + name), used for the levelOfEffortId field on action-plan projects/tasks/subtasks. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan priority-level reference values (id + name), used for the priorityLevelId field on action-plan projects/tasks/subtasks. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan project-status reference values (id + name), used for the statusId field when creating an action-plan project (igrc_create_action_plan_project). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan subcategory reference values (id + name), used for the subCategoryId field on action-plan projects/tasks/subtasks. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan subtask-status reference values (id + name), used for the statusId field when creating an action-plan subtask (igrc_create_action_plan_subtask). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan task-status reference values (id + name), used for the statusId field when creating an action-plan task (igrc_create_action_plan_task). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Action Plan task-type reference values (id + name), used for the taskTypeId field when creating an action-plan task (igrc_create_action_plan_task). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Assessment Objective status reference values (id + name), used for the statusId field when updating an assessment objective (igrc_update_assessment_objective). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Boundary availability-level reference values (id + name), used for the availabilityId field when creating a boundary (igrc_create_boundary). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Boundary confidentiality-level reference values (id + name), used for the confidentialityId field when creating a boundary (igrc_create_boundary). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Boundary information-system-type reference values (id + name), used for the systemTypeId / informationSystemTypeId fields when creating a boundary (igrc_create_boundary). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Boundary integrity-level reference values (id + name), used for the integrityId field when creating a boundary (igrc_create_boundary). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the Boundary operational-status reference values (id + name), used for the operationalStatusId field when creating a boundary (igrc_create_boundary). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Action Plan

ToolPlanAccessSummary
igrc_create_action_plan_projectProWriteCreate an Action Plan project.
igrc_create_action_plan_subtaskProWriteCreate an Action Plan subtask under a parent task.
igrc_create_action_plan_taskProWriteCreate an Action Plan task.
igrc_list_action_plan_projectsFreeRead-onlyList Action Plan projects, optionally filtered to one evaluation and optionally expanding their tasks and subtasks.
igrc_list_action_plan_subtasksFreeRead-onlyList Action Plan subtasks, optionally filtered to one evaluation.
igrc_list_action_plan_tasksFreeRead-onlyList Action Plan tasks, optionally filtered to one evaluation and optionally expanding their subtasks.

[intelliGRC] Create an Action Plan project. Provide a JSON object body — typical fields: name (string), evaluationId (integer), statusId (integer, from igrc_lookup_action_plan_project_statuses), description (string), costEstimate (number), dueDate (ISO-8601), levelOfEffortId / priorityLevelId / subCategoryId (integers, from the matching igrc_lookup_action_plan_* tools). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
fieldsJsonstringyesJSON object body. Typical fields: name, evaluationId (int), statusId (int), description, costEstimate, dueDate (ISO-8601), levelOfEffortId/priorityLevelId/subCategoryId (ints).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] Create an Action Plan subtask under a parent task. Provide a JSON object body — typical fields: title (string), description (string), taskId (GUID string — the parent task id), statusId (integer, from igrc_lookup_action_plan_subtask_statuses), costEstimate (number), scheduledCompletionDate (ISO-8601), assignedDepartmentIds / assignedPersonnelIds / assignedWatcherIds (arrays, nullable), levelOfEffortId / priorityLevelId / subCategoryId (integers), isAssignedToOrganization (bool). NOTE: taskId is a GUID here, unlike the integer ids elsewhere in Action Plan. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
fieldsJsonstringyesJSON object body. Typical fields: title, description, taskId (GUID string — the parent task), statusId (int), scheduledCompletionDate (ISO-8601), assigned*Ids (arrays, nullable), levelOfEffortId/priorityLevelId/subCategoryId (int), isAssignedToOrganization (bool).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] Create an Action Plan task. Provide a JSON object body — typical fields: name (string), description (string), statusId (integer, from igrc_lookup_action_plan_task_statuses), taskTypeId (integer, from igrc_lookup_action_plan_task_types), projectId / evaluationId (integers, nullable), budget, scheduledCompletionDate (ISO-8601), assignedDepartmentIds / assignedPersonnelIds / assignedWatcherIds / assignedAssessmentObjectiveIds (arrays, nullable), levelOfEffortId / priorityLevelId / subCategoryId (integers, nullable), isAssignedToOrganization (bool). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
fieldsJsonstringyesJSON object body. Typical fields: name, description, statusId (int), taskTypeId (int), projectId/evaluationId (int, nullable), scheduledCompletionDate (ISO-8601), assigned*Ids (arrays, nullable), levelOfEffortId/priorityLevelId/subCategoryId (int, nullable), isAssignedToOrganization (bool).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List Action Plan projects, optionally filtered to one evaluation and optionally expanding their tasks and subtasks. evaluationId is an integer (from igrc_list_evaluations / igrc_get_current_evaluation). Optional tenantId overrides the credential's default intelliGRC tenant for this call (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
evaluationIdintegernonullOptional evaluation id (integer) to filter projects to one evaluation.
includeSubTasksbooleannonullOptional. When true, include each task's subtasks in the response.
includeTasksbooleannonullOptional. When true, include each project's tasks in the response.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List Action Plan subtasks, optionally filtered to one evaluation. evaluationId is an integer (from igrc_list_evaluations / igrc_get_current_evaluation). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
evaluationIdintegernonullOptional evaluation id (integer) to filter subtasks to one evaluation.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List Action Plan tasks, optionally filtered to one evaluation and optionally expanding their subtasks. evaluationId is an integer (from igrc_list_evaluations / igrc_get_current_evaluation). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
evaluationIdintegernonullOptional evaluation id (integer) to filter tasks to one evaluation.
includeSubTasksbooleannonullOptional. When true, include each task's subtasks in the response.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Assessment Objectives

ToolPlanAccessSummary
igrc_get_assessment_objective_historyFreeRead-onlyGet the change history for a single assessment objective.
igrc_list_assessment_objectivesFreeRead-onlyList assessment objectives, optionally filtered by evaluation and/or framework.
igrc_update_assessment_objectiveProWriteUpdate a single assessment objective (full replace).

[intelliGRC] Get the change history for a single assessment objective. assessmentObjectiveId is a GUID (from igrc_list_assessment_objectives). Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
assessmentObjectiveIdstringyesThe assessment objective id (GUID string, from igrc_list_assessment_objectives).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List assessment objectives, optionally filtered by evaluation and/or framework. evaluationId is an integer (from igrc_list_evaluations / igrc_get_current_evaluation); frameworkId is a GUID. Each objective's id is a GUID used by igrc_get_assessment_objective_history and igrc_update_assessment_objective. Optional tenantId overrides the credential's default intelliGRC tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
evaluationIdintegernonullOptional evaluation id (integer) to filter objectives to one evaluation.
frameworkIdstringnonullOptional framework id (GUID string) to filter objectives to one framework.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] Update a single assessment objective (full replace). assessmentObjectiveId is a GUID (from igrc_list_assessment_objectives). Provide a JSON object body — typical fields: evaluationId (integer), statusId (integer, from igrc_lookup_assessment_objective_statuses), implementationDetail (string), findingDetail (string), recommendationDetail (string), validationMethods (string). The API may return 200 with the updated object or 204 with no content. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
assessmentObjectiveIdstringyesThe assessment objective id to update (GUID string, from igrc_list_assessment_objectives).
fieldsJsonstringyesJSON object body. Typical fields: evaluationId (int), statusId (int), implementationDetail, findingDetail, recommendationDetail, validationMethods.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Evidence

ToolPlanAccessSummary
igrc_create_evidence_linkProWriteAttach an external URL as evidence to a parent GRC record.
igrc_list_evidenceFreeRead-onlyList all evidence records for the tenant.
igrc_list_evidence_by_evaluationFreeRead-onlyList evidence for a specific evaluation, optionally narrowed to one framework.
igrc_upload_evidence_fileProWriteUpload a file as evidence attached to a parent GRC record (multipart/form-data).

[intelliGRC] List all evidence records for the tenant. Optional tenantId overrides the credential's default intelliGRC tenant for this call (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List evidence for a specific evaluation, optionally narrowed to one framework. evaluationId is a required integer (from igrc_list_evaluations / igrc_get_current_evaluation); frameworkId is an optional GUID. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
evaluationIdintegeryesThe evaluation id (integer, required — from igrc_list_evaluations / igrc_get_current_evaluation).
frameworkIdstringnonullOptional framework id (GUID string) to narrow the evidence to one framework.
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] Upload a file as evidence attached to a parent GRC record (multipart/form-data). Provide fileContentBase64 (the file bytes, base64-encoded), fileName (e.g. "evidence.csv"), and parentId (GUID string — the record to attach to); description is optional. A 500 "Upload failed" from intelliGRC usually means a file with the same name already exists on that parent. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
descriptionstringnonullOptional human-readable description of the file.
fileContentBase64stringyesThe file content, base64-encoded.
fileNamestringyesThe file name, e.g. "evidence.csv".
parentIdstringyesThe parent record id to attach the file to (GUID string).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Boundaries

ToolPlanAccessSummary
igrc_create_boundaryProWriteCreate an information-system boundary.
igrc_list_boundariesFreeRead-onlyList the information-system boundaries defined for the tenant.

[intelliGRC] Create an information-system boundary. Provide a JSON object body — typical fields: name (string), uniqueIdentifier (string), operationalStatusId / systemTypeId / informationSystemTypeId / confidentialityId / integrityId / availabilityId (integers, from the matching igrc_lookup_boundary_* tools), description / systemEnvironment / networkArchitectureDetails (HTML strings), and frameworkIds (array of GUID strings). Optional-relationship id arrays (deviceIds, locationIds, personnelIds, etc.) may be null. Note: level/status/type ids are integers while frameworkIds are GUIDs. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
fieldsJsonstringyesJSON object body. Typical fields: name, uniqueIdentifier, operationalStatusId/systemTypeId/informationSystemTypeId/confidentialityId/integrityId/availabilityId (ints), description/systemEnvironment (strings), frameworkIds (array of GUID strings).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List the information-system boundaries defined for the tenant. Each boundary's integer id is used as boundaryId when creating an evaluation (igrc_create_evaluation). Optional tenantId overrides the credential's default intelliGRC tenant for this call (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Evaluations

ToolPlanAccessSummary
igrc_create_evaluationProWriteCreate (start) a new evaluation.
igrc_get_current_evaluationFreeRead-onlyGet the current working evaluation for the tenant (the one most tools default to).
igrc_list_evaluationsFreeRead-onlyList all evaluations for the tenant.

[intelliGRC] Create (start) a new evaluation. Provide a JSON object body — typical fields: name (string), reason (string), boundaryId (integer, from igrc_list_boundaries), startDate / endDate (ISO-8601), totalBudget (number), iclVersionId (GUID string), frameworkIds (array of GUID strings), targetType (integer), previousEvaluationId (integer). Note the mixed id types: boundaryId/targetType/previousEvaluationId are integers while iclVersionId and frameworkIds are GUIDs. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
fieldsJsonstringyesJSON object body. Typical fields: name, reason, boundaryId (int), startDate/endDate (ISO-8601), totalBudget (number), iclVersionId (GUID string), frameworkIds (array of GUID strings), targetType (int), previousEvaluationId (int).
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] Get the current working evaluation for the tenant (the one most tools default to). Returns the evaluation object including its integer id, which other tools take as evaluationId. Optional tenantId overrides the credential's default intelliGRC tenant for this call (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

[intelliGRC] List all evaluations for the tenant. Each evaluation's integer id is used as evaluationId across the Action Plan, Assessment Objective, and Evidence tools. Optional tenantId overrides the credential's default tenant (see igrc_list_tenants).

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call (see igrc_list_tenants). Omit to use the credential's default tenant.

Tenants

ToolPlanAccessSummary
igrc_list_tenantsFreeRead-onlyList the intelliGRC tenants the configured API credential can act on.

[intelliGRC] List the intelliGRC tenants the configured API credential can act on. Use a returned tenant id as the optional tenantId parameter on any other intelliGRC tool to target that tenant for a single call; when tenantId is omitted, tools use the credential's stored default tenant. This call is also the connector's credential-validation probe and does not itself require a tenant id.

ParamTypeRequiredDefaultDescription
tenantIdstringnonullOptional intelliGRC tenant id override for this call. Usually omitted for discovery — this endpoint returns the accessible tenants regardless.