> ## Documentation Index
> Fetch the complete documentation index at: https://devlookout.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Get the security graph

> For the complete documentation index, see https://devlookout.com/llms.txt. Refreshes and returns the materialized typed graph with provenance identifiers.



## OpenAPI

````yaml /openapi.yaml get /api/v1/graph
openapi: 3.1.0
info:
  title: Lookout HTTP API
  version: 1.0.0
  description: >-
    Versioned interface for querying Lookout security state, ingesting evidence,
    managing Alerts, and promoting Incidents. The deployed Lookout instance is
    authoritative and raw evidence remains local unless export is explicitly
    enabled.
servers:
  - url: https://lookout.example.com
    description: Replace with the private URL of your Lookout deployment
security:
  - bearerAuth: []
tags:
  - name: System
  - name: Security graph
  - name: Rules
  - name: Events
  - name: Collectors
  - name: Alerts
  - name: Incidents
paths:
  /api/v1/graph:
    get:
      tags:
        - Security graph
      summary: Get the security graph
      description: >-
        For the complete documentation index, see
        https://devlookout.com/llms.txt. Refreshes and returns the materialized
        typed graph with provenance identifiers.
      operationId: getSecurityGraph
      responses:
        '200':
          description: Materialized graph
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/GraphSnapshot'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
components:
  schemas:
    GraphSnapshot:
      type: object
      required:
        - entities
        - relationships
        - capabilities
      properties:
        entities:
          type: array
          items:
            $ref: '#/components/schemas/GenericObject'
        relationships:
          type: array
          items:
            $ref: '#/components/schemas/GenericObject'
        capabilities:
          type: array
          items:
            $ref: '#/components/schemas/GenericObject'
    GenericObject:
      type: object
      additionalProperties: true
    ErrorResponse:
      type: object
      required:
        - error
      properties:
        error:
          type: string
        issues:
          type: array
          items:
            type: string
  responses:
    Unauthorized:
      description: Missing or invalid credentials
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ErrorResponse'
    Forbidden:
      description: The principal lacks the required permission
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ErrorResponse'
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: opaque
      description: A 256-bit token generated by the Lookout CLI.

````