Skip to main content
Tools Reference

Island Browser Tools

Written By Christopher Scaminaci

Last updated 7 days ago

Island Browser Tools

island_ · 1012 tools · Free 595 · Pro 417The Island Enterprise Browser's Management Console API. Authentication is a static API key sent in an api-key header - NOT Authorization, and with no Bearer scheme; the key's Management Console Role is the real authority limit. Three fixed regional hosts (United States, Europe, United Kingdom) chosen by a stored region code, with no per-tenant subdomain and no region-discovery endpoint. One key binds to ONE Island tenant - no data-plane call takes a tenant selector - so an MSP holds one named connection per customer. Lists are filter-body POSTs rather than cursors: many operations that are POST on the wire are reads in effect and are tiered and hinted as reads. There is no documented page-size ceiling and no page token outside the three published-policy reads, so paging is limit plus offset where a limit exists at all. Errors are RFC 7807 ProblemDetails, passed through unchanged. The whole documented Management Console surface ships, policy objects and settings editors included.

All connector tools · Island Browser setup guide

Island Browser tool groups

Tenants and Roles

ToolPlanAccessSummary
island_add_users_to_roleProDestructiveDESTRUCTIVE: add users or groups to a Management Console role.
island_create_tenantProWriteCreate a tenant under the current tenant hierarchy.
island_delete_tenantProDestructiveDESTRUCTIVE: delete a tenant.
island_get_tenantFreeRead-onlyGet one tenant by its Island tenant ID.
island_get_user_audience_mappingFreeRead-onlyGet the user audience mapping that decides which identities this tenant admits.
island_list_rolesFreeRead-onlyList the Management Console roles in this tenant.
island_list_tenantsFreeRead-onlyList the Island tenants this credential can see, with their hierarchy.
island_remove_users_from_roleProDestructiveDESTRUCTIVE: remove users from a Management Console role.
island_update_tenantProWriteUpdate a tenant name, description or indication.
island_upsert_user_audience_mappingProDestructiveDESTRUCTIVE: set the user audience mapping for a sub-tenant.

[Island Browser] DESTRUCTIVE: add users or groups to a Management Console role. Why this is destructive: A privilege grant - the wiring manifest names permission grants as destructive outright. operations.csv screens it as not destructive. POST /api/external/v1/roles/addUsersToRole. Send the request body as JSON; Island documents these fields: roleId, emails, groups. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: roleId, emails, groups.

[Island Browser] Create a tenant under the current tenant hierarchy. POST /api/external/v1/tenantsManagement. Send the request body as JSON; Island documents these fields: tenantId, tenantName, defaultRegion, tenantIndication, hierarchicalNodeType, parentTenantId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: tenantId, tenantName, defaultRegion, tenantIndication, hierarchicalNodeType, parentTenantId.

[Island Browser] DESTRUCTIVE: delete a tenant. Why this is destructive: Deletes a whole tenant and everything under it, and the body carries a forceDelete flag. No dry run and no undo is documented. POST /api/external/v1/tenantsManagement/ExternalDeleteTenant. Send the request body as JSON; Island documents these fields: tenantId, forceDelete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: tenantId, forceDelete.

[Island Browser] Get one tenant by its Island tenant ID. GET /api/external/v1/tenantsManagement/. Path parameters: tenantId. Returns Island's raw JSON. Get the tenantId from island_list_tenants.

ParamTypeRequiredDefaultDescription
tenantIdstringyesRequired. The Island tenantId this call targets.

[Island Browser] Get the user audience mapping that decides which identities this tenant admits. GET /api/external/v1/tenantsManagement/GetUserAudienceMapping. Returns Island's raw JSON.

[Island Browser] List the Management Console roles in this tenant. GET /api/external/v1/roles. Returns Island's raw JSON. The roleId values here are what island_add_users_to_role and island_remove_users_from_role take. Island role names are tenant-specific, so this is the only way to discover them. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List the Island tenants this credential can see, with their hierarchy. GET /api/external/v1/tenantsManagement/GetVisibleHierarchyTenantsSlim. Optional filters: IncludeCurrentTenant. Returns Island's raw JSON. Start here: it is the cheapest call that proves the credential, and its tenantId values are what island_get_tenant takes. One Island API key binds to ONE Island tenant, so this returns the hierarchy that key can see and nothing outside it. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
includeCurrentTenantbooleannonullOptional. Include the tenant the API key itself belongs to, not just the tenants below it. Island defaults this to false, so the key's own tenant is normally absent from the list.

[Island Browser] DESTRUCTIVE: remove users from a Management Console role. Why this is destructive: Revokes console privileges; it can lock an administrator out of their own console. POST /api/external/v1/roles/removeUsersFromRole. Send the request body as JSON; Island documents these fields: roleId, emails. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: roleId, emails.

[Island Browser] Update a tenant name, description or indication. PATCH /api/external/v1/tenantsManagement. Send the request body as JSON; Island documents these fields: tenantId, tenantName, description, tenantIndication. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: tenantId, tenantName, description, tenantIndication.

[Island Browser] DESTRUCTIVE: set the user audience mapping for a sub-tenant. Why this is destructive: Wholesale-replace semantics on the emails, groups and claims collections, and the mapping decides who may sign in to the browser - an omitted member is removed and the people it covers lose access. operations.csv screens this as not destructive; the wiring manifest rule for a documented wholesale replacement wins. PATCH /api/external/v1/tenantsManagement/UpsertUserAudienceMapping. Send the request body as JSON; Island documents these fields: id, createdDate, updatedDate, tenantId, email, emails, groups, claims, targetTenantId, priority, userType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id, createdDate, updatedDate, tenantId, email, emails, groups, claims, targetTenantId, priority, userType.

Users

ToolPlanAccessSummary
island_block_userProDestructiveDESTRUCTIVE: block a user from the Island browser.
island_delete_invited_userProDestructiveDESTRUCTIVE: remove a non-IDP invited browser user.
island_force_user_logoutProDestructiveDESTRUCTIVE: force a user to log out of the Island browser.
island_invite_usersProDestructiveDESTRUCTIVE: invite users to the Island browser in bulk.
island_list_user_field_valuesFreeRead-onlyList the distinct values a browser-user column takes.
island_list_usersFreeRead-onlyList browser users matching a simple filter.
island_modify_userProDestructiveDESTRUCTIVE: modify a browser user.
island_search_user_groupsFreeRead-onlySearch user groups by a typeahead query.
island_unblock_userProWriteUnblock a user of the Island browser.

[Island Browser] DESTRUCTIVE: block a user from the Island browser. Why this is destructive: Takes the browser away from a working person immediately. POST /api/external/v1/users/block. Send the request body as JSON; Island documents these fields: userId, userEntityId, reason. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: userId, userEntityId, reason.

[Island Browser] DESTRUCTIVE: remove a non-IDP invited browser user. Why this is destructive: DELETE verb. DELETE /api/external/v1/users/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The user id.

[Island Browser] DESTRUCTIVE: force a user to log out of the Island browser. Why this is destructive: Ends live sessions; unsaved work in the browser is lost. POST /api/external/v1/users/logout. Send the request body as JSON; Island documents these fields: userId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: userId.

[Island Browser] DESTRUCTIVE: invite users to the Island browser in bulk. Why this is destructive: Sends invitation email to every address in the body - the wiring manifest names anything that reaches a human as destructive, and an invitation cannot be recalled. POST /api/external/v1/users/invite-bulk. Send the request body as JSON; Island documents these fields: users. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: users.

[Island Browser] List the distinct values a browser-user column takes. GET /api/external/v1/users/distinct. Optional filters: Limit, Start, End, FilterBy, Column. Returns Island's raw JSON. Use this to discover the values a browser-user column holds before filtering island_list_users on it.

ParamTypeRequiredDefaultDescription
columnstringnonullOptional. The browser-user column whose distinct values you want.
endstringnonullOptional. Inclusive end of the time window. Island documents neither the format nor a default.
filterBystringnonullOptional. A value the column must contain before its distinct values are computed.
limitintegernonullOptional. How many rows to return. Island documents no default and NO MAXIMUM, and StackJack adds no cap of its own, so ask for what you need and page rather than pulling everything.
startstringnonullOptional. Inclusive start of the time window. Island documents neither the format nor a default; echo back the values its own list responses return.

[Island Browser] List browser users matching a simple filter. GET /api/external/v1/users. Optional filters: Start, End, Limit, Offset, SortBy, SortDirection, IncludeAllUserStatus. Returns Island's raw JSON. The userId values here are what island_block_user, island_unblock_user, island_force_user_logout and island_modify_user take. Use island_list_user_field_values first when you want to know which values a column actually holds before filtering on it.

ParamTypeRequiredDefaultDescription
endstringnonullOptional. Inclusive end of the time window. Island documents neither the format nor a default.
includeAllUserStatusbooleannonullOptional. Include users in every status rather than only the active ones. Island defaults it to false, so invited and revoked users are hidden unless you set it true.
limitintegernonullOptional. How many rows to return. Island documents no default and NO MAXIMUM, and StackJack adds no cap of its own, so ask for what you need and page rather than pulling everything.
offsetintegernonullOptional. How many rows to skip, for paging alongside the limit. Island declares no cursor and no hasMore field anywhere, so paging here is limit plus offset.
sortBystringnonullOptional. The column to sort by. Island does not publish the accepted column names; use a field name from a row this tool already returned.
sortDirectionstringnonullOptional. Sort direction. Island does not publish the accepted values; asc and desc are the conventional pair.
startstringnonullOptional. Inclusive start of the time window. Island documents neither the format nor a default; echo back the values its own list responses return.

[Island Browser] DESTRUCTIVE: modify a browser user. Why this is destructive: The documented request body carries delete and setAsRevoked booleans, so this one call can delete or revoke the user outright. operations.csv screens it as not destructive because the summary reads as an ordinary update. POST /api/external/v1/users/ModifyUser. Send the request body as JSON; Island documents these fields: userType, userId, setAsRevoked, delete, expirationDate. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: userType, userId, setAsRevoked, delete, expirationDate.

[Island Browser] Search user groups by a typeahead query. GET /api/external/v1/usersData/groups. Optional filters: GroupContainsQuery, Limit, UserType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
groupContainsQuerystringnonullOptional. Typeahead search query. Returns groups whose name contains this value.
limitintegernonullOptional. Maximum number of groups to return.
userTypestringnonullOptional. The user type whose groups to search (e.g., Browser, Management).

[Island Browser] Unblock a user of the Island browser. POST /api/external/v1/users/unblock. Send the request body as JSON; Island documents these fields: userId, userEntityId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: userId, userEntityId.

Devices and Extensions

ToolPlanAccessSummary
island_block_deviceProDestructiveDESTRUCTIVE: block a machine from the Island browser.
island_get_deviceFreeRead-onlyGet one device by its ID.
island_get_extensionFreeRead-onlyGet one extension risk profile and details.
island_list_device_extensionsFreeRead-onlyList the browser extensions installed on one device.
island_list_devicesFreeRead-onlyList devices matching a filter.
island_list_extensionsFreeRead-onlyList every browser extension installed across the fleet.
island_unblock_deviceProWriteUnblock a machine on the Island browser.

[Island Browser] DESTRUCTIVE: block a machine from the Island browser. Why this is destructive: Takes the browser away from a working machine immediately. POST /api/external/v1/devices/blockMachine. Send the request body as JSON; Island documents these fields: machineId, reason. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: machineId, reason.

[Island Browser] Get one device by its ID. GET /api/external/v1/devices/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device id.

[Island Browser] Get one extension risk profile and details. GET /api/external/v1/extensions/. Path parameters: extensionId. Optional filters: version. Returns Island's raw JSON. Island declares a 429 rate-limit response on this endpoint - one of exactly FOUR operations in 1,103 that declare one - so pace a sweep rather than calling it once per row of island_list_extensions as fast as the connector allows. Island publishes no limit value and no rate-limit headers, so a 429 without a Retry-After costs a blind 60-second wait.

ParamTypeRequiredDefaultDescription
extensionIdstringyesRequired. The Island extensionId this call targets.
versionstringnonullOptional. A specific extension version. Omit it for the version Island currently reports.

[Island Browser] List the browser extensions installed on one device. GET /api/external/v1/devices//extensions. Path parameters: id. Returns Island's raw JSON. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device id.

[Island Browser] List devices matching a filter. POST /api/external/v1/devices. Send the filter as JSON; Island documents these fields: filters, start, end, limit, offset, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. The device ids here are what island_get_device, island_list_device_extensions and island_block_device take.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: filters, start, end, limit, offset, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType.

[Island Browser] List every browser extension installed across the fleet. GET /api/external/v1/extensions. Returns Island's raw JSON. This is the fleet-wide extension inventory. For one machine use island_list_device_extensions, and for one extension risk profile use island_get_extension. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] Unblock a machine on the Island browser. POST /api/external/v1/devices/unblockMachine. Send the request body as JSON; Island documents these fields: machineId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: machineId.

Digital Experience

ToolPlanAccessSummary
island_get_dex_app_scoreFreeRead-onlyGet the experience score for one application.
island_get_dex_app_score_breakdownFreeRead-onlyBreak the application experience score down by a grouping.
island_get_dex_app_speedFreeRead-onlyGet the speed measurements for one application.
island_get_dex_app_speed_breakdownFreeRead-onlyBreak application speed down by a grouping.
island_get_dex_app_stabilityFreeRead-onlyGet the stability measurements for one application.
island_get_dex_app_stability_breakdownFreeRead-onlyBreak application stability down by a grouping.
island_get_dex_app_usageFreeRead-onlyGet the usage measurements for one application.
island_get_dex_app_usage_breakdownFreeRead-onlyBreak application usage down by a grouping.
island_get_dex_device_scoreFreeRead-onlyGet the experience score for one device.
island_get_dex_device_score_breakdownFreeRead-onlyBreak the device experience score down by a grouping.
island_get_dex_device_speedFreeRead-onlyGet the speed measurements for one device.
island_get_dex_device_speed_breakdownFreeRead-onlyBreak device speed down by a grouping.
island_get_dex_device_stabilityFreeRead-onlyGet the stability measurements for one device.
island_get_dex_device_stability_breakdownFreeRead-onlyBreak device stability down by a grouping.
island_get_dex_device_timelineFreeRead-onlyGet the experience timeline for one device.
island_get_dex_device_usageFreeRead-onlyGet the usage measurements for one device.
island_list_dex_app_devicesFreeRead-onlyList the devices that used one application.
island_list_dex_app_stability_errorsFreeRead-onlyList the errors behind one application stability score.
island_list_dex_appsFreeRead-onlyList the applications Digital Experience scores.
island_list_dex_device_stability_errorsFreeRead-onlyList the errors behind one device stability score.
island_list_dex_devicesFreeRead-onlyList the devices Digital Experience scores.

[Island Browser] Get the experience score for one application. POST /api/external/v1/dex/app//score. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, start.
idstringyesRequired. The application guid or a domain.

[Island Browser] Break the application experience score down by a grouping. POST /api/external/v1/dex/app//score/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The application guid or a domain.

[Island Browser] Get the speed measurements for one application. POST /api/external/v1/dex/app//speed. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The application guid or a domain.

[Island Browser] Break application speed down by a grouping. POST /api/external/v1/dex/app//speed/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The application guid or a domain.

[Island Browser] Get the stability measurements for one application. POST /api/external/v1/dex/app//stability. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The application guid or a domain.

[Island Browser] Break application stability down by a grouping. POST /api/external/v1/dex/app//stability/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The application guid or a domain.

[Island Browser] Get the usage measurements for one application. POST /api/external/v1/dex/app//usage. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The application guid or a domain.

[Island Browser] Break application usage down by a grouping. POST /api/external/v1/dex/app//usage/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The application guid or a domain.

[Island Browser] Get the experience score for one device. POST /api/external/v1/dex/device//score. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Break the device experience score down by a grouping. POST /api/external/v1/dex/device//score/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Get the speed measurements for one device. POST /api/external/v1/dex/device//speed. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Break device speed down by a grouping. POST /api/external/v1/dex/device//speed/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Get the stability measurements for one device. POST /api/external/v1/dex/device//stability. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Break device stability down by a grouping. POST /api/external/v1/dex/device//stability/by. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, groupBy, start, sortDirection.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Get the experience timeline for one device. POST /api/external/v1/dex/device//timeline. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] Get the usage measurements for one device. POST /api/external/v1/dex/device//usage. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, granularity, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, granularity, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] List the devices that used one application. POST /api/external/v1/dex/app//devices. Path parameters: id. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection.
idstringyesRequired. The application guid or a domain.

[Island Browser] List the errors behind one application stability score. POST /api/external/v1/dex/app//stability/errors. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, start.
idstringyesRequired. The application guid or a domain.

[Island Browser] List the applications Digital Experience scores. POST /api/external/v1/dex/apps. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. The application ids here are what every other island_get_dex_app_* tool takes.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection.

[Island Browser] List the errors behind one device stability score. POST /api/external/v1/dex/device//stability/errors. Path parameters: id. Send the filter as JSON; Island documents these fields: end, filters, start. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: end, filters, start.
idstringyesRequired. The device machine id, as returned by the devices list.

[Island Browser] List the devices Digital Experience scores. POST /api/external/v1/dex/devices. Send the filter as JSON; Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. The device ids here are what every other island_get_dex_device_* tool takes.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, end, filters, sortBy, start, sortDirection.

Security and Audit

ToolPlanAccessSummary
island_get_compromised_credentialFreeRead-onlyGet one compromised credential by ID.
island_list_admin_actionsFreeRead-onlyList Management Console admin actions matching a simple filter.
island_list_compromised_credentialsFreeRead-onlyList compromised credentials Island has detected.
island_list_insightsFreeRead-onlyList the insights Island raises for this tenant.
island_list_issues_by_insightFreeRead-onlyList the issues for one named insight.
island_list_timeline_auditsFreeRead-onlyList timeline audit events matching a simple filter.
island_search_admin_actionsFreeRead-onlySearch Management Console admin actions with a complex filter.
island_search_issuesFreeRead-onlySearch the issues behind the insights.
island_search_timeline_auditsFreeRead-onlySearch timeline audit events with a complex filter.
island_update_compromised_credential_statusProWriteSet the triage status on compromised credentials.

[Island Browser] Get one compromised credential by ID. GET /api/external/v1/compromised-credentials/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The compromised credential id.

[Island Browser] List Management Console admin actions matching a simple filter. GET /api/external/v1/adminActions. Optional filters: Start, End, Limit, Offset. Returns Island's raw JSON. This is the console audit trail: who changed what in Island itself. island_list_timeline_audits is the browser-side event feed.

ParamTypeRequiredDefaultDescription
endstringnonullOptional. Inclusive end of the time window. Island documents neither the format nor a default.
limitintegernonullOptional. How many rows to return. Island documents no default and NO MAXIMUM, and StackJack adds no cap of its own, so ask for what you need and page rather than pulling everything.
offsetintegernonullOptional. How many rows to skip, for paging alongside the limit. Island declares no cursor and no hasMore field anywhere, so paging here is limit plus offset.
startstringnonullOptional. Inclusive start of the time window. Island documents neither the format nor a default; echo back the values its own list responses return.

[Island Browser] List compromised credentials Island has detected. POST /api/external/v1/compromised-credentials. Send the filter as JSON; Island documents these fields: filters, start, end, limit, offset, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Triage a finding with island_update_compromised_credential_status once you have decided what it is.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: filters, start, end, limit, offset, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType.

[Island Browser] List the insights Island raises for this tenant. POST /api/external/v1/insights. Send the filter as JSON; Island documents these fields: module, includeHiddenInsights, limit, offset. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An insight name from here is what island_list_issues_by_insight takes; island_search_issues searches across insights instead.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: module, includeHiddenInsights, limit, offset.

[Island Browser] List the issues for one named insight. GET /api/external/v1/issues/. Path parameters: insightName. Optional filters: limit, offset. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
insightNamestringyesRequired. The insight name.
limitintegernonullOptional. Page size. Defaults to 100. Maximum 1000.
offsetintegernonullOptional. Number of issues to skip. Defaults to 0.

[Island Browser] List timeline audit events matching a simple filter. GET /api/external/v1/timeline. Optional filters: Start, End, Limit, Offset. Returns Island's raw JSON. Island declares a 429 rate-limit response on this endpoint and says so in its own summary. It is one of exactly FOUR operations in 1,103 that declare one - the two timeline reads, island_get_extension and island_classify_urls - so keep the window narrow. Use island_search_timeline_audits when you need a filter a query string cannot express.

ParamTypeRequiredDefaultDescription
endstringnonullOptional. End date of the audit.
limitintegernonullOptional. How many rows to return. Island documents no default and NO MAXIMUM, and StackJack adds no cap of its own, so ask for what you need and page rather than pulling everything.
offsetintegernonullOptional. How many rows to skip, for paging alongside the limit. Island declares no cursor and no hasMore field anywhere, so paging here is limit plus offset.
startstringnonullOptional. Start date of the audit.

[Island Browser] Search Management Console admin actions with a complex filter. POST /api/external/v1/adminActions. Send the filter as JSON; Island documents these fields: limit, offset, filters, start, end, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, filters, start, end, sortBy, sortBySubProperty, sortDirection, nullsLast, freeTextSearchFilter, freeTextSearchFilterFields, selectFields, sqlProviderType.

[Island Browser] Search the issues behind the insights. POST /api/external/v1/issues. Send the filter as JSON; Island documents these fields: insightName, category, lastUpdateFrom, lastUpdateTo, includeHiddenInsights, limit, offset. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: insightName, category, lastUpdateFrom, lastUpdateTo, includeHiddenInsights, limit, offset.

[Island Browser] Search timeline audit events with a complex filter. POST /api/external/v1/timeline. Send the filter as JSON; Island documents these fields: limit, offset, sortDirection, filters, sortBy, freeTextSearchFilterFields, selectFields, end, start, sortBySubProperty, nullsLast, freeTextSearchFilter, sqlProviderType. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Island declares a 429 rate-limit response on this endpoint and says so in its own summary. It is one of exactly FOUR operations in 1,103 that declare one, so page with Offset and keep the window narrow rather than widening the date range. island_list_timeline_audits is the same feed behind a query-string filter.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: limit, offset, sortDirection, filters, sortBy, freeTextSearchFilterFields, selectFields, end, start, sortBySubProperty, nullsLast, freeTextSearchFilter, sqlProviderType.

[Island Browser] Set the triage status on compromised credentials. POST /api/external/v1/compromised-credentials/updateStatus. Send the request body as JSON; Island documents these fields: ids, newStatus. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids, newStatus.

Policies

ToolPlanAccessSummary
island_can_revert_policy_changesFreeRead-onlyCheck whether the pending policy changes can still be reverted.
island_get_policy_push_statusFreeRead-onlyGet the status of an asynchronous policy push.
island_list_latest_policiesFreeRead-onlyList the latest published policies.
island_list_pending_policy_changesFreeRead-onlyList the policy changes staged but not yet pushed.
island_list_policies_after_dateFreeRead-onlyList policies published after a date.
island_list_policies_by_typeFreeRead-onlyList policies of one type published after a version.
island_push_policy_changesProDestructiveDESTRUCTIVE: push every pending policy change to the live browser fleet.
island_revert_policy_changesProDestructiveDESTRUCTIVE: discard every pending policy change.
island_upload_policy_approvalsProWriteUpload policy approvals.

[Island Browser] Check whether the pending policy changes can still be reverted. GET /api/external/v1/policyChanges/CanRevert. Returns Island's raw JSON.

[Island Browser] Get the status of an asynchronous policy push. GET /api/external/v1/policyChanges/PushStatus/. Path parameters: pushId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
pushIdstringyesRequired. The Island pushId this call targets.

[Island Browser] List the latest published policies. GET /api/external/v1/policies/getAllLatest. Optional filters: PageToken. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
pageTokenstringnonullOptional. Accepted for forward compatibility and currently ignored — results always fit one page.

[Island Browser] List the policy changes staged but not yet pushed. GET /api/external/v1/policyChanges/pendingChanges. Returns Island's raw JSON. Read this BEFORE island_push_policy_changes - the push applies every change listed here at once, to every managed browser. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List policies published after a date. GET /api/external/v1/policies/getAllAfter. Optional filters: Date, PageToken. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
dateintegernonullOptional. Unix epoch seconds, UTC. Only versions published strictly after this moment are returned.
pageTokenstringnonullOptional. Accepted for forward compatibility and currently ignored — results always fit one page.

[Island Browser] List policies of one type published after a version. GET /api/external/v1/policies/getByTypeAfterVersion. Optional filters: Type, Version, PageToken. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
pageTokenstringnonullOptional. Accepted for forward compatibility and currently ignored — results always fit one page.
typestringnonullOptional. The policy type to return versions for.
versionintegernonullOptional. Only versions numbered strictly above this are returned. Send 0 for every numbered version retained; a record whose stored version is not a number is never returned here, even at 0.

[Island Browser] DESTRUCTIVE: push every pending policy change to the live browser fleet. Why this is destructive: Applies every staged change at once to every managed browser. The train plan task rules policyChanges push and revert destructive. POST /api/external/v1/policyChanges/push. Returns Island's raw JSON. Read island_list_pending_policy_changes first and confirm the list with a person. The push returns a pushId that island_get_policy_push_status tracks, and island_can_revert_policy_changes says whether a rollback is still possible.

[Island Browser] DESTRUCTIVE: discard every pending policy change. Why this is destructive: Throws away staged work with no undo. The train plan task rules policyChanges push and revert destructive. POST /api/external/v1/policyChanges/Revert. Returns Island's raw JSON. Check island_can_revert_policy_changes first, and read island_list_pending_policy_changes to see what will be thrown away.

[Island Browser] Upload policy approvals. POST /api/external/v1/policies/approvals. Send the request body as JSON; Island documents these fields: approvals. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: approvals.

Connectors

ToolPlanAccessSummary
island_create_connectorProDestructiveDESTRUCTIVE: register a connector and mint its bootstrap registration token.
island_delete_connectorProDestructiveDESTRUCTIVE: deregister and delete a connector.
island_delete_connector_commandProDestructiveDESTRUCTIVE: delete a connector command, aborting it if it is still pending.
island_get_connectorFreeRead-onlyGet one connector by ID with its status.
island_list_commands_for_connectorFreeRead-onlyList the most recent commands for one connector.
island_list_connector_command_templatesFreeRead-onlyList the available connector command templates and their parameters.
island_list_connector_commandsFreeRead-onlyList the most recent connector commands across every connector.
island_list_connectorsFreeRead-onlyList connectors in a connector group with their status.
island_rerun_connector_commandProDestructiveDESTRUCTIVE: re-run a connector command that already executed.
island_run_connector_commandsProDestructiveDESTRUCTIVE: queue a batch of commands to run on one or more connectors.
island_update_connectorProWriteUpdate a connector name or description.

[Island Browser] DESTRUCTIVE: register a connector and mint its bootstrap registration token. Why this is destructive: The response IS a bootstrap registration token - a credential mint, which the wiring manifest names destructive outright. operations.csv screens it as not destructive because the verb is create. POST /api/external/v1/connectors. Send the request body as JSON; Island documents these fields: name, description, groupId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, groupId.

[Island Browser] DESTRUCTIVE: deregister and delete a connector. Why this is destructive: DELETE verb; the appliance loses its registration. DELETE /api/external/v1/connectors/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] DESTRUCTIVE: delete a connector command, aborting it if it is still pending. Why this is destructive: DELETE verb, and the vendor summary says a pending command is aborted. DELETE /api/external/v1/connectorCommand/DeleteCommand. Send the request body as JSON; Island documents these fields: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id.

[Island Browser] Get one connector by ID with its status. GET /api/external/v1/connectors/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] List the most recent commands for one connector. POST /api/external/v1/connectorCommand/GetByConnectorId. Send the filter as JSON; Island documents these fields: id. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: id.

[Island Browser] List the available connector command templates and their parameters. GET /api/external/v1/connectorCommand/GetAllTemplates. Returns Island's raw JSON. Read this before island_run_connector_commands: it is where the command names and their parameters come from. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List the most recent connector commands across every connector. GET /api/external/v1/connectorCommand/GetAll. Returns Island's raw JSON. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List connectors in a connector group with their status. GET /api/external/v1/connectors. Optional filters: groupId. Returns Island's raw JSON. Connector ids here are what island_get_connector, island_update_connector and island_delete_connector take. Pass groupId to scope the list to one connector group from island_list_connector_groups. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
groupIdstringnonullOptional. Limit the list to one connector group. Get group ids from island_list_connector_groups; omit it for every connector in the tenant.

[Island Browser] DESTRUCTIVE: re-run a connector command that already executed. Why this is destructive: Runs a command on a live connector appliance a second time. The train plan task rules connector commands destructive. POST /api/external/v1/connectorCommand/Rerun. Send the request body as JSON; Island documents these fields: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id.

[Island Browser] DESTRUCTIVE: queue a batch of commands to run on one or more connectors. Why this is destructive: Runs commands on live connector appliances. The train plan task rules connector commands destructive. operations.csv screens it as not destructive. POST /api/external/v1/connectorCommand/CreateBatch. Send the request body as JSON; Island documents these fields: connectors, version, timeoutSeconds, buildRequest. Returns Island's raw JSON. Get the command shape from island_list_connector_command_templates and the connector ids from island_list_connectors, then track the result with island_list_commands_for_connector.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: connectors, version, timeoutSeconds, buildRequest.

[Island Browser] Update a connector name or description. PATCH /api/external/v1/connectors/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, groupId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, groupId.
idstringyesRequired. The Island id this call targets.

Connector Groups

ToolPlanAccessSummary
island_create_connector_groupProWriteCreate a connector group.
island_delete_connector_groupProDestructiveDESTRUCTIVE: delete a connector group.
island_delete_connector_groups_by_idsProDestructiveDESTRUCTIVE: delete several connector groups by their IDs.
island_export_connector_groupFreeRead-onlyExport one connector group as a portable object.
island_export_connector_groupsFreeRead-onlyExport every connector group as a portable object.
island_get_connector_groupFreeRead-onlyGet one connector group by ID.
island_get_connector_groups_by_idsFreeRead-onlyGet several connector groups by their IDs.
island_list_connector_group_usagesFreeRead-onlyList what references one connector group.
island_list_connector_groupsFreeRead-onlyList every connector group.
island_update_connector_groupProWriteUpdate a connector group.

[Island Browser] Create a connector group. POST /api/external/v1/connectorGroups. Send the request body as JSON; Island documents these fields: name, description, matchingType, ipPoolCidrs, bgpConfiguration, ngGroupId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, ipPoolCidrs, bgpConfiguration, ngGroupId.

[Island Browser] DESTRUCTIVE: delete a connector group. Why this is destructive: DELETE verb. DELETE /api/external/v1/connectorGroups/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] DESTRUCTIVE: delete several connector groups by their IDs. Why this is destructive: Bulk DELETE - one call removes an arbitrary set, with no dry run and no undo (research pack trap 5). DELETE /api/external/v1/connectorGroups/DeleteByIds. Send the request body as JSON; Island documents these fields: ids. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] Export one connector group as a portable object. GET /api/external/v1/connectorGroups/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every connector group as a portable object. GET /api/external/v1/connectorGroups/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Get one connector group by ID. GET /api/external/v1/connectorGroups/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several connector groups by their IDs. POST /api/external/v1/connectorGroups/GetByIds. Optional filters: includeType. Send the filter as JSON; Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one connector group. GET /api/external/v1/connectorGroups/usages/. Path parameters: id. Returns Island's raw JSON. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] List every connector group. GET /api/external/v1/connectorGroups. Optional filters: includeType. Returns Island's raw JSON. Group ids here are what island_get_connector_group takes and what island_list_connectors filters on. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Update a connector group. PATCH /api/external/v1/connectorGroups/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, matchingType, ipPoolCidrs, bgpConfiguration, ngGroupId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, ipPoolCidrs, bgpConfiguration, ngGroupId.
idstringyesRequired. The Island id this call targets.

Notifications and SIEM

ToolPlanAccessSummary
island_create_notification_policyProWriteCreate a notification policy.
island_create_notification_subscriber_groupProWriteCreate a notification subscriber group.
island_create_siem_connectorProWriteCreate a SIEM forwarder.
island_delete_notification_policyProDestructiveDESTRUCTIVE: delete a notification policy.
island_delete_notification_subscriber_groupProDestructiveDESTRUCTIVE: delete a notification subscriber group.
island_delete_siem_connectorProDestructiveDESTRUCTIVE: delete a SIEM forwarder.
island_get_notification_policyFreeRead-onlyGet one notification policy by ID.
island_get_notification_subscriber_groupFreeRead-onlyGet one notification subscriber group by ID.
island_list_notification_condition_fieldsFreeRead-onlyList the fields a notification policy condition can test.
island_list_notification_policiesFreeRead-onlyList every notification policy.
island_list_notification_sub_categoriesFreeRead-onlyList the notification sub-categories a policy can subscribe to.
island_list_notification_subscriber_groupsFreeRead-onlyList every notification subscriber group.
island_list_siem_connectorsFreeRead-onlyList the configured SIEM forwarders.
island_test_notification_webhookProDestructiveDESTRUCTIVE: send a test notification to a webhook subscriber group.
island_update_notification_policyProWriteUpdate a notification policy.
island_update_notification_subscriber_groupProWriteUpdate a notification subscriber group.
island_update_siem_connectorProDestructiveDESTRUCTIVE: replace a SIEM forwarder configuration.

[Island Browser] Create a notification policy. POST /api/external/v1/notificationPolicy. Send the request body as JSON; Island documents these fields: id, createdDate, updatedDate, tenantId, updatedByUser, name, description, trigger, isEnabled, subscriberGroups, subscriberGroupIds, subCategories, conditions. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id, createdDate, updatedDate, tenantId, updatedByUser, name, description, trigger, isEnabled, subscriberGroups, subscriberGroupIds, subCategories, conditions.

[Island Browser] Create a notification subscriber group. POST /api/external/v1/notificationSubscriberGroup. Send the request body as JSON; Island documents these fields: id, createdDate, updatedDate, tenantId, updatedByUser, name, description, deliveryProviderType, targetUrls, targetGroups, targetUserIds, webhookAuthConfig, webhookHmacConfig, webhookAuthPassword, webhookAuthToken, webhookAuthParamValue, webhookHmacSharedSecret. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id, createdDate, updatedDate, tenantId, updatedByUser, name, description, deliveryProviderType, targetUrls, targetGroups, targetUserIds, webhookAuthConfig, webhookHmacConfig, webhookAuthPassword, webhookAuthToken, webhookAuthParamValue, webhookHmacSharedSecret.

[Island Browser] Create a SIEM forwarder. POST /api/external/v1/siem. Send the request body as JSON; Island documents these fields: name, type, syslogHost, syslogPort, networkProtocol, eventFormat, syslogStandard, vendor. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, type, syslogHost, syslogPort, networkProtocol, eventFormat, syslogStandard, vendor.

[Island Browser] DESTRUCTIVE: delete a notification policy. Why this is destructive: DELETE verb; alerting stops silently. DELETE /api/external/v1/notificationPolicy/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] DESTRUCTIVE: delete a notification subscriber group. Why this is destructive: DELETE verb; every policy that delivered to it stops reaching anyone. DELETE /api/external/v1/notificationSubscriberGroup/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] DESTRUCTIVE: delete a SIEM forwarder. Why this is destructive: DELETE verb; log forwarding stops silently. DELETE /api/external/v1/siem/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] Get one notification policy by ID. GET /api/external/v1/notificationPolicy/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] Get one notification subscriber group by ID. GET /api/external/v1/notificationSubscriberGroup/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island id this call targets.

[Island Browser] List the fields a notification policy condition can test. GET /api/external/v1/notificationPolicy/condition-fields. Returns Island's raw JSON. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List every notification policy. GET /api/external/v1/notificationPolicy. Returns Island's raw JSON. A policy delivers through a subscriber group - list those with island_list_notification_subscriber_groups. Build a condition from island_list_notification_condition_fields and island_list_notification_sub_categories. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List the notification sub-categories a policy can subscribe to. GET /api/external/v1/notificationPolicy/sub-categories. Returns Island's raw JSON. DEPRECATED in Island’s own document - the only operation of the 1,103 marked so. Island names no replacement; read the sub-categories from a notification policy instead. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List every notification subscriber group. GET /api/external/v1/notificationSubscriberGroup. Returns Island's raw JSON. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] List the configured SIEM forwarders. GET /api/external/v1/siem. Returns Island's raw JSON. Read the current configuration here before island_update_siem_connector, which replaces it wholesale. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

[Island Browser] DESTRUCTIVE: send a test notification to a webhook subscriber group. Why this is destructive: Dispatches a real request to a live external endpoint and can page a human. The wave-5 review promoted the equivalent Yeastar tool for the same reason. operations.csv screens it as not destructive. POST /api/external/v1/notificationPolicy/TestWebhook. Send the request body as JSON; Island documents these fields: subscriberGroupId, inlineGroup, notificationType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: subscriberGroupId, inlineGroup, notificationType.

[Island Browser] Update a notification policy. PATCH /api/external/v1/notificationPolicy/. Path parameters: id. Island's API description publishes no schema for this request body, so send only the fields you want changed, using the names the matching get tool returns. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island's API description publishes no schema for it, so send only the fields you want changed, using the names the matching get tool returns.
idstringyesRequired. The Island id this call targets.

[Island Browser] Update a notification subscriber group. PATCH /api/external/v1/notificationSubscriberGroup/. Path parameters: id. Island's API description publishes no schema for this request body, so send only the fields you want changed, using the names the matching get tool returns. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island's API description publishes no schema for it, so send only the fields you want changed, using the names the matching get tool returns.
idstringyesRequired. The Island id this call targets.

[Island Browser] DESTRUCTIVE: replace a SIEM forwarder configuration. Why this is destructive: PUT - a wholesale replacement the wiring manifest names destructive: an omitted field is cleared, and the body carries the delivery checkpoints, so a partial body can silently rewind or skip log delivery. operations.csv screens it as not destructive. PUT /api/external/v1/siem. Send the request body as JSON; Island documents these fields: id, createdDate, updatedDate, tenantId, name, apiKeyId, lastConnected, lastSuccessCheckpoint, auditingLastSuccessCheckpoint, adminActionsLastSuccessCheckpoint, type, vendor, networkProtocol, token, x509Certificate, syslogHost, syslogPort, auditsEnabled, adminActionsEnabled, syslogStandard, eventFormat, s3PartitionPath, supportedLogSourceType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: id, createdDate, updatedDate, tenantId, name, apiKeyId, lastConnected, lastSuccessCheckpoint, auditingLastSuccessCheckpoint, adminActionsLastSuccessCheckpoint, type, vendor, networkProtocol, token, x509Certificate, syslogHost, syslogPort, auditsEnabled, adminActionsEnabled, syslogStandard, eventFormat, s3PartitionPath, supportedLogSourceType.

Browser Experience Settings

ToolPlanAccessSummary
island_create_advanced_browser_settingsProWriteCreate an advanced browser settings profile.
island_create_ai_automation_browser_settingsProWriteCreate an AI automation browser settings profile.
island_create_browser_access_settingsProWriteCreate a browser access settings profile.
island_create_browser_policyProWriteCreate a browser policy.
island_create_browser_policy_evaluation_settingsProWriteCreate a browser policy evaluation settings record.
island_create_browser_updates_settingsProWriteCreate a browser updates settings profile.
island_create_digital_experience_browser_settingsProWriteCreate a digital experience browser settings profile.
island_create_endpoint_service_updates_settingsProWriteCreate an endpoint service updates settings profile.
island_create_extension_management_browser_settingsProWriteCreate an extension management browser settings profile.
island_create_island_extension_browser_settingsProWriteCreate an Island extension browser settings profile.
island_create_island_extension_updates_settingsProWriteCreate an Island extension updates settings profile.
island_create_legacy_support_browser_settingsProWriteCreate a legacy support browser settings profile.
island_create_network_browser_settingsProWriteCreate a network browser settings profile.
island_create_user_productivity_browser_settingsProWriteCreate a user productivity browser settings profile.
island_delete_advanced_browser_settingsProDestructiveDESTRUCTIVE: delete one advanced browser settings profile.
island_delete_advanced_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several advanced browser settings profiles by id in one call.
island_delete_ai_automation_browser_settingsProDestructiveDESTRUCTIVE: delete one AI automation browser settings profile.
island_delete_ai_automation_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several AI automation browser settings profiles by id in one call.
island_delete_browser_access_settingsProDestructiveDESTRUCTIVE: delete one browser access settings profile.
island_delete_browser_access_settings_by_idsProDestructiveDESTRUCTIVE: delete several browser access settings profiles by id in one call.
island_delete_browser_policyProDestructiveDESTRUCTIVE: delete one browser policy.
island_delete_browser_policy_by_idsProDestructiveDESTRUCTIVE: delete several browser policies by id in one call.
island_delete_browser_policy_evaluation_settingsProDestructiveDESTRUCTIVE: delete one browser policy evaluation settings record.
island_delete_browser_policy_evaluation_settings_by_idsProDestructiveDESTRUCTIVE: delete several browser policy evaluation settings records by id in one call.
island_delete_browser_updates_settingsProDestructiveDESTRUCTIVE: delete one browser updates settings profile.
island_delete_browser_updates_settings_by_idsProDestructiveDESTRUCTIVE: delete several browser updates settings profiles by id in one call.
island_delete_digital_experience_browser_settingsProDestructiveDESTRUCTIVE: delete one digital experience browser settings profile.
island_delete_digital_experience_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several digital experience browser settings profiles by id in one call.
island_delete_endpoint_service_updates_settingsProDestructiveDESTRUCTIVE: delete one endpoint service updates settings profile.
island_delete_endpoint_service_updates_settings_by_idsProDestructiveDESTRUCTIVE: delete several endpoint service updates settings profiles by id in one call.
island_delete_extension_management_browser_settingsProDestructiveDESTRUCTIVE: delete one extension management browser settings profile.
island_delete_extension_management_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several extension management browser settings profiles by id in one call.
island_delete_island_extension_browser_settingsProDestructiveDESTRUCTIVE: delete one Island extension browser settings profile.
island_delete_island_extension_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several Island extension browser settings profiles by id in one call.
island_delete_island_extension_updates_settingsProDestructiveDESTRUCTIVE: delete one Island extension updates settings profile.
island_delete_island_extension_updates_settings_by_idsProDestructiveDESTRUCTIVE: delete several Island extension updates settings profiles by id in one call.
island_delete_legacy_support_browser_settingsProDestructiveDESTRUCTIVE: delete one legacy support browser settings profile.
island_delete_legacy_support_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several legacy support browser settings profiles by id in one call.
island_delete_network_browser_settingsProDestructiveDESTRUCTIVE: delete one network browser settings profile.
island_delete_network_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several network browser settings profiles by id in one call.
island_delete_user_productivity_browser_settingsProDestructiveDESTRUCTIVE: delete one user productivity browser settings profile.
island_delete_user_productivity_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several user productivity browser settings profiles by id in one call.
island_export_advanced_browser_settingsFreeRead-onlyExport one advanced browser settings profile as a portable configuration.
island_export_ai_automation_browser_settingsFreeRead-onlyExport one AI automation browser settings profile as a portable configuration.
island_export_all_advanced_browser_settingsFreeRead-onlyExport every advanced browser settings profile in the tenant as one portable configuration.
island_export_all_ai_automation_browser_settingsFreeRead-onlyExport every AI automation browser settings profile in the tenant as one portable configuration.
island_export_all_browser_access_settingsFreeRead-onlyExport every browser access settings profile in the tenant as one portable configuration.
island_export_all_browser_policyFreeRead-onlyExport every browser policy in the tenant as one portable configuration.
island_export_all_browser_policy_evaluation_settingsFreeRead-onlyExport every browser policy evaluation settings record in the tenant as one portable configuration.
island_export_all_browser_updates_settingsFreeRead-onlyExport every browser updates settings profile in the tenant as one portable configuration.
island_export_all_digital_experience_browser_settingsFreeRead-onlyExport every digital experience browser settings profile in the tenant as one portable configuration.
island_export_all_endpoint_service_updates_settingsFreeRead-onlyExport every endpoint service updates settings profile in the tenant as one portable configuration.
island_export_all_extension_management_browser_settingsFreeRead-onlyExport every extension management browser settings profile in the tenant as one portable configuration.
island_export_all_island_extension_browser_settingsFreeRead-onlyExport every Island extension browser settings profile in the tenant as one portable configuration.
island_export_all_island_extension_updates_settingsFreeRead-onlyExport every Island extension updates settings profile in the tenant as one portable configuration.
island_export_all_legacy_support_browser_settingsFreeRead-onlyExport every legacy support browser settings profile in the tenant as one portable configuration.
island_export_all_network_browser_settingsFreeRead-onlyExport every network browser settings profile in the tenant as one portable configuration.
island_export_all_user_productivity_browser_settingsFreeRead-onlyExport every user productivity browser settings profile in the tenant as one portable configuration.
island_export_browser_access_settingsFreeRead-onlyExport one browser access settings profile as a portable configuration.
island_export_browser_policyFreeRead-onlyExport one browser policy as a portable configuration.
island_export_browser_policy_evaluation_settingsFreeRead-onlyExport one browser policy evaluation settings record as a portable configuration.
island_export_browser_updates_settingsFreeRead-onlyExport one browser updates settings profile as a portable configuration.
island_export_digital_experience_browser_settingsFreeRead-onlyExport one digital experience browser settings profile as a portable configuration.
island_export_endpoint_service_updates_settingsFreeRead-onlyExport one endpoint service updates settings profile as a portable configuration.
island_export_extension_management_browser_settingsFreeRead-onlyExport one extension management browser settings profile as a portable configuration.
island_export_island_extension_browser_settingsFreeRead-onlyExport one Island extension browser settings profile as a portable configuration.
island_export_island_extension_updates_settingsFreeRead-onlyExport one Island extension updates settings profile as a portable configuration.
island_export_legacy_support_browser_settingsFreeRead-onlyExport one legacy support browser settings profile as a portable configuration.
island_export_network_browser_settingsFreeRead-onlyExport one network browser settings profile as a portable configuration.
island_export_user_productivity_browser_settingsFreeRead-onlyExport one user productivity browser settings profile as a portable configuration.
island_get_advanced_browser_settingsFreeRead-onlyGet one advanced browser settings profile by its id.
island_get_advanced_browser_settings_by_idsFreeRead-onlyGet several advanced browser settings profiles by id in one call.
island_get_ai_automation_browser_settingsFreeRead-onlyGet one AI automation browser settings profile by its id.
island_get_ai_automation_browser_settings_by_idsFreeRead-onlyGet several AI automation browser settings profiles by id in one call.
island_get_browser_access_settingsFreeRead-onlyGet one browser access settings profile by its id.
island_get_browser_access_settings_by_idsFreeRead-onlyGet several browser access settings profiles by id in one call.
island_get_browser_policyFreeRead-onlyGet one browser policy by its id.
island_get_browser_policy_by_idsFreeRead-onlyGet several browser policies by id in one call.
island_get_browser_policy_evaluation_settingsFreeRead-onlyGet one browser policy evaluation settings record by its id.
island_get_browser_policy_evaluation_settings_by_idsFreeRead-onlyGet several browser policy evaluation settings records by id in one call.
island_get_browser_updates_settingsFreeRead-onlyGet one browser updates settings profile by its id.
island_get_browser_updates_settings_by_idsFreeRead-onlyGet several browser updates settings profiles by id in one call.
island_get_digital_experience_browser_settingsFreeRead-onlyGet one digital experience browser settings profile by its id.
island_get_digital_experience_browser_settings_by_idsFreeRead-onlyGet several digital experience browser settings profiles by id in one call.
island_get_endpoint_service_updates_settingsFreeRead-onlyGet one endpoint service updates settings profile by its id.
island_get_endpoint_service_updates_settings_by_idsFreeRead-onlyGet several endpoint service updates settings profiles by id in one call.
island_get_extension_management_browser_settingsFreeRead-onlyGet one extension management browser settings profile by its id.
island_get_extension_management_browser_settings_by_idsFreeRead-onlyGet several extension management browser settings profiles by id in one call.
island_get_island_extension_browser_settingsFreeRead-onlyGet one Island extension browser settings profile by its id.
island_get_island_extension_browser_settings_by_idsFreeRead-onlyGet several Island extension browser settings profiles by id in one call.
island_get_island_extension_updates_settingsFreeRead-onlyGet one Island extension updates settings profile by its id.
island_get_island_extension_updates_settings_by_idsFreeRead-onlyGet several Island extension updates settings profiles by id in one call.
island_get_legacy_support_browser_settingsFreeRead-onlyGet one legacy support browser settings profile by its id.
island_get_legacy_support_browser_settings_by_idsFreeRead-onlyGet several legacy support browser settings profiles by id in one call.
island_get_network_browser_settingsFreeRead-onlyGet one network browser settings profile by its id.
island_get_network_browser_settings_by_idsFreeRead-onlyGet several network browser settings profiles by id in one call.
island_get_user_productivity_browser_settingsFreeRead-onlyGet one user productivity browser settings profile by its id.
island_get_user_productivity_browser_settings_by_idsFreeRead-onlyGet several user productivity browser settings profiles by id in one call.
island_list_advanced_browser_settingsFreeRead-onlyList the advanced browser settings profiles in the tenant.
island_list_advanced_browser_settings_usagesFreeRead-onlyList the Island objects that reference one advanced browser settings profile.
island_list_ai_automation_browser_settingsFreeRead-onlyList the AI automation browser settings profiles in the tenant.
island_list_ai_automation_browser_settings_usagesFreeRead-onlyList the Island objects that reference one AI automation browser settings profile.
island_list_browser_access_settingsFreeRead-onlyList the browser access settings profiles in the tenant.
island_list_browser_access_settings_usagesFreeRead-onlyList the Island objects that reference one browser access settings profile.
island_list_browser_policyFreeRead-onlyList the browser policies in the tenant.
island_list_browser_policy_evaluation_settingsFreeRead-onlyList the browser policy evaluation settings records in the tenant.
island_list_browser_policy_evaluation_settings_usagesFreeRead-onlyList the Island objects that reference one browser policy evaluation settings record.
island_list_browser_policy_usagesFreeRead-onlyList the Island objects that reference one browser policy.
island_list_browser_updates_settingsFreeRead-onlyList the browser updates settings profiles in the tenant.
island_list_browser_updates_settings_usagesFreeRead-onlyList the Island objects that reference one browser updates settings profile.
island_list_digital_experience_browser_settingsFreeRead-onlyList the digital experience browser settings profiles in the tenant.
island_list_digital_experience_browser_settings_usagesFreeRead-onlyList the Island objects that reference one digital experience browser settings profile.
island_list_endpoint_service_updates_settingsFreeRead-onlyList the endpoint service updates settings profiles in the tenant.
island_list_endpoint_service_updates_settings_usagesFreeRead-onlyList the Island objects that reference one endpoint service updates settings profile.
island_list_extension_management_browser_settingsFreeRead-onlyList the extension management browser settings profiles in the tenant.
island_list_extension_management_browser_settings_usagesFreeRead-onlyList the Island objects that reference one extension management browser settings profile.
island_list_island_extension_browser_settingsFreeRead-onlyList the Island extension browser settings profiles in the tenant.
island_list_island_extension_browser_settings_usagesFreeRead-onlyList the Island objects that reference one Island extension browser settings profile.
island_list_island_extension_updates_settingsFreeRead-onlyList the Island extension updates settings profiles in the tenant.
island_list_island_extension_updates_settings_usagesFreeRead-onlyList the Island objects that reference one Island extension updates settings profile.
island_list_legacy_support_browser_settingsFreeRead-onlyList the legacy support browser settings profiles in the tenant.
island_list_legacy_support_browser_settings_usagesFreeRead-onlyList the Island objects that reference one legacy support browser settings profile.
island_list_network_browser_settingsFreeRead-onlyList the network browser settings profiles in the tenant.
island_list_network_browser_settings_usagesFreeRead-onlyList the Island objects that reference one network browser settings profile.
island_list_user_productivity_browser_settingsFreeRead-onlyList the user productivity browser settings profiles in the tenant.
island_list_user_productivity_browser_settings_usagesFreeRead-onlyList the Island objects that reference one user productivity browser settings profile.
island_reorder_advanced_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the advanced browser settings profiles.
island_reorder_ai_automation_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the AI automation browser settings profiles.
island_reorder_browser_access_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the browser access settings profiles.
island_reorder_browser_updates_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the browser updates settings profiles.
island_reorder_digital_experience_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the digital experience browser settings profiles.
island_reorder_endpoint_service_updates_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the endpoint service updates settings profiles.
island_reorder_extension_management_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the extension management browser settings profiles.
island_reorder_island_extension_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the Island extension browser settings profiles.
island_reorder_island_extension_updates_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the Island extension updates settings profiles.
island_reorder_legacy_support_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the legacy support browser settings profiles.
island_reorder_network_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the network browser settings profiles.
island_reorder_user_productivity_browser_settingsProDestructiveDESTRUCTIVE: set the complete evaluation order of the user productivity browser settings profiles.
island_update_advanced_browser_settingsProWriteUpdate part of an advanced browser settings profile.
island_update_ai_automation_browser_settingsProWriteUpdate part of an AI automation browser settings profile.
island_update_browser_access_settingsProWriteUpdate part of a browser access settings profile.
island_update_browser_policyProWriteUpdate part of a browser policy.
island_update_browser_policy_evaluation_settingsProWriteUpdate part of a browser policy evaluation settings record.
island_update_browser_updates_settingsProWriteUpdate part of a browser updates settings profile.
island_update_digital_experience_browser_settingsProWriteUpdate part of a digital experience browser settings profile.
island_update_endpoint_service_updates_settingsProWriteUpdate part of an endpoint service updates settings profile.
island_update_extension_management_browser_settingsProWriteUpdate part of an extension management browser settings profile.
island_update_island_extension_browser_settingsProWriteUpdate part of an Island extension browser settings profile.
island_update_island_extension_updates_settingsProWriteUpdate part of an Island extension updates settings profile.
island_update_legacy_support_browser_settingsProWriteUpdate part of a legacy support browser settings profile.
island_update_network_browser_settingsProWriteUpdate part of a network browser settings profile.
island_update_user_productivity_browser_settingsProWriteUpdate part of a user productivity browser settings profile.
island_upsert_browser_policy_evaluation_settingsProDestructiveDESTRUCTIVE: create or replace the browser policy evaluation settings record.

[Island Browser] Create an advanced browser settings profile. POST /api/external/v1/AdvancedBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created advanced browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an AI automation browser settings profile. POST /api/external/v1/AiAutomationBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created AI automation browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a browser access settings profile. POST /api/external/v1/BrowserAccessSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created browser access settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a browser policy. POST /api/external/v1/browserPolicy. Island requires only name (schema CreateManagementBrowserPolicyRequest). audienceConfigurations is a list of audience blocks; each block needs its own name (up to 120 characters) and takes description (up to 300), priority (an integer greater than 0, default 1, where LOWER values have higher priority), enabled (default true) and configuration. A block's chromiumSettings and dynamicSettings are JSON STRINGS, and chromiumSettingsApplications / dynamicSettingsApplications attach an object by section, field and entity id. Returns Island's raw JSON. Island answers 201 with the created browser policy.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, audienceConfigurations.

[Island Browser] Create a browser policy evaluation settings record. POST /api/external/v1/browserPolicyEvaluationSettings. Island documents one field, unionAcrossPoliciesSettingKeys: the setting keys Island unions across browser policies instead of resolving by policy precedence. Island publishes no list of the accepted key names anywhere in its API description, so use the ones the read tools already return. Returns Island's raw JSON. Island answers 201 with the created browser policy evaluation settings record.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: unionAcrossPoliciesSettingKeys.

[Island Browser] Create a browser updates settings profile. POST /api/external/v1/BrowserUpdatesSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created browser updates settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a digital experience browser settings profile. POST /api/external/v1/DigitalExperienceBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created digital experience browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an endpoint service updates settings profile. POST /api/external/v1/EndpointServiceUpdatesSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created endpoint service updates settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an extension management browser settings profile. POST /api/external/v1/ExtensionManagementBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created extension management browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an Island extension browser settings profile. POST /api/external/v1/IslandExtensionBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created Island extension browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an Island extension updates settings profile. POST /api/external/v1/IslandExtensionUpdatesSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created Island extension updates settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a legacy support browser settings profile. POST /api/external/v1/LegacySupportBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created legacy support browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a network browser settings profile. POST /api/external/v1/NetworkBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created network browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a user productivity browser settings profile. POST /api/external/v1/UserProductivityBrowserSettings. Island requires name, priority and hierarchicalPrecedence (schema BrowserSettingsAudienceConfigurationRequest). name is 1-120 characters and description up to 300; priority is an integer greater than 0 and defaults to 1; hierarchicalPrecedence is BeforeSubtenant (the default) or AfterSubtenant. configuration carries the settings themselves - chromiumSettings and dynamicSettings are JSON STRINGS rather than objects, and the chromiumSettingsApplications / dynamicSettings* arrays attach an Island object to one setting by section, field and entity id. sourceConditions and audience take {"id":"..."} object references. Returns Island's raw JSON. Island answers 201 with the created user productivity browser settings profile.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] DESTRUCTIVE: delete one advanced browser settings profile. Why this is destructive: single-entity DELETE - it removes the advanced browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_advanced_browser_settings_usages first. DELETE /api/external/v1/AdvancedBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The advanced browser settings profile id, as island_list_advanced_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several advanced browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every advanced browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_advanced_browser_settings_usages for each id first. DELETE /api/external/v1/AdvancedBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of advanced browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one AI automation browser settings profile. Why this is destructive: single-entity DELETE - it removes the AI automation browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_ai_automation_browser_settings_usages first. DELETE /api/external/v1/AiAutomationBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI automation browser settings profile id, as island_list_ai_automation_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several AI automation browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every AI automation browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_ai_automation_browser_settings_usages for each id first. DELETE /api/external/v1/AiAutomationBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of AI automation browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one browser access settings profile. Why this is destructive: single-entity DELETE - it removes the browser access settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_browser_access_settings_usages first. DELETE /api/external/v1/BrowserAccessSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser access settings profile id, as island_list_browser_access_settings returns it.

[Island Browser] DESTRUCTIVE: delete several browser access settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every browser access settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_browser_access_settings_usages for each id first. DELETE /api/external/v1/BrowserAccessSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser access settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one browser policy. Why this is destructive: single-entity DELETE - it removes the browser policy outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_browser_policy_usages first. DELETE /api/external/v1/browserPolicy/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy id, as island_list_browser_policy returns it.

[Island Browser] DESTRUCTIVE: delete several browser policies by id in one call. Why this is destructive: bulk DELETE - one call removes every browser policy whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_browser_policy_usages for each id first. DELETE /api/external/v1/browserPolicy/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser policy ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one browser policy evaluation settings record. Why this is destructive: single-entity DELETE - it removes the browser policy evaluation settings record outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_browser_policy_evaluation_settings_usages first. DELETE /api/external/v1/browserPolicyEvaluationSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy evaluation settings record id, as island_list_browser_policy_evaluation_settings returns it.

[Island Browser] DESTRUCTIVE: delete several browser policy evaluation settings records by id in one call. Why this is destructive: bulk DELETE - one call removes every browser policy evaluation settings record whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_browser_policy_evaluation_settings_usages for each id first. DELETE /api/external/v1/browserPolicyEvaluationSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser policy evaluation settings record ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one browser updates settings profile. Why this is destructive: single-entity DELETE - it removes the browser updates settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_browser_updates_settings_usages first. DELETE /api/external/v1/BrowserUpdatesSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser updates settings profile id, as island_list_browser_updates_settings returns it.

[Island Browser] DESTRUCTIVE: delete several browser updates settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every browser updates settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_browser_updates_settings_usages for each id first. DELETE /api/external/v1/BrowserUpdatesSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser updates settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one digital experience browser settings profile. Why this is destructive: single-entity DELETE - it removes the digital experience browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_digital_experience_browser_settings_usages first. DELETE /api/external/v1/DigitalExperienceBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The digital experience browser settings profile id, as island_list_digital_experience_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several digital experience browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every digital experience browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_digital_experience_browser_settings_usages for each id first. DELETE /api/external/v1/DigitalExperienceBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of digital experience browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one endpoint service updates settings profile. Why this is destructive: single-entity DELETE - it removes the endpoint service updates settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_endpoint_service_updates_settings_usages first. DELETE /api/external/v1/EndpointServiceUpdatesSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint service updates settings profile id, as island_list_endpoint_service_updates_settings returns it.

[Island Browser] DESTRUCTIVE: delete several endpoint service updates settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every endpoint service updates settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_endpoint_service_updates_settings_usages for each id first. DELETE /api/external/v1/EndpointServiceUpdatesSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of endpoint service updates settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one extension management browser settings profile. Why this is destructive: single-entity DELETE - it removes the extension management browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_extension_management_browser_settings_usages first. DELETE /api/external/v1/ExtensionManagementBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The extension management browser settings profile id, as island_list_extension_management_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several extension management browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every extension management browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_extension_management_browser_settings_usages for each id first. DELETE /api/external/v1/ExtensionManagementBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of extension management browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one Island extension browser settings profile. Why this is destructive: single-entity DELETE - it removes the Island extension browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_island_extension_browser_settings_usages first. DELETE /api/external/v1/IslandExtensionBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension browser settings profile id, as island_list_island_extension_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several Island extension browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every Island extension browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_island_extension_browser_settings_usages for each id first. DELETE /api/external/v1/IslandExtensionBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of Island extension browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one Island extension updates settings profile. Why this is destructive: single-entity DELETE - it removes the Island extension updates settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_island_extension_updates_settings_usages first. DELETE /api/external/v1/IslandExtensionUpdatesSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension updates settings profile id, as island_list_island_extension_updates_settings returns it.

[Island Browser] DESTRUCTIVE: delete several Island extension updates settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every Island extension updates settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_island_extension_updates_settings_usages for each id first. DELETE /api/external/v1/IslandExtensionUpdatesSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of Island extension updates settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one legacy support browser settings profile. Why this is destructive: single-entity DELETE - it removes the legacy support browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_legacy_support_browser_settings_usages first. DELETE /api/external/v1/LegacySupportBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The legacy support browser settings profile id, as island_list_legacy_support_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several legacy support browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every legacy support browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_legacy_support_browser_settings_usages for each id first. DELETE /api/external/v1/LegacySupportBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of legacy support browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one network browser settings profile. Why this is destructive: single-entity DELETE - it removes the network browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_network_browser_settings_usages first. DELETE /api/external/v1/NetworkBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network browser settings profile id, as island_list_network_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several network browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every network browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_network_browser_settings_usages for each id first. DELETE /api/external/v1/NetworkBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of network browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one user productivity browser settings profile. Why this is destructive: single-entity DELETE - it removes the user productivity browser settings profile outright, with no dry run and no undo. Island marks all 66 of its single-entity deletes x-mcp-destructive false and the platform rule that every DELETE is destructive overrides that. Island's document publishes no refusal for one that something still references, so run island_list_user_productivity_browser_settings_usages first. DELETE /api/external/v1/UserProductivityBrowserSettings/. Path parameters: id. Returns Island's raw JSON. Island declares no success response for this call at all, only 400 and 404, so StackJack answers {"success":true} when Island returns an empty body.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The user productivity browser settings profile id, as island_list_user_productivity_browser_settings returns it.

[Island Browser] DESTRUCTIVE: delete several user productivity browser settings profiles by id in one call. Why this is destructive: bulk DELETE - one call removes every user productivity browser settings profile whose id is in the body, with no dry run and no undo. Island's document publishes no refusal for one that something still references, so check island_list_user_productivity_browser_settings_usages for each id first. DELETE /api/external/v1/UserProductivityBrowserSettings/DeleteByIds. Island's ActionByIdsRequest body documents exactly one field: ids, an array of user productivity browser settings profile ids. Returns Island's raw JSON. Island declares 200 and 204 with no body for this call, so StackJack answers {"success":true} on success.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] Export one advanced browser settings profile as a portable configuration. GET /api/external/v1/AdvancedBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_advanced_browser_settings exports every advanced browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The advanced browser settings profile id, as island_list_advanced_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI automation browser settings profile as a portable configuration. GET /api/external/v1/AiAutomationBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_ai_automation_browser_settings exports every AI automation browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI automation browser settings profile id, as island_list_ai_automation_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every advanced browser settings profile in the tenant as one portable configuration. GET /api/external/v1/AdvancedBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_advanced_browser_settings exports a single advanced browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every AI automation browser settings profile in the tenant as one portable configuration. GET /api/external/v1/AiAutomationBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_ai_automation_browser_settings exports a single AI automation browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every browser access settings profile in the tenant as one portable configuration. GET /api/external/v1/BrowserAccessSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_browser_access_settings exports a single browser access settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every browser policy in the tenant as one portable configuration. GET /api/external/v1/browserPolicy/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_browser_policy exports a single browser policy by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every browser policy evaluation settings record in the tenant as one portable configuration. GET /api/external/v1/browserPolicyEvaluationSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_browser_policy_evaluation_settings exports a single browser policy evaluation settings record by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every browser updates settings profile in the tenant as one portable configuration. GET /api/external/v1/BrowserUpdatesSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_browser_updates_settings exports a single browser updates settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every digital experience browser settings profile in the tenant as one portable configuration. GET /api/external/v1/DigitalExperienceBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_digital_experience_browser_settings exports a single digital experience browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every endpoint service updates settings profile in the tenant as one portable configuration. GET /api/external/v1/EndpointServiceUpdatesSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_endpoint_service_updates_settings exports a single endpoint service updates settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every extension management browser settings profile in the tenant as one portable configuration. GET /api/external/v1/ExtensionManagementBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_extension_management_browser_settings exports a single extension management browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every Island extension browser settings profile in the tenant as one portable configuration. GET /api/external/v1/IslandExtensionBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_island_extension_browser_settings exports a single Island extension browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every Island extension updates settings profile in the tenant as one portable configuration. GET /api/external/v1/IslandExtensionUpdatesSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_island_extension_updates_settings exports a single Island extension updates settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every legacy support browser settings profile in the tenant as one portable configuration. GET /api/external/v1/LegacySupportBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_legacy_support_browser_settings exports a single legacy support browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every network browser settings profile in the tenant as one portable configuration. GET /api/external/v1/NetworkBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_network_browser_settings exports a single network browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every user productivity browser settings profile in the tenant as one portable configuration. GET /api/external/v1/UserProductivityBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This is the WHOLE-TENANT export; island_export_user_productivity_browser_settings exports a single user productivity browser settings profile by id. Singular and plural are the same words in this family, so the two tools differ only by the all in the name.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one browser access settings profile as a portable configuration. GET /api/external/v1/BrowserAccessSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_browser_access_settings exports every browser access settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser access settings profile id, as island_list_browser_access_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one browser policy as a portable configuration. GET /api/external/v1/browserPolicy/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_browser_policy exports every browser policy in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy id, as island_list_browser_policy returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one browser policy evaluation settings record as a portable configuration. GET /api/external/v1/browserPolicyEvaluationSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_browser_policy_evaluation_settings exports every browser policy evaluation settings record in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy evaluation settings record id, as island_list_browser_policy_evaluation_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one browser updates settings profile as a portable configuration. GET /api/external/v1/BrowserUpdatesSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_browser_updates_settings exports every browser updates settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser updates settings profile id, as island_list_browser_updates_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one digital experience browser settings profile as a portable configuration. GET /api/external/v1/DigitalExperienceBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_digital_experience_browser_settings exports every digital experience browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The digital experience browser settings profile id, as island_list_digital_experience_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one endpoint service updates settings profile as a portable configuration. GET /api/external/v1/EndpointServiceUpdatesSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_endpoint_service_updates_settings exports every endpoint service updates settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint service updates settings profile id, as island_list_endpoint_service_updates_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one extension management browser settings profile as a portable configuration. GET /api/external/v1/ExtensionManagementBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_extension_management_browser_settings exports every extension management browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The extension management browser settings profile id, as island_list_extension_management_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one Island extension browser settings profile as a portable configuration. GET /api/external/v1/IslandExtensionBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_island_extension_browser_settings exports every Island extension browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension browser settings profile id, as island_list_island_extension_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one Island extension updates settings profile as a portable configuration. GET /api/external/v1/IslandExtensionUpdatesSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_island_extension_updates_settings exports every Island extension updates settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension updates settings profile id, as island_list_island_extension_updates_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one legacy support browser settings profile as a portable configuration. GET /api/external/v1/LegacySupportBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_legacy_support_browser_settings exports every legacy support browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The legacy support browser settings profile id, as island_list_legacy_support_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one network browser settings profile as a portable configuration. GET /api/external/v1/NetworkBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_network_browser_settings exports every network browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network browser settings profile id, as island_list_network_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one user productivity browser settings profile as a portable configuration. GET /api/external/v1/UserProductivityBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_user_productivity_browser_settings exports every user productivity browser settings profile in the tenant in one call instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The user productivity browser settings profile id, as island_list_user_productivity_browser_settings returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Get one advanced browser settings profile by its id. GET /api/external/v1/AdvancedBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The advanced browser settings profile id, as island_list_advanced_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several advanced browser settings profiles by id in one call. POST /api/external/v1/AdvancedBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of advanced browser settings profile ids. Get them from island_list_advanced_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one AI automation browser settings profile by its id. GET /api/external/v1/AiAutomationBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI automation browser settings profile id, as island_list_ai_automation_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several AI automation browser settings profiles by id in one call. POST /api/external/v1/AiAutomationBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of AI automation browser settings profile ids. Get them from island_list_ai_automation_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one browser access settings profile by its id. GET /api/external/v1/BrowserAccessSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser access settings profile id, as island_list_browser_access_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several browser access settings profiles by id in one call. POST /api/external/v1/BrowserAccessSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser access settings profile ids. Get them from island_list_browser_access_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one browser policy by its id. GET /api/external/v1/browserPolicy/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy id, as island_list_browser_policy returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several browser policies by id in one call. POST /api/external/v1/browserPolicy/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser policy ids. Get them from island_list_browser_policy. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one browser policy evaluation settings record by its id. GET /api/external/v1/browserPolicyEvaluationSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy evaluation settings record id, as island_list_browser_policy_evaluation_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several browser policy evaluation settings records by id in one call. POST /api/external/v1/browserPolicyEvaluationSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser policy evaluation settings record ids. Get them from island_list_browser_policy_evaluation_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one browser updates settings profile by its id. GET /api/external/v1/BrowserUpdatesSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser updates settings profile id, as island_list_browser_updates_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several browser updates settings profiles by id in one call. POST /api/external/v1/BrowserUpdatesSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of browser updates settings profile ids. Get them from island_list_browser_updates_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one digital experience browser settings profile by its id. GET /api/external/v1/DigitalExperienceBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The digital experience browser settings profile id, as island_list_digital_experience_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several digital experience browser settings profiles by id in one call. POST /api/external/v1/DigitalExperienceBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of digital experience browser settings profile ids. Get them from island_list_digital_experience_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one endpoint service updates settings profile by its id. GET /api/external/v1/EndpointServiceUpdatesSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint service updates settings profile id, as island_list_endpoint_service_updates_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several endpoint service updates settings profiles by id in one call. POST /api/external/v1/EndpointServiceUpdatesSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of endpoint service updates settings profile ids. Get them from island_list_endpoint_service_updates_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one extension management browser settings profile by its id. GET /api/external/v1/ExtensionManagementBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The extension management browser settings profile id, as island_list_extension_management_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several extension management browser settings profiles by id in one call. POST /api/external/v1/ExtensionManagementBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of extension management browser settings profile ids. Get them from island_list_extension_management_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one Island extension browser settings profile by its id. GET /api/external/v1/IslandExtensionBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension browser settings profile id, as island_list_island_extension_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several Island extension browser settings profiles by id in one call. POST /api/external/v1/IslandExtensionBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of Island extension browser settings profile ids. Get them from island_list_island_extension_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one Island extension updates settings profile by its id. GET /api/external/v1/IslandExtensionUpdatesSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension updates settings profile id, as island_list_island_extension_updates_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several Island extension updates settings profiles by id in one call. POST /api/external/v1/IslandExtensionUpdatesSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of Island extension updates settings profile ids. Get them from island_list_island_extension_updates_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one legacy support browser settings profile by its id. GET /api/external/v1/LegacySupportBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The legacy support browser settings profile id, as island_list_legacy_support_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several legacy support browser settings profiles by id in one call. POST /api/external/v1/LegacySupportBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of legacy support browser settings profile ids. Get them from island_list_legacy_support_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one network browser settings profile by its id. GET /api/external/v1/NetworkBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network browser settings profile id, as island_list_network_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several network browser settings profiles by id in one call. POST /api/external/v1/NetworkBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of network browser settings profile ids. Get them from island_list_network_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one user productivity browser settings profile by its id. GET /api/external/v1/UserProductivityBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The user productivity browser settings profile id, as island_list_user_productivity_browser_settings returns it.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several user productivity browser settings profiles by id in one call. POST /api/external/v1/UserProductivityBrowserSettings/GetByIds. Optional filters: includeType. Island's ActionByIdsRequest body documents exactly one field: ids, an array of user productivity browser settings profile ids. Get them from island_list_user_productivity_browser_settings. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the advanced browser settings profiles in the tenant. GET /api/external/v1/AdvancedBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_advanced_browser_settings, island_update_advanced_browser_settings, island_delete_advanced_browser_settings and island_export_advanced_browser_settings take. island_reorder_advanced_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one advanced browser settings profile. GET /api/external/v1/AdvancedBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_advanced_browser_settings: it is what shows the advanced browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The advanced browser settings profile id, as island_list_advanced_browser_settings returns it.

[Island Browser] List the AI automation browser settings profiles in the tenant. GET /api/external/v1/AiAutomationBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_ai_automation_browser_settings, island_update_ai_automation_browser_settings, island_delete_ai_automation_browser_settings and island_export_ai_automation_browser_settings take. island_reorder_ai_automation_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one AI automation browser settings profile. GET /api/external/v1/AiAutomationBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_ai_automation_browser_settings: it is what shows the AI automation browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI automation browser settings profile id, as island_list_ai_automation_browser_settings returns it.

[Island Browser] List the browser access settings profiles in the tenant. GET /api/external/v1/BrowserAccessSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_browser_access_settings, island_update_browser_access_settings, island_delete_browser_access_settings and island_export_browser_access_settings take. island_reorder_browser_access_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one browser access settings profile. GET /api/external/v1/BrowserAccessSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_browser_access_settings: it is what shows the browser access settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser access settings profile id, as island_list_browser_access_settings returns it.

[Island Browser] List the browser policies in the tenant. GET /api/external/v1/browserPolicy. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_browser_policy, island_update_browser_policy, island_delete_browser_policy and island_export_browser_policy take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the browser policy evaluation settings records in the tenant. GET /api/external/v1/browserPolicyEvaluationSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_browser_policy_evaluation_settings, island_update_browser_policy_evaluation_settings, island_delete_browser_policy_evaluation_settings and island_export_browser_policy_evaluation_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one browser policy evaluation settings record. GET /api/external/v1/browserPolicyEvaluationSettings/usages/. Path parameters: id. Returns Island's raw JSON. Run this before island_delete_browser_policy_evaluation_settings: it is what shows the browser policy evaluation settings record is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy evaluation settings record id, as island_list_browser_policy_evaluation_settings returns it.

[Island Browser] List the Island objects that reference one browser policy. GET /api/external/v1/browserPolicy/usages/. Path parameters: id. Returns Island's raw JSON. A browser policy binds browser-settings profiles to an audience, so run this before island_delete_browser_policy: it is what shows the policy is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser policy id, as island_list_browser_policy returns it.

[Island Browser] List the browser updates settings profiles in the tenant. GET /api/external/v1/BrowserUpdatesSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_browser_updates_settings, island_update_browser_updates_settings, island_delete_browser_updates_settings and island_export_browser_updates_settings take. island_reorder_browser_updates_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one browser updates settings profile. GET /api/external/v1/BrowserUpdatesSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_browser_updates_settings: it is what shows the browser updates settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The browser updates settings profile id, as island_list_browser_updates_settings returns it.

[Island Browser] List the digital experience browser settings profiles in the tenant. GET /api/external/v1/DigitalExperienceBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_digital_experience_browser_settings, island_update_digital_experience_browser_settings, island_delete_digital_experience_browser_settings and island_export_digital_experience_browser_settings take. island_reorder_digital_experience_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one digital experience browser settings profile. GET /api/external/v1/DigitalExperienceBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_digital_experience_browser_settings: it is what shows the digital experience browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The digital experience browser settings profile id, as island_list_digital_experience_browser_settings returns it.

[Island Browser] List the endpoint service updates settings profiles in the tenant. GET /api/external/v1/EndpointServiceUpdatesSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_endpoint_service_updates_settings, island_update_endpoint_service_updates_settings, island_delete_endpoint_service_updates_settings and island_export_endpoint_service_updates_settings take. island_reorder_endpoint_service_updates_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one endpoint service updates settings profile. GET /api/external/v1/EndpointServiceUpdatesSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_endpoint_service_updates_settings: it is what shows the endpoint service updates settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint service updates settings profile id, as island_list_endpoint_service_updates_settings returns it.

[Island Browser] List the extension management browser settings profiles in the tenant. GET /api/external/v1/ExtensionManagementBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_extension_management_browser_settings, island_update_extension_management_browser_settings, island_delete_extension_management_browser_settings and island_export_extension_management_browser_settings take. island_reorder_extension_management_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one extension management browser settings profile. GET /api/external/v1/ExtensionManagementBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_extension_management_browser_settings: it is what shows the extension management browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The extension management browser settings profile id, as island_list_extension_management_browser_settings returns it.

[Island Browser] List the Island extension browser settings profiles in the tenant. GET /api/external/v1/IslandExtensionBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_island_extension_browser_settings, island_update_island_extension_browser_settings, island_delete_island_extension_browser_settings and island_export_island_extension_browser_settings take. island_reorder_island_extension_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one Island extension browser settings profile. GET /api/external/v1/IslandExtensionBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_island_extension_browser_settings: it is what shows the Island extension browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension browser settings profile id, as island_list_island_extension_browser_settings returns it.

[Island Browser] List the Island extension updates settings profiles in the tenant. GET /api/external/v1/IslandExtensionUpdatesSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_island_extension_updates_settings, island_update_island_extension_updates_settings, island_delete_island_extension_updates_settings and island_export_island_extension_updates_settings take. island_reorder_island_extension_updates_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one Island extension updates settings profile. GET /api/external/v1/IslandExtensionUpdatesSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_island_extension_updates_settings: it is what shows the Island extension updates settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The Island extension updates settings profile id, as island_list_island_extension_updates_settings returns it.

[Island Browser] List the legacy support browser settings profiles in the tenant. GET /api/external/v1/LegacySupportBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_legacy_support_browser_settings, island_update_legacy_support_browser_settings, island_delete_legacy_support_browser_settings and island_export_legacy_support_browser_settings take. island_reorder_legacy_support_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one legacy support browser settings profile. GET /api/external/v1/LegacySupportBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_legacy_support_browser_settings: it is what shows the legacy support browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The legacy support browser settings profile id, as island_list_legacy_support_browser_settings returns it.

[Island Browser] List the network browser settings profiles in the tenant. GET /api/external/v1/NetworkBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_network_browser_settings, island_update_network_browser_settings, island_delete_network_browser_settings and island_export_network_browser_settings take. island_reorder_network_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one network browser settings profile. GET /api/external/v1/NetworkBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_network_browser_settings: it is what shows the network browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network browser settings profile id, as island_list_network_browser_settings returns it.

[Island Browser] List the user productivity browser settings profiles in the tenant. GET /api/external/v1/UserProductivityBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island returns the whole collection here: this endpoint publishes no page size, no cursor and no total, so expect every row in one response. Each row's id is the id island_get_user_productivity_browser_settings, island_update_user_productivity_browser_settings, island_delete_user_productivity_browser_settings and island_export_user_productivity_browser_settings take. island_reorder_user_productivity_browser_settings orders the same rows.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Which related data Island returns with each row. Island's IncludeType enum documents None, Default, All, Update and DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference one user productivity browser settings profile. GET /api/external/v1/UserProductivityBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Island's own description calls this profile one that browser policies reference, so run this before island_delete_user_productivity_browser_settings: it is what shows the user productivity browser settings profile is still in use. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The user productivity browser settings profile id, as island_list_user_productivity_browser_settings returns it.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the advanced browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/AdvancedBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_advanced_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the AI automation browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/AiAutomationBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_ai_automation_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the browser access settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/BrowserAccessSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_browser_access_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the browser updates settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/BrowserUpdatesSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_browser_updates_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the digital experience browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/DigitalExperienceBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_digital_experience_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the endpoint service updates settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/EndpointServiceUpdatesSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_endpoint_service_updates_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the extension management browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/ExtensionManagementBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_extension_management_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the Island extension browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/IslandExtensionBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_island_extension_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the Island extension updates settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/IslandExtensionUpdatesSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_island_extension_updates_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the legacy support browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/LegacySupportBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_legacy_support_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the network browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/NetworkBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_network_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the user productivity browser settings profiles. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order, so this replaces the evaluation order wholesale and a row left out of the body moves. Island does not mark this destructive; the platform's wholesale-replacement rule does. POST /api/external/v1/UserProductivityBrowserSettings/reorder. ReorderRequest.entries documents exactly two fields per entry, id and priority (1-based). Send one entry for every reorderable row rather than only the ones that move; get the ids and their current order from island_list_user_productivity_browser_settings. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] Update part of an advanced browser settings profile. PATCH /api/external/v1/AdvancedBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The advanced browser settings profile id, as island_list_advanced_browser_settings returns it.

[Island Browser] Update part of an AI automation browser settings profile. PATCH /api/external/v1/AiAutomationBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The AI automation browser settings profile id, as island_list_ai_automation_browser_settings returns it.

[Island Browser] Update part of a browser access settings profile. PATCH /api/external/v1/BrowserAccessSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The browser access settings profile id, as island_list_browser_access_settings returns it.

[Island Browser] Update part of a browser policy. PATCH /api/external/v1/browserPolicy/. Path parameters: id. Nothing is required: name, version, description, lastAppliedDate and audienceConfigurations are all optional, so send only what changes. audienceConfigurations is typed as the COMPLETE list of audience blocks, so send every block the policy should keep - omit the field entirely to leave the stored list alone. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, version, description, lastAppliedDate, audienceConfigurations.
idstringyesRequired. The browser policy id, as island_list_browser_policy returns it.

[Island Browser] Update part of a browser policy evaluation settings record. PATCH /api/external/v1/browserPolicyEvaluationSettings/. Path parameters: id. Nothing is required. unionAcrossPoliciesSettingKeys is the complete list of setting keys unioned across browser policies, so send every key the record should keep, or omit the field to leave the stored list alone. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: unionAcrossPoliciesSettingKeys.
idstringyesRequired. The browser policy evaluation settings record id, as island_list_browser_policy_evaluation_settings returns it.

[Island Browser] Update part of a browser updates settings profile. PATCH /api/external/v1/BrowserUpdatesSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The browser updates settings profile id, as island_list_browser_updates_settings returns it.

[Island Browser] Update part of a digital experience browser settings profile. PATCH /api/external/v1/DigitalExperienceBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The digital experience browser settings profile id, as island_list_digital_experience_browser_settings returns it.

[Island Browser] Update part of an endpoint service updates settings profile. PATCH /api/external/v1/EndpointServiceUpdatesSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The endpoint service updates settings profile id, as island_list_endpoint_service_updates_settings returns it.

[Island Browser] Update part of an extension management browser settings profile. PATCH /api/external/v1/ExtensionManagementBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The extension management browser settings profile id, as island_list_extension_management_browser_settings returns it.

[Island Browser] Update part of an Island extension browser settings profile. PATCH /api/external/v1/IslandExtensionBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The Island extension browser settings profile id, as island_list_island_extension_browser_settings returns it.

[Island Browser] Update part of an Island extension updates settings profile. PATCH /api/external/v1/IslandExtensionUpdatesSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The Island extension updates settings profile id, as island_list_island_extension_updates_settings returns it.

[Island Browser] Update part of a legacy support browser settings profile. PATCH /api/external/v1/LegacySupportBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The legacy support browser settings profile id, as island_list_legacy_support_browser_settings returns it.

[Island Browser] Update part of a network browser settings profile. PATCH /api/external/v1/NetworkBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The network browser settings profile id, as island_list_network_browser_settings returns it.

[Island Browser] Update part of a user productivity browser settings profile. PATCH /api/external/v1/UserProductivityBrowserSettings/. Path parameters: id. Nothing is required: Island marks all thirteen fields of the PATCH body optional, so send only what changes. name is 1-120 characters, description up to 300, priority an integer greater than 0, and hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant. Island publishes no merge rule for the nested configuration and sourceConditions objects or the audience array, so treat each of those as a whole-value replacement and send it complete. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The user productivity browser settings profile id, as island_list_user_productivity_browser_settings returns it.

[Island Browser] DESTRUCTIVE: create or replace the browser policy evaluation settings record. Why this is destructive: upsert replaces the stored record wholesale rather than merging into it - unionAcrossPoliciesSettingKeys as sent becomes the complete set, so a key left out stops being unioned across browser policies. POST /api/external/v1/browserPolicyEvaluationSettings/Upsert. Island documents one field, unionAcrossPoliciesSettingKeys: the complete list of setting keys unioned across browser policies. What you send becomes the stored list. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: unionAcrossPoliciesSettingKeys.

Browser Security Settings

ToolPlanAccessSummary
island_create_casb_saas_security_browser_settingsProWriteCreate a CASB/SaaS security browser-settings profile.
island_create_data_movement_browser_settingsProWriteCreate a data movement browser-settings profile.
island_create_data_protection_browser_settingsProWriteCreate a data protection browser-settings profile.
island_create_device_query_browser_settingsProWriteCreate a device query browser-settings profile.
island_create_endpoint_dlp_browser_settingsProWriteCreate an endpoint DLP browser-settings profile.
island_create_password_manager_browser_settingsProWriteCreate a password manager browser-settings profile.
island_create_privacy_browser_settingsProWriteCreate a privacy browser-settings profile.
island_create_private_access_browser_settingsProWriteCreate a private access browser-settings profile.
island_create_remote_desktop_browser_settingsProWriteCreate a remote desktop browser-settings profile.
island_create_secure_shell_browser_settingsProWriteCreate a secure shell browser-settings profile.
island_create_security_browser_settingsProWriteCreate a security browser-settings profile.
island_create_session_control_browser_settingsProWriteCreate a session control browser-settings profile.
island_create_smb_browser_settingsProWriteCreate an SMB browser-settings profile.
island_delete_casb_saas_security_browser_settingsProDestructiveDESTRUCTIVE: delete a CASB/SaaS security browser-settings profile.
island_delete_casb_saas_security_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several CASB/SaaS security browser-settings profiles by their IDs.
island_delete_data_movement_browser_settingsProDestructiveDESTRUCTIVE: delete a data movement browser-settings profile.
island_delete_data_movement_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several data movement browser-settings profiles by their IDs.
island_delete_data_protection_browser_settingsProDestructiveDESTRUCTIVE: delete a data protection browser-settings profile.
island_delete_data_protection_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several data protection browser-settings profiles by their IDs.
island_delete_device_query_browser_settingsProDestructiveDESTRUCTIVE: delete a device query browser-settings profile.
island_delete_device_query_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several device query browser-settings profiles by their IDs.
island_delete_endpoint_dlp_browser_settingsProDestructiveDESTRUCTIVE: delete an endpoint DLP browser-settings profile.
island_delete_endpoint_dlp_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several endpoint DLP browser-settings profiles by their IDs.
island_delete_password_manager_browser_settingsProDestructiveDESTRUCTIVE: delete a password manager browser-settings profile.
island_delete_password_manager_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several password manager browser-settings profiles by their IDs.
island_delete_privacy_browser_settingsProDestructiveDESTRUCTIVE: delete a privacy browser-settings profile.
island_delete_privacy_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several privacy browser-settings profiles by their IDs.
island_delete_private_access_browser_settingsProDestructiveDESTRUCTIVE: delete a private access browser-settings profile.
island_delete_private_access_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several private access browser-settings profiles by their IDs.
island_delete_remote_desktop_browser_settingsProDestructiveDESTRUCTIVE: delete a remote desktop browser-settings profile.
island_delete_remote_desktop_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several remote desktop browser-settings profiles by their IDs.
island_delete_secure_shell_browser_settingsProDestructiveDESTRUCTIVE: delete a secure shell browser-settings profile.
island_delete_secure_shell_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several secure shell browser-settings profiles by their IDs.
island_delete_security_browser_settingsProDestructiveDESTRUCTIVE: delete a security browser-settings profile.
island_delete_security_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several security browser-settings profiles by their IDs.
island_delete_session_control_browser_settingsProDestructiveDESTRUCTIVE: delete a session control browser-settings profile.
island_delete_session_control_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several session control browser-settings profiles by their IDs.
island_delete_smb_browser_settingsProDestructiveDESTRUCTIVE: delete an SMB browser-settings profile.
island_delete_smb_browser_settings_by_idsProDestructiveDESTRUCTIVE: delete several SMB browser-settings profiles by their IDs.
island_export_all_casb_saas_security_browser_settingsFreeRead-onlyExport every CASB/SaaS security browser-settings profile as a portable object.
island_export_all_data_movement_browser_settingsFreeRead-onlyExport every data movement browser-settings profile as a portable object.
island_export_all_data_protection_browser_settingsFreeRead-onlyExport every data protection browser-settings profile as a portable object.
island_export_all_device_query_browser_settingsFreeRead-onlyExport every device query browser-settings profile as a portable object.
island_export_all_endpoint_dlp_browser_settingsFreeRead-onlyExport every endpoint DLP browser-settings profile as a portable object.
island_export_all_password_manager_browser_settingsFreeRead-onlyExport every password manager browser-settings profile as a portable object.
island_export_all_privacy_browser_settingsFreeRead-onlyExport every privacy browser-settings profile as a portable object.
island_export_all_private_access_browser_settingsFreeRead-onlyExport every private access browser-settings profile as a portable object.
island_export_all_remote_desktop_browser_settingsFreeRead-onlyExport every remote desktop browser-settings profile as a portable object.
island_export_all_secure_shell_browser_settingsFreeRead-onlyExport every secure shell browser-settings profile as a portable object.
island_export_all_security_browser_settingsFreeRead-onlyExport every security browser-settings profile as a portable object.
island_export_all_session_control_browser_settingsFreeRead-onlyExport every session control browser-settings profile as a portable object.
island_export_all_smb_browser_settingsFreeRead-onlyExport every SMB browser-settings profile as a portable object.
island_export_casb_saas_security_browser_settingsFreeRead-onlyExport one CASB/SaaS security browser-settings profile as a portable object.
island_export_data_movement_browser_settingsFreeRead-onlyExport one data movement browser-settings profile as a portable object.
island_export_data_protection_browser_settingsFreeRead-onlyExport one data protection browser-settings profile as a portable object.
island_export_device_query_browser_settingsFreeRead-onlyExport one device query browser-settings profile as a portable object.
island_export_endpoint_dlp_browser_settingsFreeRead-onlyExport one endpoint DLP browser-settings profile as a portable object.
island_export_password_manager_browser_settingsFreeRead-onlyExport one password manager browser-settings profile as a portable object.
island_export_privacy_browser_settingsFreeRead-onlyExport one privacy browser-settings profile as a portable object.
island_export_private_access_browser_settingsFreeRead-onlyExport one private access browser-settings profile as a portable object.
island_export_remote_desktop_browser_settingsFreeRead-onlyExport one remote desktop browser-settings profile as a portable object.
island_export_secure_shell_browser_settingsFreeRead-onlyExport one secure shell browser-settings profile as a portable object.
island_export_security_browser_settingsFreeRead-onlyExport one security browser-settings profile as a portable object.
island_export_session_control_browser_settingsFreeRead-onlyExport one session control browser-settings profile as a portable object.
island_export_smb_browser_settingsFreeRead-onlyExport one SMB browser-settings profile as a portable object.
island_get_casb_saas_security_browser_settingsFreeRead-onlyGet one CASB/SaaS security browser-settings profile by ID.
island_get_casb_saas_security_browser_settings_by_idsFreeRead-onlyGet several CASB/SaaS security browser-settings profiles by their IDs.
island_get_data_movement_browser_settingsFreeRead-onlyGet one data movement browser-settings profile by ID.
island_get_data_movement_browser_settings_by_idsFreeRead-onlyGet several data movement browser-settings profiles by their IDs.
island_get_data_protection_browser_settingsFreeRead-onlyGet one data protection browser-settings profile by ID.
island_get_data_protection_browser_settings_by_idsFreeRead-onlyGet several data protection browser-settings profiles by their IDs.
island_get_device_query_browser_settingsFreeRead-onlyGet one device query browser-settings profile by ID.
island_get_device_query_browser_settings_by_idsFreeRead-onlyGet several device query browser-settings profiles by their IDs.
island_get_endpoint_dlp_browser_settingsFreeRead-onlyGet one endpoint DLP browser-settings profile by ID.
island_get_endpoint_dlp_browser_settings_by_idsFreeRead-onlyGet several endpoint DLP browser-settings profiles by their IDs.
island_get_password_manager_browser_settingsFreeRead-onlyGet one password manager browser-settings profile by ID.
island_get_password_manager_browser_settings_by_idsFreeRead-onlyGet several password manager browser-settings profiles by their IDs.
island_get_privacy_browser_settingsFreeRead-onlyGet one privacy browser-settings profile by ID.
island_get_privacy_browser_settings_by_idsFreeRead-onlyGet several privacy browser-settings profiles by their IDs.
island_get_private_access_browser_settingsFreeRead-onlyGet one private access browser-settings profile by ID.
island_get_private_access_browser_settings_by_idsFreeRead-onlyGet several private access browser-settings profiles by their IDs.
island_get_remote_desktop_browser_settingsFreeRead-onlyGet one remote desktop browser-settings profile by ID.
island_get_remote_desktop_browser_settings_by_idsFreeRead-onlyGet several remote desktop browser-settings profiles by their IDs.
island_get_secure_shell_browser_settingsFreeRead-onlyGet one secure shell browser-settings profile by ID.
island_get_secure_shell_browser_settings_by_idsFreeRead-onlyGet several secure shell browser-settings profiles by their IDs.
island_get_security_browser_settingsFreeRead-onlyGet one security browser-settings profile by ID.
island_get_security_browser_settings_by_idsFreeRead-onlyGet several security browser-settings profiles by their IDs.
island_get_session_control_browser_settingsFreeRead-onlyGet one session control browser-settings profile by ID.
island_get_session_control_browser_settings_by_idsFreeRead-onlyGet several session control browser-settings profiles by their IDs.
island_get_smb_browser_settingsFreeRead-onlyGet one SMB browser-settings profile by ID.
island_get_smb_browser_settings_by_idsFreeRead-onlyGet several SMB browser-settings profiles by their IDs.
island_list_casb_saas_security_browser_settingsFreeRead-onlyList every CASB/SaaS security browser-settings profile.
island_list_casb_saas_security_browser_settings_usagesFreeRead-onlyList what references one CASB/SaaS security browser-settings profile.
island_list_data_movement_browser_settingsFreeRead-onlyList every data movement browser-settings profile.
island_list_data_movement_browser_settings_usagesFreeRead-onlyList what references one data movement browser-settings profile.
island_list_data_protection_browser_settingsFreeRead-onlyList every data protection browser-settings profile.
island_list_data_protection_browser_settings_usagesFreeRead-onlyList what references one data protection browser-settings profile.
island_list_device_query_browser_settingsFreeRead-onlyList every device query browser-settings profile.
island_list_device_query_browser_settings_usagesFreeRead-onlyList what references one device query browser-settings profile.
island_list_endpoint_dlp_browser_settingsFreeRead-onlyList every endpoint DLP browser-settings profile.
island_list_endpoint_dlp_browser_settings_usagesFreeRead-onlyList what references one endpoint DLP browser-settings profile.
island_list_password_manager_browser_settingsFreeRead-onlyList every password manager browser-settings profile.
island_list_password_manager_browser_settings_usagesFreeRead-onlyList what references one password manager browser-settings profile.
island_list_privacy_browser_settingsFreeRead-onlyList every privacy browser-settings profile.
island_list_privacy_browser_settings_usagesFreeRead-onlyList what references one privacy browser-settings profile.
island_list_private_access_browser_settingsFreeRead-onlyList every private access browser-settings profile.
island_list_private_access_browser_settings_usagesFreeRead-onlyList what references one private access browser-settings profile.
island_list_remote_desktop_browser_settingsFreeRead-onlyList every remote desktop browser-settings profile.
island_list_remote_desktop_browser_settings_usagesFreeRead-onlyList what references one remote desktop browser-settings profile.
island_list_secure_shell_browser_settingsFreeRead-onlyList every secure shell browser-settings profile.
island_list_secure_shell_browser_settings_usagesFreeRead-onlyList what references one secure shell browser-settings profile.
island_list_security_browser_settingsFreeRead-onlyList every security browser-settings profile.
island_list_security_browser_settings_usagesFreeRead-onlyList what references one security browser-settings profile.
island_list_session_control_browser_settingsFreeRead-onlyList every session control browser-settings profile.
island_list_session_control_browser_settings_usagesFreeRead-onlyList what references one session control browser-settings profile.
island_list_smb_browser_settingsFreeRead-onlyList every SMB browser-settings profile.
island_list_smb_browser_settings_usagesFreeRead-onlyList what references one SMB browser-settings profile.
island_reorder_casb_saas_security_browser_settingsProDestructiveDESTRUCTIVE: reorder the CASB/SaaS security browser-settings profiles.
island_reorder_data_movement_browser_settingsProDestructiveDESTRUCTIVE: reorder the data movement browser-settings profiles.
island_reorder_data_protection_browser_settingsProDestructiveDESTRUCTIVE: reorder the data protection browser-settings profiles.
island_reorder_device_query_browser_settingsProDestructiveDESTRUCTIVE: reorder the device query browser-settings profiles.
island_reorder_endpoint_dlp_browser_settingsProDestructiveDESTRUCTIVE: reorder the endpoint DLP browser-settings profiles.
island_reorder_password_manager_browser_settingsProDestructiveDESTRUCTIVE: reorder the password manager browser-settings profiles.
island_reorder_privacy_browser_settingsProDestructiveDESTRUCTIVE: reorder the privacy browser-settings profiles.
island_reorder_private_access_browser_settingsProDestructiveDESTRUCTIVE: reorder the private access browser-settings profiles.
island_reorder_remote_desktop_browser_settingsProDestructiveDESTRUCTIVE: reorder the remote desktop browser-settings profiles.
island_reorder_secure_shell_browser_settingsProDestructiveDESTRUCTIVE: reorder the secure shell browser-settings profiles.
island_reorder_security_browser_settingsProDestructiveDESTRUCTIVE: reorder the security browser-settings profiles.
island_reorder_session_control_browser_settingsProDestructiveDESTRUCTIVE: reorder the session control browser-settings profiles.
island_reorder_smb_browser_settingsProDestructiveDESTRUCTIVE: reorder the SMB browser-settings profiles.
island_update_casb_saas_security_browser_settingsProWriteUpdate a CASB/SaaS security browser-settings profile.
island_update_data_movement_browser_settingsProWriteUpdate a data movement browser-settings profile.
island_update_data_protection_browser_settingsProWriteUpdate a data protection browser-settings profile.
island_update_device_query_browser_settingsProWriteUpdate a device query browser-settings profile.
island_update_endpoint_dlp_browser_settingsProWriteUpdate an endpoint DLP browser-settings profile.
island_update_password_manager_browser_settingsProWriteUpdate a password manager browser-settings profile.
island_update_privacy_browser_settingsProWriteUpdate a privacy browser-settings profile.
island_update_private_access_browser_settingsProWriteUpdate a private access browser-settings profile.
island_update_remote_desktop_browser_settingsProWriteUpdate a remote desktop browser-settings profile.
island_update_secure_shell_browser_settingsProWriteUpdate a secure shell browser-settings profile.
island_update_security_browser_settingsProWriteUpdate a security browser-settings profile.
island_update_session_control_browser_settingsProWriteUpdate a session control browser-settings profile.
island_update_smb_browser_settingsProWriteUpdate an SMB browser-settings profile.

[Island Browser] Create a CASB/SaaS security browser-settings profile. POST /api/external/v1/CasbSaasSecurityBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_casb_saas_security_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_casb_saas_security_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a data movement browser-settings profile. POST /api/external/v1/DataMovementBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_data_movement_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_data_movement_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a data protection browser-settings profile. POST /api/external/v1/DataProtectionBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_data_protection_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_data_protection_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a device query browser-settings profile. POST /api/external/v1/DeviceQueryBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_device_query_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_device_query_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an endpoint DLP browser-settings profile. POST /api/external/v1/EndpointDlpBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_endpoint_dlp_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_endpoint_dlp_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a password manager browser-settings profile. POST /api/external/v1/PasswordManagerBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_password_manager_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_list_password_manager_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a privacy browser-settings profile. POST /api/external/v1/PrivacyBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_privacy_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_privacy_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a private access browser-settings profile. POST /api/external/v1/PrivateAccessBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_private_access_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_private_access_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a remote desktop browser-settings profile. POST /api/external/v1/RemoteDesktopBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_remote_desktop_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_remote_desktop_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a secure shell browser-settings profile. POST /api/external/v1/SecureShellBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_secure_shell_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_secure_shell_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a security browser-settings profile. POST /api/external/v1/SecurityBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_security_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_security_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create a session control browser-settings profile. POST /api/external/v1/SessionControlBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_session_control_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_session_control_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] Create an SMB browser-settings profile. POST /api/external/v1/SmbBrowserSettings. Send the request body as JSON. Island marks name, priority and hierarchicalPrecedence required and also publishes defaults for two of them - priority 1, and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant defaulting to BeforeSubtenant. It documents description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions and audience as well, with name capped at 120 characters and description at 300. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_smb_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. island_list_smb_browser_settings shows the profiles that already exist and the priority order a new one joins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, hierarchicalPrecedence, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, configuration, sourceConditions, audience.

[Island Browser] DESTRUCTIVE: delete a CASB/SaaS security browser-settings profile. Why this is destructive: Deleting the CASB/SaaS security browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_casb_saas_security_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/CasbSaasSecurityBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_casb_saas_security_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The CASB/SaaS security browser-settings profile id, a GUID that island_list_casb_saas_security_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several CASB/SaaS security browser-settings profiles by their IDs. Why this is destructive: One call removes every CASB/SaaS security browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/CasbSaasSecurityBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_casb_saas_security_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a data movement browser-settings profile. Why this is destructive: Deleting the data movement browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_data_movement_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/DataMovementBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_data_movement_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data movement browser-settings profile id, a GUID that island_list_data_movement_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several data movement browser-settings profiles by their IDs. Why this is destructive: One call removes every data movement browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/DataMovementBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_data_movement_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a data protection browser-settings profile. Why this is destructive: Deleting the data protection browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_data_protection_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/DataProtectionBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_data_protection_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data protection browser-settings profile id, a GUID that island_list_data_protection_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several data protection browser-settings profiles by their IDs. Why this is destructive: One call removes every data protection browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/DataProtectionBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_data_protection_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a device query browser-settings profile. Why this is destructive: Deleting the device query browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_device_query_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/DeviceQueryBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_device_query_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device query browser-settings profile id, a GUID that island_list_device_query_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several device query browser-settings profiles by their IDs. Why this is destructive: One call removes every device query browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/DeviceQueryBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_device_query_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete an endpoint DLP browser-settings profile. Why this is destructive: Deleting the endpoint DLP browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_endpoint_dlp_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/EndpointDlpBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_endpoint_dlp_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint DLP browser-settings profile id, a GUID that island_list_endpoint_dlp_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several endpoint DLP browser-settings profiles by their IDs. Why this is destructive: One call removes every endpoint DLP browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/EndpointDlpBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_endpoint_dlp_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a password manager browser-settings profile. Why this is destructive: Deleting the password manager browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_password_manager_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/PasswordManagerBrowserSettings/. Path parameters: id. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_list_password_manager_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The password manager browser-settings profile id, a GUID that island_list_password_manager_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several password manager browser-settings profiles by their IDs. Why this is destructive: One call removes every password manager browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/PasswordManagerBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_list_password_manager_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a privacy browser-settings profile. Why this is destructive: Deleting the privacy browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_privacy_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/PrivacyBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_privacy_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The privacy browser-settings profile id, a GUID that island_list_privacy_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several privacy browser-settings profiles by their IDs. Why this is destructive: One call removes every privacy browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/PrivacyBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_privacy_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a private access browser-settings profile. Why this is destructive: Deleting the private access browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_private_access_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/PrivateAccessBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_private_access_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access browser-settings profile id, a GUID that island_list_private_access_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several private access browser-settings profiles by their IDs. Why this is destructive: One call removes every private access browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/PrivateAccessBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_private_access_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a remote desktop browser-settings profile. Why this is destructive: Deleting the remote desktop browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_remote_desktop_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/RemoteDesktopBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_remote_desktop_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The remote desktop browser-settings profile id, a GUID that island_list_remote_desktop_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several remote desktop browser-settings profiles by their IDs. Why this is destructive: One call removes every remote desktop browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/RemoteDesktopBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_remote_desktop_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a secure shell browser-settings profile. Why this is destructive: Deleting the secure shell browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_secure_shell_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/SecureShellBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_secure_shell_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The secure shell browser-settings profile id, a GUID that island_list_secure_shell_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several secure shell browser-settings profiles by their IDs. Why this is destructive: One call removes every secure shell browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/SecureShellBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_secure_shell_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a security browser-settings profile. Why this is destructive: Deleting the security browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_security_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/SecurityBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_security_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The security browser-settings profile id, a GUID that island_list_security_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several security browser-settings profiles by their IDs. Why this is destructive: One call removes every security browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/SecurityBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_security_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a session control browser-settings profile. Why this is destructive: Deleting the session control browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_session_control_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/SessionControlBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_session_control_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The session control browser-settings profile id, a GUID that island_list_session_control_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several session control browser-settings profiles by their IDs. Why this is destructive: One call removes every session control browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/SessionControlBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_session_control_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete an SMB browser-settings profile. Why this is destructive: Deleting the SMB browser-settings profile removes it from the tenant outright, with no dry run and no undo, and island_list_smb_browser_settings_usages is the only way to see what still references it first. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it (round-2 ruling R3). DELETE /api/external/v1/SmbBrowserSettings/. Path parameters: id. Returns Island's raw JSON. island_list_smb_browser_settings_usages names what still references this profile - check it first. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SMB browser-settings profile id, a GUID that island_list_smb_browser_settings returns.

[Island Browser] DESTRUCTIVE: delete several SMB browser-settings profiles by their IDs. Why this is destructive: One call removes every SMB browser-settings profile whose id is in the list, with no dry run and no undo, and Island publishes no partial-failure behaviour for the batch. The platform rule that every DELETE is destructive decides this one too (round-2 ruling R3). DELETE /api/external/v1/SmbBrowserSettings/DeleteByIds. Send the request body as JSON: ids is an array of profile GUIDs. Island does not mark ids required and publishes no behaviour for an omitted list, so send exactly the ids you mean to delete. Returns Island's raw JSON. island_list_smb_browser_settings_usages names what references each profile. Island answers a successful delete with an empty body, which StackJack reports as a success object.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] Export every CASB/SaaS security browser-settings profile as a portable object. GET /api/external/v1/CasbSaasSecurityBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_casb_saas_security_browser_settings exports a single profile, and island_list_casb_saas_security_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every data movement browser-settings profile as a portable object. GET /api/external/v1/DataMovementBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_data_movement_browser_settings exports a single profile, and island_list_data_movement_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every data protection browser-settings profile as a portable object. GET /api/external/v1/DataProtectionBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_data_protection_browser_settings exports a single profile, and island_list_data_protection_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every device query browser-settings profile as a portable object. GET /api/external/v1/DeviceQueryBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_device_query_browser_settings exports a single profile, and island_list_device_query_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every endpoint DLP browser-settings profile as a portable object. GET /api/external/v1/EndpointDlpBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_endpoint_dlp_browser_settings exports a single profile, and island_list_endpoint_dlp_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every password manager browser-settings profile as a portable object. GET /api/external/v1/PasswordManagerBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_export_password_manager_browser_settings exports a single profile, and island_list_password_manager_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every privacy browser-settings profile as a portable object. GET /api/external/v1/PrivacyBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_privacy_browser_settings exports a single profile, and island_list_privacy_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every private access browser-settings profile as a portable object. GET /api/external/v1/PrivateAccessBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_private_access_browser_settings exports a single profile, and island_list_private_access_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every remote desktop browser-settings profile as a portable object. GET /api/external/v1/RemoteDesktopBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_remote_desktop_browser_settings exports a single profile, and island_list_remote_desktop_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every secure shell browser-settings profile as a portable object. GET /api/external/v1/SecureShellBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_secure_shell_browser_settings exports a single profile, and island_list_secure_shell_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every security browser-settings profile as a portable object. GET /api/external/v1/SecurityBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_security_browser_settings exports a single profile, and island_list_security_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every session control browser-settings profile as a portable object. GET /api/external/v1/SessionControlBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_session_control_browser_settings exports a single profile, and island_list_session_control_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export every SMB browser-settings profile as a portable object. GET /api/external/v1/SmbBrowserSettings/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_smb_browser_settings exports a single profile, and island_list_smb_browser_settings is the ordinary JSON read of the same set.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one CASB/SaaS security browser-settings profile as a portable object. GET /api/external/v1/CasbSaasSecurityBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_casb_saas_security_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The CASB/SaaS security browser-settings profile id, a GUID that island_list_casb_saas_security_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one data movement browser-settings profile as a portable object. GET /api/external/v1/DataMovementBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_data_movement_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data movement browser-settings profile id, a GUID that island_list_data_movement_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one data protection browser-settings profile as a portable object. GET /api/external/v1/DataProtectionBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_data_protection_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data protection browser-settings profile id, a GUID that island_list_data_protection_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one device query browser-settings profile as a portable object. GET /api/external/v1/DeviceQueryBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_device_query_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device query browser-settings profile id, a GUID that island_list_device_query_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one endpoint DLP browser-settings profile as a portable object. GET /api/external/v1/EndpointDlpBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_endpoint_dlp_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint DLP browser-settings profile id, a GUID that island_list_endpoint_dlp_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one password manager browser-settings profile as a portable object. GET /api/external/v1/PasswordManagerBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_export_all_password_manager_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The password manager browser-settings profile id, a GUID that island_list_password_manager_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one privacy browser-settings profile as a portable object. GET /api/external/v1/PrivacyBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_privacy_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The privacy browser-settings profile id, a GUID that island_list_privacy_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one private access browser-settings profile as a portable object. GET /api/external/v1/PrivateAccessBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_private_access_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access browser-settings profile id, a GUID that island_list_private_access_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one remote desktop browser-settings profile as a portable object. GET /api/external/v1/RemoteDesktopBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_remote_desktop_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The remote desktop browser-settings profile id, a GUID that island_list_remote_desktop_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one secure shell browser-settings profile as a portable object. GET /api/external/v1/SecureShellBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_secure_shell_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The secure shell browser-settings profile id, a GUID that island_list_secure_shell_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one security browser-settings profile as a portable object. GET /api/external/v1/SecurityBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_security_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The security browser-settings profile id, a GUID that island_list_security_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one session control browser-settings profile as a portable object. GET /api/external/v1/SessionControlBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_session_control_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The session control browser-settings profile id, a GUID that island_list_session_control_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Export one SMB browser-settings profile as a portable object. GET /api/external/v1/SmbBrowserSettings/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. island_export_all_smb_browser_settings exports the whole set in one call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SMB browser-settings profile id, a GUID that island_list_smb_browser_settings returns.
includeIdsbooleannonullOptional. Whether Island puts its own object ids in the exported copy. Island defaults to false; leave it off for an export you intend to import into a DIFFERENT tenant, where those ids mean nothing.

[Island Browser] Get one CASB/SaaS security browser-settings profile by ID. GET /api/external/v1/CasbSaasSecurityBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_casb_saas_security_browser_settings; island_list_casb_saas_security_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The CASB/SaaS security browser-settings profile id, a GUID that island_list_casb_saas_security_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several CASB/SaaS security browser-settings profiles by their IDs. POST /api/external/v1/CasbSaasSecurityBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_casb_saas_security_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_casb_saas_security_browser_settings; one call replaces a fan-out of island_get_casb_saas_security_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one data movement browser-settings profile by ID. GET /api/external/v1/DataMovementBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_data_movement_browser_settings; island_list_data_movement_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data movement browser-settings profile id, a GUID that island_list_data_movement_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several data movement browser-settings profiles by their IDs. POST /api/external/v1/DataMovementBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_data_movement_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_data_movement_browser_settings; one call replaces a fan-out of island_get_data_movement_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one data protection browser-settings profile by ID. GET /api/external/v1/DataProtectionBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_data_protection_browser_settings; island_list_data_protection_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data protection browser-settings profile id, a GUID that island_list_data_protection_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several data protection browser-settings profiles by their IDs. POST /api/external/v1/DataProtectionBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_data_protection_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_data_protection_browser_settings; one call replaces a fan-out of island_get_data_protection_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one device query browser-settings profile by ID. GET /api/external/v1/DeviceQueryBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_device_query_browser_settings; island_list_device_query_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device query browser-settings profile id, a GUID that island_list_device_query_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several device query browser-settings profiles by their IDs. POST /api/external/v1/DeviceQueryBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_device_query_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_device_query_browser_settings; one call replaces a fan-out of island_get_device_query_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one endpoint DLP browser-settings profile by ID. GET /api/external/v1/EndpointDlpBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_endpoint_dlp_browser_settings; island_list_endpoint_dlp_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint DLP browser-settings profile id, a GUID that island_list_endpoint_dlp_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several endpoint DLP browser-settings profiles by their IDs. POST /api/external/v1/EndpointDlpBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_endpoint_dlp_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_endpoint_dlp_browser_settings; one call replaces a fan-out of island_get_endpoint_dlp_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one password manager browser-settings profile by ID. GET /api/external/v1/PasswordManagerBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. The id comes from island_list_password_manager_browser_settings; island_list_password_manager_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The password manager browser-settings profile id, a GUID that island_list_password_manager_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several password manager browser-settings profiles by their IDs. POST /api/external/v1/PasswordManagerBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_password_manager_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. Ids come from island_list_password_manager_browser_settings; one call replaces a fan-out of island_get_password_manager_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one privacy browser-settings profile by ID. GET /api/external/v1/PrivacyBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_privacy_browser_settings; island_list_privacy_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The privacy browser-settings profile id, a GUID that island_list_privacy_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several privacy browser-settings profiles by their IDs. POST /api/external/v1/PrivacyBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_privacy_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_privacy_browser_settings; one call replaces a fan-out of island_get_privacy_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one private access browser-settings profile by ID. GET /api/external/v1/PrivateAccessBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_private_access_browser_settings; island_list_private_access_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access browser-settings profile id, a GUID that island_list_private_access_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several private access browser-settings profiles by their IDs. POST /api/external/v1/PrivateAccessBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_private_access_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_private_access_browser_settings; one call replaces a fan-out of island_get_private_access_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one remote desktop browser-settings profile by ID. GET /api/external/v1/RemoteDesktopBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_remote_desktop_browser_settings; island_list_remote_desktop_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The remote desktop browser-settings profile id, a GUID that island_list_remote_desktop_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several remote desktop browser-settings profiles by their IDs. POST /api/external/v1/RemoteDesktopBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_remote_desktop_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_remote_desktop_browser_settings; one call replaces a fan-out of island_get_remote_desktop_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one secure shell browser-settings profile by ID. GET /api/external/v1/SecureShellBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_secure_shell_browser_settings; island_list_secure_shell_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The secure shell browser-settings profile id, a GUID that island_list_secure_shell_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several secure shell browser-settings profiles by their IDs. POST /api/external/v1/SecureShellBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_secure_shell_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_secure_shell_browser_settings; one call replaces a fan-out of island_get_secure_shell_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one security browser-settings profile by ID. GET /api/external/v1/SecurityBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_security_browser_settings; island_list_security_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The security browser-settings profile id, a GUID that island_list_security_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several security browser-settings profiles by their IDs. POST /api/external/v1/SecurityBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_security_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_security_browser_settings; one call replaces a fan-out of island_get_security_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one session control browser-settings profile by ID. GET /api/external/v1/SessionControlBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_session_control_browser_settings; island_list_session_control_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The session control browser-settings profile id, a GUID that island_list_session_control_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several session control browser-settings profiles by their IDs. POST /api/external/v1/SessionControlBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_session_control_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_session_control_browser_settings; one call replaces a fan-out of island_get_session_control_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get one SMB browser-settings profile by ID. GET /api/external/v1/SmbBrowserSettings/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. The id comes from island_list_smb_browser_settings; island_list_smb_browser_settings_usages shows which browser policies reference this profile.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SMB browser-settings profile id, a GUID that island_list_smb_browser_settings returns.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] Get several SMB browser-settings profiles by their IDs. POST /api/external/v1/SmbBrowserSettings/GetByIds. Optional filters: includeType. Send the filter as JSON: ids is an array of profile GUIDs from island_list_smb_browser_settings. Island does not mark ids required on this request and publishes no behaviour for an omitted list. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Ids come from island_list_smb_browser_settings; one call replaces a fan-out of island_get_smb_browser_settings.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List every CASB/SaaS security browser-settings profile. GET /api/external/v1/CasbSaasSecurityBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_casb_saas_security_browser_settings, island_update_casb_saas_security_browser_settings, island_export_casb_saas_security_browser_settings and island_delete_casb_saas_security_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one CASB/SaaS security browser-settings profile. GET /api/external/v1/CasbSaasSecurityBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_casb_saas_security_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The CASB/SaaS security browser-settings profile id, a GUID that island_list_casb_saas_security_browser_settings returns.

[Island Browser] List every data movement browser-settings profile. GET /api/external/v1/DataMovementBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_data_movement_browser_settings, island_update_data_movement_browser_settings, island_export_data_movement_browser_settings and island_delete_data_movement_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one data movement browser-settings profile. GET /api/external/v1/DataMovementBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_data_movement_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data movement browser-settings profile id, a GUID that island_list_data_movement_browser_settings returns.

[Island Browser] List every data protection browser-settings profile. GET /api/external/v1/DataProtectionBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_data_protection_browser_settings, island_update_data_protection_browser_settings, island_export_data_protection_browser_settings and island_delete_data_protection_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one data protection browser-settings profile. GET /api/external/v1/DataProtectionBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_data_protection_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data protection browser-settings profile id, a GUID that island_list_data_protection_browser_settings returns.

[Island Browser] List every device query browser-settings profile. GET /api/external/v1/DeviceQueryBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_device_query_browser_settings, island_update_device_query_browser_settings, island_export_device_query_browser_settings and island_delete_device_query_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one device query browser-settings profile. GET /api/external/v1/DeviceQueryBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_device_query_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device query browser-settings profile id, a GUID that island_list_device_query_browser_settings returns.

[Island Browser] List every endpoint DLP browser-settings profile. GET /api/external/v1/EndpointDlpBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_endpoint_dlp_browser_settings, island_update_endpoint_dlp_browser_settings, island_export_endpoint_dlp_browser_settings and island_delete_endpoint_dlp_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one endpoint DLP browser-settings profile. GET /api/external/v1/EndpointDlpBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_endpoint_dlp_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The endpoint DLP browser-settings profile id, a GUID that island_list_endpoint_dlp_browser_settings returns.

[Island Browser] List every password manager browser-settings profile. GET /api/external/v1/PasswordManagerBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_password_manager_browser_settings, island_update_password_manager_browser_settings, island_export_password_manager_browser_settings and island_delete_password_manager_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one password manager browser-settings profile. GET /api/external/v1/PasswordManagerBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. Each usage names the referencing entity and its type. Run it before island_delete_password_manager_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The password manager browser-settings profile id, a GUID that island_list_password_manager_browser_settings returns.

[Island Browser] List every privacy browser-settings profile. GET /api/external/v1/PrivacyBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_privacy_browser_settings, island_update_privacy_browser_settings, island_export_privacy_browser_settings and island_delete_privacy_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one privacy browser-settings profile. GET /api/external/v1/PrivacyBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_privacy_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The privacy browser-settings profile id, a GUID that island_list_privacy_browser_settings returns.

[Island Browser] List every private access browser-settings profile. GET /api/external/v1/PrivateAccessBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_private_access_browser_settings, island_update_private_access_browser_settings, island_export_private_access_browser_settings and island_delete_private_access_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one private access browser-settings profile. GET /api/external/v1/PrivateAccessBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_private_access_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access browser-settings profile id, a GUID that island_list_private_access_browser_settings returns.

[Island Browser] List every remote desktop browser-settings profile. GET /api/external/v1/RemoteDesktopBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_remote_desktop_browser_settings, island_update_remote_desktop_browser_settings, island_export_remote_desktop_browser_settings and island_delete_remote_desktop_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one remote desktop browser-settings profile. GET /api/external/v1/RemoteDesktopBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_remote_desktop_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The remote desktop browser-settings profile id, a GUID that island_list_remote_desktop_browser_settings returns.

[Island Browser] List every secure shell browser-settings profile. GET /api/external/v1/SecureShellBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_secure_shell_browser_settings, island_update_secure_shell_browser_settings, island_export_secure_shell_browser_settings and island_delete_secure_shell_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one secure shell browser-settings profile. GET /api/external/v1/SecureShellBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_secure_shell_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The secure shell browser-settings profile id, a GUID that island_list_secure_shell_browser_settings returns.

[Island Browser] List every security browser-settings profile. GET /api/external/v1/SecurityBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Start here when you are reviewing what Island enforces in the browser. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_security_browser_settings, island_update_security_browser_settings, island_export_security_browser_settings and island_delete_security_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one security browser-settings profile. GET /api/external/v1/SecurityBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_security_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The security browser-settings profile id, a GUID that island_list_security_browser_settings returns.

[Island Browser] List every session control browser-settings profile. GET /api/external/v1/SessionControlBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Start here when you are reviewing what Island enforces in the browser. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_session_control_browser_settings, island_update_session_control_browser_settings, island_export_session_control_browser_settings and island_delete_session_control_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one session control browser-settings profile. GET /api/external/v1/SessionControlBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_session_control_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The session control browser-settings profile id, a GUID that island_list_session_control_browser_settings returns.

[Island Browser] List every SMB browser-settings profile. GET /api/external/v1/SmbBrowserSettings. Optional filters: includeType. Returns Island's raw JSON. Island publishes no page size for this list, so the whole collection comes back in one response. The profile ids it returns are what island_get_smb_browser_settings, island_update_smb_browser_settings, island_export_smb_browser_settings and island_delete_smb_browser_settings take.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the profile Island includes in the response. Island accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; it publishes no prose for what each value adds.

[Island Browser] List what references one SMB browser-settings profile. GET /api/external/v1/SmbBrowserSettings/usages/. Path parameters: id. Returns Island's raw JSON. Each usage names the referencing entity and its type. Run it before island_delete_smb_browser_settings to see what still points at the profile. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SMB browser-settings profile id, a GUID that island_list_smb_browser_settings returns.

[Island Browser] DESTRUCTIVE: reorder the CASB/SaaS security browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable CASB/SaaS security browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/CasbSaasSecurityBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_casb_saas_security_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the data movement browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable data movement browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/DataMovementBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_data_movement_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the data protection browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable data protection browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/DataProtectionBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_data_protection_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the device query browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable device query browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/DeviceQueryBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_device_query_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the endpoint DLP browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable endpoint DLP browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/EndpointDlpBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_endpoint_dlp_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the password manager browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable password manager browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/PasswordManagerBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. island_list_password_manager_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the privacy browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable privacy browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/PrivacyBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_privacy_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the private access browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable private access browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/PrivateAccessBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_private_access_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the remote desktop browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable remote desktop browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/RemoteDesktopBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_remote_desktop_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the secure shell browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable secure shell browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/SecureShellBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_secure_shell_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the security browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable security browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/SecurityBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_security_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the session control browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable session control browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/SessionControlBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_session_control_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the SMB browser-settings profiles. Why this is destructive: The entries array carries the COMPLETE desired order for the group, so one call replaces the evaluation order of every reorderable SMB browser-settings profile at once and decides which profile wins for a user. Island does not mark it destructive; StackJack's wholesale-replacement rule overrides that. POST /api/external/v1/SmbBrowserSettings/reorder. Send the request body as JSON: entries is the complete desired order for the group - one { id, priority } per reorderable row, where priority is its target 1-based position. Island keeps the rows you leave out at their positions. Returns Island's raw JSON. island_list_smb_browser_settings returns the current order; send every reorderable row, not only the ones you are moving.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] Update a CASB/SaaS security browser-settings profile. PATCH /api/external/v1/CasbSaasSecurityBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_casb_saas_security_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_casb_saas_security_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The CASB/SaaS security browser-settings profile id, a GUID that island_list_casb_saas_security_browser_settings returns.

[Island Browser] Update a data movement browser-settings profile. PATCH /api/external/v1/DataMovementBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_data_movement_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_data_movement_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The data movement browser-settings profile id, a GUID that island_list_data_movement_browser_settings returns.

[Island Browser] Update a data protection browser-settings profile. PATCH /api/external/v1/DataProtectionBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_data_protection_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_data_protection_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The data protection browser-settings profile id, a GUID that island_list_data_protection_browser_settings returns.

[Island Browser] Update a device query browser-settings profile. PATCH /api/external/v1/DeviceQueryBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_device_query_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_device_query_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The device query browser-settings profile id, a GUID that island_list_device_query_browser_settings returns.

[Island Browser] Update an endpoint DLP browser-settings profile. PATCH /api/external/v1/EndpointDlpBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_endpoint_dlp_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_endpoint_dlp_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The endpoint DLP browser-settings profile id, a GUID that island_list_endpoint_dlp_browser_settings returns.

[Island Browser] Update a password manager browser-settings profile. PATCH /api/external/v1/PasswordManagerBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_password_manager_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. This profile configures Island's browser password-manager feature; it carries no passwords and no vault material. Read the current profile with island_get_password_manager_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The password manager browser-settings profile id, a GUID that island_list_password_manager_browser_settings returns.

[Island Browser] Update a privacy browser-settings profile. PATCH /api/external/v1/PrivacyBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_privacy_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_privacy_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The privacy browser-settings profile id, a GUID that island_list_privacy_browser_settings returns.

[Island Browser] Update a private access browser-settings profile. PATCH /api/external/v1/PrivateAccessBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_private_access_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_private_access_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The private access browser-settings profile id, a GUID that island_list_private_access_browser_settings returns.

[Island Browser] Update a remote desktop browser-settings profile. PATCH /api/external/v1/RemoteDesktopBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_remote_desktop_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_remote_desktop_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The remote desktop browser-settings profile id, a GUID that island_list_remote_desktop_browser_settings returns.

[Island Browser] Update a secure shell browser-settings profile. PATCH /api/external/v1/SecureShellBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_secure_shell_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_secure_shell_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The secure shell browser-settings profile id, a GUID that island_list_secure_shell_browser_settings returns.

[Island Browser] Update a security browser-settings profile. PATCH /api/external/v1/SecurityBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_security_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_security_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The security browser-settings profile id, a GUID that island_list_security_browser_settings returns.

[Island Browser] Update a session control browser-settings profile. PATCH /api/external/v1/SessionControlBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_session_control_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_session_control_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The session control browser-settings profile id, a GUID that island_list_session_control_browser_settings returns.

[Island Browser] Update an SMB browser-settings profile. PATCH /api/external/v1/SmbBrowserSettings/. Path parameters: id. Send only the fields you are changing as JSON: Island marks nothing required on this partial update and documents name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions and audience. configuration.chromiumSettings and configuration.dynamicSettings are JSON documents Island carries as STRINGS, so copy what island_get_smb_browser_settings returned and change only what you mean to change. Returns Island's raw JSON. Read the current profile with island_get_smb_browser_settings first; anything you omit is left as it is.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, enabled, isEveryone, priority, hierarchicalPrecedence, configuration, sourceConditions, audience.
idstringyesRequired. The SMB browser-settings profile id, a GUID that island_list_smb_browser_settings returns.

Policy Rules

ToolPlanAccessSummary
island_create_access_routeProWriteCreate a private access route.
island_create_access_ruleProWriteCreate an application access rule.
island_create_ai_guard_agent_identityProDestructiveDESTRUCTIVE: create an AI Guard custom agent identity.
island_create_ai_guard_auditing_profileProWriteCreate an AI Guard auditing profile.
island_create_ai_guard_ruleProWriteCreate an AI Guard rule.
island_create_ai_guard_tool_profileProWriteCreate an AI Guard tool governance profile.
island_create_auditing_profileProWriteCreate an auditing profile.
island_create_cloud_firewall_ruleProWriteCreate a cloud firewall rule.
island_create_ssl_inspection_policyProWriteCreate an SSL inspection policy.
island_create_ssl_inspection_ruleProWriteCreate an SSL inspection rule.
island_create_web_security_profileProWriteCreate a web security profile.
island_delete_access_routeProDestructiveDESTRUCTIVE: delete one private access route by id.
island_delete_access_routes_by_idsProDestructiveDESTRUCTIVE: delete several private access routes in one call by id.
island_delete_access_ruleProDestructiveDESTRUCTIVE: delete one application access rule by id.
island_delete_access_rules_by_idsProDestructiveDESTRUCTIVE: delete several application access rules in one call by id.
island_delete_ai_guard_agent_identities_by_idsProDestructiveDESTRUCTIVE: delete several AI Guard custom agent identities in one call by id.
island_delete_ai_guard_agent_identityProDestructiveDESTRUCTIVE: delete one AI Guard custom agent identity by id.
island_delete_ai_guard_auditing_profileProDestructiveDESTRUCTIVE: delete one AI Guard auditing profile by id.
island_delete_ai_guard_auditing_profiles_by_idsProDestructiveDESTRUCTIVE: delete several AI Guard auditing profiles in one call by id.
island_delete_ai_guard_ruleProDestructiveDESTRUCTIVE: delete one AI Guard rule by id.
island_delete_ai_guard_rules_by_idsProDestructiveDESTRUCTIVE: delete several AI Guard rules in one call by id.
island_delete_ai_guard_tool_profileProDestructiveDESTRUCTIVE: delete one AI Guard tool governance profile by id.
island_delete_ai_guard_tool_profiles_by_idsProDestructiveDESTRUCTIVE: delete several AI Guard tool governance profiles in one call by id.
island_delete_auditing_profileProDestructiveDESTRUCTIVE: delete one auditing profile by id.
island_delete_auditing_profiles_by_idsProDestructiveDESTRUCTIVE: delete several auditing profiles in one call by id.
island_delete_cloud_firewall_ruleProDestructiveDESTRUCTIVE: delete one cloud firewall rule by id.
island_delete_cloud_firewall_rules_by_idsProDestructiveDESTRUCTIVE: delete several cloud firewall rules in one call by id.
island_delete_ssl_inspection_policies_by_idsProDestructiveDESTRUCTIVE: delete several SSL inspection policies in one call by id.
island_delete_ssl_inspection_policyProDestructiveDESTRUCTIVE: delete one SSL inspection policy by id.
island_delete_ssl_inspection_ruleProDestructiveDESTRUCTIVE: delete one SSL inspection rule by id.
island_delete_ssl_inspection_rules_by_idsProDestructiveDESTRUCTIVE: delete several SSL inspection rules in one call by id.
island_delete_web_security_profileProDestructiveDESTRUCTIVE: delete one web security profile by id.
island_delete_web_security_profiles_by_idsProDestructiveDESTRUCTIVE: delete several web security profiles in one call by id.
island_export_access_routeFreeRead-onlyExport one private access route as a portable configuration.
island_export_access_ruleFreeRead-onlyExport one application access rule as a portable configuration.
island_export_ai_guard_agent_identityFreeRead-onlyExport one AI Guard custom agent identity as a portable configuration.
island_export_ai_guard_auditing_profileFreeRead-onlyExport one AI Guard auditing profile as a portable configuration.
island_export_ai_guard_policyFreeRead-onlyExport one AI Guard policy as a portable configuration.
island_export_ai_guard_ruleFreeRead-onlyExport one AI Guard rule as a portable configuration.
island_export_ai_guard_tool_profileFreeRead-onlyExport one AI Guard tool governance profile as a portable configuration.
island_export_all_access_routesFreeRead-onlyExport every private access route in the tenant as a portable configuration.
island_export_all_access_rulesFreeRead-onlyExport every application access rule in the tenant as a portable configuration.
island_export_all_ai_guard_agent_identitiesFreeRead-onlyExport every AI Guard custom agent identity in the tenant as a portable configuration.
island_export_all_ai_guard_auditing_profilesFreeRead-onlyExport every AI Guard auditing profile in the tenant as a portable configuration.
island_export_all_ai_guard_policyFreeRead-onlyExport the tenant's AI Guard policy as a portable configuration.
island_export_all_ai_guard_rulesFreeRead-onlyExport every AI Guard rule in the tenant as a portable configuration.
island_export_all_ai_guard_tool_profilesFreeRead-onlyExport every AI Guard tool governance profile in the tenant as a portable configuration.
island_export_all_auditing_profilesFreeRead-onlyExport every auditing profile in the tenant as a portable configuration.
island_export_all_cloud_firewall_policyFreeRead-onlyExport the tenant's cloud firewall policy as a portable configuration.
island_export_all_cloud_firewall_rulesFreeRead-onlyExport every cloud firewall rule in the tenant as a portable configuration.
island_export_all_ssl_inspection_policiesFreeRead-onlyExport every SSL inspection policy in the tenant as a portable configuration.
island_export_all_ssl_inspection_rulesFreeRead-onlyExport every SSL inspection rule in the tenant as a portable configuration.
island_export_all_web_security_profilesFreeRead-onlyExport every web security profile in the tenant as a portable configuration.
island_export_auditing_profileFreeRead-onlyExport one auditing profile as a portable configuration.
island_export_cloud_firewall_policyFreeRead-onlyExport one cloud firewall policy as a portable configuration.
island_export_cloud_firewall_ruleFreeRead-onlyExport one cloud firewall rule as a portable configuration.
island_export_ssl_inspection_policyFreeRead-onlyExport one SSL inspection policy as a portable configuration.
island_export_ssl_inspection_ruleFreeRead-onlyExport one SSL inspection rule as a portable configuration.
island_export_web_security_profileFreeRead-onlyExport one web security profile as a portable configuration.
island_get_access_routeFreeRead-onlyRead one private access route by id.
island_get_access_routes_by_idsFreeRead-onlyRead several private access routes in one call by id.
island_get_access_ruleFreeRead-onlyRead one application access rule by id.
island_get_access_rules_by_idsFreeRead-onlyRead several application access rules in one call by id.
island_get_ai_guard_agent_identities_by_idsFreeRead-onlyRead several AI Guard custom agent identities in one call by id.
island_get_ai_guard_agent_identityFreeRead-onlyRead one AI Guard custom agent identity by id.
island_get_ai_guard_auditing_profileFreeRead-onlyRead one AI Guard auditing profile by id.
island_get_ai_guard_auditing_profiles_by_idsFreeRead-onlyRead several AI Guard auditing profiles in one call by id.
island_get_ai_guard_policyFreeRead-onlyRead the tenant's AI Guard policy by id.
island_get_ai_guard_policy_by_idsFreeRead-onlyRead the tenant's AI Guard policy by id, in the bulk-read shape.
island_get_ai_guard_ruleFreeRead-onlyRead one AI Guard rule by id.
island_get_ai_guard_rules_by_idsFreeRead-onlyRead several AI Guard rules in one call by id.
island_get_ai_guard_tool_profileFreeRead-onlyRead one AI Guard tool governance profile by id.
island_get_ai_guard_tool_profiles_by_idsFreeRead-onlyRead several AI Guard tool governance profiles in one call by id.
island_get_auditing_profileFreeRead-onlyRead one auditing profile by id.
island_get_auditing_profiles_by_idsFreeRead-onlyRead several auditing profiles in one call by id.
island_get_cloud_firewall_policyFreeRead-onlyRead the tenant's cloud firewall policy by id.
island_get_cloud_firewall_policy_by_idsFreeRead-onlyRead the tenant's cloud firewall policy by id, in the bulk-read shape.
island_get_cloud_firewall_ruleFreeRead-onlyRead one cloud firewall rule by id.
island_get_cloud_firewall_rules_by_idsFreeRead-onlyRead several cloud firewall rules in one call by id.
island_get_ssl_inspection_policies_by_idsFreeRead-onlyRead several SSL inspection policies in one call by id.
island_get_ssl_inspection_policyFreeRead-onlyRead one SSL inspection policy by id.
island_get_ssl_inspection_ruleFreeRead-onlyRead one SSL inspection rule by id.
island_get_ssl_inspection_rules_by_idsFreeRead-onlyRead several SSL inspection rules in one call by id.
island_get_web_security_profileFreeRead-onlyRead one web security profile by id.
island_get_web_security_profiles_by_idsFreeRead-onlyRead several web security profiles in one call by id.
island_list_access_approval_workflow_requestsFreeRead-onlyList application access approval requests.
island_list_access_route_usagesFreeRead-onlyList everything that references one private access route.
island_list_access_routesFreeRead-onlyList every private access route in the tenant.
island_list_access_rule_usagesFreeRead-onlyList everything that references one application access rule.
island_list_access_rulesFreeRead-onlyList every application access rule in the tenant.
island_list_ai_guard_agent_identitiesFreeRead-onlyList every AI Guard custom agent identity in the tenant.
island_list_ai_guard_agent_identity_usagesFreeRead-onlyList everything that references one AI Guard custom agent identity.
island_list_ai_guard_auditing_profile_usagesFreeRead-onlyList everything that references one AI Guard auditing profile.
island_list_ai_guard_auditing_profilesFreeRead-onlyList every AI Guard auditing profile in the tenant.
island_list_ai_guard_catalogFreeRead-onlyGet a list of all AI Guard catalog items — the valid agent/model/LLM provider tokens a rule can reference.
island_list_ai_guard_policyFreeRead-onlyRead the tenant's AI Guard policy.
island_list_ai_guard_policy_usagesFreeRead-onlyList everything that references one AI Guard policy.
island_list_ai_guard_rule_usagesFreeRead-onlyList everything that references one AI Guard rule.
island_list_ai_guard_rulesFreeRead-onlyList every AI Guard rule in the tenant.
island_list_ai_guard_tool_profile_usagesFreeRead-onlyList everything that references one AI Guard tool governance profile.
island_list_ai_guard_tool_profilesFreeRead-onlyList every AI Guard tool governance profile in the tenant.
island_list_auditing_profile_usagesFreeRead-onlyList everything that references one auditing profile.
island_list_auditing_profilesFreeRead-onlyList every auditing profile in the tenant.
island_list_cloud_firewall_policyFreeRead-onlyRead the tenant's cloud firewall policy.
island_list_cloud_firewall_policy_usagesFreeRead-onlyList everything that references one cloud firewall policy.
island_list_cloud_firewall_rule_usagesFreeRead-onlyList everything that references one cloud firewall rule.
island_list_cloud_firewall_rulesFreeRead-onlyList every cloud firewall rule in the tenant.
island_list_ssl_inspection_policiesFreeRead-onlyList every SSL inspection policy in the tenant.
island_list_ssl_inspection_policy_usagesFreeRead-onlyList everything that references one SSL inspection policy.
island_list_ssl_inspection_rule_usagesFreeRead-onlyList everything that references one SSL inspection rule.
island_list_ssl_inspection_rulesFreeRead-onlyList every SSL inspection rule in the tenant.
island_list_web_security_profile_usagesFreeRead-onlyList everything that references one web security profile.
island_list_web_security_profilesFreeRead-onlyList every web security profile in the tenant.
island_pre_approve_access_approval_workflow_requestProDestructiveDESTRUCTIVE: pre-approve application access before anyone asks for it.
island_reorder_access_routesProDestructiveDESTRUCTIVE: reorder the private access routes.
island_reorder_access_rulesProDestructiveDESTRUCTIVE: reorder the application access rules.
island_reorder_ai_guard_rulesProDestructiveDESTRUCTIVE: reorder the AI Guard rules.
island_reorder_cloud_firewall_rulesProDestructiveDESTRUCTIVE: reorder the cloud firewall rules.
island_set_default_ai_guard_auditing_profileProWriteMake one AI Guard auditing profile the tenant default.
island_set_default_auditing_profileProWriteMake one auditing profile the tenant default.
island_set_default_web_security_profileProWriteMake one web security profile the tenant default.
island_update_access_approval_workflow_requestProDestructiveDESTRUCTIVE: decide or revoke an application access approval request.
island_update_access_routeProWriteUpdate a private access route in place.
island_update_access_ruleProWriteUpdate an existing access rule by id.
island_update_ai_guard_agent_identityProDestructiveDESTRUCTIVE: update an AI Guard custom agent identity in place.
island_update_ai_guard_auditing_profileProWriteUpdate an AI Guard auditing profile in place.
island_update_ai_guard_policyProDestructiveDESTRUCTIVE: update an AI Guard policy in place.
island_update_ai_guard_ruleProWriteUpdate an AI Guard rule in place.
island_update_ai_guard_tool_profileProWriteUpdate an AI Guard tool governance profile in place.
island_update_auditing_profileProWriteUpdate an auditing profile in place.
island_update_cloud_firewall_policyProWriteUpdate a cloud firewall policy in place.
island_update_cloud_firewall_ruleProWriteUpdate a cloud firewall rule in place.
island_update_ssl_inspection_policyProDestructiveDESTRUCTIVE: update an SSL inspection policy in place.
island_update_ssl_inspection_ruleProWriteUpdate an SSL inspection rule in place.
island_update_web_security_profileProWriteUpdate a web security profile in place.

[Island Browser] Create a private access route. POST /api/external/v1/accessRoutes. Required: name and priority (1 is the highest; omit priority to place the route first within its hierarchical precedence). configuration carries the destination and the connector groups that serve it, and sourceConditions (or isEveryone) decides who the route applies to. Island documents these fields: name, priority, sourceConditions, description, configuration, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, hierarchicalPrecedence, enabled, isEveryone, audience. Returns Island's raw JSON. A private access route maps a network destination to the connector groups that reach it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, priority, sourceConditions, description, configuration, isDefault, isBuiltIn, audienceTargetPolicyId, sourceConditionsId, hierarchicalPrecedence, enabled, isEveryone, audience.

[Island Browser] Create an application access rule. POST /api/external/v1/rule. Required: name and priority (1 is the highest; omit priority to place the rule first within its hierarchical precedence). The fields that decide what the rule DOES are sourceConditions / excludedSourceConditions, destinationConditions / excludedDestinationConditions, enforcementPoints (IslandBrowserOrExtension, SecureWebGateway, IslandDesktop) and the profile ids - auditingProfileId, dlpProfileId, dataLeakageProfileId, uploadProfileId, downloadProfileId, webSecurityProfileId, customResourcesProfileId, endUserIndicationsProfileId - each of which falls back to the tenant default when null. Island documents these fields: name, description, priority, enforcementPoints, inPageRpaProfiles, enabled, reportEvents, auditingProfileId, dataLeakageProfileId, downloadProfileId, uploadProfileId, customResourcesProfileId, endUserIndicationsProfileId, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, networkingProfile, dlpProfileId, webSecurityProfileId, endUserDescription. Returns Island's raw JSON. An application access rule matches source and destination conditions and applies the auditing, data-protection, upload, download and web-security profiles named on it; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, priority, enforcementPoints, inPageRpaProfiles, enabled, reportEvents, auditingProfileId, dataLeakageProfileId, downloadProfileId, uploadProfileId, customResourcesProfileId, endUserIndicationsProfileId, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, networkingProfile, dlpProfileId, webSecurityProfileId, endUserDescription.

[Island Browser] DESTRUCTIVE: create an AI Guard custom agent identity. Why this is destructive: The apiKey field of the agent identity is a credential the CALLER supplies and Island stores. Sending it replaces whatever was stored under that identity, and Island publishes no way to read the previous value back. POST /api/external/v1/aiGuardCustomAgentIdentity. Required: name. apiKey, alias, userAgent and header are the four ways AI Guard recognises the agent, and apiKey is a LIVE credential - it is stored on the identity and returned by every read of it, so treat the value as a secret. Island documents these fields: name, description, apiKey, alias, userAgent, header. Returns Island's raw JSON. A custom agent identity tells AI Guard how to recognise one AI agent - by its API key, alias, User-Agent or a distinguishing header.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, apiKey, alias, userAgent, header.

[Island Browser] Create an AI Guard auditing profile. POST /api/external/v1/aiGuardAuditingProfile. Required: name. Everything else is a switch: the promptEventsEnabled / promptArtifactsEnabled, responseEventsEnabled / responseArtifactsEnabled, toolCallEventsEnabled / toolCallArtifactsEnabled and toolResultEventsEnabled / toolResultArtifactsEnabled pairs decide what is recorded, and the anonymize* flags decide what is redacted before it is stored. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, anonymizeDeviceNetworkEvents, promptEventsEnabled, promptArtifactsEnabled, responseEventsEnabled, responseArtifactsEnabled, toolCallEventsEnabled, toolCallArtifactsEnabled, toolResultEventsEnabled, toolResultArtifactsEnabled. Returns Island's raw JSON. An AI Guard auditing profile decides which prompt, response and tool-call events and artifacts are recorded, and what is anonymized.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, anonymizeDeviceNetworkEvents, promptEventsEnabled, promptArtifactsEnabled, responseEventsEnabled, responseArtifactsEnabled, toolCallEventsEnabled, toolCallArtifactsEnabled, toolResultEventsEnabled, toolResultArtifactsEnabled.

[Island Browser] Create an AI Guard rule. POST /api/external/v1/aiGuardRule. Required: name, policyId (the AI Guard policy from island_list_ai_guard_policy) and priority (1 is the highest). enforcementPoints accepts SecureWebGateway, Hooks and McpGateway, and empty or omitted applies the rule at every control point; agentIdentities and llmProviders take the tokens island_list_ai_guard_catalog returns; aiGuardAuditingProfileId falls back to the tenant default when omitted. Island documents these fields: name, description, policyId, priority, sourceConditions, excludedSourceConditions, inspectorConditions, enabled, enforcementPoints, aiGuardAuditingProfileId, hierarchicalPrecedence, agentIdentities, llmProviders. Returns Island's raw JSON. An AI Guard rule matches AI traffic by source, agent identity and LLM provider and applies the enforcement points and auditing profile named on it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, policyId, priority, sourceConditions, excludedSourceConditions, inspectorConditions, enabled, enforcementPoints, aiGuardAuditingProfileId, hierarchicalPrecedence, agentIdentities, llmProviders.

[Island Browser] Create an AI Guard tool governance profile. POST /api/external/v1/aiGuardToolGovernanceProfile. Required: name. entries is the per-connector allow and deny list of the tools an agent may call. Island documents these fields: name, description, entries. Returns Island's raw JSON. A tool governance profile is the per-connector allow and deny list of the tools an AI agent may call.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, entries.

[Island Browser] Create an auditing profile. POST /api/external/v1/AuditingProfile. Required: name. Everything else is a switch over what the browser records - webNavigationEnabled, fileUploadEnabled, fileDownloadEnabled, the clipboard* group, printEnabled, saveAsEnabled, takeScreenshot, trackClicks, logKeystrokes, the RecordingEnabled group and the genAiInteraction pair - beside the anonymize* flags that decide what is redacted. A profile that turns recording ON starts capturing end-user activity, so treat it as a privacy decision. Island documents 40 fields; the read tools return the full set. Returns Island's raw JSON. An auditing profile decides which browser activity is recorded - navigation, uploads, downloads, clipboard, screenshots and session recording - and what is anonymized.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, takeScreenshot, trackClicks, logKeystrokes, clipboardEnabled, clipboardCopyCut, clipboardPaste, clipboardContent, webNavigationEnabled, fileUploadEnabled, fileDownloadEnabled, printEnabled, saveAsEnabled, customScriptsEnabled, securityEventsEnabled, secureShellEventsEnabled, secureShellCommandEventsEnabled, secureShellSessionRecordingEnabled, verboseNetworkLoggingEnabled, rdpEventsEnabled, showOnlyPrivateIndicator, applyAnonymousIndication, smbEventsEnabled, applicationLoginEnabled, vibeCodingPublishingEnabled, shareEnabled, videoSessionRecordingAudioEnabled, videoSessionRecordingEnabled, deviceNetworkEventsEnabled, anonymizeDeviceNetworkEvents, rdpRecordingEnabled, smbRecordingEnabled, genAiInteractionEventsEnabled, genAiInteractionArtifactsEnabled, serverCertificateEnabled, screenshotAndScreenShareEnabled.

[Island Browser] Create a cloud firewall rule. POST /api/external/v1/CfwRule. Required: name. action is the verdict (Unknown, Allow, Drop), dropBehavior chooses SilentDrop or DropWithResponse, and sendToSwg only means anything when action is Allow. Destinations come from BOTH networkDestinationIds (reusable Network Destination Objects, referenced by id) and destinations (destinations OWNED by this rule, created and deleted with it); both empty means any destination. enabled defaults to true. Island documents these fields: name, destinations, description, action, dropBehavior, audit, sendToSwg, deepPacketInspection, priority, enabled, source, networkDestinationIds. Returns Island's raw JSON. A cloud firewall rule matches network traffic by source, site and destination and allows it, drops it or forwards it to the secure web gateway; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, destinations, description, action, dropBehavior, audit, sendToSwg, deepPacketInspection, priority, enabled, source, networkDestinationIds.

[Island Browser] Create an SSL inspection policy. POST /api/external/v1/SwgSslPolicy. Island marks no field required and documents three: name, description and rules, where rules is the ordered list of SSL inspection rule references ({ "id": "..." }) the policy evaluates. Returns Island's raw JSON. An SSL inspection policy groups the ordered SSL inspection rules that decide what is decrypted.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, rules.

[Island Browser] Create an SSL inspection rule. POST /api/external/v1/SwgSslRule. Island marks no field required. action is DoNotDecrypt or Decrypt, hierarchicalPrecedence is BeforeSubtenant or AfterSubtenant, priority 1 is the highest, and rootCaId / rootCaCertificateId select the decryption certificate (null uses the tenant default). policyId names the SSL inspection policy the rule belongs to. Island documents these fields: name, description, action, enabled, priority, hierarchicalPrecedence, ports, rootCaId, rootCaCertificateId, isDefault, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, policyId. Returns Island's raw JSON. An SSL inspection rule decides whether matching TLS traffic is decrypted, on which ports and with which root CA.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, action, enabled, priority, hierarchicalPrecedence, ports, rootCaId, rootCaCertificateId, isDefault, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, policyId.

[Island Browser] Create a web security profile. POST /api/external/v1/webSecurityProfiles. Required: name, antiPhishingVerdict (Allow, Block, Warn), attackSurfaceReductionRiskySiteVerdict and attackSurfaceReductionSafeSiteVerdict. antiPhishingIdentifiers carries the company email domains and is required whenever antiPhishingVerdict is not Allow; forceOrganizationalCredentialsVerdict accepts Allow, Block or AllowAndAudit; the cooldown fields are in minutes. Island documents these fields: name, description, antiPhishingVerdict, attackSurfaceReductionRiskySiteVerdict, attackSurfaceReductionSafeSiteVerdict, antiPhishingEnabled, antiPhishingIdentifiers, antiPhishingCooldown, attackSurfaceReductionEnabled, attackSurfaceReductionAllModules, attackSurfaceReductionModules, extensionsDisabled, extensionAllowList, signUpCommonPasswordEnabled, signUpCommonPasswordVerdict, forceOrganizationalCredentialsEnabled, forceOrganizationalCredentialsVerdict, forceOrganizationalCredentialsIdentifiers, forceOrganizationalCredentialsCooldown. Returns Island's raw JSON. A web security profile carries the anti-phishing, attack-surface-reduction and organizational-credential protections a rule applies to browsing.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, antiPhishingVerdict, attackSurfaceReductionRiskySiteVerdict, attackSurfaceReductionSafeSiteVerdict, antiPhishingEnabled, antiPhishingIdentifiers, antiPhishingCooldown, attackSurfaceReductionEnabled, attackSurfaceReductionAllModules, attackSurfaceReductionModules, extensionsDisabled, extensionAllowList, signUpCommonPasswordEnabled, signUpCommonPasswordVerdict, forceOrganizationalCredentialsEnabled, forceOrganizationalCredentialsVerdict, forceOrganizationalCredentialsIdentifiers, forceOrganizationalCredentialsCooldown.

[Island Browser] DESTRUCTIVE: delete one private access route by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/accessRoutes/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access route id, from island_list_access_routes.

[Island Browser] DESTRUCTIVE: delete several private access routes in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/accessRoutes/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_access_routes. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one application access rule by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/rule/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The application access rule id, from island_list_access_rules.

[Island Browser] DESTRUCTIVE: delete several application access rules in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/rule/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_access_rules. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete several AI Guard custom agent identities in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/aiGuardCustomAgentIdentity/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_agent_identities. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one AI Guard custom agent identity by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/aiGuardCustomAgentIdentity/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard custom agent identity id, from island_list_ai_guard_agent_identities.

[Island Browser] DESTRUCTIVE: delete one AI Guard auditing profile by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/aiGuardAuditingProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.

[Island Browser] DESTRUCTIVE: delete several AI Guard auditing profiles in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/aiGuardAuditingProfile/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_auditing_profiles. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one AI Guard rule by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/aiGuardRule/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard rule id, from island_list_ai_guard_rules.

[Island Browser] DESTRUCTIVE: delete several AI Guard rules in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/aiGuardRule/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_rules. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one AI Guard tool governance profile by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/aiGuardToolGovernanceProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard tool governance profile id, from island_list_ai_guard_tool_profiles.

[Island Browser] DESTRUCTIVE: delete several AI Guard tool governance profiles in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/aiGuardToolGovernanceProfile/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_tool_profiles. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one auditing profile by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/AuditingProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.

[Island Browser] DESTRUCTIVE: delete several auditing profiles in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/AuditingProfile/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_auditing_profiles. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one cloud firewall rule by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/CfwRule/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall rule id, from island_list_cloud_firewall_rules.

[Island Browser] DESTRUCTIVE: delete several cloud firewall rules in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/CfwRule/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_cloud_firewall_rules. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete several SSL inspection policies in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/SwgSslPolicy/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ssl_inspection_policies. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one SSL inspection policy by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/SwgSslPolicy/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection policy id, from island_list_ssl_inspection_policies.

[Island Browser] DESTRUCTIVE: delete one SSL inspection rule by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/SwgSslRule/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection rule id, from island_list_ssl_inspection_rules.

[Island Browser] DESTRUCTIVE: delete several SSL inspection rules in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/SwgSslRule/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_ssl_inspection_rules. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one web security profile by id. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/webSecurityProfiles/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.

[Island Browser] DESTRUCTIVE: delete several web security profiles in one call by id. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. DELETE /api/external/v1/webSecurityProfiles/DeleteByIds. Send the ids as JSON: { "ids": ["<id>", "<id>"] }, using ids from island_list_web_security_profiles. Every id in the array is deleted in the one call; Island offers no dry run and no undo, so read the ids back first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] Export one private access route as a portable configuration. GET /api/external/v1/accessRoutes/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access route id, from island_list_access_routes.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one application access rule as a portable configuration. GET /api/external/v1/rule/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The application access rule id, from island_list_access_rules.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI Guard custom agent identity as a portable configuration. GET /api/external/v1/aiGuardCustomAgentIdentity/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard custom agent identity id, from island_list_ai_guard_agent_identities.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI Guard auditing profile as a portable configuration. GET /api/external/v1/aiGuardAuditingProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI Guard policy as a portable configuration. GET /api/external/v1/aiGuardPolicy/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard policy id. Island keeps exactly one per tenant, so the id is the one island_list_ai_guard_policy returns.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI Guard rule as a portable configuration. GET /api/external/v1/aiGuardRule/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard rule id, from island_list_ai_guard_rules.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one AI Guard tool governance profile as a portable configuration. GET /api/external/v1/aiGuardToolGovernanceProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard tool governance profile id, from island_list_ai_guard_tool_profiles.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every private access route in the tenant as a portable configuration. GET /api/external/v1/accessRoutes/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every application access rule in the tenant as a portable configuration. GET /api/external/v1/rule/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every AI Guard custom agent identity in the tenant as a portable configuration. GET /api/external/v1/aiGuardCustomAgentIdentity/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every AI Guard auditing profile in the tenant as a portable configuration. GET /api/external/v1/aiGuardAuditingProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export the tenant's AI Guard policy as a portable configuration. GET /api/external/v1/aiGuardPolicy/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every AI Guard rule in the tenant as a portable configuration. GET /api/external/v1/aiGuardRule/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every AI Guard tool governance profile in the tenant as a portable configuration. GET /api/external/v1/aiGuardToolGovernanceProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every auditing profile in the tenant as a portable configuration. GET /api/external/v1/AuditingProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export the tenant's cloud firewall policy as a portable configuration. GET /api/external/v1/CfwPolicy/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every cloud firewall rule in the tenant as a portable configuration. GET /api/external/v1/CfwRule/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every SSL inspection policy in the tenant as a portable configuration. GET /api/external/v1/SwgSslPolicy/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every SSL inspection rule in the tenant as a portable configuration. GET /api/external/v1/SwgSslRule/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every web security profile in the tenant as a portable configuration. GET /api/external/v1/webSecurityProfiles/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one auditing profile as a portable configuration. GET /api/external/v1/AuditingProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one cloud firewall policy as a portable configuration. GET /api/external/v1/CfwPolicy/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall policy id. Island keeps exactly one per tenant, so the id is the one island_list_cloud_firewall_policy returns.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one cloud firewall rule as a portable configuration. GET /api/external/v1/CfwRule/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall rule id, from island_list_cloud_firewall_rules.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one SSL inspection policy as a portable configuration. GET /api/external/v1/SwgSslPolicy/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection policy id, from island_list_ssl_inspection_policies.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one SSL inspection rule as a portable configuration. GET /api/external/v1/SwgSslRule/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection rule id, from island_list_ssl_inspection_rules.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one web security profile as a portable configuration. GET /api/external/v1/webSecurityProfiles/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Read one private access route by id. GET /api/external/v1/accessRoutes/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A private access route maps a network destination to the connector groups that reach it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access route id, from island_list_access_routes.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several private access routes in one call by id. POST /api/external/v1/accessRoutes/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_access_routes. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. A private access route maps a network destination to the connector groups that reach it.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one application access rule by id. GET /api/external/v1/rule/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An application access rule matches source and destination conditions and applies the auditing, data-protection, upload, download and web-security profiles named on it; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The application access rule id, from island_list_access_rules.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several application access rules in one call by id. POST /api/external/v1/rule/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_access_rules. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An application access rule matches source and destination conditions and applies the auditing, data-protection, upload, download and web-security profiles named on it; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several AI Guard custom agent identities in one call by id. POST /api/external/v1/aiGuardCustomAgentIdentity/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_agent_identities. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. A custom agent identity tells AI Guard how to recognise one AI agent - by its API key, alias, User-Agent or a distinguishing header.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one AI Guard custom agent identity by id. GET /api/external/v1/aiGuardCustomAgentIdentity/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A custom agent identity tells AI Guard how to recognise one AI agent - by its API key, alias, User-Agent or a distinguishing header.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard custom agent identity id, from island_list_ai_guard_agent_identities.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one AI Guard auditing profile by id. GET /api/external/v1/aiGuardAuditingProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An AI Guard auditing profile decides which prompt, response and tool-call events and artifacts are recorded, and what is anonymized.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several AI Guard auditing profiles in one call by id. POST /api/external/v1/aiGuardAuditingProfile/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_auditing_profiles. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An AI Guard auditing profile decides which prompt, response and tool-call events and artifacts are recorded, and what is anonymized.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read the tenant's AI Guard policy by id. GET /api/external/v1/aiGuardPolicy/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The AI Guard policy is the tenant-wide container its ordered AI Guard rules belong to.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard policy id. Island keeps exactly one per tenant, so the id is the one island_list_ai_guard_policy returns.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read the tenant's AI Guard policy by id, in the bulk-read shape. POST /api/external/v1/aiGuardPolicy/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>"] }. Island keeps exactly one AI Guard policy per tenant, so the array holds at most the single id island_list_ai_guard_policy returns. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The AI Guard policy is the tenant-wide container its ordered AI Guard rules belong to.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one AI Guard rule by id. GET /api/external/v1/aiGuardRule/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An AI Guard rule matches AI traffic by source, agent identity and LLM provider and applies the enforcement points and auditing profile named on it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard rule id, from island_list_ai_guard_rules.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several AI Guard rules in one call by id. POST /api/external/v1/aiGuardRule/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_rules. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An AI Guard rule matches AI traffic by source, agent identity and LLM provider and applies the enforcement points and auditing profile named on it.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one AI Guard tool governance profile by id. GET /api/external/v1/aiGuardToolGovernanceProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A tool governance profile is the per-connector allow and deny list of the tools an AI agent may call.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard tool governance profile id, from island_list_ai_guard_tool_profiles.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several AI Guard tool governance profiles in one call by id. POST /api/external/v1/aiGuardToolGovernanceProfile/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ai_guard_tool_profiles. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. A tool governance profile is the per-connector allow and deny list of the tools an AI agent may call.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one auditing profile by id. GET /api/external/v1/AuditingProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An auditing profile decides which browser activity is recorded - navigation, uploads, downloads, clipboard, screenshots and session recording - and what is anonymized.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several auditing profiles in one call by id. POST /api/external/v1/AuditingProfile/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_auditing_profiles. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An auditing profile decides which browser activity is recorded - navigation, uploads, downloads, clipboard, screenshots and session recording - and what is anonymized.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read the tenant's cloud firewall policy by id. GET /api/external/v1/CfwPolicy/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The cloud firewall policy carries the tenant-wide firewall settings, including the default action used when no rule matches at all.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall policy id. Island keeps exactly one per tenant, so the id is the one island_list_cloud_firewall_policy returns.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read the tenant's cloud firewall policy by id, in the bulk-read shape. POST /api/external/v1/CfwPolicy/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>"] }. Island keeps exactly one cloud firewall policy per tenant, so the array holds at most the single id island_list_cloud_firewall_policy returns. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The cloud firewall policy carries the tenant-wide firewall settings, including the default action used when no rule matches at all.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one cloud firewall rule by id. GET /api/external/v1/CfwRule/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A cloud firewall rule matches network traffic by source, site and destination and allows it, drops it or forwards it to the secure web gateway; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall rule id, from island_list_cloud_firewall_rules.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several cloud firewall rules in one call by id. POST /api/external/v1/CfwRule/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_cloud_firewall_rules. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. A cloud firewall rule matches network traffic by source, site and destination and allows it, drops it or forwards it to the secure web gateway; rules are ordered and the first match wins.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several SSL inspection policies in one call by id. POST /api/external/v1/SwgSslPolicy/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ssl_inspection_policies. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An SSL inspection policy groups the ordered SSL inspection rules that decide what is decrypted.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one SSL inspection policy by id. GET /api/external/v1/SwgSslPolicy/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An SSL inspection policy groups the ordered SSL inspection rules that decide what is decrypted.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection policy id, from island_list_ssl_inspection_policies.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one SSL inspection rule by id. GET /api/external/v1/SwgSslRule/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An SSL inspection rule decides whether matching TLS traffic is decrypted, on which ports and with which root CA.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection rule id, from island_list_ssl_inspection_rules.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several SSL inspection rules in one call by id. POST /api/external/v1/SwgSslRule/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_ssl_inspection_rules. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. An SSL inspection rule decides whether matching TLS traffic is decrypted, on which ports and with which root CA.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read one web security profile by id. GET /api/external/v1/webSecurityProfiles/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A web security profile carries the anti-phishing, attack-surface-reduction and organizational-credential protections a rule applies to browsing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read several web security profiles in one call by id. POST /api/external/v1/webSecurityProfiles/GetByIds. Optional filters: includeType. Send the ids as the JSON filter: { "ids": ["<id>", "<id>"] }, using ids from island_list_web_security_profiles. Island answers the same records the single-id read returns, several at a time. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. A web security profile carries the anti-phishing, attack-surface-reduction and organizational-credential protections a rule applies to browsing.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List application access approval requests. GET /api/external/v1/ApplicationAccessApprovalWorkflow. Optional filters: UserWorkflowTypes, TargetId, Email, Status. Returns Island's raw JSON. An approval request is an end user asking for access Island would otherwise block - a bypass, an extension install or a vibe-coding publish. Island declares no paging on this endpoint, so every request matching the filters comes back in one response. Start here before deciding anything: island_update_access_approval_workflow_request needs the ticketId this read returns, and island_pre_approve_access_approval_workflow_request grants access with no request at all.

ParamTypeRequiredDefaultDescription
emailstringnonullOptional. Return only requests for this end user, by email address.
statusstringnonullOptional. Return only requests in this state. Valid values: Approved, Denied, Revoked, Unresolved. Island declares this parameter as a REPEATABLE array (style=form, explode=true) and StackJack sends a single value, so filter on one state per call.
targetIdstringnonullOptional. Return only requests aimed at this target - the user id, device id or identity-object id the request was raised against.
userWorkflowTypesstringnonullOptional. Return only requests of this workflow type. Valid values: Bypass, ExtensionRequest, VibeCodingPublish. Island declares this parameter as a REPEATABLE array (style=form, explode=true) and StackJack sends a single value, so filter on one type per call.

[Island Browser] List everything that references one private access route. GET /api/external/v1/accessRoutes/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the private access route: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The private access route id, from island_list_access_routes.

[Island Browser] List every private access route in the tenant. GET /api/external/v1/accessRoutes. Optional filters: includeType. Returns Island's raw JSON. A private access route maps a network destination to the connector groups that reach it. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of private access routes the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one application access rule. GET /api/external/v1/rule/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the application access rule: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The application access rule id, from island_list_access_rules.

[Island Browser] List every application access rule in the tenant. GET /api/external/v1/rule. Optional filters: includeType. Returns Island's raw JSON. An application access rule matches source and destination conditions and applies the auditing, data-protection, upload, download and web-security profiles named on it; rules are ordered and the first match wins. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of application access rules the tenant has comes back in one response. Start here for the tenant's application access policy: island_get_access_rule reads one rule in full, island_list_access_rule_usages shows what a rule references, and island_reorder_access_rules changes the evaluation order.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List every AI Guard custom agent identity in the tenant. GET /api/external/v1/aiGuardCustomAgentIdentity. Optional filters: includeType. Returns Island's raw JSON. A custom agent identity tells AI Guard how to recognise one AI agent - by its API key, alias, User-Agent or a distinguishing header. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of AI Guard custom agent identities the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one AI Guard custom agent identity. GET /api/external/v1/aiGuardCustomAgentIdentity/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the AI Guard custom agent identity: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard custom agent identity id, from island_list_ai_guard_agent_identities.

[Island Browser] List everything that references one AI Guard auditing profile. GET /api/external/v1/aiGuardAuditingProfile/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the AI Guard auditing profile: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.

[Island Browser] List every AI Guard auditing profile in the tenant. GET /api/external/v1/aiGuardAuditingProfile. Optional filters: includeType. Returns Island's raw JSON. An AI Guard auditing profile decides which prompt, response and tool-call events and artifacts are recorded, and what is anonymized. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of AI Guard auditing profiles the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Get a list of all AI Guard catalog items — the valid agent/model/LLM provider tokens a rule can reference. GET /api/external/v1/aiGuardCatalog. Returns Island's raw JSON. The catalog is Island's own reference data, not tenant configuration: read it to learn the agent, model and LLM provider tokens island_create_ai_guard_rule and island_update_ai_guard_rule accept. Island returns the whole catalog in one response.

[Island Browser] Read the tenant's AI Guard policy. GET /api/external/v1/aiGuardPolicy. Optional filters: includeType. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The AI Guard policy is the tenant-wide container its ordered AI Guard rules belong to.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one AI Guard policy. GET /api/external/v1/aiGuardPolicy/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the AI Guard policy: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard policy id. Island keeps exactly one per tenant, so the id is the one island_list_ai_guard_policy returns.

[Island Browser] List everything that references one AI Guard rule. GET /api/external/v1/aiGuardRule/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the AI Guard rule: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard rule id, from island_list_ai_guard_rules.

[Island Browser] List every AI Guard rule in the tenant. GET /api/external/v1/aiGuardRule. Optional filters: includeType. Returns Island's raw JSON. An AI Guard rule matches AI traffic by source, agent identity and LLM provider and applies the enforcement points and auditing profile named on it. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of AI Guard rules the tenant has comes back in one response. Start here for what Island enforces on AI traffic: island_list_ai_guard_policy reads the policy these rules belong to, island_list_ai_guard_catalog lists the agent and LLM provider tokens a rule may reference, and island_list_ai_guard_agent_identities lists the custom agent identities it can match on.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one AI Guard tool governance profile. GET /api/external/v1/aiGuardToolGovernanceProfile/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the AI Guard tool governance profile: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard tool governance profile id, from island_list_ai_guard_tool_profiles.

[Island Browser] List every AI Guard tool governance profile in the tenant. GET /api/external/v1/aiGuardToolGovernanceProfile. Optional filters: includeType. Returns Island's raw JSON. A tool governance profile is the per-connector allow and deny list of the tools an AI agent may call. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of AI Guard tool governance profiles the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one auditing profile. GET /api/external/v1/AuditingProfile/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the auditing profile: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.

[Island Browser] List every auditing profile in the tenant. GET /api/external/v1/AuditingProfile. Optional filters: includeType. Returns Island's raw JSON. An auditing profile decides which browser activity is recorded - navigation, uploads, downloads, clipboard, screenshots and session recording - and what is anonymized. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of auditing profiles the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] Read the tenant's cloud firewall policy. GET /api/external/v1/CfwPolicy. Optional filters: includeType. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation. The cloud firewall policy carries the tenant-wide firewall settings, including the default action used when no rule matches at all.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one cloud firewall policy. GET /api/external/v1/CfwPolicy/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the cloud firewall policy: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall policy id. Island keeps exactly one per tenant, so the id is the one island_list_cloud_firewall_policy returns.

[Island Browser] List everything that references one cloud firewall rule. GET /api/external/v1/CfwRule/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the cloud firewall rule: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The cloud firewall rule id, from island_list_cloud_firewall_rules.

[Island Browser] List every cloud firewall rule in the tenant. GET /api/external/v1/CfwRule. Optional filters: includeType. Returns Island's raw JSON. A cloud firewall rule matches network traffic by source, site and destination and allows it, drops it or forwards it to the secure web gateway; rules are ordered and the first match wins. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of cloud firewall rules the tenant has comes back in one response. Start here for the tenant's network enforcement: island_list_cloud_firewall_policy reads the policy the rules are evaluated under, and island_reorder_cloud_firewall_rules changes the order the first match is taken in.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List every SSL inspection policy in the tenant. GET /api/external/v1/SwgSslPolicy. Optional filters: includeType. Returns Island's raw JSON. An SSL inspection policy groups the ordered SSL inspection rules that decide what is decrypted. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of SSL inspection policies the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one SSL inspection policy. GET /api/external/v1/SwgSslPolicy/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the SSL inspection policy: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection policy id, from island_list_ssl_inspection_policies.

[Island Browser] List everything that references one SSL inspection rule. GET /api/external/v1/SwgSslRule/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the SSL inspection rule: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The SSL inspection rule id, from island_list_ssl_inspection_rules.

[Island Browser] List every SSL inspection rule in the tenant. GET /api/external/v1/SwgSslRule. Optional filters: includeType. Returns Island's raw JSON. An SSL inspection rule decides whether matching TLS traffic is decrypted, on which ports and with which root CA. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of SSL inspection rules the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] List everything that references one web security profile. GET /api/external/v1/webSecurityProfiles/usages/. Path parameters: id. Returns Island's raw JSON. Read this before you change or delete the web security profile: it names the policies, rules and profiles that point at it, which is what a change would affect. Island returns every reference in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.

[Island Browser] List every web security profile in the tenant. GET /api/external/v1/webSecurityProfiles. Optional filters: includeType. Returns Island's raw JSON. A web security profile carries the anti-phishing, attack-surface-reduction and organizational-credential protections a rule applies to browsing. Island returns the WHOLE collection here: its document declares no page size, no cursor and no total on this endpoint, so the whole set of web security profiles the tenant has comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of each record Island includes. Valid values: None, Default, All, Update, DefaultWithAdminInfo. Island defaults it to Default; ask for All when a field the editor shows is missing from the Default shape.

[Island Browser] DESTRUCTIVE: pre-approve application access before anyone asks for it. Why this is destructive: Grants application access ahead of any request - a privilege grant, and the wiring manifest names permission grants destructive outright. POST /api/external/v1/ApplicationAccessApprovalWorkflow/preApprove. Required: title, userWorkflowType (Bypass, ExtensionRequest, VibeCodingPublish), targetType (User, Device, IdentityObject), targetId - required when targetType is User or Device - sourceConditions, required when targetType is IdentityObject, actions, and startTime and endTime as yyyy-MM-ddTHH:mm:ssZ in UTC. reason (up to 1000 characters) and email are optional. The window you send is the whole grant: access starts at startTime and ends at endTime. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: title, reason, userWorkflowType, actions, email, targetType, targetId, startTime, endTime, sourceConditions.

[Island Browser] DESTRUCTIVE: reorder the private access routes. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order - one entry per reorderable row with its target priority - so this is a wholesale replacement of the evaluation order, and an omitted row moves. Island does not mark it destructive; the documented wholesale-replacement rule wins, the same call that promoted island_upsert_user_audience_mapping. POST /api/external/v1/accessRoutes/reorder. Send { "entries": [ { "id": "<id>", "priority": 1 }, ... ] } - the COMPLETE desired order, one entry per reorderable private access route with its 1-based priority. Read the current order from island_list_access_routes first: a row you leave out of the array keeps its own position, so a partial array renumbers the rest around it. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the application access rules. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order - one entry per reorderable row with its target priority - so this is a wholesale replacement of the evaluation order, and an omitted row moves. Island does not mark it destructive; the documented wholesale-replacement rule wins, the same call that promoted island_upsert_user_audience_mapping. POST /api/external/v1/rule/reorder. Send { "entries": [ { "id": "<id>", "priority": 1 }, ... ] } - the COMPLETE desired order, one entry per reorderable application access rule with its 1-based priority. Read the current order from island_list_access_rules first: a row you leave out of the array keeps its own position, so a partial array renumbers the rest around it. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the AI Guard rules. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order - one entry per reorderable row with its target priority - so this is a wholesale replacement of the evaluation order, and an omitted row moves. Island does not mark it destructive; the documented wholesale-replacement rule wins, the same call that promoted island_upsert_user_audience_mapping. POST /api/external/v1/aiGuardRule/reorder. Send { "entries": [ { "id": "<id>", "priority": 1 }, ... ] } - the COMPLETE desired order, one entry per reorderable AI Guard rule with its 1-based priority. Read the current order from island_list_ai_guard_rules first: a row you leave out of the array keeps its own position, so a partial array renumbers the rest around it. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] DESTRUCTIVE: reorder the cloud firewall rules. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order - one entry per reorderable row with its target priority - so this is a wholesale replacement of the evaluation order, and an omitted row moves. Island does not mark it destructive; the documented wholesale-replacement rule wins, the same call that promoted island_upsert_user_audience_mapping. POST /api/external/v1/CfwRule/reorder. Send { "entries": [ { "id": "<id>", "priority": 1 }, ... ] } - the COMPLETE desired order, one entry per reorderable cloud firewall rule with its 1-based priority. Read the current order from island_list_cloud_firewall_rules first: a row you leave out of the array keeps its own position, so a partial array renumbers the rest around it. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] Make one AI Guard auditing profile the tenant default. POST /api/external/v1/aiGuardAuditingProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. Every rule that names no AI Guard auditing profile explicitly uses the default, so this changes behaviour wherever the field was left empty. The AI Guard auditing profile that was the default simply stops being it - nothing is deleted - and calling this on the old one puts it back.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.

[Island Browser] Make one auditing profile the tenant default. POST /api/external/v1/AuditingProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. Every rule that names no auditing profile explicitly uses the default, so this changes behaviour wherever the field was left empty. The auditing profile that was the default simply stops being it - nothing is deleted - and calling this on the old one puts it back.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.

[Island Browser] Make one web security profile the tenant default. POST /api/external/v1/webSecurityProfiles//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. Every rule that names no web security profile explicitly uses the default, so this changes behaviour wherever the field was left empty. The web security profile that was the default simply stops being it - nothing is deleted - and calling this on the old one puts it back.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.

[Island Browser] DESTRUCTIVE: decide or revoke an application access approval request. Why this is destructive: Decides an application-access approval request: it grants or revokes a named person access to an application. PATCH /api/external/v1/ApplicationAccessApprovalWorkflow/UpdateApprovalRequest. Required: ticketId, the request guid from island_list_access_approval_workflow_requests. startTime and endTime (yyyy-MM-ddTHH:mm:ssZ, UTC) move the access window; shouldRevoke true ENDS the access the request granted; reason is free text recorded with the decision. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ticketId, startTime, endTime, shouldRevoke, reason.

[Island Browser] Update a private access route in place. PATCH /api/external/v1/accessRoutes/. Path parameters: id. Send only the fields you want changed. configuration, sourceConditions and audience are replaced as a whole when you send them, so send each one complete. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, configuration, sourceConditions, sourceConditionsId, priority, hierarchicalPrecedence, enabled, isEveryone, audience. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, isDefault, isBuiltIn, audienceTargetPolicyId, configuration, sourceConditions, sourceConditionsId, priority, hierarchicalPrecedence, enabled, isEveryone, audience.
idstringyesRequired. The private access route id, from island_list_access_routes.

[Island Browser] Update an existing access rule by id. Reversible — the change takes effect only after a separate push-configuration step. PATCH /api/external/v1/rule/. Path parameters: id. Send only the fields you want changed; Island leaves the rest alone. The collection fields - sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, enforcementPoints and inPageRpaProfiles - are replaced as a whole when you send them, so send each one complete. Island documents these fields: name, description, enabled, reportEvents, auditingProfileId, dataLeakageProfileId, downloadProfileId, uploadProfileId, dlpProfileId, webSecurityProfileId, customResourcesProfileId, endUserIndicationsProfileId, enforcementPoints, endUserDescription, priority, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, networkingProfile, inPageRpaProfiles. Returns Island's raw JSON. Island's own document declares 405 Method Not Allowed on this PATCH beside the ordinary responses, which most likely means a default or system-managed rule refuses to be edited. That is the vendor contract as published; StackJack sends the PATCH and passes the refusal back.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, enabled, reportEvents, auditingProfileId, dataLeakageProfileId, downloadProfileId, uploadProfileId, dlpProfileId, webSecurityProfileId, customResourcesProfileId, endUserIndicationsProfileId, enforcementPoints, endUserDescription, priority, sourceConditions, excludedSourceConditions, destinationConditions, excludedDestinationConditions, networkingProfile, inPageRpaProfiles.
idstringyesRequired. The application access rule id, from island_list_access_rules.

[Island Browser] DESTRUCTIVE: update an AI Guard custom agent identity in place. Why this is destructive: The apiKey field of the agent identity is a credential the CALLER supplies and Island stores. Sending it replaces whatever was stored under that identity, and Island publishes no way to read the previous value back. PATCH /api/external/v1/aiGuardCustomAgentIdentity/. Path parameters: id. Send only the fields you want changed. apiKey is a LIVE credential: sending it replaces the key the agent authenticates with, and the response returns the stored value. Island documents these fields: name, description, apiKey, alias, userAgent, header. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, apiKey, alias, userAgent, header.
idstringyesRequired. The AI Guard custom agent identity id, from island_list_ai_guard_agent_identities.

[Island Browser] Update an AI Guard auditing profile in place. PATCH /api/external/v1/aiGuardAuditingProfile/. Path parameters: id. Send only the switches you want changed; Island leaves the rest alone. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, anonymizeDeviceNetworkEvents, promptEventsEnabled, promptArtifactsEnabled, responseEventsEnabled, responseArtifactsEnabled, toolCallEventsEnabled, toolCallArtifactsEnabled, toolResultEventsEnabled, toolResultArtifactsEnabled. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, anonymizeDeviceNetworkEvents, promptEventsEnabled, promptArtifactsEnabled, responseEventsEnabled, responseArtifactsEnabled, toolCallEventsEnabled, toolCallArtifactsEnabled, toolResultEventsEnabled, toolResultArtifactsEnabled.
idstringyesRequired. The AI Guard auditing profile id, from island_list_ai_guard_auditing_profiles.

[Island Browser] DESTRUCTIVE: update an AI Guard policy in place. Why this is destructive: The rules array is the tenant AI Guard policy's COMPLETE rule set - its items are whole AI Guard rule bodies, not references - so sending it re-specifies every rule at once and an AI Guard rule left out of the array stops being part of the policy. Those rules have their own create, update, delete and reorder tools, so this one call can undo work done through them. Island publishes no prose on partial-array behaviour here; the shape is a wholesale replacement, so the platform rule applies and the verdict is destructive. PATCH /api/external/v1/aiGuardPolicy/. Path parameters: id. Send only the fields you want changed - but read the destructive warning above before sending rules. Island documents three fields: name, description and rules, where each item of rules is a WHOLE AI Guard rule body (name, policyId, priority, conditions, enforcementPoints, agentIdentities, llmProviders), not a reference. Change a single rule with island_update_ai_guard_rule and the order with island_reorder_ai_guard_rules instead. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, rules.
idstringyesRequired. The AI Guard policy id. Island keeps exactly one per tenant, so the id is the one island_list_ai_guard_policy returns.

[Island Browser] Update an AI Guard rule in place. PATCH /api/external/v1/aiGuardRule/. Path parameters: id. Send only the fields you want changed. sourceConditions, excludedSourceConditions, inspectorConditions, enforcementPoints, agentIdentities and llmProviders are replaced as a whole when you send them, so send each one complete. Island documents these fields: name, description, policyId, priority, enabled, hierarchicalPrecedence, enforcementPoints, aiGuardAuditingProfileId, sourceConditions, excludedSourceConditions, agentIdentities, llmProviders, inspectorConditions. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, policyId, priority, enabled, hierarchicalPrecedence, enforcementPoints, aiGuardAuditingProfileId, sourceConditions, excludedSourceConditions, agentIdentities, llmProviders, inspectorConditions.
idstringyesRequired. The AI Guard rule id, from island_list_ai_guard_rules.

[Island Browser] Update an AI Guard tool governance profile in place. PATCH /api/external/v1/aiGuardToolGovernanceProfile/. Path parameters: id. Send only the fields you want changed. entries is the per-connector allow and deny list and is replaced as a whole when you send it, so send every entry the profile should end up with. Island documents these fields: name, description, entries. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, entries.
idstringyesRequired. The AI Guard tool governance profile id, from island_list_ai_guard_tool_profiles.

[Island Browser] Update an auditing profile in place. PATCH /api/external/v1/AuditingProfile/. Path parameters: id. Send only the switches you want changed; Island leaves the rest alone. Turning a recording switch ON starts capturing end-user activity, so treat it as a privacy decision. Island documents 41 fields; island_get_auditing_profile returns the current value of each. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, anonymizeUserInfo, anonymizePrivateInfo, anonymizeMachineInfo, anonymizeSecurityEvents, takeScreenshot, trackClicks, logKeystrokes, clipboardEnabled, clipboardCopyCut, clipboardPaste, clipboardContent, webNavigationEnabled, fileUploadEnabled, fileDownloadEnabled, printEnabled, saveAsEnabled, shareEnabled, customScriptsEnabled, securityEventsEnabled, secureShellEventsEnabled, secureShellCommandEventsEnabled, secureShellSessionRecordingEnabled, videoSessionRecordingAudioEnabled, videoSessionRecordingEnabled, verboseNetworkLoggingEnabled, deviceNetworkEventsEnabled, anonymizeDeviceNetworkEvents, rdpEventsEnabled, rdpRecordingEnabled, showOnlyPrivateIndicator, applyAnonymousIndication, smbEventsEnabled, smbRecordingEnabled, applicationLoginEnabled, genAiInteractionEventsEnabled, genAiInteractionArtifactsEnabled, serverCertificateEnabled, screenshotAndScreenShareEnabled, vibeCodingPublishingEnabled.
idstringyesRequired. The auditing profile id, from island_list_auditing_profiles.

[Island Browser] Update a cloud firewall policy in place. PATCH /api/external/v1/CfwPolicy/. Path parameters: id. Send only the fields you want changed. defaultAction (Unknown, Allow, Drop) is the safety fallback used when enforcement matches no rule at all - the normal catch-all is the trailing rule, not this. Island documents these fields: name, description, version, lastAppliedDate, defaultAction. Returns Island's raw JSON. Island marks this entity x-island-singleton: there is ONE of it per tenant, so the list, get and get-by-ids tools of this family all answer the same row, and the family carries no create and no bulk-delete operation.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, version, lastAppliedDate, defaultAction.
idstringyesRequired. The cloud firewall policy id. Island keeps exactly one per tenant, so the id is the one island_list_cloud_firewall_policy returns.

[Island Browser] Update a cloud firewall rule in place. PATCH /api/external/v1/CfwRule/. Path parameters: id. Send only the fields you want changed. destinations and networkDestinationIds are collections replaced as a whole when you send them - and Island documents the destinations array as owned by this rule, created and deleted with it - so send the complete set you want the rule to end up with. action accepts Unknown, Allow or Drop and dropBehavior SilentDrop or DropWithResponse. Island documents these fields: name, description, action, dropBehavior, audit, sendToSwg, deepPacketInspection, priority, enabled, source, networkDestinationIds, destinations. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, action, dropBehavior, audit, sendToSwg, deepPacketInspection, priority, enabled, source, networkDestinationIds, destinations.
idstringyesRequired. The cloud firewall rule id, from island_list_cloud_firewall_rules.

[Island Browser] DESTRUCTIVE: update an SSL inspection policy in place. Why this is destructive: The rules array is the policy's COMPLETE ordered membership, sent as rule references, so an SSL inspection rule left out of the array is detached from the policy and stops being evaluated with it. Those rules have their own create, update and delete tools, so this one call can undo work done through them. Island publishes no prose on partial-array behaviour here; the shape is a wholesale replacement, so the platform rule applies and the verdict is destructive. PATCH /api/external/v1/SwgSslPolicy/. Path parameters: id. Send only the fields you want changed - but read the destructive warning above before sending rules. Island documents these fields: name, version, description, lastAppliedDate and rules, where rules is the policy's complete ordered membership as rule references ({ "id": "..." }). Change a single rule with island_update_ssl_inspection_rule instead. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, version, description, lastAppliedDate, rules.
idstringyesRequired. The SSL inspection policy id, from island_list_ssl_inspection_policies.

[Island Browser] Update an SSL inspection rule in place. PATCH /api/external/v1/SwgSslRule/. Path parameters: id. Send only the fields you want changed. action accepts DoNotDecrypt or Decrypt and hierarchicalPrecedence BeforeSubtenant or AfterSubtenant; ports and the four condition objects are replaced as a whole when you send them. Island documents these fields: name, description, action, ports, rootCaId, rootCaCertificateId, policyId, hierarchicalPrecedence, priority, enabled, isDefault, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, action, ports, rootCaId, rootCaCertificateId, policyId, hierarchicalPrecedence, priority, enabled, isDefault, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions.
idstringyesRequired. The SSL inspection rule id, from island_list_ssl_inspection_rules.

[Island Browser] Update a web security profile in place. PATCH /api/external/v1/webSecurityProfiles/. Path parameters: id. Send only the fields you want changed. signUpCommonPasswordVerdict accepts Allow, Block or Warn and forceOrganizationalCredentialsVerdict Allow, Block or AllowAndAudit; antiPhishingIdentifiers, extensionAllowList, attackSurfaceReductionModules and forceOrganizationalCredentialsIdentifiers are lists replaced as a whole when you send them. Island documents these fields: name, description, antiPhishingEnabled, antiPhishingVerdict, antiPhishingIdentifiers, antiPhishingCooldown, extensionsDisabled, extensionAllowList, attackSurfaceReductionEnabled, attackSurfaceReductionRiskySiteVerdict, attackSurfaceReductionSafeSiteVerdict, attackSurfaceReductionAllModules, attackSurfaceReductionModules, signUpCommonPasswordEnabled, signUpCommonPasswordVerdict, forceOrganizationalCredentialsEnabled, forceOrganizationalCredentialsVerdict, forceOrganizationalCredentialsIdentifiers, forceOrganizationalCredentialsCooldown. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, antiPhishingEnabled, antiPhishingVerdict, antiPhishingIdentifiers, antiPhishingCooldown, extensionsDisabled, extensionAllowList, attackSurfaceReductionEnabled, attackSurfaceReductionRiskySiteVerdict, attackSurfaceReductionSafeSiteVerdict, attackSurfaceReductionAllModules, attackSurfaceReductionModules, signUpCommonPasswordEnabled, signUpCommonPasswordVerdict, forceOrganizationalCredentialsEnabled, forceOrganizationalCredentialsVerdict, forceOrganizationalCredentialsIdentifiers, forceOrganizationalCredentialsCooldown.
idstringyesRequired. The web security profile id, from island_list_web_security_profiles.

Data Protection

ToolPlanAccessSummary
island_create_custom_file_typeProWriteCreate a custom file type.
island_create_data_sandbox_profileProWriteCreate a data sandbox profile.
island_create_dlp360_data_locationProWriteCreate a DLP 360 data location.
island_create_dlp360_detectorProWriteCreate a DLP 360 detector.
island_create_dlp360_detector_groupProWriteCreate a DLP 360 detector group.
island_create_dlp360_policyProWriteCreate a DLP 360 policy.
island_create_dlp360_ruleProWriteCreate a DLP 360 rule.
island_create_dlp_auditing_profileProWriteCreate a DLP auditing profile.
island_create_dlp_detectorProWriteCreate a DLP detector.
island_create_dlp_profileProWriteCreate a DLP profile.
island_create_download_file_profileProWriteCreate a download file profile.
island_create_upload_file_profileProDestructiveDESTRUCTIVE: create a upload file profile.
island_delete_custom_file_typeProDestructiveDESTRUCTIVE: delete a custom file type.
island_delete_custom_file_types_by_idsProDestructiveDESTRUCTIVE: delete several custom file types by id in one call.
island_delete_data_sandbox_profileProDestructiveDESTRUCTIVE: delete a data sandbox profile.
island_delete_data_sandbox_profiles_by_idsProDestructiveDESTRUCTIVE: delete several data sandbox profiles by id in one call.
island_delete_dlp360_data_locationProDestructiveDESTRUCTIVE: delete a DLP 360 data location.
island_delete_dlp360_data_locations_by_idsProDestructiveDESTRUCTIVE: delete several DLP 360 data locations by id in one call.
island_delete_dlp360_detectorProDestructiveDESTRUCTIVE: delete a DLP 360 detector.
island_delete_dlp360_detector_groupProDestructiveDESTRUCTIVE: delete a DLP 360 detector group.
island_delete_dlp360_detector_groups_by_idsProDestructiveDESTRUCTIVE: delete several DLP 360 detector groups by id in one call.
island_delete_dlp360_detectors_by_idsProDestructiveDESTRUCTIVE: delete several DLP 360 detectors by id in one call.
island_delete_dlp360_policyProDestructiveDESTRUCTIVE: delete a DLP 360 policy.
island_delete_dlp360_policy_by_idsProDestructiveDESTRUCTIVE: delete several DLP 360 policies by id in one call.
island_delete_dlp360_ruleProDestructiveDESTRUCTIVE: delete a DLP 360 rule.
island_delete_dlp360_rules_by_idsProDestructiveDESTRUCTIVE: delete several DLP 360 rules by id in one call.
island_delete_dlp_auditing_profileProDestructiveDESTRUCTIVE: delete a DLP auditing profile.
island_delete_dlp_auditing_profiles_by_idsProDestructiveDESTRUCTIVE: delete several DLP auditing profiles by id in one call.
island_delete_dlp_detectorProDestructiveDESTRUCTIVE: delete a DLP detector.
island_delete_dlp_detectors_by_idsProDestructiveDESTRUCTIVE: delete several DLP detectors by id in one call.
island_delete_dlp_profileProDestructiveDESTRUCTIVE: delete a DLP profile.
island_delete_dlp_profiles_by_idsProDestructiveDESTRUCTIVE: delete several DLP profiles by id in one call.
island_delete_download_file_profileProDestructiveDESTRUCTIVE: delete a download file profile.
island_delete_download_file_profiles_by_idsProDestructiveDESTRUCTIVE: delete several download file profiles by id in one call.
island_delete_upload_file_profileProDestructiveDESTRUCTIVE: delete a upload file profile.
island_delete_upload_file_profiles_by_idsProDestructiveDESTRUCTIVE: delete several upload file profiles by id in one call.
island_export_all_custom_file_typesFreeRead-onlyExport every custom file type in the tenant as a portable configuration.
island_export_all_data_sandbox_profilesFreeRead-onlyExport every data sandbox profile in the tenant as a portable configuration.
island_export_all_dlp360_data_locationsFreeRead-onlyExport every DLP 360 data location in the tenant as a portable configuration.
island_export_all_dlp360_detector_groupsFreeRead-onlyExport every DLP 360 detector group in the tenant as a portable configuration.
island_export_all_dlp360_detectorsFreeRead-onlyExport every DLP 360 detector in the tenant as a portable configuration.
island_export_all_dlp360_policyFreeRead-onlyExport every DLP 360 policy in the tenant as a portable configuration.
island_export_all_dlp360_rulesFreeRead-onlyExport every DLP 360 rule in the tenant as a portable configuration.
island_export_all_dlp_auditing_profilesFreeRead-onlyExport every DLP auditing profile in the tenant as a portable configuration.
island_export_all_dlp_detectorsFreeRead-onlyExport every DLP detector in the tenant as a portable configuration.
island_export_all_dlp_profilesFreeRead-onlyExport every DLP profile in the tenant as a portable configuration.
island_export_all_download_file_profilesFreeRead-onlyExport every download file profile in the tenant as a portable configuration.
island_export_all_upload_file_profilesFreeRead-onlyExport every upload file profile in the tenant as a portable configuration.
island_export_custom_file_typeFreeRead-onlyExport one custom file type as a portable configuration.
island_export_data_sandbox_profileFreeRead-onlyExport one data sandbox profile as a portable configuration.
island_export_dlp360_data_locationFreeRead-onlyExport one DLP 360 data location as a portable configuration.
island_export_dlp360_detectorFreeRead-onlyExport one DLP 360 detector as a portable configuration.
island_export_dlp360_detector_groupFreeRead-onlyExport one DLP 360 detector group as a portable configuration.
island_export_dlp360_policyFreeRead-onlyExport one DLP 360 policy as a portable configuration.
island_export_dlp360_ruleFreeRead-onlyExport one DLP 360 rule as a portable configuration.
island_export_dlp_auditing_profileFreeRead-onlyExport one DLP auditing profile as a portable configuration.
island_export_dlp_detectorFreeRead-onlyExport one DLP detector as a portable configuration.
island_export_dlp_profileFreeRead-onlyExport one DLP profile as a portable configuration.
island_export_download_file_profileFreeRead-onlyExport one download file profile as a portable configuration.
island_export_upload_file_profileFreeRead-onlyExport one upload file profile as a portable configuration.
island_get_custom_file_typeFreeRead-onlyGet one custom file type by its id.
island_get_custom_file_types_by_idsFreeRead-onlyGet several custom file types by id in one call.
island_get_data_sandbox_profileFreeRead-onlyGet one data sandbox profile by its id.
island_get_data_sandbox_profiles_by_idsFreeRead-onlyGet several data sandbox profiles by id in one call.
island_get_dlp360_data_locationFreeRead-onlyGet one DLP 360 data location by its id.
island_get_dlp360_data_locations_by_idsFreeRead-onlyGet several DLP 360 data locations by id in one call.
island_get_dlp360_detectorFreeRead-onlyGet one DLP 360 detector by its id.
island_get_dlp360_detector_groupFreeRead-onlyGet one DLP 360 detector group by its id.
island_get_dlp360_detector_groups_by_idsFreeRead-onlyGet several DLP 360 detector groups by id in one call.
island_get_dlp360_detectors_by_idsFreeRead-onlyGet several DLP 360 detectors by id in one call.
island_get_dlp360_policyFreeRead-onlyGet one DLP 360 policy by its id.
island_get_dlp360_policy_by_idsFreeRead-onlyGet several DLP 360 policies by id in one call.
island_get_dlp360_ruleFreeRead-onlyGet one DLP 360 rule by its id.
island_get_dlp360_rules_by_idsFreeRead-onlyGet several DLP 360 rules by id in one call.
island_get_dlp_auditing_profileFreeRead-onlyGet one DLP auditing profile by its id.
island_get_dlp_auditing_profiles_by_idsFreeRead-onlyGet several DLP auditing profiles by id in one call.
island_get_dlp_detectorFreeRead-onlyGet one DLP detector by its id.
island_get_dlp_detectors_by_idsFreeRead-onlyGet several DLP detectors by id in one call.
island_get_dlp_profileFreeRead-onlyGet one DLP profile by its id.
island_get_dlp_profiles_by_idsFreeRead-onlyGet several DLP profiles by id in one call.
island_get_download_file_profileFreeRead-onlyGet one download file profile by its id.
island_get_download_file_profiles_by_idsFreeRead-onlyGet several download file profiles by id in one call.
island_get_upload_file_profileFreeRead-onlyGet one upload file profile by its id.
island_get_upload_file_profiles_by_idsFreeRead-onlyGet several upload file profiles by id in one call.
island_list_custom_file_type_usagesFreeRead-onlyList the Island objects that reference this custom file type.
island_list_custom_file_typesFreeRead-onlyList every custom file type in the tenant.
island_list_data_sandbox_profile_usagesFreeRead-onlyList the Island objects that reference this data sandbox profile.
island_list_data_sandbox_profilesFreeRead-onlyList every data sandbox profile in the tenant.
island_list_dlp360_data_location_usagesFreeRead-onlyList the Island objects that reference this DLP 360 data location.
island_list_dlp360_data_locationsFreeRead-onlyList every DLP 360 data location in the tenant.
island_list_dlp360_detector_group_usagesFreeRead-onlyList the Island objects that reference this DLP 360 detector group.
island_list_dlp360_detector_groupsFreeRead-onlyList every DLP 360 detector group in the tenant.
island_list_dlp360_detector_usagesFreeRead-onlyList the Island objects that reference this DLP 360 detector.
island_list_dlp360_detectorsFreeRead-onlyList every DLP 360 detector in the tenant.
island_list_dlp360_policyFreeRead-onlyList every DLP 360 policy in the tenant.
island_list_dlp360_policy_usagesFreeRead-onlyList the Island objects that reference this DLP 360 policy.
island_list_dlp360_rule_usagesFreeRead-onlyList the Island objects that reference this DLP 360 rule.
island_list_dlp360_rulesFreeRead-onlyList every DLP 360 rule in the tenant.
island_list_dlp_auditing_profile_usagesFreeRead-onlyList the Island objects that reference this DLP auditing profile.
island_list_dlp_auditing_profilesFreeRead-onlyList every DLP auditing profile in the tenant.
island_list_dlp_detector_usagesFreeRead-onlyList the Island objects that reference this DLP detector.
island_list_dlp_detectorsFreeRead-onlyList every DLP detector in the tenant.
island_list_dlp_profile_usagesFreeRead-onlyList the Island objects that reference this DLP profile.
island_list_dlp_profilesFreeRead-onlyList every DLP profile in the tenant.
island_list_download_file_profile_usagesFreeRead-onlyList the Island objects that reference this download file profile.
island_list_download_file_profilesFreeRead-onlyList every download file profile in the tenant.
island_list_upload_file_profile_usagesFreeRead-onlyList the Island objects that reference this upload file profile.
island_list_upload_file_profilesFreeRead-onlyList every upload file profile in the tenant.
island_reorder_dlp360_rulesProDestructiveDESTRUCTIVE: set the complete evaluation order of the DLP 360 rules.
island_set_default_data_sandbox_profileProWriteMake this data sandbox profile the tenant default.
island_set_default_dlp_profileProWriteMake this DLP profile the tenant default.
island_set_default_download_file_profileProWriteMake this download file profile the tenant default.
island_set_default_upload_file_profileProWriteMake this upload file profile the tenant default.
island_update_custom_file_typeProWriteUpdate a custom file type in place.
island_update_data_sandbox_profileProWriteUpdate a data sandbox profile in place.
island_update_dlp360_data_locationProWriteUpdate a DLP 360 data location in place.
island_update_dlp360_detectorProWriteUpdate a DLP 360 detector in place.
island_update_dlp360_detector_groupProWriteUpdate a DLP 360 detector group in place.
island_update_dlp360_policyProWriteUpdate a DLP 360 policy in place.
island_update_dlp360_ruleProWriteUpdate a DLP 360 rule in place.
island_update_dlp_auditing_profileProWriteUpdate a DLP auditing profile in place.
island_update_dlp_detectorProWriteUpdate a DLP detector in place.
island_update_dlp_profileProWriteUpdate a DLP profile in place.
island_update_download_file_profileProWriteUpdate a download file profile in place.
island_update_upload_file_profileProDestructiveDESTRUCTIVE: update a upload file profile in place.

[Island Browser] Create a custom file type. POST /api/external/v1/customFileTypes. Send the request body as JSON; Island documents these fields: name, fileExtensions, description. fileExtensions is the whole match set, so send every extension you want the type to cover, not just the new one. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, fileExtensions, description.

[Island Browser] Create a data sandbox profile. POST /api/external/v1/dataSandboxProfile. Send the request body as JSON; Island documents these fields: name, description, screenshotVerdict, islandCaptureVerdict, printVerdict, saveAsVerdict, printProfiles, copyCutDisabled, pasteDisabled, screenshotBypassExpirationInMinutes, browsingDataDeletionEnabled, browsingSessionExpirationInMinutes, passwordManagerAutofillProtectionLevel, copyClipboardProfile, pasteClipboardProfile, domWatermarkGroup, backwardsCompatibilityForExtension, aipRestrictions, fileBoundaryVerdict, detectorGroup. The verdict fields (screenshotVerdict, islandCaptureVerdict, printVerdict, saveAsVerdict, fileBoundaryVerdict) are what actually block; copyCutDisabled and pasteDisabled are plain switches, and copyClipboardProfile, pasteClipboardProfile, printProfiles, domWatermarkGroup and detectorGroup are references to objects that must already exist. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, screenshotVerdict, islandCaptureVerdict, printVerdict, saveAsVerdict, printProfiles, copyCutDisabled, pasteDisabled, screenshotBypassExpirationInMinutes, browsingDataDeletionEnabled, browsingSessionExpirationInMinutes, passwordManagerAutofillProtectionLevel, copyClipboardProfile, pasteClipboardProfile, domWatermarkGroup, backwardsCompatibilityForExtension, aipRestrictions, fileBoundaryVerdict, detectorGroup.

[Island Browser] Create a DLP 360 data location. POST /api/external/v1/dlp360DataLocations. Send the request body as JSON; Island documents these fields: name, description, files, dom, userActions, network, endpoint, fallback, evidenceCollection, swg. files, dom, userActions, network, endpoint and swg are the six channels; fallback decides what happens when a channel cannot be evaluated, and evidenceCollection decides what Island keeps when it does. Inside each file-download destination, storageSettings and storageSettingsId are DEPRECATED in Island's own schema in favour of userStorageIntegration and userStorageIntegrationId, which reference a stored integration by id instead of carrying the storage credentials inline - prefer them on every new data location. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, files, dom, userActions, network, endpoint, fallback, evidenceCollection, swg.

[Island Browser] Create a DLP 360 detector. POST /api/external/v1/dlp360Detector. Send the request body as JSON; Island documents these fields: name, description, source, type, category, patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration, contextConfigurations. type and source decide which configuration block is read - patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration or contextConfigurations. Fill the one the type names. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, source, type, category, patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration, contextConfigurations.

[Island Browser] Create a DLP 360 detector group. POST /api/external/v1/dlp360DetectorGroup. Send the request body as JSON; Island documents these fields: name, description, matchingType, detectors. matchingType decides whether ANY or ALL of the listed detectors must hit; detectors references DLP 360 detectors that must already exist. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, detectors.

[Island Browser] Create a DLP 360 policy. POST /api/external/v1/dlp360Policy. Send the request body as JSON; Island documents these fields: name, description, rules, version, lastAppliedDate. rules is the policy's rule collection. Prefer island_create_dlp360_rule and island_update_dlp360_rule for rule-level work, and island_reorder_dlp360_rules to set the evaluation order. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, rules, version, lastAppliedDate.

[Island Browser] Create a DLP 360 rule. POST /api/external/v1/dlp360Rule. Send the request body as JSON; Island documents these fields: name, description, policyId, priority, severity, detectorGroups, excludedDetectorGroups, dataLocations, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions, dataLocationsId, hierarchicalPrecedence, enabled, customResourcesProfileId, dlpAuditingProfileId. policyId and priority place the rule (1 is evaluated first); detectorGroups and dataLocations decide what it matches and where; sourceConditions and destinationConditions narrow it, and the excluded* pairs carve out of it. enabled false leaves the rule in place but inert. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, policyId, priority, severity, detectorGroups, excludedDetectorGroups, dataLocations, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions, dataLocationsId, hierarchicalPrecedence, enabled, customResourcesProfileId, dlpAuditingProfileId.

[Island Browser] Create a DLP auditing profile. POST /api/external/v1/DlpAuditingProfile. Send the request body as JSON; Island documents these fields: name, description, dlpFindingsEnabled, scanReportEnabled, findingsEnabled, screenCaptureEnabled. All four fields are switches over what Island RECORDS on a match - dlpFindingsEnabled, findingsEnabled, scanReportEnabled and screenCaptureEnabled. Screen capture records the user's screen, so treat it as a privacy decision rather than a logging one. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, dlpFindingsEnabled, scanReportEnabled, findingsEnabled, screenCaptureEnabled.

[Island Browser] Create a DLP detector. POST /api/external/v1/dlpDetector. Send the request body as JSON; Island documents these fields: name, description, detectorType, regex, keywords, infoTypeName, category. detectorType decides which of the other fields is read: a regex detector uses regex, a keyword detector uses keywords, and an info-type detector uses infoTypeName. Sending the wrong pair is the usual cause of a detector that never matches. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, detectorType, regex, keywords, infoTypeName, category.

[Island Browser] Create a DLP profile. POST /api/external/v1/DlpProfile. Send the request body as JSON; Island documents these fields: name, description, fileDownloadDefaultVerdict, fileDownloadMatchVerdict, fileUploadDefaultVerdict, fileUploadMatchVerdict, refId, downloadScanners, uploadScanners. The four verdict fields decide behaviour: fileDownloadDefaultVerdict and fileUploadDefaultVerdict apply when nothing matched, the two MatchVerdict fields apply when a scanner did. downloadScanners and uploadScanners carry the detectors, so a profile with none never matches. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileDownloadDefaultVerdict, fileDownloadMatchVerdict, fileUploadDefaultVerdict, fileUploadMatchVerdict, refId, downloadScanners, uploadScanners.

[Island Browser] Create a download file profile. POST /api/external/v1/downloadFileProfile. Send the request body as JSON; Island documents these fields: name, description, fileProtectionSettings, overrides. fileProtectionSettings carries the verdict, the scanners and the destinations a download may be routed to; overrides applies a different set of those settings to a narrower audience. Inside each destination, storageSettings and storageSettingsId are DEPRECATED in Island's own schema in favour of userStorageIntegration and userStorageIntegrationId, which reference a stored integration by id instead of carrying the storage credentials inline - prefer them on every new profile. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileProtectionSettings, overrides.

[Island Browser] DESTRUCTIVE: create a upload file profile. Why this is destructive: sourcesStorageSettings[] carries the customer cloud-storage clientSecret and apiKey, which this call writes into Island. Sending the block replaces the credentials stored against the profile, and the previous values are not recoverable from Island. POST /api/external/v1/UploadFileProfile. Send the request body as JSON; Island documents these fields: name, description, fileProtectionSettings, supportedSources, sourcesUserStorageIntegrations, overrides, refId. fileProtectionSettings carries the verdict, the scanners and the size ceiling and is the field that actually blocks; supportedSources decides which storage a user may upload from, and choosing OneDrive, Box or GoogleDrive makes sourcesUserStorageIntegrations required. sourcesStorageSettings and its sibling ids are DEPRECATED in Island's own schema in favour of sourcesUserStorageIntegrations, which references a stored integration by id instead of carrying the storage credentials inline - prefer it on every new profile. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileProtectionSettings, supportedSources, sourcesUserStorageIntegrations, overrides, refId.

[Island Browser] DESTRUCTIVE: delete a custom file type. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this custom file type loses it - run island_list_custom_file_type_usages first to see what that is. DELETE /api/external/v1/customFileTypes/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The custom file type id, as island_list_custom_file_types returns it.

[Island Browser] DESTRUCTIVE: delete several custom file types by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these custom file types loses it. DELETE /api/external/v1/customFileTypes/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a data sandbox profile. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this data sandbox profile loses it - run island_list_data_sandbox_profile_usages first to see what that is. DELETE /api/external/v1/dataSandboxProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.

[Island Browser] DESTRUCTIVE: delete several data sandbox profiles by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these data sandbox profiles loses it. DELETE /api/external/v1/dataSandboxProfile/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP 360 data location. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP 360 data location loses it - run island_list_dlp360_data_location_usages first to see what that is. DELETE /api/external/v1/dlp360DataLocations/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 data location id, as island_list_dlp360_data_locations returns it.

[Island Browser] DESTRUCTIVE: delete several DLP 360 data locations by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP 360 data locations loses it. DELETE /api/external/v1/dlp360DataLocations/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP 360 detector. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP 360 detector loses it - run island_list_dlp360_detector_usages first to see what that is. DELETE /api/external/v1/dlp360Detector/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector id, as island_list_dlp360_detectors returns it.

[Island Browser] DESTRUCTIVE: delete a DLP 360 detector group. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP 360 detector group loses it - run island_list_dlp360_detector_group_usages first to see what that is. DELETE /api/external/v1/dlp360DetectorGroup/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector group id, as island_list_dlp360_detector_groups returns it.

[Island Browser] DESTRUCTIVE: delete several DLP 360 detector groups by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP 360 detector groups loses it. DELETE /api/external/v1/dlp360DetectorGroup/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete several DLP 360 detectors by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP 360 detectors loses it. DELETE /api/external/v1/dlp360Detector/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP 360 policy. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP 360 policy loses it - run island_list_dlp360_policy_usages first to see what that is. DELETE /api/external/v1/dlp360Policy/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 policy id, as island_list_dlp360_policy returns it.

[Island Browser] DESTRUCTIVE: delete several DLP 360 policies by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP 360 policies loses it. DELETE /api/external/v1/dlp360Policy/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP 360 rule. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP 360 rule loses it - run island_list_dlp360_rule_usages first to see what that is. DELETE /api/external/v1/dlp360Rule/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 rule id, as island_list_dlp360_rules returns it.

[Island Browser] DESTRUCTIVE: delete several DLP 360 rules by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP 360 rules loses it. DELETE /api/external/v1/dlp360Rule/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP auditing profile. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP auditing profile loses it - run island_list_dlp_auditing_profile_usages first to see what that is. DELETE /api/external/v1/DlpAuditingProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP auditing profile id, as island_list_dlp_auditing_profiles returns it.

[Island Browser] DESTRUCTIVE: delete several DLP auditing profiles by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP auditing profiles loses it. DELETE /api/external/v1/DlpAuditingProfile/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP detector. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP detector loses it - run island_list_dlp_detector_usages first to see what that is. DELETE /api/external/v1/dlpDetector/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP detector id, as island_list_dlp_detectors returns it.

[Island Browser] DESTRUCTIVE: delete several DLP detectors by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP detectors loses it. DELETE /api/external/v1/dlpDetector/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a DLP profile. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this DLP profile loses it - run island_list_dlp_profile_usages first to see what that is. DELETE /api/external/v1/DlpProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.

[Island Browser] DESTRUCTIVE: delete several DLP profiles by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these DLP profiles loses it. DELETE /api/external/v1/DlpProfile/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a download file profile. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this download file profile loses it - run island_list_download_file_profile_usages first to see what that is. DELETE /api/external/v1/downloadFileProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.

[Island Browser] DESTRUCTIVE: delete several download file profiles by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these download file profiles loses it. DELETE /api/external/v1/downloadFileProfile/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete a upload file profile. Why this is destructive: Single-entity DELETE: it removes a configuration object outright, with no dry run and no undo. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes; the platform rule that every DELETE is destructive overrides it. Every object still referencing this upload file profile loses it - run island_list_upload_file_profile_usages first to see what that is. DELETE /api/external/v1/UploadFileProfile/. Path parameters: id. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.

[Island Browser] DESTRUCTIVE: delete several upload file profiles by id in one call. Why this is destructive: Bulk DELETE: one call removes an arbitrary set of objects by id, with no dry run and no undo. Island marks its single-entity deletes x-mcp-destructive false and publishes no verdict for this one; the platform rule that every DELETE is destructive decides both. Every object still referencing any of these upload file profiles loses it. DELETE /api/external/v1/UploadFileProfile/DeleteByIds. Send the request body as JSON. Island documents one field: ids - EVERY id in the list is deleted by the one call. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] Export every custom file type in the tenant as a portable configuration. GET /api/external/v1/customFileTypes/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving custom file types between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every data sandbox profile in the tenant as a portable configuration. GET /api/external/v1/dataSandboxProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving data sandbox profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP 360 data location in the tenant as a portable configuration. GET /api/external/v1/dlp360DataLocations/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 data locations between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP 360 detector group in the tenant as a portable configuration. GET /api/external/v1/dlp360DetectorGroup/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP 360 detector groups between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP 360 detector in the tenant as a portable configuration. GET /api/external/v1/dlp360Detector/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP 360 detectors between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP 360 policy in the tenant as a portable configuration. GET /api/external/v1/dlp360Policy/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 policies between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. The nested rules carry their data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP 360 rule in the tenant as a portable configuration. GET /api/external/v1/dlp360Rule/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 rules between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. The rule carries its data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP auditing profile in the tenant as a portable configuration. GET /api/external/v1/DlpAuditingProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP auditing profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP detector in the tenant as a portable configuration. GET /api/external/v1/dlpDetector/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP detectors between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every DLP profile in the tenant as a portable configuration. GET /api/external/v1/DlpProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every download file profile in the tenant as a portable configuration. GET /api/external/v1/downloadFileProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving download file profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A profile whose destinations still use the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every upload file profile in the tenant as a portable configuration. GET /api/external/v1/UploadFileProfile/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving upload file profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A profile that still uses the deprecated sourcesStorageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one custom file type as a portable configuration. GET /api/external/v1/customFileTypes/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving custom file types between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The custom file type id, as island_list_custom_file_types returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one data sandbox profile as a portable configuration. GET /api/external/v1/dataSandboxProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving data sandbox profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP 360 data location as a portable configuration. GET /api/external/v1/dlp360DataLocations/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 data locations between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 data location id, as island_list_dlp360_data_locations returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP 360 detector as a portable configuration. GET /api/external/v1/dlp360Detector/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP 360 detectors between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector id, as island_list_dlp360_detectors returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP 360 detector group as a portable configuration. GET /api/external/v1/dlp360DetectorGroup/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP 360 detector groups between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector group id, as island_list_dlp360_detector_groups returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP 360 policy as a portable configuration. GET /api/external/v1/dlp360Policy/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 policies between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. The nested rules carry their data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 policy id, as island_list_dlp360_policy returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP 360 rule as a portable configuration. GET /api/external/v1/dlp360Rule/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving DLP 360 rules between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. The rule carries its data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 rule id, as island_list_dlp360_rules returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP auditing profile as a portable configuration. GET /api/external/v1/DlpAuditingProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP auditing profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP auditing profile id, as island_list_dlp_auditing_profiles returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP detector as a portable configuration. GET /api/external/v1/dlpDetector/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP detectors between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP detector id, as island_list_dlp_detectors returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one DLP profile as a portable configuration. GET /api/external/v1/DlpProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link. The export is Island's own portable configuration format, for moving DLP profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one download file profile as a portable configuration. GET /api/external/v1/downloadFileProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving download file profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A profile whose destinations still use the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one upload file profile as a portable configuration. GET /api/external/v1/UploadFileProfile/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON. This export carries live credentials, so when Island answers a file StackJack refuses to store it and hands back no download link; export it from the Island console instead. The export is Island's own portable configuration format, for moving upload file profiles between tenants or keeping a copy outside Island - it is not the shape the get and list tools answer. Leave includeIds off when the export is going into a DIFFERENT tenant, where the ids mean nothing. A profile that still uses the deprecated sourcesStorageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Get one custom file type by its id. GET /api/external/v1/customFileTypes/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A custom file type is a named set of file extensions that upload and download file profiles match on.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The custom file type id, as island_list_custom_file_types returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several custom file types by id in one call. POST /api/external/v1/customFileTypes/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the custom file type ids to fetch, as island_list_custom_file_types returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers CustomFileTypeResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one data sandbox profile by its id. GET /api/external/v1/dataSandboxProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A data sandbox profile is the in-browser data boundary - copy, cut, paste, screenshot, print, save-as, watermarking and the browsing-data expiry that apply to an audience.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several data sandbox profiles by id in one call. POST /api/external/v1/dataSandboxProfile/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the data sandbox profile ids to fetch, as island_list_data_sandbox_profiles returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers DataSandboxProfileResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP 360 data location by its id. GET /api/external/v1/dlp360DataLocations/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 data location is where data is allowed to travel in the DLP 360 generation - files, DOM content, user actions, network, endpoint, SWG and the evidence-collection settings. A file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 data location id, as island_list_dlp360_data_locations returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP 360 data locations by id in one call. POST /api/external/v1/dlp360DataLocations/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP 360 data location ids to fetch, as island_list_dlp360_data_locations returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers ManagementDlpDataLocationsResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other. That difference is MEASURED and it matters here: this projection drops the deprecated storageSettings block the Dto carries, so unlike the list and single-record reads this response does NOT carry the customer's own cloud-storage credentials. Use island_get_dlp360_data_location when you need the full record, and treat THAT response as sensitive.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP 360 detector by its id. GET /api/external/v1/dlp360Detector/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 detector is a DLP 360 content matcher - pattern, keyword, exact-data-match, Google info type, Microsoft Purview (MIP) label, proximity or context configuration.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector id, as island_list_dlp360_detectors returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP 360 detector group by its id. GET /api/external/v1/dlp360DetectorGroup/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 detector group is a named group of DLP 360 detectors with the matching type (any or all) a rule evaluates them under.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector group id, as island_list_dlp360_detector_groups returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP 360 detector groups by id in one call. POST /api/external/v1/dlp360DetectorGroup/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP 360 detector group ids to fetch, as island_list_dlp360_detector_groups returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers ManagementDlpDetectorGroupResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP 360 detectors by id in one call. POST /api/external/v1/dlp360Detector/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP 360 detector ids to fetch, as island_list_dlp360_detectors returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers the same ManagementDlpDetectorDto the list and get tools answer - this is the one DataProtection family whose by-ids read is not a narrower shape.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP 360 policy by its id. GET /api/external/v1/dlp360Policy/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 policy is the DLP 360 policy container - it holds the rules that decide what Island inspects and blocks. The nested rules carry their data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 policy id, as island_list_dlp360_policy returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP 360 policies by id in one call. POST /api/external/v1/dlp360Policy/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP 360 policy ids to fetch, as island_list_dlp360_policy returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers ManagementDlpPolicyResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other. That difference is MEASURED and it matters here: this projection drops the deprecated storageSettings block its nested data locations carry on the Dto, so unlike the list and single-record reads this response does NOT carry the customer's own cloud-storage credentials. Use island_get_dlp360_policy when you need the full record, and treat THAT response as sensitive.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP 360 rule by its id. GET /api/external/v1/dlp360Rule/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 rule is one rule inside a DLP 360 policy - its detector groups, data locations, source and destination conditions, severity and priority. The rule carries its data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 rule id, as island_list_dlp360_rules returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP 360 rules by id in one call. POST /api/external/v1/dlp360Rule/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP 360 rule ids to fetch, as island_list_dlp360_rules returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers ManagementDlpRuleResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other. That difference is MEASURED and it matters here: this projection drops the deprecated storageSettings block its data locations carry on the Dto, so unlike the list and single-record reads this response does NOT carry the customer's own cloud-storage credentials. Use island_get_dlp360_rule when you need the full record, and treat THAT response as sensitive.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP auditing profile by its id. GET /api/external/v1/DlpAuditingProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP auditing profile is what a DLP 360 rule RECORDS when it matches - findings, the scan report and screen capture - rather than what it blocks.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP auditing profile id, as island_list_dlp_auditing_profiles returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP auditing profiles by id in one call. POST /api/external/v1/DlpAuditingProfile/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP auditing profile ids to fetch, as island_list_dlp_auditing_profiles returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers DlpAuditingProfileResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP detector by its id. GET /api/external/v1/dlpDetector/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP detector is a CLASSIC (pre-DLP-360) content matcher - a regex, a keyword list or a named Google info type.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP detector id, as island_list_dlp_detectors returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP detectors by id in one call. POST /api/external/v1/dlpDetector/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP detector ids to fetch, as island_list_dlp_detectors returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers DlpDetectorResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one DLP profile by its id. GET /api/external/v1/DlpProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A DLP profile is the CLASSIC (pre-DLP-360) upload and download scanning profile - a default verdict, a match verdict and the scanner list for each direction.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several DLP profiles by id in one call. POST /api/external/v1/DlpProfile/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the DLP profile ids to fetch, as island_list_dlp_profiles returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers DlpProfileResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one download file profile by its id. GET /api/external/v1/downloadFileProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. A download file profile is what may be downloaded to the endpoint - the file verdict, the scanners and the destinations a download may be routed to. A profile whose destinations still use the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several download file profiles by id in one call. POST /api/external/v1/downloadFileProfile/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the download file profile ids to fetch, as island_list_download_file_profiles returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers DownloadFileProfileResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other. That difference is MEASURED and it matters here: this projection drops the deprecated storageSettings block its destinations carry on the Dto, so unlike the list and single-record reads this response does NOT carry the customer's own cloud-storage credentials. Use island_get_download_file_profile when you need the full record, and treat THAT response as sensitive.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get one upload file profile by its id. GET /api/external/v1/UploadFileProfile/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON. An upload file profile is what may be uploaded from the browser - the file verdict, the scanners, the size ceiling and which storage sources a user may upload from. A profile that still uses the deprecated sourcesStorageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] Get several upload file profiles by id in one call. POST /api/external/v1/UploadFileProfile/GetByIds. Optional filters: includeType. Send the filter as JSON. Island documents one field: ids - the upload file profile ids to fetch, as island_list_upload_file_profiles returns them. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Use this instead of one get per id when you already hold the ids. Island answers UploadFileProfileResponse here rather than the shape the list and get tools answer, so a field can be present in one and absent in the other. That difference is MEASURED and it matters here: this projection drops the deprecated sourcesStorageSettings credentials the Dto carries (it answers id and type only), so unlike the list and single-record reads this response does NOT carry the customer's own cloud-storage credentials. Use island_get_upload_file_profile when you need the full record, and treat THAT response as sensitive.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this custom file type. GET /api/external/v1/customFileTypes/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a custom file type: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The custom file type id, as island_list_custom_file_types returns it.

[Island Browser] List every custom file type in the tenant. GET /api/external/v1/customFileTypes. Optional filters: includeType. Returns Island's raw JSON. A custom file type is a named set of file extensions that upload and download file profiles match on. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Reference one from a file profile by id; island_list_custom_file_type_usages says which profiles already do.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this data sandbox profile. GET /api/external/v1/dataSandboxProfile/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a data sandbox profile: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.

[Island Browser] List every data sandbox profile in the tenant. GET /api/external/v1/dataSandboxProfile. Optional filters: includeType. Returns Island's raw JSON. A data sandbox profile is the in-browser data boundary - copy, cut, paste, screenshot, print, save-as, watermarking and the browsing-data expiry that apply to an audience. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. An access rule points at one of these by id; island_list_data_sandbox_profile_usages says which rules use it.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP 360 data location. GET /api/external/v1/dlp360DataLocations/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP 360 data location: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 data location id, as island_list_dlp360_data_locations returns it.

[Island Browser] List every DLP 360 data location in the tenant. GET /api/external/v1/dlp360DataLocations. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 data location is where data is allowed to travel in the DLP 360 generation - files, DOM content, user actions, network, endpoint, SWG and the evidence-collection settings. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. A DLP 360 rule points at one through its dataLocationsId. A file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP 360 detector group. GET /api/external/v1/dlp360DetectorGroup/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP 360 detector group: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector group id, as island_list_dlp360_detector_groups returns it.

[Island Browser] List every DLP 360 detector group in the tenant. GET /api/external/v1/dlp360DetectorGroup. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 detector group is a named group of DLP 360 detectors with the matching type (any or all) a rule evaluates them under. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. A DLP 360 rule references groups through detectorGroups and excludedDetectorGroups.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP 360 detector. GET /api/external/v1/dlp360Detector/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP 360 detector: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 detector id, as island_list_dlp360_detectors returns it.

[Island Browser] List every DLP 360 detector in the tenant. GET /api/external/v1/dlp360Detector. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 detector is a DLP 360 content matcher - pattern, keyword, exact-data-match, Google info type, Microsoft Purview (MIP) label, proximity or context configuration. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. Group detectors with island_list_dlp360_detector_groups before a rule can use them.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List every DLP 360 policy in the tenant. GET /api/external/v1/dlp360Policy. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 policy is the DLP 360 policy container - it holds the rules that decide what Island inspects and blocks. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. The rules themselves are island_list_dlp360_rules; their evaluation order is island_reorder_dlp360_rules. The nested rules carry their data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP 360 policy. GET /api/external/v1/dlp360Policy/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP 360 policy: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 policy id, as island_list_dlp360_policy returns it.

[Island Browser] List the Island objects that reference this DLP 360 rule. GET /api/external/v1/dlp360Rule/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP 360 rule: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP 360 rule id, as island_list_dlp360_rules returns it.

[Island Browser] List every DLP 360 rule in the tenant. GET /api/external/v1/dlp360Rule. Optional filters: includeType. Returns Island's raw JSON. A DLP 360 rule is one rule inside a DLP 360 policy - its detector groups, data locations, source and destination conditions, severity and priority. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. Priority decides evaluation order and island_reorder_dlp360_rules is the only call that sets the whole order. The rule carries its data locations, and a file-download destination that still uses the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP auditing profile. GET /api/external/v1/DlpAuditingProfile/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP auditing profile: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP auditing profile id, as island_list_dlp_auditing_profiles returns it.

[Island Browser] List every DLP auditing profile in the tenant. GET /api/external/v1/DlpAuditingProfile. Optional filters: includeType. Returns Island's raw JSON. A DLP auditing profile is what a DLP 360 rule RECORDS when it matches - findings, the scan report and screen capture - rather than what it blocks. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the DLP 360 generation. If this call answers an empty list, the tenant is on the classic generation - read island_list_dlp_profiles and island_list_dlp_detectors instead. A DLP 360 rule points at one through its dlpAuditingProfileId.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP detector. GET /api/external/v1/dlpDetector/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP detector: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP detector id, as island_list_dlp_detectors returns it.

[Island Browser] List every DLP detector in the tenant. GET /api/external/v1/dlpDetector. Optional filters: includeType. Returns Island's raw JSON. A DLP detector is a CLASSIC (pre-DLP-360) content matcher - a regex, a keyword list or a named Google info type. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the CLASSIC generation (the DlpProfile / dlpDetector surface). If this call answers an empty list, the tenant is on DLP 360 - read island_list_dlp360_policy, island_list_dlp360_rules and island_list_dlp360_detectors instead. The list includes Island's BUILT-IN detectors as well as the tenant's own, and a built-in cannot be updated or deleted.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this DLP profile. GET /api/external/v1/DlpProfile/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a DLP profile: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.

[Island Browser] List every DLP profile in the tenant. GET /api/external/v1/DlpProfile. Optional filters: includeType. Returns Island's raw JSON. A DLP profile is the CLASSIC (pre-DLP-360) upload and download scanning profile - a default verdict, a match verdict and the scanner list for each direction. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. Island ships TWO generations of data-loss prevention and a tenant runs one or the other: this is the CLASSIC generation (the DlpProfile / dlpDetector surface). If this call answers an empty list, the tenant is on DLP 360 - read island_list_dlp360_policy, island_list_dlp360_rules and island_list_dlp360_detectors instead. Access rules reference these by id.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this download file profile. GET /api/external/v1/downloadFileProfile/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a download file profile: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.

[Island Browser] List every download file profile in the tenant. GET /api/external/v1/downloadFileProfile. Optional filters: includeType. Returns Island's raw JSON. A download file profile is what may be downloaded to the endpoint - the file verdict, the scanners and the destinations a download may be routed to. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. An access rule points at one by id; island_list_download_file_profile_usages says which rules use it. A profile whose destinations still use the deprecated storageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] List the Island objects that reference this upload file profile. GET /api/external/v1/UploadFileProfile/usages/. Path parameters: id. Returns Island's raw JSON. Run this before deleting a upload file profile: the answer is the objects that break if it disappears. It returns the referencing objects' ids and names, never their configuration. Island publishes no page size, no cursor and no total for this read, so the whole collection comes back in one response and no page parameter is invented here. On a large tenant expect the platform result-size cap rather than a page.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.

[Island Browser] List every upload file profile in the tenant. GET /api/external/v1/UploadFileProfile. Optional filters: includeType. Returns Island's raw JSON. An upload file profile is what may be uploaded from the browser - the file verdict, the scanners, the size ceiling and which storage sources a user may upload from. Island publishes no page-size or cursor parameter on this endpoint, so the whole collection comes back in one response. An access rule points at one by id; island_list_upload_file_profile_usages says which rules use it. A profile that still uses the deprecated sourcesStorageSettings block answers with the customer's own cloud-storage credentials (clientSecret, apiKey) - not Island's - so treat the response as sensitive and do not paste it into a ticket.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. How much of the record Island returns with each row. Island publishes IncludeType as an enum of None, Default, All, Update and DefaultWithAdminInfo and defaults it to Default; it publishes no prose for what each value adds.

[Island Browser] DESTRUCTIVE: set the complete evaluation order of the DLP 360 rules. Why this is destructive: ReorderRequest.entries is the COMPLETE desired order - one entry per reorderable row with its target priority - so this is a wholesale replacement of the evaluation order, and an omitted rule moves. Island does not mark it destructive; the documented wholesale-replacement rule wins. Read island_list_dlp360_rules first and send the whole set back with only the positions you meant to change. POST /api/external/v1/dlp360Rule/reorder. Send the request body as JSON. Island documents one field: entries - an array of { id, priority } and THE COMPLETE DESIRED ORDER, one entry per reorderable rule with its target 1-based priority. Island's published example for this endpoint shows a rule-CREATE body instead; the schema (ReorderRequest) is what the endpoint takes, so send entries and ignore the example. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: entries.

[Island Browser] Make this data sandbox profile the tenant default. POST /api/external/v1/dataSandboxProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. The previous default is NOT deleted, it simply stops being the default. The change takes effect immediately for everything that resolves "the default data sandbox profile" rather than naming one by id, so it is a tenant-wide behaviour change even though nothing is removed.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.

[Island Browser] Make this DLP profile the tenant default. POST /api/external/v1/DlpProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. The previous default is NOT deleted, it simply stops being the default. The change takes effect immediately for everything that resolves "the default DLP profile" rather than naming one by id, so it is a tenant-wide behaviour change even though nothing is removed.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.

[Island Browser] Make this download file profile the tenant default. POST /api/external/v1/downloadFileProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. The previous default is NOT deleted, it simply stops being the default. The change takes effect immediately for everything that resolves "the default download file profile" rather than naming one by id, so it is a tenant-wide behaviour change even though nothing is removed.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.

[Island Browser] Make this upload file profile the tenant default. POST /api/external/v1/UploadFileProfile//MakeAsDefault. Path parameters: id. Returns Island's raw JSON. The previous default is NOT deleted, it simply stops being the default. The change takes effect immediately for everything that resolves "the default upload file profile" rather than naming one by id, so it is a tenant-wide behaviour change even though nothing is removed.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.

[Island Browser] Update a custom file type in place. PATCH /api/external/v1/customFileTypes/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, fileExtensions. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. fileExtensions is the whole match set, so send every extension you want the type to cover, not just the new one. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileExtensions.
idstringyesRequired. The custom file type id, as island_list_custom_file_types returns it.

[Island Browser] Update a data sandbox profile in place. PATCH /api/external/v1/dataSandboxProfile/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, copyCutDisabled, pasteDisabled, screenshotVerdict, screenshotBypassExpirationInMinutes, islandCaptureVerdict, printVerdict, saveAsVerdict, browsingDataDeletionEnabled, browsingSessionExpirationInMinutes, backwardsCompatibilityForExtension, aipRestrictions, fileBoundaryVerdict, passwordManagerAutofillProtectionLevel, copyClipboardProfile, pasteClipboardProfile, printProfiles, domWatermarkGroup, detectorGroup. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. The verdict fields (screenshotVerdict, islandCaptureVerdict, printVerdict, saveAsVerdict, fileBoundaryVerdict) are what actually block; copyCutDisabled and pasteDisabled are plain switches, and copyClipboardProfile, pasteClipboardProfile, printProfiles, domWatermarkGroup and detectorGroup are references to objects that must already exist. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, copyCutDisabled, pasteDisabled, screenshotVerdict, screenshotBypassExpirationInMinutes, islandCaptureVerdict, printVerdict, saveAsVerdict, browsingDataDeletionEnabled, browsingSessionExpirationInMinutes, backwardsCompatibilityForExtension, aipRestrictions, fileBoundaryVerdict, passwordManagerAutofillProtectionLevel, copyClipboardProfile, pasteClipboardProfile, printProfiles, domWatermarkGroup, detectorGroup.
idstringyesRequired. The data sandbox profile id, as island_list_data_sandbox_profiles returns it.

[Island Browser] Update a DLP 360 data location in place. PATCH /api/external/v1/dlp360DataLocations/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, userActions, network, endpoint, fallback, evidenceCollection, swg, files, dom. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. files, dom, userActions, network, endpoint and swg are the six channels; fallback decides what happens when a channel cannot be evaluated, and evidenceCollection decides what Island keeps when it does. Inside each file-download destination, storageSettings and storageSettingsId are DEPRECATED in Island's own schema in favour of userStorageIntegration and userStorageIntegrationId, which reference a stored integration by id instead of carrying the storage credentials inline - prefer them on every new data location. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, userActions, network, endpoint, fallback, evidenceCollection, swg, files, dom.
idstringyesRequired. The DLP 360 data location id, as island_list_dlp360_data_locations returns it.

[Island Browser] Update a DLP 360 detector in place. PATCH /api/external/v1/dlp360Detector/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, source, type, category, patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration, contextConfigurations. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. type and source decide which configuration block is read - patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration or contextConfigurations. Fill the one the type names. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, source, type, category, patternConfiguration, keywordsConfiguration, edmConfiguration, infoTypesConfiguration, mipConfiguration, proximityConfiguration, contextConfigurations.
idstringyesRequired. The DLP 360 detector id, as island_list_dlp360_detectors returns it.

[Island Browser] Update a DLP 360 detector group in place. PATCH /api/external/v1/dlp360DetectorGroup/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, matchingType, detectors. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. matchingType decides whether ANY or ALL of the listed detectors must hit; detectors references DLP 360 detectors that must already exist. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, detectors.
idstringyesRequired. The DLP 360 detector group id, as island_list_dlp360_detector_groups returns it.

[Island Browser] Update a DLP 360 policy in place. PATCH /api/external/v1/dlp360Policy/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, version, description, lastAppliedDate, rules. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. rules is the policy's rule collection. Prefer island_create_dlp360_rule and island_update_dlp360_rule for rule-level work, and island_reorder_dlp360_rules to set the evaluation order. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, version, description, lastAppliedDate, rules.
idstringyesRequired. The DLP 360 policy id, as island_list_dlp360_policy returns it.

[Island Browser] Update a DLP 360 rule in place. PATCH /api/external/v1/dlp360Rule/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, dataLocationsId, hierarchicalPrecedence, enabled, policyId, severity, customResourcesProfileId, dlpAuditingProfileId, priority, detectorGroups, excludedDetectorGroups, dataLocations, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. policyId and priority place the rule (1 is evaluated first); detectorGroups and dataLocations decide what it matches and where; sourceConditions and destinationConditions narrow it, and the excluded* pairs carve out of it. enabled false leaves the rule in place but inert. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, dataLocationsId, hierarchicalPrecedence, enabled, policyId, severity, customResourcesProfileId, dlpAuditingProfileId, priority, detectorGroups, excludedDetectorGroups, dataLocations, destinationConditions, sourceConditions, excludedDestinationConditions, excludedSourceConditions.
idstringyesRequired. The DLP 360 rule id, as island_list_dlp360_rules returns it.

[Island Browser] Update a DLP auditing profile in place. PATCH /api/external/v1/DlpAuditingProfile/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, dlpFindingsEnabled, scanReportEnabled, findingsEnabled, screenCaptureEnabled. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. All four fields are switches over what Island RECORDS on a match - dlpFindingsEnabled, findingsEnabled, scanReportEnabled and screenCaptureEnabled. Screen capture records the user's screen, so treat it as a privacy decision rather than a logging one. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, dlpFindingsEnabled, scanReportEnabled, findingsEnabled, screenCaptureEnabled.
idstringyesRequired. The DLP auditing profile id, as island_list_dlp_auditing_profiles returns it.

[Island Browser] Update a DLP detector in place. PATCH /api/external/v1/dlpDetector/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, regex, infoTypeName, keywords, category, detectorType. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. detectorType decides which of the other fields is read: a regex detector uses regex, a keyword detector uses keywords, and an info-type detector uses infoTypeName. Sending the wrong pair is the usual cause of a detector that never matches. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, regex, infoTypeName, keywords, category, detectorType.
idstringyesRequired. The DLP detector id, as island_list_dlp_detectors returns it.

[Island Browser] Update a DLP profile in place. PATCH /api/external/v1/DlpProfile/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, fileDownloadDefaultVerdict, fileDownloadMatchVerdict, fileUploadDefaultVerdict, fileUploadMatchVerdict, refId, downloadScanners, uploadScanners. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. The four verdict fields decide behaviour: fileDownloadDefaultVerdict and fileUploadDefaultVerdict apply when nothing matched, the two MatchVerdict fields apply when a scanner did. downloadScanners and uploadScanners carry the detectors, so a profile with none never matches. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileDownloadDefaultVerdict, fileDownloadMatchVerdict, fileUploadDefaultVerdict, fileUploadMatchVerdict, refId, downloadScanners, uploadScanners.
idstringyesRequired. The DLP profile id, as island_list_dlp_profiles returns it.

[Island Browser] Update a download file profile in place. PATCH /api/external/v1/downloadFileProfile/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, fileProtectionSettings, overrides. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. fileProtectionSettings carries the verdict, the scanners and the destinations a download may be routed to; overrides applies a different set of those settings to a narrower audience. Inside each destination, storageSettings and storageSettingsId are DEPRECATED in Island's own schema in favour of userStorageIntegration and userStorageIntegrationId, which reference a stored integration by id instead of carrying the storage credentials inline - prefer them on every new profile. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, fileProtectionSettings, overrides.
idstringyesRequired. The download file profile id, as island_list_download_file_profiles returns it.

[Island Browser] DESTRUCTIVE: update a upload file profile in place. Why this is destructive: sourcesStorageSettings[] carries the customer cloud-storage clientSecret and apiKey, which this call writes into Island. Sending the block replaces the credentials stored against the profile, and the previous values are not recoverable from Island. PATCH /api/external/v1/UploadFileProfile/. Path parameters: id. Send the request body as JSON; Island documents these fields: name, description, supportedSources, refId, fileProtectionSettings, overrides, sourcesUserStorageIntegrations. This is a PATCH: send only the fields you are changing, and anything you leave out keeps its current value. fileProtectionSettings carries the verdict, the scanners and the size ceiling and is the field that actually blocks; supportedSources decides which storage a user may upload from, and choosing OneDrive, Box or GoogleDrive makes sourcesUserStorageIntegrations required. sourcesStorageSettings and its sibling ids are DEPRECATED in Island's own schema in favour of sourcesUserStorageIntegrations, which references a stored integration by id instead of carrying the storage credentials inline - prefer it on every new profile. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, supportedSources, refId, fileProtectionSettings, overrides, sourcesUserStorageIntegrations.
idstringyesRequired. The upload file profile id, as island_list_upload_file_profiles returns it.

Policy Objects

ToolPlanAccessSummary
island_add_policy_object_itemsProWriteAdd items to one collection of a policy object without rewriting the rest of it.
island_classify_urlsFreeRead-onlyAsk Island how it classifies a batch of URLs and IP addresses.
island_create_device_posture_objectProWriteCreate a device posture object.
island_create_identity_objectProWriteCreate an identity object.
island_create_ip_location_objectProWriteCreate an IP and location object.
island_create_location_objectProWriteCreate a location object.
island_create_network_destinationProWriteCreate a network destination.
island_create_network_objectProWriteCreate a network object.
island_create_url_objectProWriteCreate a URL object.
island_create_web_categoryProWriteCreate a web category object.
island_delete_device_posture_objectProDestructiveDESTRUCTIVE: delete one device posture object.
island_delete_device_posture_objects_by_idsProDestructiveDESTRUCTIVE: delete several device posture objects by id in one call.
island_delete_identity_objectProDestructiveDESTRUCTIVE: delete one identity object.
island_delete_identity_objects_by_idsProDestructiveDESTRUCTIVE: delete several identity objects by id in one call.
island_delete_ip_location_objectProDestructiveDESTRUCTIVE: delete one IP and location object.
island_delete_ip_location_objects_by_idsProDestructiveDESTRUCTIVE: delete several IP and location objects by id in one call.
island_delete_location_objectProDestructiveDESTRUCTIVE: delete one location object.
island_delete_location_objects_by_idsProDestructiveDESTRUCTIVE: delete several location objects by id in one call.
island_delete_network_destinationProDestructiveDESTRUCTIVE: delete one network destination.
island_delete_network_destinations_by_idsProDestructiveDESTRUCTIVE: delete several network destinations by id in one call.
island_delete_network_objectProDestructiveDESTRUCTIVE: delete one network object.
island_delete_network_objects_by_idsProDestructiveDESTRUCTIVE: delete several network objects by id in one call.
island_delete_url_classification_overridesProDestructiveDESTRUCTIVE: delete up to 10,000 URL classification overrides in one call.
island_delete_url_objectProDestructiveDESTRUCTIVE: delete one URL object.
island_delete_url_objects_by_idsProDestructiveDESTRUCTIVE: delete several URL objects by id in one call.
island_delete_web_categories_by_idsProDestructiveDESTRUCTIVE: delete several web category objects by id in one call.
island_delete_web_categoryProDestructiveDESTRUCTIVE: delete one web category object.
island_export_all_device_posture_objectsFreeRead-onlyExport every device posture object in the tenant as a portable configuration.
island_export_all_identity_objectsFreeRead-onlyExport every identity object in the tenant as a portable configuration.
island_export_all_ip_location_objectsFreeRead-onlyExport every IP and location object in the tenant as a portable configuration.
island_export_all_location_objectsFreeRead-onlyExport every location object in the tenant as a portable configuration.
island_export_all_network_destinationsFreeRead-onlyExport every network destination in the tenant as a portable configuration.
island_export_all_network_objectsFreeRead-onlyExport every network object in the tenant as a portable configuration.
island_export_all_url_objectsFreeRead-onlyExport every URL object in the tenant as a portable configuration.
island_export_all_web_categoriesFreeRead-onlyExport every web category object in the tenant as a portable configuration.
island_export_all_web_category_overridesFreeRead-onlyExport every web category override in the tenant as a portable configuration.
island_export_device_posture_objectFreeRead-onlyExport one device posture object as a portable configuration.
island_export_identity_objectFreeRead-onlyExport one identity object as a portable configuration.
island_export_ip_location_objectFreeRead-onlyExport one IP and location object as a portable configuration.
island_export_location_objectFreeRead-onlyExport one location object as a portable configuration.
island_export_network_destinationFreeRead-onlyExport one network destination as a portable configuration.
island_export_network_objectFreeRead-onlyExport one network object as a portable configuration.
island_export_url_objectFreeRead-onlyExport one URL object as a portable configuration.
island_export_web_categoryFreeRead-onlyExport one web category object as a portable configuration.
island_export_web_category_overrideFreeRead-onlyExport one web category override as a portable configuration.
island_extract_certificate_infoFreeRead-onlyRead the thumbprint, subject and expiry out of a certificate before building a device posture check.
island_get_device_posture_objectFreeRead-onlyGet one device posture object by id.
island_get_device_posture_objects_by_idsFreeRead-onlyGet several device posture objects in one call by id.
island_get_identity_objectFreeRead-onlyGet one identity object by id.
island_get_identity_objects_by_idsFreeRead-onlyGet several identity objects in one call by id.
island_get_ip_location_objectFreeRead-onlyGet one IP and location object by id.
island_get_ip_location_objects_by_idsFreeRead-onlyGet several IP and location objects in one call by id.
island_get_location_objectFreeRead-onlyGet one location object by id.
island_get_location_objects_by_idsFreeRead-onlyGet several location objects in one call by id.
island_get_network_destinationFreeRead-onlyGet one network destination by id.
island_get_network_destinations_by_idsFreeRead-onlyGet several network destinations in one call by id.
island_get_network_objectFreeRead-onlyGet one network object by id.
island_get_network_objects_by_idsFreeRead-onlyGet several network objects in one call by id.
island_get_or_create_identity_objectProWriteGet the identity object for one email address, creating it when Island has none.
island_get_url_objectFreeRead-onlyGet one URL object by id.
island_get_url_objects_by_idsFreeRead-onlyGet several URL objects in one call by id.
island_get_web_categories_by_idsFreeRead-onlyGet several web category objects in one call by id.
island_get_web_categoryFreeRead-onlyGet one web category object by id.
island_get_web_category_overrideFreeRead-onlyGet one web category override by id.
island_get_web_category_overrides_by_idsFreeRead-onlyGet several web category overrides in one call by id.
island_list_device_posture_object_usagesFreeRead-onlyList the entities that reference one device posture object.
island_list_device_posture_objectsFreeRead-onlyList every device posture object in the tenant - a reusable device posture check.
island_list_identity_object_usagesFreeRead-onlyList the entities that reference one identity object.
island_list_identity_objectsFreeRead-onlyList every identity object in the tenant - a reusable set of identity filters over users, groups, custom attributes and machine tokens.
island_list_ip_location_object_locationsFreeRead-onlyList the geographic locations an IP and location object can include or exclude.
island_list_ip_location_object_usagesFreeRead-onlyList the entities that reference one IP and location object.
island_list_ip_location_objectsFreeRead-onlyList every IP and location object in the tenant - a reusable set of IP addresses, ranges, subnets and geographic locations.
island_list_location_object_locationsFreeRead-onlyList the geographic locations a location object can include or exclude.
island_list_location_object_usagesFreeRead-onlyList the entities that reference one location object.
island_list_location_objectsFreeRead-onlyList every location object in the tenant - a reusable set of geographic locations.
island_list_network_destination_usagesFreeRead-onlyList the entities that reference one network destination.
island_list_network_destinationsFreeRead-onlyList every network destination in the tenant - a reusable set of hosts and ports that private-access routing and policies point at.
island_list_network_object_usagesFreeRead-onlyList the entities that reference one network object.
island_list_network_objectsFreeRead-onlyList every network object in the tenant - a reusable set of IP addresses, ranges and subnets.
island_list_url_classification_overridesFreeRead-onlyList the tenant URL classification overrides - the URLs Island has been told to categorise differently.
island_list_url_object_usagesFreeRead-onlyList the entities that reference one URL object.
island_list_url_objectsFreeRead-onlyList every URL object in the tenant - a reusable set of URL patterns that web policies match on.
island_list_web_categoriesFreeRead-onlyList every web category object in the tenant - a reusable set of Island web categories and a reputation range.
island_list_web_category_override_usagesFreeRead-onlyList the entities that reference one web category override.
island_list_web_category_overridesFreeRead-onlyList every web category override in the tenant - a set of per-URL reclassifications into a different web category.
island_list_web_category_static_dataFreeRead-onlyList the Island web category catalog that web category objects are built from.
island_list_web_category_usagesFreeRead-onlyList the entities that reference one web category object.
island_remove_identity_object_excluded_identity_filtersProDestructiveDESTRUCTIVE: remove excluded identity filters from an identity object, which WIDENS what it matches.
island_remove_identity_object_identity_filtersProDestructiveDESTRUCTIVE: remove identity filters from an identity object.
island_trigger_external_list_syncProWriteStart a resync of an externally-sourced dynamic list from its source.
island_update_device_posture_objectProWriteUpdate a device posture object; only the fields you send change.
island_update_identity_objectProWriteUpdate an identity object; only the fields you send change.
island_update_ip_location_objectProWriteUpdate an IP and location object; only the fields you send change.
island_update_location_objectProWriteUpdate a location object; only the fields you send change.
island_update_network_destinationProWriteUpdate a network destination; only the fields you send change.
island_update_network_objectProWriteUpdate a network object; only the fields you send change.
island_update_url_objectProWriteUpdate a URL object; only the fields you send change.
island_update_web_categoryProWriteUpdate a web category object; only the fields you send change.
island_update_web_category_overrideProWriteUpdate a web category override; only the fields you send change.
island_upsert_url_classification_overridesProDestructiveDESTRUCTIVE: create or update up to 10,000 URL classification overrides in one call.

[Island Browser] Add items to one collection of a policy object without rewriting the rest of it. PATCH /api/external/v1/policy-objects///add. Path parameters: objectType, objectId. Send { "items": { "<collectionName>": [ ... ] } }. For IdentityObjectEntity Island documents two collections, identityFilters and excludedIdentityFilters, each taking objects of { type, attribute, value } with type one of User, Group, Custom or MachineToken. Island answers with the items it actually added. Island documents these fields: items. Returns Island's raw JSON. This is the additive half: island_remove_identity_object_identity_filters and island_remove_identity_object_excluded_identity_filters take items back out.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: items.
objectIdstringyesRequired. The policy object id, which Island documents as a GUID - for IdentityObjectEntity it is the id island_list_identity_objects returns.
objectTypestringyesRequired. The policy object type. Island types the parameter as URLObjectEntity, IdentityObjectEntity, NetworkDestinationEntity or SiteEntity, and documents the supported collections only for IdentityObjectEntity.

[Island Browser] Ask Island how it classifies a batch of URLs and IP addresses. POST /api/external/v1/url-filtering/classify. Send { "urls": [ ... ], "ips": [ ... ] } - ips is nullable, so either list may be left out. Island documents these fields: urls, ips. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Island declares a 429 rate-limit response on this endpoint - one of exactly FOUR operations in 1,103 that declare one - so send URLs in one batch rather than one call per URL. Island publishes no limit value and no rate-limit headers.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: urls, ips.

[Island Browser] Create a device posture object. POST /api/external/v1/devicePostureObjects. SupportedPlatform is the OS family (Windows, MacOs, Android, Linux, Ios, ChromeOs, Elux, Igel, Stratodesk or DellThinOs) and islandPlatform is Browser, Extension, EndpointApp or Other. The checks themselves are the group objects - processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup and versionComplianceGroup - plus the diskEncryption and systemIntegrityProtection booleans; matchingType decides how they combine. Island documents these fields: name, description, supportedPlatform, matchingType, diskEncryption, islandPlatform, systemIntegrityProtection, refId, processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup, versionComplianceGroup. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, supportedPlatform, matchingType, diskEncryption, islandPlatform, systemIntegrityProtection, refId, processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup, versionComplianceGroup.

[Island Browser] Create an identity object. POST /api/external/v1/identityObjects. IdentityFilters is what the object matches and excludedIdentityFilters carves back out; each filter is { type, attribute, value, actorType } with type one of User, Group, Custom or MachineToken and actorType one of Human, Agent or HumanAndAgent. matchingType decides how several filters combine. Island documents these fields: name, description, matchingType, identityFilters, excludedIdentityFilters, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, identityFilters, excludedIdentityFilters, refId.

[Island Browser] Create an IP and location object. POST /api/external/v1/ipAndLocationObjects. The object matches on locations and addresses together: includedLocations and excludedLocations take entries from island_list_ip_location_object_locations, and includedIpAddresses, includedIpRanges and includedSubnets (with their excluded twins) carry the addresses. matchingType is Any, All, None or NotAll and decides how the sets combine. Island documents these fields: name, description, includedLocations, excludedLocations, includedIpAddresses, excludedIpAddresses, includedIpRanges, excludedIpRanges, includedSubnets, excludedSubnets, matchingType, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, includedLocations, excludedLocations, includedIpAddresses, excludedIpAddresses, includedIpRanges, excludedIpRanges, includedSubnets, excludedSubnets, matchingType, refId.

[Island Browser] Create a location object. POST /api/external/v1/LocationObject. IncludedLocations and excludedLocations carry the object, each entry taken from island_list_location_object_locations, which returns { id, country, countryCode, region }. Island documents these fields: name, description, includedLocations, excludedLocations, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, includedLocations, excludedLocations, refId.

[Island Browser] Create a network destination. POST /api/external/v1/networkDestinations. IncludeHosts and includePorts are what the destination matches and excludeHosts and excludePorts carve back out. isDefault makes this the tenant default destination, so sending it true moves the default off whichever destination holds it now; isBuiltIn marks an Island-shipped row. Island documents these fields: name, description, includeHosts, excludeHosts, includePorts, excludePorts, isDefault, isBuiltIn. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, includeHosts, excludeHosts, includePorts, excludePorts, isDefault, isBuiltIn.

[Island Browser] Create a network object. POST /api/external/v1/networkObjects. The address sets are what the object matches: ipAddresses, ipRanges and subnets include, and excludedIpAddresses, excludedIPRanges and excludedSubnets carve back out - Island capitalises excludedIPRanges differently from ipRanges. ipType is External or Internal, and the connectivityCheck fields drive Island reachability probes rather than the match. Island documents these fields: name, description, ipAddresses, subnets, connectivityCheckTargets, ipRanges, excludedIpAddresses, excludedIPRanges, excludedSubnets, ipType, connectivityCheckHosts, excludedConnectivityCheckHosts, ipAnonymity, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, ipAddresses, subnets, connectivityCheckTargets, ipRanges, excludedIpAddresses, excludedIPRanges, excludedSubnets, ipType, connectivityCheckHosts, excludedConnectivityCheckHosts, ipAnonymity, refId.

[Island Browser] Create a URL object. POST /api/external/v1/urlObjects. Name and urLs carry the object: urLs is the list of URL entries it matches, each one { url, urlType, isCaseInsensitive } with urlType one of Host, Wildcard, Regex, UrlWithQueryParams or ExtensionsWildcard, and excludedURLs carves entries back out. applicationId ties the object to an Island application and refId is your own external reference. Island spells the field urLs, with a capital L. Island documents these fields: name, description, excludedURLs, urLs, applicationId, applicationParameters, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, excludedURLs, urLs, applicationId, applicationParameters, refId.

[Island Browser] Create a web category object. POST /api/external/v1/webCategory. WebCategories is the list of Island categories the object matches, taken from island_list_web_category_static_data, and webCategoriesEnabled turns that half on or off. reputationRange is { min, max, enabled } over Island web reputation scores, and matchingType decides how the two halves combine. Island documents these fields: name, description, matchingType, webCategories, reputationRange, webCategoriesEnabled, refId. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, webCategories, reputationRange, webCategoriesEnabled, refId.

[Island Browser] DESTRUCTIVE: delete one device posture object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the device posture object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/devicePostureObjects/. Path parameters: id. Returns Island's raw JSON. Run island_list_device_posture_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device posture object id, which Island documents as a GUID. Get it from island_list_device_posture_objects.

[Island Browser] DESTRUCTIVE: delete several device posture objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every device posture object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/devicePostureObjects/DeleteByIds. Send { "ids": [ ... ] } - the device posture object ids to delete, as the GUIDs island_list_device_posture_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_device_posture_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one identity object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the identity object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/identityObjects/. Path parameters: id. Returns Island's raw JSON. Run island_list_identity_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.

[Island Browser] DESTRUCTIVE: delete several identity objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every identity object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/identityObjects/DeleteByIds. Send { "ids": [ ... ] } - the identity object ids to delete, as the GUIDs island_list_identity_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_identity_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one IP and location object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the IP and location object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/ipAndLocationObjects/. Path parameters: id. Returns Island's raw JSON. Run island_list_ip_location_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The IP and location object id, which Island documents as a GUID. Get it from island_list_ip_location_objects.

[Island Browser] DESTRUCTIVE: delete several IP and location objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every IP and location object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/ipAndLocationObjects/DeleteByIds. Send { "ids": [ ... ] } - the IP and location object ids to delete, as the GUIDs island_list_ip_location_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_ip_location_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one location object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the location object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/LocationObject/. Path parameters: id. Returns Island's raw JSON. Run island_list_location_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The location object id, which Island documents as a GUID. Get it from island_list_location_objects.

[Island Browser] DESTRUCTIVE: delete several location objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every location object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/LocationObject/DeleteByIds. Send { "ids": [ ... ] } - the location object ids to delete, as the GUIDs island_list_location_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_location_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one network destination. Why this is destructive: A single-entity DELETE with no dry run and no undo: the network destination is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/networkDestinations/. Path parameters: id. Returns Island's raw JSON. Run island_list_network_destination_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network destination id, which Island documents as a GUID. Get it from island_list_network_destinations.

[Island Browser] DESTRUCTIVE: delete several network destinations by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every network destination whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/networkDestinations/DeleteByIds. Send { "ids": [ ... ] } - the network destination ids to delete, as the GUIDs island_list_network_destinations returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_network_destination_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one network object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the network object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/networkObjects/. Path parameters: id. Returns Island's raw JSON. Run island_list_network_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network object id, which Island documents as a GUID. Get it from island_list_network_objects.

[Island Browser] DESTRUCTIVE: delete several network objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every network object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/networkObjects/DeleteByIds. Send { "ids": [ ... ] } - the network object ids to delete, as the GUIDs island_list_network_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_network_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete up to 10,000 URL classification overrides in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes up to 10,000 overrides and every URL they covered falls back to the classification Island gives it by default. Read island_list_url_classification_overrides first and keep the rows you may need to put back. DELETE /api/external/v1/massUrlClassificationOverrides. Send { "overrides": [ ... ] } with 1 to 10,000 entries, each identified by { domain, path, source, sourceId } - source is Manual or Edl. Island answers processedCount plus an unprocessedItems list of { domain, path, reason }. Island documents these fields: overrides. Returns Island's raw JSON. Island declares a 403 on this route, so a refusal here is a verdict on the API key rather than on the request.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: overrides.

[Island Browser] DESTRUCTIVE: delete one URL object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the URL object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/urlObjects/. Path parameters: id. Returns Island's raw JSON. Run island_list_url_object_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The URL object id, which Island documents as a GUID. Get it from island_list_url_objects.

[Island Browser] DESTRUCTIVE: delete several URL objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every URL object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/urlObjects/DeleteByIds. Send { "ids": [ ... ] } - the URL object ids to delete, as the GUIDs island_list_url_objects returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_url_object_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete several web category objects by id in one call. Why this is destructive: A bulk DELETE with no dry run and no undo: one call removes every web category object whose id is in the body, and every policy or rule that referenced one loses that reference. DELETE /api/external/v1/webCategory/DeleteByIds. Send { "ids": [ ... ] } - the web category object ids to delete, as the GUIDs island_list_web_categories returns. Island documents these fields: ids. Returns Island's raw JSON. Run island_list_web_category_usages on each id first to see what still references it.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: ids.

[Island Browser] DESTRUCTIVE: delete one web category object. Why this is destructive: A single-entity DELETE with no dry run and no undo: the web category object is gone and every policy or rule that referenced it loses that reference. Island marks this x-mcp-destructive false on all 66 of its single-entity deletes and the platform rule that every DELETE is destructive overrides it. DELETE /api/external/v1/webCategory/. Path parameters: id. Returns Island's raw JSON. Run island_list_web_category_usages first to see what still references it.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category object id, which Island documents as a GUID. Get it from island_list_web_categories.

[Island Browser] Export every device posture object in the tenant as a portable configuration. GET /api/external/v1/devicePostureObjects/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every identity object in the tenant as a portable configuration. GET /api/external/v1/identityObjects/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every IP and location object in the tenant as a portable configuration. GET /api/external/v1/ipAndLocationObjects/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every location object in the tenant as a portable configuration. GET /api/external/v1/LocationObject/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every network destination in the tenant as a portable configuration. GET /api/external/v1/networkDestinations/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every network object in the tenant as a portable configuration. GET /api/external/v1/networkObjects/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every URL object in the tenant as a portable configuration. GET /api/external/v1/urlObjects/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every web category object in the tenant as a portable configuration. GET /api/external/v1/webCategory/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export every web category override in the tenant as a portable configuration. GET /api/external/v1/webCategoryOverride/export. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one device posture object as a portable configuration. GET /api/external/v1/devicePostureObjects/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device posture object id, which Island documents as a GUID. Get it from island_list_device_posture_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one identity object as a portable configuration. GET /api/external/v1/identityObjects/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one IP and location object as a portable configuration. GET /api/external/v1/ipAndLocationObjects/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The IP and location object id, which Island documents as a GUID. Get it from island_list_ip_location_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one location object as a portable configuration. GET /api/external/v1/LocationObject/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The location object id, which Island documents as a GUID. Get it from island_list_location_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one network destination as a portable configuration. GET /api/external/v1/networkDestinations/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network destination id, which Island documents as a GUID. Get it from island_list_network_destinations.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one network object as a portable configuration. GET /api/external/v1/networkObjects/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network object id, which Island documents as a GUID. Get it from island_list_network_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one URL object as a portable configuration. GET /api/external/v1/urlObjects/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The URL object id, which Island documents as a GUID. Get it from island_list_url_objects.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one web category object as a portable configuration. GET /api/external/v1/webCategory/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category object id, which Island documents as a GUID. Get it from island_list_web_categories.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Export one web category override as a portable configuration. GET /api/external/v1/webCategoryOverride/export/. Path parameters: id. Optional filters: includeIds. Island's API description declares this response as a file rather than JSON, and publishes no sample. StackJack returns Island's raw JSON unchanged when Island answers JSON, and otherwise stores the file and answers { url, expiresAt, contentType, fileName, sizeBytes } where url is a TEMPORARY download link valid for about 30 minutes. The download half needs StackJack's blob storage to be configured and fails loudly rather than returning a dead link.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category override id, which Island documents as a GUID. Get it from island_list_web_category_overrides.
includeIdsbooleannonullOptional. Include the Island object ids in the export. Leave it off for an export you intend to import into a DIFFERENT tenant, where the ids mean nothing.

[Island Browser] Read the thumbprint, subject and expiry out of a certificate before building a device posture check. POST /api/external/v1/devicePostureObjects/extractCertificateInfo. Send { "certificate": "..." } with the certificate content; the field is required. Island answers thumbprint, subject, expiryDate and content. Island documents these fields: certificate. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON. Feed the thumbprint and subject it returns into the clientCertificateGroup of island_create_device_posture_object.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: certificate.

[Island Browser] Get one device posture object by id. GET /api/external/v1/devicePostureObjects/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device posture object id, which Island documents as a GUID. Get it from island_list_device_posture_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several device posture objects in one call by id. POST /api/external/v1/devicePostureObjects/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the device posture object ids to fetch, as the GUIDs island_list_device_posture_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one identity object by id. GET /api/external/v1/identityObjects/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several identity objects in one call by id. POST /api/external/v1/identityObjects/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the identity object ids to fetch, as the GUIDs island_list_identity_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one IP and location object by id. GET /api/external/v1/ipAndLocationObjects/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The IP and location object id, which Island documents as a GUID. Get it from island_list_ip_location_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several IP and location objects in one call by id. POST /api/external/v1/ipAndLocationObjects/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the IP and location object ids to fetch, as the GUIDs island_list_ip_location_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one location object by id. GET /api/external/v1/LocationObject/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The location object id, which Island documents as a GUID. Get it from island_list_location_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several location objects in one call by id. POST /api/external/v1/LocationObject/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the location object ids to fetch, as the GUIDs island_list_location_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one network destination by id. GET /api/external/v1/networkDestinations/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network destination id, which Island documents as a GUID. Get it from island_list_network_destinations.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several network destinations in one call by id. POST /api/external/v1/networkDestinations/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the network destination ids to fetch, as the GUIDs island_list_network_destinations returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one network object by id. GET /api/external/v1/networkObjects/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network object id, which Island documents as a GUID. Get it from island_list_network_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several network objects in one call by id. POST /api/external/v1/networkObjects/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the network object ids to fetch, as the GUIDs island_list_network_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get the identity object for one email address, creating it when Island has none. POST /api/external/v1/identityObjects/getOrCreate. Send { "email": "user@example.com" }; Island types the field as an email address and requires it. Island documents these fields: email. Returns Island's raw JSON. Island answers 200 when the object already existed and 201 when this call created it, so read the returned object rather than assuming a create.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: email.

[Island Browser] Get one URL object by id. GET /api/external/v1/urlObjects/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The URL object id, which Island documents as a GUID. Get it from island_list_url_objects.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several URL objects in one call by id. POST /api/external/v1/urlObjects/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the URL object ids to fetch, as the GUIDs island_list_url_objects returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several web category objects in one call by id. POST /api/external/v1/webCategory/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the web category object ids to fetch, as the GUIDs island_list_web_categories returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one web category object by id. GET /api/external/v1/webCategory/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category object id, which Island documents as a GUID. Get it from island_list_web_categories.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get one web category override by id. GET /api/external/v1/webCategoryOverride/. Path parameters: id. Optional filters: includeType. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category override id, which Island documents as a GUID. Get it from island_list_web_category_overrides.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] Get several web category overrides in one call by id. POST /api/external/v1/webCategoryOverride/GetByIds. Optional filters: includeType. Send { "ids": [ ... ] } - the web category override ids to fetch, as the GUIDs island_list_web_category_overrides returns. Island documents these fields: ids. This is a READ: Island answers filtered list and metric queries over POST, and this call creates and changes nothing. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
filterJsonstringyesRequired. The filter as JSON. Island documents these fields: ids.
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the entities that reference one device posture object. GET /api/external/v1/devicePostureObjects/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The device posture object id, which Island documents as a GUID. Get it from island_list_device_posture_objects.

[Island Browser] List every device posture object in the tenant - a reusable device posture check. GET /api/external/v1/devicePostureObjects. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the entities that reference one identity object. GET /api/external/v1/identityObjects/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.

[Island Browser] List every identity object in the tenant - a reusable set of identity filters over users, groups, custom attributes and machine tokens. GET /api/external/v1/identityObjects. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the geographic locations an IP and location object can include or exclude. GET /api/external/v1/ipAndLocationObjects/allLocations. Returns Island's raw JSON. Island serves the same { id, country, countryCode, region } catalog on this route and on island_list_location_object_locations, so either one answers for both object families. It declares no page parameters, so the whole catalog comes back in one response.

[Island Browser] List the entities that reference one IP and location object. GET /api/external/v1/ipAndLocationObjects/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The IP and location object id, which Island documents as a GUID. Get it from island_list_ip_location_objects.

[Island Browser] List every IP and location object in the tenant - a reusable set of IP addresses, ranges, subnets and geographic locations. GET /api/external/v1/ipAndLocationObjects. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the geographic locations a location object can include or exclude. GET /api/external/v1/LocationObject/allLocations. Returns Island's raw JSON. Island serves the same { id, country, countryCode, region } catalog on this route and on island_list_ip_location_object_locations, so either one answers for both object families. It declares no page parameters, so the whole catalog comes back in one response.

[Island Browser] List the entities that reference one location object. GET /api/external/v1/LocationObject/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The location object id, which Island documents as a GUID. Get it from island_list_location_objects.

[Island Browser] List every location object in the tenant - a reusable set of geographic locations. GET /api/external/v1/LocationObject. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the entities that reference one network destination. GET /api/external/v1/networkDestinations/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network destination id, which Island documents as a GUID. Get it from island_list_network_destinations.

[Island Browser] List every network destination in the tenant - a reusable set of hosts and ports that private-access routing and policies point at. GET /api/external/v1/networkDestinations. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the entities that reference one network object. GET /api/external/v1/networkObjects/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The network object id, which Island documents as a GUID. Get it from island_list_network_objects.

[Island Browser] List every network object in the tenant - a reusable set of IP addresses, ranges and subnets. GET /api/external/v1/networkObjects. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the tenant URL classification overrides - the URLs Island has been told to categorise differently. GET /api/external/v1/massUrlClassificationOverrides. Optional filters: Limit, Offset, Source, SourceId. Returns Island's raw JSON. Read this before island_upsert_url_classification_overrides or island_delete_url_classification_overrides, which each act on up to 10,000 rows at a time. Island declares a 403 on this route, so a refusal here is a verdict on the API key rather than on the request.

ParamTypeRequiredDefaultDescription
limitintegernonullOptional. How many overrides to return. Island documents no default and no maximum, and StackJack adds no cap of its own.
offsetintegernonullOptional. How many overrides to skip, for paging alongside Limit. Island publishes no cursor and no total count, so page until a short response comes back.
sourcestringnonullOptional. Where the override came from. Island accepts Manual or Edl (an external dynamic list).
sourceIdstringnonullOptional. The GUID of the external dynamic list the override came from; it pairs with Source=Edl.

[Island Browser] List the entities that reference one URL object. GET /api/external/v1/urlObjects/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The URL object id, which Island documents as a GUID. Get it from island_list_url_objects.

[Island Browser] List every URL object in the tenant - a reusable set of URL patterns that web policies match on. GET /api/external/v1/urlObjects. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List every web category object in the tenant - a reusable set of Island web categories and a reputation range. GET /api/external/v1/webCategory. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the entities that reference one web category override. GET /api/external/v1/webCategoryOverride/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category override id, which Island documents as a GUID. Get it from island_list_web_category_overrides.

[Island Browser] List every web category override in the tenant - a set of per-URL reclassifications into a different web category. GET /api/external/v1/webCategoryOverride. Optional filters: includeType. Returns Island's raw JSON. Island declares no page parameters on this endpoint, so the whole collection comes back in one response.

ParamTypeRequiredDefaultDescription
includeTypestringnonullOptional. Ask Island how much of each entity to return. It accepts None, Default, All, Update or DefaultWithAdminInfo and defaults to Default; All is the widest.

[Island Browser] List the Island web category catalog that web category objects are built from. GET /api/external/v1/webCategoryStaticData. Returns Island's raw JSON. Each row carries the category group, name and vendor. Island declares no page parameters here, so the whole catalog comes back in one response.

[Island Browser] List the entities that reference one web category object. GET /api/external/v1/webCategory/usages/. Path parameters: id. Returns Island's raw JSON. Each usage carries the referencing entity id, its entityType and its name, and isDeleted marks a reference Island has already removed. Island declares no page parameters here, so every usage comes back in one response.

ParamTypeRequiredDefaultDescription
idstringyesRequired. The web category object id, which Island documents as a GUID. Get it from island_list_web_categories.

[Island Browser] DESTRUCTIVE: remove excluded identity filters from an identity object, which WIDENS what it matches. Why this is destructive: A DELETE carrying a body, and the direction is the trap: it removes EXCLUSION filters, so the people, groups or machine tokens that were carved out of this object are covered by it again and pick up whatever the policies behind it grant. Island documents the change as reversible - the filters can be re-added - and as taking effect only after a separate push-configuration step. DELETE /api/external/v1/identityObjects//excludedIdentityFilters. Path parameters: id. Send { "identityFilters": [ ... ] } naming the EXCLUSION filters to remove, each one { type, attribute, value, actorType } with type one of User, Group, Custom or MachineToken; the field is required. Island documents these fields: identityFilters. Returns Island's raw JSON. Read the object with island_get_identity_object first to see who its exclusions carve out.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: identityFilters.
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.

[Island Browser] DESTRUCTIVE: remove identity filters from an identity object. Why this is destructive: A DELETE carrying a body: it removes named identity filters from the object, so the people, groups or machine tokens they covered stop matching it and lose whatever the policies behind it granted. Island documents the change as reversible - the filters can be re-added - and as taking effect only after a separate push-configuration step. DELETE /api/external/v1/identityObjects//identityFilters. Path parameters: id. Send { "identityFilters": [ ... ] } naming the filters to remove, each one { type, attribute, value, actorType } with type one of User, Group, Custom or MachineToken; the field is required. Island documents these fields: identityFilters. Returns Island's raw JSON. island_add_policy_object_items is the matching add.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: identityFilters.
idstringyesRequired. The identity object id, which Island documents as a GUID. Get it from island_list_identity_objects.

[Island Browser] Start a resync of an externally-sourced dynamic list from its source. POST /api/external/v1/ExternalLists/TriggerSync. Send { "integrationId": "<guid>" } naming the integration behind the list; Island documents the body itself as optional. Island documents these fields: integrationId. Returns Island's raw JSON. island_list_integrations is the only integration collection Island publishes, so take the integrationId from there. Island documents the call as idempotent and as destroying no data, and declares a 502 for the case where the upstream source cannot be reached.

ParamTypeRequiredDefaultDescription
bodyJsonstringnonullOptional. A JSON request body. Island publishes no sample for this endpoint; omit it unless you know the shape.

[Island Browser] Update a device posture object; only the fields you send change. PATCH /api/external/v1/devicePostureObjects/. Path parameters: id. SupportedPlatform is the OS family (Windows, MacOs, Android, Linux, Ios, ChromeOs, Elux, Igel, Stratodesk or DellThinOs) and islandPlatform is Browser, Extension, EndpointApp or Other. The checks themselves are the group objects - processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup and versionComplianceGroup - plus the diskEncryption and systemIntegrityProtection booleans; matchingType decides how they combine. Island documents these fields: name, description, matchingType, diskEncryption, supportedPlatform, islandPlatform, systemIntegrityProtection, refId, processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup, versionComplianceGroup. Island publishes no merge rule for the array fields, so treat any array you send as the complete list for that field and read the object first. Returns Island's raw JSON.

ParamTypeRequiredDefaultDescription
bodyJsonstringyesRequired. The request body as JSON. Island documents these fields: name, description, matchingType, diskEncryption, supportedPlatform, islandPlatform, systemIntegrityProtection, refId, processCheckGroup, domainJoinedGroup, registryKeyGroup, filePathGroup, clientCertificateGroup, deviceAttributeGroup, endpointProtectionGroup, versionComplianceGroup.
idstringyesRequired. The device posture object id, which Island documents as a GUID. Get it from island_list_device_posture_objects.

[Island Browser] Update an identity object; only the fields you send change. PATCH /api/external/v1/identityObjects/. Path parameters: id. IdentityFilters is what the object matches and excludedIdentityFilters carves back out; each filter is { type, attribute, value, actorType } with type one of User, Group, Custom or MachineToken and actorType one