Drift by Simulation Status
Header Parameters
Path Parameters
The SafeBreach Account ID where the tests were performed
GET
Return simulator listGET
Return simulator detailsPOST
Create new simulatorPUT
Update simulatorDELETE
Delete simulatorGET
Return simulator list bulkGET
Return simulator aggregationGET
Return associated users list for simulatorGET
Return associated proxies list for simulatorGET
Return associated assets list for simulatorPOST
Associate user with a simulatorPOST
Associate proxy with simulatorPOST
Associate asset with simulatorDELETE
Delete associated proxy with simulatorDELETE
Delete associated impersonated users with simulatorDELETE
Delete associated asset from simulatorPOST
Enable advanced action on simulatorDELETE
Disable advanced action on simulatorGET
Return current secretPOST
Create new random secretGET
Return impersonated user listPOST
Add impersonated userPUT
Update impersonated userDELETE
Delete impersonated userPOST
Add nodes to an impersonated userGET
Get impersonation user's nodesDELETE
Delete a node from an impersonated userPOST
Test connection for existing impersonated userPOST
Test connection for impersonated userGET
Show an impersonated user's detailsPOST
Returns the executions history results using postGET
Returns the executions history resultsGET
Returns the executions of a specific testGET
Returns the executions history suggestionsPOST
Returns the executions history suggestions using postGET
Get simulations labelsGET
Get Event LogsDELETE
Delete Event LogsPOST
Send Simulation ResultReturns drift analysis for simulations' statuses/results in a window.
It is highly recommended to use a narrow time window and apply filters, as it can significantly improve response time.
windowStart (string, ISO-8601 in UTC (e.g., 2025-10-24T00:00:00.000Z), optional): Start of time window. Default: 7 days before windowEnd.
windowEnd (string, ISO-8601 in UTC (e.g., 2025-10-24T00:00:00.000Z), optional): End of time window. Default: now.
earliestSearchTime (number|string, optional): Earliest time to search per tracking ID. Default: 30 days before windowStart.
maxOutsideWindowExecutions (integer >= 0, optional): Simulations to include before windowStart per tracking ID. Default: 1.
attackId (integer, optional): Filter by a specific attack or move ID (query-level filter).
attackName (string, optional): Filter by attack name (query-level filter). Must be non-empty.
attackType (string, optional): Filter by attack type display name (for example, "Malware Drop"). Query-level filter. Must be non-empty.
driftType (enum, optional): Improvement | Regression | NotApplicable
A) Final status:
B) Simple status:
Mutual exclusion:
The SafeBreach Account ID where the tests were performed
Show child attributes
Show child attributes
Show child attributes
Show child attributes
Show child attributes
Show child attributes
POST
/
1