List the Triage queue
List the findings of every active source of your team (HackerOne, GitHub, Security Inbox and custom API sources) that you can see, with filters, views, sorts and cursor pagination. Each finding carries its server-computed stage and effective severity. A cursor is bound to the sort and filters it was issued for: reusing it with other ones returns 400 invalid_cursor. include=counts adds the counts per view, stage, source, severity and SLA, read in the same snapshot as the page. Each facet ignores its own filter and applies the others.
Authorizations
JWT authentication token
Query Parameters
Only findings of these sources (repeat the parameter for several).
50Only findings of sources of these kinds.
4hackerone, github and gmail are built-in connections; custom_api is a source you configure.
hackerone, github, gmail, custom_api Only findings of these accounts within a source (a HackerOne program, a GitHub repository, a mailbox), compared without case.
50256A saved view of the queue. all: findings that are not closed. needs_decision: untriaged or verdict ready with no decision. critical_high: open findings whose effective severity is critical or high. in_fix: accepted findings being fixed. waiting: open findings older than 7 days. snoozed: findings with an active snooze. Omit to list every stage.
all, needs_decision, critical_high, in_fix, waiting, snoozed Only findings in these stages.
5untriaged, investigating, verdict_ready, in_fix, closed Only findings whose effective severity (override, then the latest valid run, then the source) is one of these; none also matches an unknown severity.
5critical, high, medium, low, none Only findings whose status at the source is one of these, compared without case.
20128Search in the title and the external key, without case.
200updated (default): most recently changed first. priority: effective severity, then the oldest first. newest and oldest: by age, the report date at the source when known, else the first time Neo saw the finding.
updated, priority, newest, oldest Include findings with an active snooze in the other views and filters. The snoozed view always lists them, and needs_decision never does (a snooze is a decision until it expires).
counts adds the queue counts to the response (computed in the same snapshot as the page).
1counts True lists only archived findings, false only active ones. Omit to list both.
The next_cursor of the previous page.
1 - 200Maximum number of findings. Defaults to 50.
1 <= x <= 100Response
One page of findings
Number of findings that match the filters (all pages).
The queue counts, read in the same snapshot as the page. Each facet ignores its own filter and applies the others; open means a stage other than closed.
Pass as cursor to read the next page. Null on the last page.

