---
title: List scans
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/go)

[Vulnerability Scanner](https://developers.cloudflare.com/api/go/resources/vulnerability_scanner)

[Scans](https://developers.cloudflare.com/api/go/resources/vulnerability_scanner/subresources/scans)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# List scans

client.VulnerabilityScanner.Scans.List(ctx, params) (\*V4PagePaginationArray\[[ScanListResponse](<https://developers.cloudflare.com/api/go/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)>)], error)

GET/accounts/{account\_id}/vuln\_scanner/scans

Returns all scans for the account.

##### Security

<details>

<summary>API Token</summary>



The preferred authorization scheme for interacting with the Cloudflare API. <a href="https://developers.cloudflare.com/fundamentals/api/get-started/create-token/">Create a token</a>.

**Example:**<code>Authorization: Bearer Sn3lZJTBX6kkg7OdcBUAxOO963GEIyGQqnFTOFYY</code>

</details>

<details>

<summary>API Email + API Key</summary>



The previous authorization scheme for interacting with the Cloudflare API, used in conjunction with a Global API key.

**Example:**<code>X-Auth-Email: user@example.com</code>

The previous authorization scheme for interacting with the Cloudflare API. When possible, use API tokens instead of Global API keys.

**Example:**<code>X-Auth-Key: 144c9defac04969c7bfad8efaa8ea194</code>

</details>

##### ParametersExpand Collapse

<details>

<summary>

params ScanListParams

</summary>

AccountID param.Field\[string]

Path param: Identifier.

maxLength32

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20account_id">Link to this property</a>

Page param.Field\[int64]Optional

Query param: Page number of paginated results.

minimum1

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20page">Link to this property</a>

PerPage param.Field\[int64]Optional

Query param: Number of results per page.

maximum50

minimum5

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20per_page">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.scans%20%3E%20(method)%20list%20%3E%20(params)%20default>)

##### ReturnsExpand Collapse

<details>

<summary>

type ScanListResponse struct{…}

</summary>

ID string

Scan identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

ScanType ScanListResponseScanType

The type of vulnerability scan.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20scan_type">Link to this property</a>

<details>

<summary>

Status ScanListResponseStatus

Current lifecycle status of the scan.

</summary>

One of the following:

const ScanListResponseStatusCreated ScanListResponseStatus = "created"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseStatusScheduled ScanListResponseStatus = "scheduled"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

const ScanListResponseStatusPlanning ScanListResponseStatus = "planning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%202">Link to this property</a>

const ScanListResponseStatusRunning ScanListResponseStatus = "running"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%203">Link to this property</a>

const ScanListResponseStatusFinished ScanListResponseStatus = "finished"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%204">Link to this property</a>

const ScanListResponseStatusFailed ScanListResponseStatus = "failed"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

TargetEnvironmentID string

The target environment this scan runs against.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20target_environment_id">Link to this property</a>

<details>

<summary>

Report ScanListResponseReportOptional

Vulnerability report produced after the scan completes. The shape depends on the scan type. Present only for finished scans.

</summary>

<details>

<summary>

Report ScanListResponseReportReport

Version 1 of the BOLA vulnerability scan report.

</summary>

<details>

<summary>

Summary ScanListResponseReportReportSummary

Summary of all steps and findings.

</summary>

<details>

<summary>

Verdict ScanListResponseReportReportSummaryVerdict

Overall verdict of the vulnerability scan.

</summary>

One of the following:

const ScanListResponseReportReportSummaryVerdictOk ScanListResponseReportReportSummaryVerdict = "ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseReportReportSummaryVerdictWarning ScanListResponseReportReportSummaryVerdict = "warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

const ScanListResponseReportReportSummaryVerdictInconclusive ScanListResponseReportReportSummaryVerdict = "inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary">Link to this property</a>

<details>

<summary>

Tests \[]ScanListResponseReportReportTest

List of tests that were run.

</summary>

<details>

<summary>

Steps \[]ScanListResponseReportReportTestsStep

Steps that were executed.

</summary>

<details>

<summary>

Assertions \[]ScanListResponseReportReportTestsStepsAssertion

Assertions that were made against the received response.

</summary>

Description string

Human-readable description of the assertion, explaining what was checked.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

Kind ScanListResponseReportReportTestsStepsAssertionsKind

Kind of assertion.

</summary>

<details>

<summary>

Parameters ScanListResponseReportReportTestsStepsAssertionsKindParameters

Range of HTTP status codes.

</summary>

Max int64

Maximum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20max">Link to this property</a>

Min int64

Minimum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20min">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters">Link to this property</a>

Type ScanListResponseReportReportTestsStepsAssertionsKindType

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20type">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind">Link to this property</a>

Observed int64

Observed value on which the assertion was made.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20observed">Link to this property</a>

<details>

<summary>

Outcome ScanListResponseReportReportTestsStepsAssertionsOutcome

Outcome of the assertion.

</summary>

One of the following:

const ScanListResponseReportReportTestsStepsAssertionsOutcomeOk ScanListResponseReportReportTestsStepsAssertionsOutcome = "ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseReportReportTestsStepsAssertionsOutcomeFail ScanListResponseReportReportTestsStepsAssertionsOutcome = "fail"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%201">Link to this property</a>

const ScanListResponseReportReportTestsStepsAssertionsOutcomeInconclusive ScanListResponseReportReportTestsStepsAssertionsOutcome = "inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions">Link to this property</a>

<details>

<summary>

Errors \[]ScanListResponseReportReportTestsStepsErrorOptional

Errors the step encountered that may explain absent or incomplete fields.

</summary>

Description string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

ErrorCode int64Optional

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

Request ScanListResponseReportReportTestsStepsRequestOptional

HTTP request that was made, if any.

</summary>

<details>

<summary>

CredentialSet ScanListResponseReportReportTestsStepsRequestCredentialSet

Credential set that was used.

</summary>

ID string

ID of the credential set.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20id">Link to this property</a>

<details>

<summary>

Role ScanListResponseReportReportTestsStepsRequestCredentialSetRole

Role of the credential set.

</summary>

One of the following:

const ScanListResponseReportReportTestsStepsRequestCredentialSetRoleOwner ScanListResponseReportReportTestsStepsRequestCredentialSetRole = "owner"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseReportReportTestsStepsRequestCredentialSetRoleAttacker ScanListResponseReportReportTestsStepsRequestCredentialSetRole = "attacker"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set">Link to this property</a>

HeaderNames \[]string

Names of headers that were sent.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20header_names">Link to this property</a>

<details>

<summary>

Method ScanListResponseReportReportTestsStepsRequestMethod

HTTP method.

</summary>

One of the following:

const ScanListResponseReportReportTestsStepsRequestMethodGet ScanListResponseReportReportTestsStepsRequestMethod = "GET"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseReportReportTestsStepsRequestMethodDelete ScanListResponseReportReportTestsStepsRequestMethod = "DELETE"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%201">Link to this property</a>

const ScanListResponseReportReportTestsStepsRequestMethodPatch ScanListResponseReportReportTestsStepsRequestMethod = "PATCH"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%202">Link to this property</a>

const ScanListResponseReportReportTestsStepsRequestMethodPost ScanListResponseReportReportTestsStepsRequestMethod = "POST"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%203">Link to this property</a>

const ScanListResponseReportReportTestsStepsRequestMethodPut ScanListResponseReportReportTestsStepsRequestMethod = "PUT"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%204">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method">Link to this property</a>

URL string

Exact and full URL (including host, query parameters) that was requested.

formaturi

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20url">Link to this property</a>

<details>

<summary>

VariableCaptures \[]ScanListResponseReportReportTestsStepsRequestVariableCapture

Variable captures requested for this step.

</summary>

JsonPath string

JSONPath expression used for capture, e.g. <code>"$.id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20json_path">Link to this property</a>

Name string

Variable name, e.g. <code>"resource_id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures">Link to this property</a>

Body unknownOptional

Request body, if any.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20body">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request">Link to this property</a>

<details>

<summary>

Response ScanListResponseReportReportTestsStepsResponseOptional

HTTP response that was received, if any.

</summary>

<details>

<summary>

Body ScanListResponseReportReportTestsStepsResponseBody

HTTP response body.

</summary>

One of the following:

<details>

<summary>

type ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseNotFound struct{…}

No body was received.

</summary>

Kind ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseNotFoundKind

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200%20%3E%20(property)%20kind">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200">Link to this property</a>

<details>

<summary>

type ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseBytes struct{…}

Body received but unable to read as UTF-8. Raw bytes, base64-encoded.

</summary>

Contents string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20contents">Link to this property</a>

Kind ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseBytesKind

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20kind">Link to this property</a>

Truncated bool

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201">Link to this property</a>

<details>

<summary>

type ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseText struct{…}

Body received as valid UTF-8 text but not valid JSON.

</summary>

Contents string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20contents">Link to this property</a>

Kind ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseTextKind

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20kind">Link to this property</a>

Truncated bool

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202">Link to this property</a>

<details>

<summary>

type ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseJson struct{…}

Body received as valid JSON.

</summary>

Contents string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20contents">Link to this property</a>

Kind ScanListResponseReportReportTestsStepsResponseBodyVulnScannerBOLABodyResponseJsonKind

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20kind">Link to this property</a>

Truncated bool

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body">Link to this property</a>

HeaderNames \[]string

Names of headers that were received.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20header_names">Link to this property</a>

Status int64

HTTP status code.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status">Link to this property</a>

StatusText stringOptional

HTTP status text, if available for the status code.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status_text">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps">Link to this property</a>

<details>

<summary>

Verdict ScanListResponseReportReportTestsVerdict

Verdict of this single test.

</summary>

One of the following:

const ScanListResponseReportReportTestsVerdictOk ScanListResponseReportReportTestsVerdict = "ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

const ScanListResponseReportReportTestsVerdictWarning ScanListResponseReportReportTestsVerdict = "warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

const ScanListResponseReportReportTestsVerdictInconclusive ScanListResponseReportReportTestsVerdict = "inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict">Link to this property</a>

<details>

<summary>

PreflightErrors \[]ScanListResponseReportReportTestsPreflightErrorOptional

Errors that prevented step execution.

</summary>

Description string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

ErrorCode int64Optional

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report">Link to this property</a>

ReportSchemaVersion ScanListResponseReportReportSchemaVersion

Version of the report schema.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report_schema_version">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)%20%3E%20(property)%20report">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20ScanListResponse%20%3E%20(schema)>)

### List scans

Go

HTTPTypeScriptPythonGoTerraform

```
package main

import (
  "context"
  "fmt"

  "github.com/cloudflare/cloudflare-go"
  "github.com/cloudflare/cloudflare-go/option"
  "github.com/cloudflare/cloudflare-go/vulnerability_scanner"
)

func main() {
  client := cloudflare.NewClient(
    option.WithAPIToken("Sn3lZJTBX6kkg7OdcBUAxOO963GEIyGQqnFTOFYY"),
  )
  page, err := client.VulnerabilityScanner.Scans.List(context.TODO(), vulnerability_scanner.ScanListParams{
    AccountID: cloudflare.F("023e105f4ecef8ad9ca31a8372d0c353"),
  })
  if err != nil {
    panic(err.Error())
  }
  fmt.Printf("%+v\n", page)
}
```

200 example

```
{
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "success": true,
  "result": [
    {
      "id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
      "scan_type": "bola",
      "status": "created",
      "target_environment_id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
      "report": {
        "report": {
          "summary": {
            "verdict": "ok"
          },
          "tests": [
            {
              "steps": [
                {
                  "assertions": [
                    {
                      "description": "description",
                      "kind": {
                        "parameters": {
                          "max": 0,
                          "min": 0
                        },
                        "type": "http_status_within_range"
                      },
                      "observed": 0,
                      "outcome": "ok"
                    }
                  ],
                  "errors": [
                    {
                      "description": "description",
                      "error_code": 0
                    }
                  ],
                  "request": {
                    "credential_set": {
                      "id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
                      "role": "owner"
                    },
                    "header_names": [
                      "string"
                    ],
                    "method": "GET",
                    "url": "https://example.com",
                    "variable_captures": [
                      {
                        "json_path": "json_path",
                        "name": "name"
                      }
                    ],
                    "body": {}
                  },
                  "response": {
                    "body": {
                      "kind": "not_found"
                    },
                    "header_names": [
                      "string"
                    ],
                    "status": 0,
                    "status_text": "status_text"
                  }
                }
              ],
              "verdict": "ok",
              "preflight_errors": [
                {
                  "description": "description",
                  "error_code": 0
                }
              ]
            }
          ]
        },
        "report_schema_version": "v1"
      }
    }
  ],
  "result_info": {
    "count": 1,
    "page": 1,
    "per_page": 20,
    "total_count": 2000,
    "total_pages": 100
  }
}
```

##### Returns Examples

200 example

```
{
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "success": true,
  "result": [
    {
      "id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
      "scan_type": "bola",
      "status": "created",
      "target_environment_id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
      "report": {
        "report": {
          "summary": {
            "verdict": "ok"
          },
          "tests": [
            {
              "steps": [
                {
                  "assertions": [
                    {
                      "description": "description",
                      "kind": {
                        "parameters": {
                          "max": 0,
                          "min": 0
                        },
                        "type": "http_status_within_range"
                      },
                      "observed": 0,
                      "outcome": "ok"
                    }
                  ],
                  "errors": [
                    {
                      "description": "description",
                      "error_code": 0
                    }
                  ],
                  "request": {
                    "credential_set": {
                      "id": "182bd5e5-6e1a-4fe4-a799-aa6d9a6ab26e",
                      "role": "owner"
                    },
                    "header_names": [
                      "string"
                    ],
                    "method": "GET",
                    "url": "https://example.com",
                    "variable_captures": [
                      {
                        "json_path": "json_path",
                        "name": "name"
                      }
                    ],
                    "body": {}
                  },
                  "response": {
                    "body": {
                      "kind": "not_found"
                    },
                    "header_names": [
                      "string"
                    ],
                    "status": 0,
                    "status_text": "status_text"
                  }
                }
              ],
              "verdict": "ok",
              "preflight_errors": [
                {
                  "description": "description",
                  "error_code": 0
                }
              ]
            }
          ]
        },
        "report_schema_version": "v1"
      }
    }
  ],
  "result_info": {
    "count": 1,
    "page": 1,
    "per_page": 20,
    "total_count": 2000,
    "total_pages": 100
  }
}
```