---
title: List detected connections
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/python)

[Page Shield](https://developers.cloudflare.com/api/python/resources/page_shield)

[Connections](https://developers.cloudflare.com/api/python/resources/page_shield/subresources/connections)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# List detected connections

page\_shield.connections.list(ConnectionListParams\*\*kwargs) -> SyncSinglePage\[[ConnectionListResponse](<https://developers.cloudflare.com/api/python/resources/page_shield#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)>)]

GET/zones/{zone\_id}/page\_shield/connections

Lists outbound connections made by webpages in the zone.

##### Security

<details>

<summary>API Token</summary>



The preferred authorization scheme for interacting with the Cloudflare API. <a href="https://developers.cloudflare.com/fundamentals/api/get-started/create-token/">Create a token</a>.

**Example:**<code>Authorization: Bearer Sn3lZJTBX6kkg7OdcBUAxOO963GEIyGQqnFTOFYY</code>

</details>

<details>

<summary>API Email + API Key</summary>



The previous authorization scheme for interacting with the Cloudflare API, used in conjunction with a Global API key.

**Example:**<code>X-Auth-Email: user@example.com</code>

The previous authorization scheme for interacting with the Cloudflare API. When possible, use API tokens instead of Global API keys.

**Example:**<code>X-Auth-Key: 144c9defac04969c7bfad8efaa8ea194</code>

</details>

##### Accepted Permissions (at least one required)

`Page Shield``Domain Page Shield Read``Domain Page Shield``Page Shield Read``Zone Settings Write``Zone Settings Read`

##### ParametersExpand Collapse

zone\_id: str

Identifier

maxLength32

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20zone_id%20%3E%20(schema)>)

<details>

<summary>

direction: Optional\[Literal\["asc", "desc"]]

The direction used to sort returned connections.

</summary>

One of the following:

"asc"

<a href="#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20direction%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"desc"

<a href="#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20direction%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

</details>

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20direction%20%3E%20(schema)>)

exclude\_cdn\_cgi: Optional\[[bool](<https://developers.cloudflare.com/api/python/resources/page_shield/subresources/connections/methods/list#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20exclude_cdn_cgi%20%3E%20(schema)>)]

When true, excludes connections seen in a `/cdn-cgi` path from the returned connections. The default value is true.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20exclude_cdn_cgi%20%3E%20(schema)>)

exclude\_urls: Optional\[str]

Excludes connections whose URL contains one of the URL-encoded URLs separated by commas.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20exclude_urls%20%3E%20(schema)>)

export: Optional\[Literal\["csv"]]

Export the list of connections as a file, limited to 50000 entries.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20export%20%3E%20(schema)>)

hosts: Optional\[str]

Includes connections that match one or more URL-encoded hostnames separated by commas.

Wildcards are supported at the start and end of each hostname to support starts with, ends with and contains. If no wildcards are used, results will be filtered by exact match

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20hosts%20%3E%20(schema)>)

<details>

<summary>

order\_by: Optional\[Literal\["first\_seen\_at", "last\_seen\_at"]]

The field used to sort returned connections.

</summary>

One of the following:

"first\_seen\_at"

<a href="#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20order_by%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"last\_seen\_at"

<a href="#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20order_by%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

</details>

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20order_by%20%3E%20(schema)>)

page: Optional\[str]

The current page number of the paginated results.

We additionally support a special value “all”. When “all” is used, the API will return all the connections with the applied filters in a single page. This feature is best-effort and it may only work for zones with a low number of connections

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20page%20%3E%20(schema)>)

page\_url: Optional\[str]

Includes connections that match one or more page URLs (separated by commas) where they were last seen

Wildcards are supported at the start and end of each page URL to support starts with, ends with and contains. If no wildcards are used, results will be filtered by exact match

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20page_url%20%3E%20(schema)>)

per\_page: Optional\[float]

The number of results per page.

maximum100

minimum1

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20per_page%20%3E%20(schema)>)

prioritize\_malicious: Optional\[[bool](<https://developers.cloudflare.com/api/python/resources/page_shield/subresources/connections/methods/list#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20prioritize_malicious%20%3E%20(schema)>)]

When true, malicious connections appear first in the returned connections.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20prioritize_malicious%20%3E%20(schema)>)

status: Optional\[str]

Filters the returned connections using a comma-separated list of connection statuses. Accepted values: `active`, `infrequent`, and `inactive`. The default value is `active`.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20status%20%3E%20(schema)>)

urls: Optional\[str]

Includes connections whose URL contain one or more URL-encoded URLs separated by commas.

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(method)%20list%20%3E%20(params)%20default%20%3E%20(param)%20urls%20%3E%20(schema)>)

##### ReturnsExpand Collapse

<details>

<summary>

class ConnectionListResponse: …

</summary>

id: str

Identifier

maxLength32

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

added\_at: datetime

formatdate-time

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20added_at">Link to this property</a>

first\_seen\_at: datetime

formatdate-time

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20first_seen_at">Link to this property</a>

host: str

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20host">Link to this property</a>

last\_seen\_at: datetime

formatdate-time

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20last_seen_at">Link to this property</a>

url: str

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20url">Link to this property</a>

url\_contains\_cdn\_cgi\_path: bool

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20url_contains_cdn_cgi_path">Link to this property</a>

domain\_reported\_malicious: Optional\[bool]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20domain_reported_malicious">Link to this property</a>

first\_page\_url: Optional\[str]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20first_page_url">Link to this property</a>

malicious\_domain\_categories: Optional\[List\[str]]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20malicious_domain_categories">Link to this property</a>

malicious\_url\_categories: Optional\[List\[str]]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20malicious_url_categories">Link to this property</a>

page\_urls: Optional\[List\[str]]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20page_urls">Link to this property</a>

url\_reported\_malicious: Optional\[bool]

<a href="#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)%20%3E%20(property)%20url_reported_malicious">Link to this property</a>

</details>

[Link to this property](<#(resource)%20page_shield.connections%20%3E%20(model)%20connection_list_response%20%3E%20(schema)>)

### List detected connections

Python

HTTPTypeScriptPythonGoTerraform

```
import os
from cloudflare import Cloudflare

client = Cloudflare(
    api_token=os.environ.get("CLOUDFLARE_API_TOKEN"),  # This is the default and can be omitted
)
page = client.page_shield.connections.list(
    zone_id="023e105f4ecef8ad9ca31a8372d0c353",
)
page = page.result[0]
print(page.id)
```

200 example

```
{
  "result_info": {
    "count": 1,
    "page": 1,
    "per_page": 20,
    "total_count": 2000,
    "total_pages": 100
  },
  "success": true,
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "result": [
    {
      "id": "023e105f4ecef8ad9ca31a8372d0c353",
      "added_at": "2021-08-18T10:51:10.09615Z",
      "first_seen_at": "2021-08-18T10:51:08Z",
      "host": "blog.cloudflare.com",
      "last_seen_at": "2021-09-02T09:57:54Z",
      "url": "https://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/4.6.0/js/bootstrap.min.js",
      "url_contains_cdn_cgi_path": false,
      "domain_reported_malicious": false,
      "first_page_url": "blog.cloudflare.com/page",
      "malicious_domain_categories": [
        "Malware"
      ],
      "malicious_url_categories": [
        "Malware"
      ],
      "page_urls": [
        "blog.cloudflare.com/page1",
        "blog.cloudflare.com/page2"
      ],
      "url_reported_malicious": false
    }
  ]
}
```

##### Returns Examples

200 example

```
{
  "result_info": {
    "count": 1,
    "page": 1,
    "per_page": 20,
    "total_count": 2000,
    "total_pages": 100
  },
  "success": true,
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "result": [
    {
      "id": "023e105f4ecef8ad9ca31a8372d0c353",
      "added_at": "2021-08-18T10:51:10.09615Z",
      "first_seen_at": "2021-08-18T10:51:08Z",
      "host": "blog.cloudflare.com",
      "last_seen_at": "2021-09-02T09:57:54Z",
      "url": "https://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/4.6.0/js/bootstrap.min.js",
      "url_contains_cdn_cgi_path": false,
      "domain_reported_malicious": false,
      "first_page_url": "blog.cloudflare.com/page",
      "malicious_domain_categories": [
        "Malware"
      ],
      "malicious_url_categories": [
        "Malware"
      ],
      "page_urls": [
        "blog.cloudflare.com/page1",
        "blog.cloudflare.com/page2"
      ],
      "url_reported_malicious": false
    }
  ]
}
```