List dangling DNS findings.
Lists dangling DNS findings visible through the authenticated project.
Authorizations
Infrawatch API key. Supply the complete key directly as the header value.
Path Parameters
Query Parameters
1 <= x <= 500Offset plus limit must not exceed the 10,000-finding result window.
0 <= x <= 9999Select active detector findings, resolved history, or a deduplicated union where a current active episode wins.
active, resolved, all 256Field to order by. Repeat to order by several, applied left to right so a later field breaks ties in an earlier one. An unrecognised field is rejected rather than ignored, so a sort either applies or fails loudly. Ordering spans the whole result set rather than the page returned, and every order ends with a stable tiebreak so paging cannot skip a finding. The last three name the findings table's own columns and are aliases: finding orders by entry_host, signal by confidence, evidence by service.
start, last_seen, entry_host, apex_domain, terminal_host, provider, service, type, confidence, claimable, finding, signal, evidence Direction for the sort field at the same position. Omitted, time and severity fields order newest or highest first and the rest order A-Z. Confidence orders by severity rather than alphabetically, where high would otherwise sit between low and medium.
asc, desc Exact normalized finding UUID, used to deep-link to one project-scoped record.
512Repeat or comma-separate for multi-select filtering.
25256Repeat or comma-separate for multi-select filtering.
25256DNS owner name where the exposed path starts. Repeat or comma-separate for multi-select filtering.
25256Record type at the exposed entry point. Repeat or comma-separate for multi-select filtering.
2532Repeat or comma-separate for multi-select filtering.
2564Repeat or comma-separate for multi-select filtering.
2564Repeat or comma-separate for multi-select filtering.
25128Case-insensitive substring of the entry record target.
256Repeat or comma-separate for multi-select filtering.
2564Customer-facing state after merging the normalized Postgres lifecycle state. Repeat or comma-separate for multi-select filtering.
25open, accepted, resolved, ignored, false_positive Repeat or comma-separate for multi-select filtering.
2564Repeat or comma-separate for multi-select filtering.
2564256Canonical provider family supplied by the matched rule. Repeat or comma-separate for multi-select filtering.
25256256Registrable domain at the terminal risk boundary. Repeat or comma-separate for multi-select filtering.
25256