Skip to main content
POST
Import third-party findings

Authorizations

Authorization
string
header
required

A Tolmo API token, sent as Authorization: Bearer <token>. Either a user token (usr_tok.*, minted by tolmo auth login, scoped to your own permissions) or an org API token created in the Tolmo app, for CI and automation.

Path Parameters

orgSlug
string
required

Body

application/json
provider
string
required
Required string length: 1 - 64
Pattern: ^[a-z0-9][a-z0-9._-]*$
source
string
required
Required string length: 1 - 128
findings
object[]
required
Required array length: 1 - 100 elements

Response

Default Response

sourceId
string<uuid>
required
Pattern: ^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$
upserted
integer
required
Required range: 0 <= x <= 9007199254740991
items
object[]
required