---
title: Vulnerability Scanner
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/typescript)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# Vulnerability Scanner

#### Vulnerability ScannerCredential Sets

##### [List credential sets](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/list)

client.vulnerabilityScanner.credentialSets.list(CredentialSetListParams {account\_id, page, per\_page } params, RequestOptionsoptions?): V4PagePaginationArray< [CredentialSetListResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_list_response%20%3E%20(schema)>) {id, name } >

GET/accounts/{account\_id}/vuln\_scanner/credential\_sets

##### [Create credential set](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/create)

client.vulnerabilityScanner.credentialSets.create(CredentialSetCreateParams {account\_id, name } params, RequestOptionsoptions?): [CredentialSetCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_create_response%20%3E%20(schema)>) {id, name }

POST/accounts/{account\_id}/vuln\_scanner/credential\_sets

##### [Get credential set](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/get)

client.vulnerabilityScanner.credentialSets.get(stringcredentialSetID, CredentialSetGetParams {account\_id } params, RequestOptionsoptions?): [CredentialSetGetResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_get_response%20%3E%20(schema)>) {id, name }

GET/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}

##### [Update credential set](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/update)

client.vulnerabilityScanner.credentialSets.update(stringcredentialSetID, CredentialSetUpdateParams {account\_id, name } params, RequestOptionsoptions?): [CredentialSetUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_update_response%20%3E%20(schema)>) {id, name }

PUT/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}

##### [Edit credential set](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/edit)

client.vulnerabilityScanner.credentialSets.edit(stringcredentialSetID, CredentialSetEditParams {account\_id, name } params, RequestOptionsoptions?): [CredentialSetEditResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_edit_response%20%3E%20(schema)>) {id, name }

PATCH/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}

##### [Delete credential set](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/methods/delete)

client.vulnerabilityScanner.credentialSets.delete(stringcredentialSetID, CredentialSetDeleteParams {account\_id } params, RequestOptionsoptions?): [CredentialSetDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_delete_response%20%3E%20(schema)>)| null

DELETE/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}

##### ModelsExpand Collapse

<details>

<summary>

CredentialSetListResponse {id, name }

</summary>

id: string

Credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_list_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_list_response%20%3E%20(schema)>)

<details>

<summary>

CredentialSetCreateResponse {id, name }

</summary>

id: string

Credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_create_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_create_response%20%3E%20(schema)>)

<details>

<summary>

CredentialSetGetResponse {id, name }

</summary>

id: string

Credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_get_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_get_response%20%3E%20(schema)>)

<details>

<summary>

CredentialSetUpdateResponse {id, name }

</summary>

id: string

Credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_update_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_update_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_update_response%20%3E%20(schema)>)

<details>

<summary>

CredentialSetEditResponse {id, name }

</summary>

id: string

Credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_edit_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_edit_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_edit_response%20%3E%20(schema)>)

CredentialSetDeleteResponse = unknown

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets%20%3E%20(model)%20credential_set_delete_response%20%3E%20(schema)>)

#### Vulnerability ScannerCredential SetsCredentials

##### [List credentials](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/list)

client.vulnerabilityScanner.credentialSets.credentials.list(stringcredentialSetID, CredentialListParams {account\_id, page, per\_page } params, RequestOptionsoptions?): V4PagePaginationArray< [CredentialListResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)>) {id, credential\_set\_id, location, 2 more } >

GET/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials

##### [Create credential](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/create)

client.vulnerabilityScanner.credentialSets.credentials.create(stringcredentialSetID, CredentialCreateParams {account\_id, location, location\_name, 2 more } params, RequestOptionsoptions?): [CredentialCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)>) {id, credential\_set\_id, location, 2 more }

POST/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials

##### [Get credential](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/get)

client.vulnerabilityScanner.credentialSets.credentials.get(stringcredentialID, CredentialGetParams {account\_id, credential\_set\_id } params, RequestOptionsoptions?): [CredentialGetResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)>) {id, credential\_set\_id, location, 2 more }

GET/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials/{credential\_id}

##### [Update credential](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/update)

client.vulnerabilityScanner.credentialSets.credentials.update(stringcredentialID, CredentialUpdateParams {account\_id, credential\_set\_id, location, 3 more } params, RequestOptionsoptions?): [CredentialUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)>) {id, credential\_set\_id, location, 2 more }

PUT/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials/{credential\_id}

##### [Edit credential](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/edit)

client.vulnerabilityScanner.credentialSets.credentials.edit(stringcredentialID, CredentialEditParams {account\_id, credential\_set\_id, location, 3 more } params, RequestOptionsoptions?): [CredentialEditResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)>) {id, credential\_set\_id, location, 2 more }

PATCH/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials/{credential\_id}

##### [Delete credential](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/credential_sets/subresources/credentials/methods/delete)

client.vulnerabilityScanner.credentialSets.credentials.delete(stringcredentialID, CredentialDeleteParams {account\_id, credential\_set\_id } params, RequestOptionsoptions?): [CredentialDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_delete_response%20%3E%20(schema)>)| null

DELETE/accounts/{account\_id}/vuln\_scanner/credential\_sets/{credential\_set\_id}/credentials/{credential\_id}

##### ModelsExpand Collapse

<details>

<summary>

CredentialListResponse {id, credential\_set\_id, location, 2 more }

A credential attached to API requests during scanning. The credential <code>value</code> is write-only and never returned in responses.

</summary>

id: string

Credential identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

credential\_set\_id: string

Parent credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20credential_set_id">Link to this property</a>

<details>

<summary>

location: "header"| "cookie"

Where the credential is attached in outgoing requests.

</summary>

One of the following:

"header"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%200">Link to this property</a>

"cookie"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20location">Link to this property</a>

location\_name: string

Name of the header or cookie where the credential is attached.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20location_name">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_list_response%20%3E%20(schema)>)

<details>

<summary>

CredentialCreateResponse {id, credential\_set\_id, location, 2 more }

A credential attached to API requests during scanning. The credential <code>value</code> is write-only and never returned in responses.

</summary>

id: string

Credential identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

credential\_set\_id: string

Parent credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20credential_set_id">Link to this property</a>

<details>

<summary>

location: "header"| "cookie"

Where the credential is attached in outgoing requests.

</summary>

One of the following:

"header"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%200">Link to this property</a>

"cookie"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20location">Link to this property</a>

location\_name: string

Name of the header or cookie where the credential is attached.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20location_name">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_create_response%20%3E%20(schema)>)

<details>

<summary>

CredentialGetResponse {id, credential\_set\_id, location, 2 more }

A credential attached to API requests during scanning. The credential <code>value</code> is write-only and never returned in responses.

</summary>

id: string

Credential identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

credential\_set\_id: string

Parent credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20credential_set_id">Link to this property</a>

<details>

<summary>

location: "header"| "cookie"

Where the credential is attached in outgoing requests.

</summary>

One of the following:

"header"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%200">Link to this property</a>

"cookie"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20location">Link to this property</a>

location\_name: string

Name of the header or cookie where the credential is attached.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20location_name">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_get_response%20%3E%20(schema)>)

<details>

<summary>

CredentialUpdateResponse {id, credential\_set\_id, location, 2 more }

A credential attached to API requests during scanning. The credential <code>value</code> is write-only and never returned in responses.

</summary>

id: string

Credential identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

credential\_set\_id: string

Parent credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20credential_set_id">Link to this property</a>

<details>

<summary>

location: "header"| "cookie"

Where the credential is attached in outgoing requests.

</summary>

One of the following:

"header"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%200">Link to this property</a>

"cookie"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20location">Link to this property</a>

location\_name: string

Name of the header or cookie where the credential is attached.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20location_name">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_update_response%20%3E%20(schema)>)

<details>

<summary>

CredentialEditResponse {id, credential\_set\_id, location, 2 more }

A credential attached to API requests during scanning. The credential <code>value</code> is write-only and never returned in responses.

</summary>

id: string

Credential identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

credential\_set\_id: string

Parent credential set identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20credential_set_id">Link to this property</a>

<details>

<summary>

location: "header"| "cookie"

Where the credential is attached in outgoing requests.

</summary>

One of the following:

"header"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%200">Link to this property</a>

"cookie"

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20location%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20location">Link to this property</a>

location\_name: string

Name of the header or cookie where the credential is attached.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20location_name">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_edit_response%20%3E%20(schema)>)

CredentialDeleteResponse = unknown

[Link to this property](<#(resource)%20vulnerability_scanner.credential_sets.credentials%20%3E%20(model)%20credential_delete_response%20%3E%20(schema)>)

#### Vulnerability ScannerScans

##### [List scans](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/scans/methods/list)

client.vulnerabilityScanner.scans.list(ScanListParams {account\_id, page, per\_page } params, RequestOptionsoptions?): V4PagePaginationArray< [ScanListResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)>) {id, scan\_type, status, 2 more } >

GET/accounts/{account\_id}/vuln\_scanner/scans

##### [Create scan](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/scans/methods/create)

client.vulnerabilityScanner.scans.create(ScanCreateParams {account\_id, credential\_sets, open\_api, 2 more } params, RequestOptionsoptions?): [ScanCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)>) {id, scan\_type, status, 2 more }

POST/accounts/{account\_id}/vuln\_scanner/scans

##### [Get scan](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/scans/methods/get)

client.vulnerabilityScanner.scans.get(stringscanID, ScanGetParams {account\_id } params, RequestOptionsoptions?): [ScanGetResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)>) {id, scan\_type, status, 2 more }

GET/accounts/{account\_id}/vuln\_scanner/scans/{scan\_id}

##### ModelsExpand Collapse

<details>

<summary>

ScanListResponse {id, scan\_type, status, 2 more }

</summary>

id: string

Scan identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

scan\_type: "bola"

The type of vulnerability scan.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20scan_type">Link to this property</a>

<details>

<summary>

status: "created"| "scheduled"| "planning"| 3 more

Current lifecycle status of the scan.

</summary>

One of the following:

"created"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

"scheduled"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

"planning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%202">Link to this property</a>

"running"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%203">Link to this property</a>

"finished"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%204">Link to this property</a>

"failed"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

target\_environment\_id: string

The target environment this scan runs against.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20target_environment_id">Link to this property</a>

<details>

<summary>

report?: Report| null

Vulnerability report produced after the scan completes. The shape depends on the scan type. Present only for finished scans.

</summary>

<details>

<summary>

report: Report {summary, tests }

Version 1 of the BOLA vulnerability scan report.

</summary>

<details>

<summary>

summary: Summary {verdict }

Summary of all steps and findings.

</summary>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Overall verdict of the vulnerability scan.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary">Link to this property</a>

<details>

<summary>

tests: Array&lt;Test&gt;

List of tests that were run.

</summary>

<details>

<summary>

steps: Array&lt;Step&gt;

Steps that were executed.

</summary>

<details>

<summary>

assertions: Array&lt;Assertion&gt;

Assertions that were made against the received response.

</summary>

description: string

Human-readable description of the assertion, explaining what was checked.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

kind: Kind {parameters, type }

Kind of assertion.

</summary>

<details>

<summary>

parameters: Parameters {max, min }

Range of HTTP status codes.

</summary>

max: number

Maximum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20max">Link to this property</a>

min: number

Minimum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20min">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters">Link to this property</a>

type: "http\_status\_within\_range"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20type">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind">Link to this property</a>

observed: number| null

Observed value on which the assertion was made.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20observed">Link to this property</a>

<details>

<summary>

outcome: "ok"| "fail"| "inconclusive"

Outcome of the assertion.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%200">Link to this property</a>

"fail"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions">Link to this property</a>

<details>

<summary>

errors?: Array&lt;Error&gt;

Errors the step encountered that may explain absent or incomplete fields.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

request?: Request| null

HTTP request that was made, if any.

</summary>

<details>

<summary>

credential\_set: CredentialSet {id, role }

Credential set that was used.

</summary>

id: string

ID of the credential set.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20id">Link to this property</a>

<details>

<summary>

role: "owner"| "attacker"

Role of the credential set.

</summary>

One of the following:

"owner"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%200">Link to this property</a>

"attacker"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were sent.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20header_names">Link to this property</a>

<details>

<summary>

method: "GET"| "DELETE"| "PATCH"| 2 more

HTTP method.

</summary>

One of the following:

"GET"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%200">Link to this property</a>

"DELETE"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%201">Link to this property</a>

"PATCH"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%202">Link to this property</a>

"POST"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%203">Link to this property</a>

"PUT"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%204">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method">Link to this property</a>

url: string

Exact and full URL (including host, query parameters) that was requested.

formaturi

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20url">Link to this property</a>

<details>

<summary>

variable\_captures: Array&lt;VariableCapture&gt;

Variable captures requested for this step.

</summary>

json\_path: string

JSONPath expression used for capture, e.g. <code>"$.id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20json_path">Link to this property</a>

name: string

Variable name, e.g. <code>"resource_id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures">Link to this property</a>

body?: unknown

Request body, if any.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20body">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request">Link to this property</a>

<details>

<summary>

response?: Response| null

HTTP response that was received, if any.

</summary>

<details>

<summary>

body: VulnScannerBOLABodyResponseNotFound {kind } | VulnScannerBOLABodyResponseBytes {contents, kind, truncated } | VulnScannerBOLABodyResponseText {contents, kind, truncated } | VulnScannerBOLABodyResponseJson {contents, kind, truncated }

HTTP response body.

</summary>

One of the following:

<details>

<summary>

VulnScannerBOLABodyResponseNotFound {kind }

No body was received.

</summary>

kind: "not\_found"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200%20%3E%20(property)%20kind">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseBytes {contents, kind, truncated }

Body received but unable to read as UTF-8. Raw bytes, base64-encoded.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20contents">Link to this property</a>

kind: "bytes"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseText {contents, kind, truncated }

Body received as valid UTF-8 text but not valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20contents">Link to this property</a>

kind: "text"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseJson {contents, kind, truncated }

Body received as valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20contents">Link to this property</a>

kind: "json"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were received.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20header_names">Link to this property</a>

status: number

HTTP status code.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status">Link to this property</a>

status\_text?: string| null

HTTP status text, if available for the status code.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status_text">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps">Link to this property</a>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Verdict of this single test.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict">Link to this property</a>

<details>

<summary>

preflight\_errors?: Array&lt;PreflightError&gt;

Errors that prevented step execution.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report">Link to this property</a>

report\_schema\_version: "v1"

Version of the report schema.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report_schema_version">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)%20%3E%20(property)%20report">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_list_response%20%3E%20(schema)>)

<details>

<summary>

ScanCreateResponse {id, scan\_type, status, 2 more }

</summary>

id: string

Scan identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

scan\_type: "bola"

The type of vulnerability scan.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20scan_type">Link to this property</a>

<details>

<summary>

status: "created"| "scheduled"| "planning"| 3 more

Current lifecycle status of the scan.

</summary>

One of the following:

"created"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

"scheduled"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

"planning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%202">Link to this property</a>

"running"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%203">Link to this property</a>

"finished"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%204">Link to this property</a>

"failed"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

target\_environment\_id: string

The target environment this scan runs against.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20target_environment_id">Link to this property</a>

<details>

<summary>

report?: Report| null

Vulnerability report produced after the scan completes. The shape depends on the scan type. Present only for finished scans.

</summary>

<details>

<summary>

report: Report {summary, tests }

Version 1 of the BOLA vulnerability scan report.

</summary>

<details>

<summary>

summary: Summary {verdict }

Summary of all steps and findings.

</summary>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Overall verdict of the vulnerability scan.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary">Link to this property</a>

<details>

<summary>

tests: Array&lt;Test&gt;

List of tests that were run.

</summary>

<details>

<summary>

steps: Array&lt;Step&gt;

Steps that were executed.

</summary>

<details>

<summary>

assertions: Array&lt;Assertion&gt;

Assertions that were made against the received response.

</summary>

description: string

Human-readable description of the assertion, explaining what was checked.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

kind: Kind {parameters, type }

Kind of assertion.

</summary>

<details>

<summary>

parameters: Parameters {max, min }

Range of HTTP status codes.

</summary>

max: number

Maximum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20max">Link to this property</a>

min: number

Minimum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20min">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters">Link to this property</a>

type: "http\_status\_within\_range"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20type">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind">Link to this property</a>

observed: number| null

Observed value on which the assertion was made.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20observed">Link to this property</a>

<details>

<summary>

outcome: "ok"| "fail"| "inconclusive"

Outcome of the assertion.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%200">Link to this property</a>

"fail"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions">Link to this property</a>

<details>

<summary>

errors?: Array&lt;Error&gt;

Errors the step encountered that may explain absent or incomplete fields.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

request?: Request| null

HTTP request that was made, if any.

</summary>

<details>

<summary>

credential\_set: CredentialSet {id, role }

Credential set that was used.

</summary>

id: string

ID of the credential set.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20id">Link to this property</a>

<details>

<summary>

role: "owner"| "attacker"

Role of the credential set.

</summary>

One of the following:

"owner"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%200">Link to this property</a>

"attacker"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were sent.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20header_names">Link to this property</a>

<details>

<summary>

method: "GET"| "DELETE"| "PATCH"| 2 more

HTTP method.

</summary>

One of the following:

"GET"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%200">Link to this property</a>

"DELETE"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%201">Link to this property</a>

"PATCH"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%202">Link to this property</a>

"POST"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%203">Link to this property</a>

"PUT"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%204">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method">Link to this property</a>

url: string

Exact and full URL (including host, query parameters) that was requested.

formaturi

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20url">Link to this property</a>

<details>

<summary>

variable\_captures: Array&lt;VariableCapture&gt;

Variable captures requested for this step.

</summary>

json\_path: string

JSONPath expression used for capture, e.g. <code>"$.id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20json_path">Link to this property</a>

name: string

Variable name, e.g. <code>"resource_id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures">Link to this property</a>

body?: unknown

Request body, if any.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20body">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request">Link to this property</a>

<details>

<summary>

response?: Response| null

HTTP response that was received, if any.

</summary>

<details>

<summary>

body: VulnScannerBOLABodyResponseNotFound {kind } | VulnScannerBOLABodyResponseBytes {contents, kind, truncated } | VulnScannerBOLABodyResponseText {contents, kind, truncated } | VulnScannerBOLABodyResponseJson {contents, kind, truncated }

HTTP response body.

</summary>

One of the following:

<details>

<summary>

VulnScannerBOLABodyResponseNotFound {kind }

No body was received.

</summary>

kind: "not\_found"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200%20%3E%20(property)%20kind">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseBytes {contents, kind, truncated }

Body received but unable to read as UTF-8. Raw bytes, base64-encoded.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20contents">Link to this property</a>

kind: "bytes"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseText {contents, kind, truncated }

Body received as valid UTF-8 text but not valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20contents">Link to this property</a>

kind: "text"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseJson {contents, kind, truncated }

Body received as valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20contents">Link to this property</a>

kind: "json"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were received.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20header_names">Link to this property</a>

status: number

HTTP status code.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status">Link to this property</a>

status\_text?: string| null

HTTP status text, if available for the status code.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status_text">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps">Link to this property</a>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Verdict of this single test.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict">Link to this property</a>

<details>

<summary>

preflight\_errors?: Array&lt;PreflightError&gt;

Errors that prevented step execution.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report">Link to this property</a>

report\_schema\_version: "v1"

Version of the report schema.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report_schema_version">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)%20%3E%20(property)%20report">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_create_response%20%3E%20(schema)>)

<details>

<summary>

ScanGetResponse {id, scan\_type, status, 2 more }

</summary>

id: string

Scan identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

scan\_type: "bola"

The type of vulnerability scan.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20scan_type">Link to this property</a>

<details>

<summary>

status: "created"| "scheduled"| "planning"| 3 more

Current lifecycle status of the scan.

</summary>

One of the following:

"created"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

"scheduled"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

"planning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%202">Link to this property</a>

"running"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%203">Link to this property</a>

"finished"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%204">Link to this property</a>

"failed"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

target\_environment\_id: string

The target environment this scan runs against.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20target_environment_id">Link to this property</a>

<details>

<summary>

report?: Report| null

Vulnerability report produced after the scan completes. The shape depends on the scan type. Present only for finished scans.

</summary>

<details>

<summary>

report: Report {summary, tests }

Version 1 of the BOLA vulnerability scan report.

</summary>

<details>

<summary>

summary: Summary {verdict }

Summary of all steps and findings.

</summary>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Overall verdict of the vulnerability scan.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary%20%3E%20(property)%20verdict">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20summary">Link to this property</a>

<details>

<summary>

tests: Array&lt;Test&gt;

List of tests that were run.

</summary>

<details>

<summary>

steps: Array&lt;Step&gt;

Steps that were executed.

</summary>

<details>

<summary>

assertions: Array&lt;Assertion&gt;

Assertions that were made against the received response.

</summary>

description: string

Human-readable description of the assertion, explaining what was checked.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

kind: Kind {parameters, type }

Kind of assertion.

</summary>

<details>

<summary>

parameters: Parameters {max, min }

Range of HTTP status codes.

</summary>

max: number

Maximum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20max">Link to this property</a>

min: number

Minimum (inclusive) status code of the range.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters%20%3E%20(property)%20min">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20parameters">Link to this property</a>

type: "http\_status\_within\_range"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind%20%3E%20(property)%20type">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20kind">Link to this property</a>

observed: number| null

Observed value on which the assertion was made.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20observed">Link to this property</a>

<details>

<summary>

outcome: "ok"| "fail"| "inconclusive"

Outcome of the assertion.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%200">Link to this property</a>

"fail"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions%20%3E%20(items)%20%3E%20(property)%20outcome">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20assertions">Link to this property</a>

<details>

<summary>

errors?: Array&lt;Error&gt;

Errors the step encountered that may explain absent or incomplete fields.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

request?: Request| null

HTTP request that was made, if any.

</summary>

<details>

<summary>

credential\_set: CredentialSet {id, role }

Credential set that was used.

</summary>

id: string

ID of the credential set.

formatuuid

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20id">Link to this property</a>

<details>

<summary>

role: "owner"| "attacker"

Role of the credential set.

</summary>

One of the following:

"owner"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%200">Link to this property</a>

"attacker"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set%20%3E%20(property)%20role">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20credential_set">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were sent.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20header_names">Link to this property</a>

<details>

<summary>

method: "GET"| "DELETE"| "PATCH"| 2 more

HTTP method.

</summary>

One of the following:

"GET"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%200">Link to this property</a>

"DELETE"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%201">Link to this property</a>

"PATCH"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%202">Link to this property</a>

"POST"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%203">Link to this property</a>

"PUT"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method%20%3E%20(member)%204">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20method">Link to this property</a>

url: string

Exact and full URL (including host, query parameters) that was requested.

formaturi

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20url">Link to this property</a>

<details>

<summary>

variable\_captures: Array&lt;VariableCapture&gt;

Variable captures requested for this step.

</summary>

json\_path: string

JSONPath expression used for capture, e.g. <code>"$.id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20json_path">Link to this property</a>

name: string

Variable name, e.g. <code>"resource_id"</code>.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20variable_captures">Link to this property</a>

body?: unknown

Request body, if any.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request%20%3E%20(property)%20body">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20request">Link to this property</a>

<details>

<summary>

response?: Response| null

HTTP response that was received, if any.

</summary>

<details>

<summary>

body: VulnScannerBOLABodyResponseNotFound {kind } | VulnScannerBOLABodyResponseBytes {contents, kind, truncated } | VulnScannerBOLABodyResponseText {contents, kind, truncated } | VulnScannerBOLABodyResponseJson {contents, kind, truncated }

HTTP response body.

</summary>

One of the following:

<details>

<summary>

VulnScannerBOLABodyResponseNotFound {kind }

No body was received.

</summary>

kind: "not\_found"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200%20%3E%20(property)%20kind">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%200">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseBytes {contents, kind, truncated }

Body received but unable to read as UTF-8. Raw bytes, base64-encoded.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20contents">Link to this property</a>

kind: "bytes"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%201">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseText {contents, kind, truncated }

Body received as valid UTF-8 text but not valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20contents">Link to this property</a>

kind: "text"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%202">Link to this property</a>

<details>

<summary>

VulnScannerBOLABodyResponseJson {contents, kind, truncated }

Body received as valid JSON.

</summary>

contents: string

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20contents">Link to this property</a>

kind: "json"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20kind">Link to this property</a>

truncated: boolean

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203%20%3E%20(property)%20truncated">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body%20%3E%20(variant)%203">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20body">Link to this property</a>

header\_names: Array&lt;string&gt;

Names of headers that were received.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20header_names">Link to this property</a>

status: number

HTTP status code.

maximum65535

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status">Link to this property</a>

status\_text?: string| null

HTTP status text, if available for the status code.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response%20%3E%20(property)%20status_text">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps%20%3E%20(items)%20%3E%20(property)%20response">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20steps">Link to this property</a>

<details>

<summary>

verdict: "ok"| "warning"| "inconclusive"

Verdict of this single test.

</summary>

One of the following:

"ok"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%200">Link to this property</a>

"warning"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%201">Link to this property</a>

"inconclusive"

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20verdict">Link to this property</a>

<details>

<summary>

preflight\_errors?: Array&lt;PreflightError&gt;

Errors that prevented step execution.

</summary>

description: string

Human-readable error description.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

error\_code?: number| null

Numeric error code identifying the class of error, if available.

formatuint32

minimum0

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors%20%3E%20(items)%20%3E%20(property)%20error_code">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests%20%3E%20(items)%20%3E%20(property)%20preflight_errors">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report%20%3E%20(property)%20tests">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report">Link to this property</a>

report\_schema\_version: "v1"

Version of the report schema.

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report%20%3E%20(property)%20report_schema_version">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)%20%3E%20(property)%20report">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.scans%20%3E%20(model)%20scan_get_response%20%3E%20(schema)>)

#### Vulnerability ScannerTarget Environments

##### [List target environments](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/list)

client.vulnerabilityScanner.targetEnvironments.list(TargetEnvironmentListParams {account\_id, page, per\_page } params, RequestOptionsoptions?): V4PagePaginationArray< [TargetEnvironmentListResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)>) {id, name, target, description } >

GET/accounts/{account\_id}/vuln\_scanner/target\_environments

##### [Create target environment](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/create)

client.vulnerabilityScanner.targetEnvironments.create(TargetEnvironmentCreateParams {account\_id, name, target, description } params, RequestOptionsoptions?): [TargetEnvironmentCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)>) {id, name, target, description }

POST/accounts/{account\_id}/vuln\_scanner/target\_environments

##### [Get target environment](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/get)

client.vulnerabilityScanner.targetEnvironments.get(stringtargetEnvironmentID, TargetEnvironmentGetParams {account\_id } params, RequestOptionsoptions?): [TargetEnvironmentGetResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)>) {id, name, target, description }

GET/accounts/{account\_id}/vuln\_scanner/target\_environments/{target\_environment\_id}

##### [Update target environment](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/update)

client.vulnerabilityScanner.targetEnvironments.update(stringtargetEnvironmentID, TargetEnvironmentUpdateParams {account\_id, name, target, description } params, RequestOptionsoptions?): [TargetEnvironmentUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)>) {id, name, target, description }

PUT/accounts/{account\_id}/vuln\_scanner/target\_environments/{target\_environment\_id}

##### [Edit target environment](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/edit)

client.vulnerabilityScanner.targetEnvironments.edit(stringtargetEnvironmentID, TargetEnvironmentEditParams {account\_id, description, name, target } params, RequestOptionsoptions?): [TargetEnvironmentEditResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)>) {id, name, target, description }

PATCH/accounts/{account\_id}/vuln\_scanner/target\_environments/{target\_environment\_id}

##### [Delete target environment](https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner/subresources/target_environments/methods/delete)

client.vulnerabilityScanner.targetEnvironments.delete(stringtargetEnvironmentID, TargetEnvironmentDeleteParams {account\_id } params, RequestOptionsoptions?): [TargetEnvironmentDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/vulnerability_scanner#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_delete_response%20%3E%20(schema)>)| null

DELETE/accounts/{account\_id}/vuln\_scanner/target\_environments/{target\_environment\_id}

##### ModelsExpand Collapse

<details>

<summary>

TargetEnvironmentListResponse {id, name, target, description }

</summary>

id: string

Target environment identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

<details>

<summary>

target: Target {type, zone\_tag }

Identifies the Cloudflare asset to scan. Uses a <code>type</code> discriminator. Currently the service supports only <code>zone</code> targets.

</summary>

type: "zone"

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20type">Link to this property</a>

zone\_tag: string

Cloudflare zone tag. The zone must belong to the account.

maxLength32

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20target">Link to this property</a>

description?: string| null

Optional description providing additional context.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_list_response%20%3E%20(schema)>)

<details>

<summary>

TargetEnvironmentCreateResponse {id, name, target, description }

</summary>

id: string

Target environment identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

<details>

<summary>

target: Target {type, zone\_tag }

Identifies the Cloudflare asset to scan. Uses a <code>type</code> discriminator. Currently the service supports only <code>zone</code> targets.

</summary>

type: "zone"

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20type">Link to this property</a>

zone\_tag: string

Cloudflare zone tag. The zone must belong to the account.

maxLength32

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20target">Link to this property</a>

description?: string| null

Optional description providing additional context.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_create_response%20%3E%20(schema)>)

<details>

<summary>

TargetEnvironmentGetResponse {id, name, target, description }

</summary>

id: string

Target environment identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

<details>

<summary>

target: Target {type, zone\_tag }

Identifies the Cloudflare asset to scan. Uses a <code>type</code> discriminator. Currently the service supports only <code>zone</code> targets.

</summary>

type: "zone"

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20type">Link to this property</a>

zone\_tag: string

Cloudflare zone tag. The zone must belong to the account.

maxLength32

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20target">Link to this property</a>

description?: string| null

Optional description providing additional context.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_get_response%20%3E%20(schema)>)

<details>

<summary>

TargetEnvironmentUpdateResponse {id, name, target, description }

</summary>

id: string

Target environment identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

<details>

<summary>

target: Target {type, zone\_tag }

Identifies the Cloudflare asset to scan. Uses a <code>type</code> discriminator. Currently the service supports only <code>zone</code> targets.

</summary>

type: "zone"

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20type">Link to this property</a>

zone\_tag: string

Cloudflare zone tag. The zone must belong to the account.

maxLength32

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20target">Link to this property</a>

description?: string| null

Optional description providing additional context.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_update_response%20%3E%20(schema)>)

<details>

<summary>

TargetEnvironmentEditResponse {id, name, target, description }

</summary>

id: string

Target environment identifier.

formatuuid

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

name: string

Human-readable name.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

<details>

<summary>

target: Target {type, zone\_tag }

Identifies the Cloudflare asset to scan. Uses a <code>type</code> discriminator. Currently the service supports only <code>zone</code> targets.

</summary>

type: "zone"

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20type">Link to this property</a>

zone\_tag: string

Cloudflare zone tag. The zone must belong to the account.

maxLength32

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20target%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20target">Link to this property</a>

description?: string| null

Optional description providing additional context.

<a href="#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

</details>

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_edit_response%20%3E%20(schema)>)

TargetEnvironmentDeleteResponse = unknown

[Link to this property](<#(resource)%20vulnerability_scanner.target_environments%20%3E%20(model)%20target_environment_delete_response%20%3E%20(schema)>)