Skip to main content

API Discovery and Coverage

With IAST API Discovery and Coverage you can identify which APIs are exposed, the age of an API, and which APIs have been exercised and which have not.

API is a combination of three distinct data points: The HTTP method associated with the request, for example Get or Post, the URL of the request, and the associated API operation.

Click the APIs tab to display the API discovered on the selected scan.


If the application is not running on one of the frameworks supporting IAST API Discovery, the APIs tab does not show.