> ## Documentation Index
> Fetch the complete documentation index at: https://docs.tolmo.com/llms.txt
> Use this file to discover all available pages before exploring further.

# List secret findings

> List leaked-credential findings detected across the organization's connected source repositories, with their current triage state.



## OpenAPI

````yaml /api-reference/openapi.json get /api/v1/orgs/{orgSlug}/secret-findings
openapi: 3.0.3
info:
  title: Tolmo API
  version: 1.0.0
  description: >-
    The Tolmo REST API. Use an organization API key for automation or a CLI user
    token for user-authenticated operations. Most endpoints are scoped to one
    organization.
servers:
  - url: https://api.tolmo.com
    description: Production
security: []
paths:
  /api/v1/orgs/{orgSlug}/secret-findings:
    get:
      tags:
        - secrets
      summary: List secret findings
      description: >-
        List leaked-credential findings detected across the organization's
        connected source repositories, with their current triage state.
      operationId: apiListSecretFindings
      parameters:
        - schema:
            type: string
          in: query
          name: resourceKey
          required: false
        - schema:
            type: string
          in: query
          name: severity
          required: false
        - schema:
            type: string
          in: query
          name: ruleId
          required: false
        - schema:
            type: string
            format: date-time
            pattern: >-
              ^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$
          in: query
          name: since
          required: false
          description: >-
            ISO-8601 timestamp; only secrets last seen on or after this point
            are returned
        - schema:
            type: integer
            minimum: 1
            maximum: 500
          in: query
          name: limit
          required: false
        - schema:
            type: integer
            minimum: 0
            maximum: 9007199254740991
          in: query
          name: offset
          required: false
        - schema:
            type: string
          in: query
          name: unprocessedForScan
          required: false
          description: >-
            When set, returns only rows whose triage is missing or evaluated
            against a different scan than `latest_scan_id`. Drives the
            secret-finding-triage agent sweep.
        - schema:
            type: string
          in: path
          name: orgSlug
          required: true
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: array
                items:
                  type: object
                  properties:
                    id:
                      type: string
                    orgId:
                      type: string
                    resourceKey:
                      type: string
                    fingerprint:
                      type: string
                    source:
                      type: string
                    engine:
                      type: string
                    engineVersion:
                      type: string
                    ruleId:
                      type: string
                    propertyPath:
                      type: string
                    severity:
                      type: string
                    entropy:
                      type: number
                    verificationState:
                      type: string
                    origin:
                      type: string
                    matchContext:
                      type: string
                    startLine:
                      type: number
                    endLine:
                      type: number
                    startColumn:
                      type: number
                    endColumn:
                      type: number
                    firstSeenAt:
                      type: string
                    lastSeenAt:
                      type: string
                    latestScanId:
                      type: string
                    createdAt:
                      type: string
                    updatedAt:
                      type: string
                    triageVerdict:
                      nullable: true
                      type: string
                      enum:
                        - real_secret
                        - likely_real
                        - likely_false_positive
                        - clear_false_positive
                    triageConfidence:
                      nullable: true
                      type: string
                      enum:
                        - high
                        - medium
                        - low
                    triageSeverity:
                      nullable: true
                      type: string
                      enum:
                        - critical
                        - high
                        - medium
                        - low
                    triageReasoning:
                      nullable: true
                      type: string
                    triageModel:
                      nullable: true
                      type: string
                    triageVerified:
                      nullable: true
                      type: boolean
                    triageVerificationMethod:
                      nullable: true
                      type: string
                    triageEvaluatedScanId:
                      nullable: true
                      type: string
                    triageEvaluatedAt:
                      nullable: true
                      type: string
                    triagePostedFindingId:
                      nullable: true
                      type: string
                    integrationId:
                      nullable: true
                      type: string
                    isActive:
                      nullable: true
                      type: boolean
                    activeLastSeenAt:
                      nullable: true
                      type: string
                    lastValidatedAt:
                      nullable: true
                      type: string
                    validationError:
                      nullable: true
                      type: string
                    validationMethod:
                      nullable: true
                      type: string
                    tokenOwner:
                      nullable: true
                      type: string
                    tokenOwnerType:
                      nullable: true
                      type: string
                    tokenScopes:
                      nullable: true
                      type: array
                      items:
                        type: string
                    tokenPrivilege:
                      nullable: true
                      type: string
                    tokenIdentity:
                      nullable: true
                      type: object
                      additionalProperties:
                        type: string
                  required:
                    - id
                    - orgId
                    - resourceKey
                    - fingerprint
                    - source
                    - engine
                    - engineVersion
                    - ruleId
                    - propertyPath
                    - severity
                    - entropy
                    - verificationState
                    - origin
                    - matchContext
                    - startLine
                    - endLine
                    - startColumn
                    - endColumn
                    - firstSeenAt
                    - lastSeenAt
                    - latestScanId
                    - createdAt
                    - updatedAt
                    - triageVerdict
                    - triageConfidence
                    - triageSeverity
                    - triageReasoning
                    - triageModel
                    - triageVerified
                    - triageVerificationMethod
                    - triageEvaluatedScanId
                    - triageEvaluatedAt
                    - triagePostedFindingId
                    - integrationId
                    - isActive
                    - activeLastSeenAt
                    - lastValidatedAt
                    - validationError
                    - validationMethod
                    - tokenOwner
                    - tokenOwnerType
                    - tokenScopes
                    - tokenPrivilege
                    - tokenIdentity
                  additionalProperties: false
      security:
        - bearerAuth: []
components:
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: >-
        A Tolmo API token, sent as `Authorization: Bearer <token>`. Either a
        user token (`usr_tok.*`, minted by `tolmo auth login`, scoped to your
        own permissions) or an org API token created in the Tolmo app, for CI
        and automation.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.