Secret findings
List secret findings
List leaked-credential findings detected across the organization’s connected source repositories, with their current triage state.
GET
List secret findings
Authorizations
A Tolmo API token, sent as Authorization: Bearer <token>. Either a user token (usr_tok.*, minted by tolmo auth login, scoped to your own permissions) or an org API token created in the Tolmo app, for CI and automation.
Path Parameters
Query Parameters
ISO-8601 timestamp; only secrets last seen on or after this point are returned
Pattern:
^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$Required range:
1 <= x <= 500Required range:
0 <= x <= 9007199254740991When set, returns only rows whose triage is missing or evaluated against a different scan than latest_scan_id. Drives the secret-finding-triage agent sweep.
Response
200 - application/json
Default Response
Available options:
real_secret, likely_real, likely_false_positive, clear_false_positive Available options:
high, medium, low Available options:
critical, high, medium, low