---
title: Security type | Wartiva GraphQL API
description: The security posture of an Endpoint: its firewall, anti-malware and disk encryption state, summarized as per-component health ratings in Health.
url: https://wartiva.com/api-docs/types/security.html
updated: 2026-10-07
---

Endpoint configuration · GraphQL type

# `Security` type

The security posture of an [Endpoint](https://wartiva.com/api-docs/types/endpoint.html): its firewall, anti-malware and disk encryption state, summarized as per-component health ratings in [Health](https://wartiva.com/api-docs/types/health.html). Collected on Windows, macOS and Linux. All platforms report firewall products and per-volume disk encryption; Windows additionally reports antivirus and antispyware products and the Windows Firewall private and public profile settings, and Linux reports the nftables tables and chains that make up the host firewall. On macOS and Linux, health components that are not collected there, such as antivirus, are rated NOT_MONITORED. Each Endpoint has at most one Security, reachable from the Endpoint's `security` field.

## Fields

| Field Name | Description |
|---|---|
| `id` - [`ID!`](https://wartiva.com/api-docs/types/id.html) | The Security's unique identifier on the security graph. |
| `orgId` - [`OrganizationId!`](https://wartiva.com/api-docs/types/organization-id.html) | Unique identifier that corresponds to your deployment of this product or a specific customer account that this Endpoint belongs to. |
| `seen` - [`SeenOnline!`](https://wartiva.com/api-docs/types/seen-online.html) | Describes when this Security was seen. |
| `objectType` - [`GraphObjectType!`](https://wartiva.com/api-docs/types/graph-object-type.html) | The type of this graph object. |
| `objectTypeLabel` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A localized label describing the object type. |
| `displayName` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A concise human-friendly identifier for this object suitable for display in user interface page titles and in AI chat responses that refer to the object. |
| `firstSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was first seen. |
| `lastSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was last seen. |
| `createdAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was created in the security graph. |
| `updatedAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was last mutated in the security graph. |
| `snapshotInfo` - [`GraphObjectSnapshotInfo!`](https://wartiva.com/api-docs/types/graph-object-snapshot-info.html) | Whether this object is a point-in-time snapshot of an object's state rather than the object's live state, and when that state was observed. |
| `endpoint` - [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) | The Endpoint this Security belongs to if available. |
| `firewallProducts` - [`[Firewall!]!`](https://wartiva.com/api-docs/types/firewall.html) | List of installed and configured firewall products on an Endpoint. |
| `firewallPrivateProfile` - [`FirewallPrivateProfile`](https://wartiva.com/api-docs/types/firewall-private-profile.html) | Windows Firewall configuration settings for the Private network profile. Applies when the endpoint is connected to a private network (home or work). |
| `firewallPublicProfile` - [`FirewallPublicProfile`](https://wartiva.com/api-docs/types/firewall-public-profile.html) | Windows Firewall configuration settings for the Public network profile. Applies when the endpoint is connected to a public network (coffee shop, airport). |
| `antivirusProducts` - [`[Antivirus!]!`](https://wartiva.com/api-docs/types/antivirus.html) | List of installed and configured antivirus products on an Endpoint. |
| `antispywareProducts` - [`[Antispyware!]!`](https://wartiva.com/api-docs/types/antispyware.html) | List of installed and configured antispyware products on an Endpoint. |
| `health` - [`Health!`](https://wartiva.com/api-docs/types/health.html) | Overall health status of various security components on an Endpoint. |
| `tables` - [`[Table]`](https://wartiva.com/api-docs/types/table.html) | List of nftable tables configured on a Linux Endpoint. |
| `diskEncryption` - [`[DiskEncryption!]`](https://wartiva.com/api-docs/types/disk-encryption.html) | Encryption state of each disk volume, including its mount points, encryption method and encryption state. |
| `findings` - [`FindingsPayload!`](https://wartiva.com/api-docs/types/findings-payload.html) | Policy findings for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `issues` - [`IssuesPayload!`](https://wartiva.com/api-docs/types/issues-payload.html) | Policy issues for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `issuesSummary` - [`IssuesSummary!`](https://wartiva.com/api-docs/types/issues-summary.html) | Summary of the active policy issues currently open on this object, broken down by severity. |

## Returned by

- [`security`](https://wartiva.com/api-docs/queries/security.html) query: Retrieves an endpoint's Security posture by its graph object id: firewall, antivirus, and antispyware products, Windows Firewall profiles, Linux…

## Used by

- [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) type: A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
- [`GraphObjectType`](https://wartiva.com/api-docs/types/graph-object-type.html) enum: An enumeration of the different types of security graph objects.
- [`GraphObjectTypeCategory`](https://wartiva.com/api-docs/types/graph-object-type-category.html) enum: High-level grouping used to organize GraphObjectType values in UI navigation and API discovery.
- [`ProprietaryCheckId`](https://wartiva.com/api-docs/types/proprietary-check-id.html) enum: A check that ships with the platform, run by a PROPRIETARY rule on its Schedule.
- [`SecurityPayload`](https://wartiva.com/api-docs/types/security-payload.html) type: Payload wrapper for a single Security result.

## Related types

- [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.

## Example

### Example

```json
{
  "id": 4,
  "orgId": "615f3b3b28284380e28a7342",
  "seen": SeenOnline,
  "objectType": "ACCOUNT_POLICY",
  "objectTypeLabel": "abc123",
  "displayName": "xyz789",
  "firstSeen": "2021-10-07T18:23:25.829Z",
  "lastSeen": "2021-10-07T18:23:25.829Z",
  "createdAt": "2021-10-07T18:23:25.829Z",
  "updatedAt": "2021-10-07T18:23:25.829Z",
  "snapshotInfo": GraphObjectSnapshotInfo,
  "endpoint": Endpoint,
  "firewallProducts": [Firewall],
  "firewallPrivateProfile": FirewallPrivateProfile,
  "firewallPublicProfile": FirewallPublicProfile,
  "antivirusProducts": [Antivirus],
  "antispywareProducts": [Antispyware],
  "health": Health,
  "tables": [Table],
  "diskEncryption": [DiskEncryption],
  "findings": FindingsPayload,
  "issues": IssuesPayload,
  "issuesSummary": IssuesSummary
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
