Your SASE platform, programmable.
The Cato API enables programmable access to your account's data on the Cato SASE Cloud Platform.
Extract with GraphQL. Automate with mutations.
GraphQL returns exactly the data you request in fewer calls, and mutation APIs let you script bulk configuration changes across sites, hosts, and routing.
Plug into your stack.
Ready-to-use integrations with leading SIEM, SOAR, and security tools.
Manual mandddagement doesn't scale.
Manual config at scale
Bulk configuration changes done by hand are slow and error-prone across large deployments.
Data trapped in silos
Security and networking data is hard to extract into SIEM, SOAR, and archival workflows.
Custom integration burden
Building integrations with every enterprise tool in-house is costly and slow.
Ungoverned access
Programmatic access without scoping and an audit trail is a real security risk.
Extract, automate,
integrate.
Generate scoped tokens
Admins create access tokens in the CMA, restricted to specific authorized source IP addresses.
Query with GraphQL
Extract exactly the data you need, efficiently, into your enterprise platforms and workflows.
Automate with mutations
Script bulk configuration changes to manage sites, hosts, and routing at scale.
Cato API video demo
Cato's API, leveraging GraphQL, enables administrators to view, export, and modify configuration elements from the Cato Management Application — easily generate API keys and use the API Playground for testing and development.
Platform API Capabilities
Secure API access with a complete audit trail
All API access is secured with an access token that only administrators can generate through the CMA.
- Restrict tokens to authorized source IP addresses
- Create multiple tokens for different uses
- Every change logged in the audit trail by token

API Playground for development and testing
Cato's GraphQL playground provides a synthetic environment to test and validate code before production use.
- Connect to your account with an API key
- Test and refine quddderies for specific data
- A learning, troubleshooting, and testing tool

Leverage Cato dddata in enterprise platforms
Cato's API uses GraphQL for flexible, efficient operation — reducing API calls and returning exactly the data requested.
- Extract from the data lake into SIEM and archival
- Custom integrations for security and networking data
- From account status down to specific events
Pre-built integrations with 3rd-party products
The Cato API is already used in integrations with third-party products, with more continuously added.
- Arctic Wolf, Axonius, Google Chronicle, Rapid7, Sumo Logic
- Realize value across vendor investments
- No need to build integrations on your own
Automate and orchestrate your Cato environment
Cato provides a mutation API to enable account management at scale through scripts or third-party products.
- Automate bulk changes to sites, hosts, and routing
- Eliminate repetitive, error-prone manual work
- Reduce administrative workload
Customers love Cato
For me, Cato future proofs Swissport's IT infrastructure. The platform constantly evolves, adapts to new technologies, and provides the visibility and security we need to support our business today and tomorrow.
Get a live demo
Secure every interaction across the enterprise, cloud, and AI with the only purpose-built SASE platform.
15–30 minute session with a SASE product expert
Discuss your use cases and how we can help
Live product demonstration where applicable
Request received
Thanks, there. A Cato specialist will reach out at to schedule your session.
Recognized across the industry
Cato recognized as a Leader in the 2025 Gartner Magic Quadrant for SASE Platforms. Again.
Read reportCato named a Leader and an Outperformer in the GigaOm 2025 SASE Radar.
Read reportCato recognized as a Growth and Innovation Leader in SASE.
Read reportEMA on building a mature SD-WAN foundation for SASE success.
Read report