Qualys Policy Audit 1.13 API Notification
Table of Contents
A new release of Qualys Policy Audit (PA Release 1.13), which is released in July 2026, includes new and updates to an existing API. This API notification highlights recently released changes, enabling you to identify use cases that can benefit from the updated APIs.
What’s New?
PCAS Control List API
GET /pcas/v1/compliance/controls
DTD or XSD changes: Not Applicable
This new API provides all the functionality available in the Control List API and additionally supports Audit Commands, enabling you to retrieve the audit commands configured for a control.
In addition to the new fields, the API provides improved performance by leveraging the PCAS service architecture for faster retrieval of control information.
Mandatory Input Parameters for Updating HashiCorp and WAB Vaults
GET and POST /api/3.0/fo/auth/
DTD or XSD changes: No
With this release, we have made certain input parameters mandatory for updating authentication records created using HashiCorp or Wallix AdminBastian (WAB) authentication vaults. Previously, this existed for the Infloblox authentication technology V2.0 API. Now we have extended this to the following authentication technology V3.0 APIs:
- DataStax
- OLVM
- NSX
- Cisco APIC
- Infoblox
- Cassandra
For more details, please refer to the release notes here: https://docs.qualys.com/en/vm/release-notes/mergedProjects/qualys_pa/pa/release_1_13_api.htm