Skip to main content
POST
Review a Triage finding

Authorizations

Authorization
string
header
required

JWT authentication token

Headers

Idempotency-Key
string

Optional key that makes a repeated request on this finding return the first event and review instead of changing it again.

Required string length: 1 - 200

Path Parameters

id
string<uuid>
required

Finding id

Body

application/json

One change of a finding review, such as a decision, a severity override or a fix record change.

action
enum<string>
required

The change to make. Decisions are accept, mark_duplicate, decline, snooze and return_to_queue; set_severity and clear_severity change the severity override; update_fix, mark_fixed and reopen_fix change the fix record of an accepted finding.

Available options:
accept,
mark_duplicate,
decline,
snooze,
return_to_queue,
set_severity,
clear_severity,
update_fix,
mark_fixed,
reopen_fix
expected_version
integer
required

The review version you read; 0 when the finding has no review.

Required range: x >= 0
duplicate_of
string<uuid>

Required for mark_duplicate.

evidence
string

Evidence of mark_fixed.

Maximum string length: 2000
fix
object

Changes to the fix record. An omitted field stays as it is; an empty string clears a link or the note. Links are HTTPS only and carry no credentials.

note
string

Note of the change, kept on the event (and on the decision for a decision).

Maximum string length: 2000
reason
enum<string>

Required for decline.

Available options:
false_positive,
accepted_risk,
wont_fix
severity
enum<string>

Required for set_severity.

Available options:
none,
low,
medium,
high,
critical
until
string<date-time>

Required for snooze. In the future and at most one year ahead.

Response

The review after the change, and the event it appended (null when nothing changed)

The review after a change, and the event the change appended.

event
object | null
required

The appended event. Null when the request changed nothing.

review
object
required

Your team's review of one finding. decision is read at request time: a snooze that has ended reads as no decision.