Cato Platform API

Your SASE platform, programmable.

The Cato API enables programmable access to your account's data on the Cato SASE Cloud Platform.

Extract with GraphQL. Automate with mutations.

GraphQL returns exactly the data you request in fewer calls, and mutation APIs let you script bulk configuration changes across sites, hosts, and routing.

Plug into your stack.

Ready-to-use integrations with leading SIEM, SOAR, and security tools.

Today's Challenges

Manual mandddagement doesn't scale.

01 / 04

Manual config at scale

Bulk configuration changes done by hand are slow and error-prone across large deployments.

02 / 04

Data trapped in silos

Security and networking data is hard to extract into SIEM, SOAR, and archival workflows.

03 / 04

Custom integration burden

Building integrations with every enterprise tool in-house is costly and slow.

04 / 04

Ungoverned access

Programmatic access without scoping and an audit trail is a real security risk.

Our approach

Extract, automate,
integrate.

Generate scoped tokens

Admins create access tokens in the CMA, restricted to specific authorized source IP addresses.

Query with GraphQL

Extract exactly the data you need, efficiently, into your enterprise platforms and workflows.

Automate with mutations

Script bulk configuration changes to manage sites, hosts, and routing at scale.

Video Demo

Cato API video demo

Cato's API, leveraging GraphQL, enables administrators to view, export, and modify configuration elements from the Cato Management Application — easily generate API keys and use the API Playground for testing and development.

How it works

Platform API Capabilities

Tokens + audit trail

Secure API access with a complete audit trail

All API access is secured with an access token that only administrators can generate through the CMA.

  • Restrict tokens to authorized source IP addresses
  • Create multiple tokens for different uses
  • Every change logged in the audit trail by token
Customer Stories

Customers love Cato

Industry photoJPG · PNG · SVG

For me, Cato future proofs Swissport's IT infrastructure. The platform constantly evolves, adapts to new technologies, and provides the visibility and security we need to support our business today and tomorrow.

Richard ThorpCTO, Swissport

Get a live demo

Secure every interaction across the enterprise, cloud, and AI with the only purpose-built SASE platform.

What to expect
  • 15–30 minute session with a SASE product expert
  • Discuss your use cases and how we can help
  • Live product demonstration where applicable
Get Started

See Cato in Action

Enter a valid work email.
FAQs

Questions, answered.

It enables programmable access to your account's data on the Cato SASE Cloud Platform — GraphQL for efficient data extraction to 3rd-party solutions like SIEM and SOAR, plus mutation APIs for automated bulk configuration.
All access uses an access token that only administrators can generate in the CMA; tokens can be restricted to authorized source IPs, and every change is logged in the audit trail by token.
A GraphQL playground — a synthetic environment to test and validate code before production, connected to your account with an API key, useful for learning, troubleshooting, and testing.
GraphQL reduces the number of API calls and returns exactly the data requested, making data extraction from Cato's data lake flexible and efficient.
The Cato API is used in integrations with third-party products including Arctic Wolf, Axonius, Google Chronicle, Rapid7, and Sumo Logic, with more continuously added.
Yes. A mutation API enables account management at scale — build scripts or integrate third-party products to automate bulk changes to sites, hosts, and routing.