> ## Documentation Index
> Fetch the complete documentation index at: https://docs.tolmo.com/llms.txt
> Use this file to discover all available pages before exploring further.

# List a finding's sources

> Return the evidence sources attached to a finding — the scans, resources, and detections that produced or corroborated it.



## OpenAPI

````yaml /api-reference/openapi.json get /api/v1/orgs/{orgSlug}/findings/{findingId}/sources
openapi: 3.0.3
info:
  title: Tolmo API
  version: 1.0.0
  description: >-
    The Tolmo REST API. Every endpoint is scoped to one organization and
    authenticated with an API token.
servers:
  - url: https://api.tolmo.com
    description: Production
security:
  - bearerAuth: []
paths:
  /api/v1/orgs/{orgSlug}/findings/{findingId}/sources:
    get:
      tags:
        - findings
      summary: List a finding's sources
      description: >-
        Return the evidence sources attached to a finding — the scans,
        resources, and detections that produced or corroborated it.
      operationId: apiListFindingSources
      parameters:
        - schema:
            type: string
          in: path
          name: orgSlug
          required: true
        - schema:
            type: string
          in: path
          name: findingId
          required: true
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: array
                items:
                  type: object
                  properties:
                    id:
                      type: string
                    origin:
                      type: string
                    sourceName:
                      nullable: true
                      type: string
                    externalId:
                      nullable: true
                      type: string
                    integrationId:
                      nullable: true
                      type: string
                    content: {}
                    reportedAt:
                      type: string
                    createdAt:
                      type: string
                  required:
                    - id
                    - origin
                    - sourceName
                    - externalId
                    - integrationId
                    - content
                    - reportedAt
                    - createdAt
                  additionalProperties: false
        '404':
          description: Default Response
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/HttpError'
components:
  schemas:
    HttpError:
      type: object
      properties:
        statusCode:
          type: number
        code:
          type: string
        error:
          type: string
        message:
          type: string
      title: HttpError
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: >-
        A Tolmo API token, sent as `Authorization: Bearer <token>`. Either a
        user token (`usr_tok.*`, minted by `tolmo auth login`, scoped to your
        own permissions) or an org API token created in the Tolmo app, for CI
        and automation.

````