Skip to main content
One service result represents one observed endpoint. Use the common fields for identity and promoted evidence, then open the relevant protocol range for protocol-specific fields. Dataset: services

Common fields

Endpoint identity, attribution, observations, fingerprints, HTTP, TLS, and tags.

Protocols A–F

Protocol-specific fields beginning with A through F.

Protocols G–L

Protocol-specific fields beginning with G through L.

Protocols M–R

Protocol-specific fields beginning with M through R.

Protocols S–Z

Protocol-specific fields beginning with S through Z.
To use a service field while searching hosts, add the services. prefix. For example, fingerprints.ja4s becomes services.fingerprints.ja4s.