import { ConductoroneSDKTypescript } from "conductorone-sdk-typescript";
const conductoroneSDKTypescript = new ConductoroneSDKTypescript({
security: {
bearerAuth: "<YOUR_BEARER_TOKEN_HERE>",
oauth: "<YOUR_OAUTH_HERE>",
},
});
async function run() {
const result = await conductoroneSDKTypescript.finding.createFindingTask({
findingId: "<id>",
});
console.log(result);
}
run();package main
import(
"context"
"github.com/conductorone/conductorone-sdk-go/pkg/models/shared"
conductoronesdkgo "github.com/conductorone/conductorone-sdk-go"
"github.com/conductorone/conductorone-sdk-go/pkg/models/operations"
"log"
)
func main() {
ctx := context.Background()
s := conductoronesdkgo.New(
conductoronesdkgo.WithSecurity(shared.Security{
BearerAuth: "<YOUR_BEARER_TOKEN_HERE>",
Oauth: "<YOUR_OAUTH_HERE>",
}),
)
res, err := s.Finding.CreateFindingTask(ctx, operations.C1APIFindingV1FindingServiceCreateFindingTaskRequest{
FindingID: "<id>",
})
if err != nil {
log.Fatal(err)
}
if res.CreateFindingTaskResponse != nil {
// handle response
}
}curl --request POST \
--url https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"policyId": "<string>"
}
'import requests
url = "https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task"
payload = { "policyId": "<string>" }
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({policyId: '<string>'})
};
fetch('https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'policyId' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}HttpResponse<String> response = Unirest.post("https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"policyId\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"policyId\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"finding": {
"annotations": {},
"appId": "<string>",
"appResourceTarget": {
"appId": "<string>",
"appResourceId": "<string>",
"appResourceTypeId": "<string>"
},
"appUserTarget": {
"appId": "<string>",
"appUserId": "<string>"
},
"assignedOwner": {
"appOwnerAppId": "<string>",
"identityUserId": "<string>",
"managerOfUserId": "<string>",
"userSetId": "<string>"
},
"computedOwner": {
"appOwnerAppId": "<string>",
"identityUserId": "<string>",
"managerOfUserId": "<string>",
"userSetId": "<string>"
},
"connectorAnomalyDetectionDisabled": {},
"connectorTarget": {
"appId": "<string>",
"connectorId": "<string>"
},
"createdAt": "2023-11-07T05:31:56Z",
"credentialExpiring": {
"credentialDisplayName": "<string>",
"userClientId": "<string>"
},
"credentialExpiringEvidence": {
"expired": true,
"expiresAt": "2023-11-07T05:31:56Z"
},
"credentialPubliclyExposed": {
"connectorClientId": "<string>",
"connectorManagedCredentialId": "<string>",
"credentialDisplayName": "<string>",
"functionClientId": "<string>",
"userClientId": "<string>"
},
"credentialPubliclyExposedEvidence": {
"credentialRevoked": true,
"fingerprintPrefix": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"firstScannerId": "<string>",
"reportingScanners": [
"<string>"
],
"revokedAt": "2023-11-07T05:31:56Z",
"sourceKind": "<string>",
"sourceUrl": "<string>"
},
"custom": {},
"customSubType": "<string>",
"customTags": {},
"deactivatedOwner": {
"source": "DEACTIVATED_OWNER_SOURCE_UNSPECIFIED"
},
"deactivatedOwnerEvidence": {
"deactivatedOwners": [
{
"reason": "DEACTIVATED_OWNER_REASON_UNSPECIFIED",
"userId": "<string>"
}
]
},
"decoyCredentialUsed": {
"decoyId": "<string>",
"kind": "DECOY_CREDENTIAL_KIND_UNSPECIFIED"
},
"decoyPubliclyExposed": {
"decoyDisplayName": "<string>",
"decoyId": "<string>"
},
"decoyPubliclyExposedEvidence": {
"credentialRevoked": true,
"fingerprintPrefix": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"firstScannerId": "<string>",
"reportingScanners": [
"<string>"
],
"revokedAt": "2023-11-07T05:31:56Z",
"sourceKind": "<string>",
"sourceUrl": "<string>"
},
"decoyTarget": {
"decoyId": "<string>"
},
"dedupKeyParts": [
"<string>"
],
"description": "<string>",
"fingerprint": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"id": "<string>",
"identityUserTarget": {
"identityUserId": "<string>"
},
"lastAppearedAt": "2023-11-07T05:31:56Z",
"lastObservedAt": "2023-11-07T05:31:56Z",
"nhiUnowned": {},
"recurrenceCount": 123,
"remediationDescription": "<string>",
"resolvedAt": "2023-11-07T05:31:56Z",
"riskAcceptanceExpiresAt": "2023-11-07T05:31:56Z",
"riskAcceptanceJustification": "<string>",
"riskScore": {
"originalScore": 123,
"overrideByUserId": "<string>",
"overrideScore": 123,
"riskFactors": [
{
"description": "<string>",
"name": "<string>",
"severity": "FINDING_SEVERITY_UNSPECIFIED",
"weight": 123
}
],
"score": 123,
"systemScore": 123
},
"serviceAccountMisclassification": {
"currentAccountType": "APP_USER_TYPE_UNSPECIFIED",
"detectedAccountType": "APP_USER_TYPE_UNSPECIFIED"
},
"serviceAccountMisclassificationEvidence": {
"detectionReason": "<string>"
},
"serviceAccountUnowned": {},
"severity": "FINDING_SEVERITY_UNSPECIFIED",
"similarUsernameMatch": {
"proposedIdentityUserId": "<string>"
},
"similarUsernameMatchEvidence": {
"appUsername": "<string>",
"identityUsername": "<string>",
"similarityScore": 123
},
"snoozeReason": "<string>",
"snoozeUntil": "2023-11-07T05:31:56Z",
"sourceDetectorId": "<string>",
"sourceKind": "FINDING_SOURCE_KIND_UNSPECIFIED",
"state": "FINDING_STATE_UNSPECIFIED",
"stateUpdatedById": "<string>",
"suppressReason": "<string>",
"taskId": "<string>",
"tenantTarget": {},
"unusedSecret": {},
"unusedSecretEvidence": {
"lastUsedAt": "2023-11-07T05:31:56Z"
},
"updatedAt": "2023-11-07T05:31:56Z"
},
"taskId": "<string>"
}Create Finding Task
Create a task for a finding.
import { ConductoroneSDKTypescript } from "conductorone-sdk-typescript";
const conductoroneSDKTypescript = new ConductoroneSDKTypescript({
security: {
bearerAuth: "<YOUR_BEARER_TOKEN_HERE>",
oauth: "<YOUR_OAUTH_HERE>",
},
});
async function run() {
const result = await conductoroneSDKTypescript.finding.createFindingTask({
findingId: "<id>",
});
console.log(result);
}
run();package main
import(
"context"
"github.com/conductorone/conductorone-sdk-go/pkg/models/shared"
conductoronesdkgo "github.com/conductorone/conductorone-sdk-go"
"github.com/conductorone/conductorone-sdk-go/pkg/models/operations"
"log"
)
func main() {
ctx := context.Background()
s := conductoronesdkgo.New(
conductoronesdkgo.WithSecurity(shared.Security{
BearerAuth: "<YOUR_BEARER_TOKEN_HERE>",
Oauth: "<YOUR_OAUTH_HERE>",
}),
)
res, err := s.Finding.CreateFindingTask(ctx, operations.C1APIFindingV1FindingServiceCreateFindingTaskRequest{
FindingID: "<id>",
})
if err != nil {
log.Fatal(err)
}
if res.CreateFindingTaskResponse != nil {
// handle response
}
}curl --request POST \
--url https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"policyId": "<string>"
}
'import requests
url = "https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task"
payload = { "policyId": "<string>" }
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({policyId: '<string>'})
};
fetch('https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'policyId' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}HttpResponse<String> response = Unirest.post("https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"policyId\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://{tenantDomain}.conductor.one/api/v1/findings/{finding_id}/task")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"policyId\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"finding": {
"annotations": {},
"appId": "<string>",
"appResourceTarget": {
"appId": "<string>",
"appResourceId": "<string>",
"appResourceTypeId": "<string>"
},
"appUserTarget": {
"appId": "<string>",
"appUserId": "<string>"
},
"assignedOwner": {
"appOwnerAppId": "<string>",
"identityUserId": "<string>",
"managerOfUserId": "<string>",
"userSetId": "<string>"
},
"computedOwner": {
"appOwnerAppId": "<string>",
"identityUserId": "<string>",
"managerOfUserId": "<string>",
"userSetId": "<string>"
},
"connectorAnomalyDetectionDisabled": {},
"connectorTarget": {
"appId": "<string>",
"connectorId": "<string>"
},
"createdAt": "2023-11-07T05:31:56Z",
"credentialExpiring": {
"credentialDisplayName": "<string>",
"userClientId": "<string>"
},
"credentialExpiringEvidence": {
"expired": true,
"expiresAt": "2023-11-07T05:31:56Z"
},
"credentialPubliclyExposed": {
"connectorClientId": "<string>",
"connectorManagedCredentialId": "<string>",
"credentialDisplayName": "<string>",
"functionClientId": "<string>",
"userClientId": "<string>"
},
"credentialPubliclyExposedEvidence": {
"credentialRevoked": true,
"fingerprintPrefix": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"firstScannerId": "<string>",
"reportingScanners": [
"<string>"
],
"revokedAt": "2023-11-07T05:31:56Z",
"sourceKind": "<string>",
"sourceUrl": "<string>"
},
"custom": {},
"customSubType": "<string>",
"customTags": {},
"deactivatedOwner": {
"source": "DEACTIVATED_OWNER_SOURCE_UNSPECIFIED"
},
"deactivatedOwnerEvidence": {
"deactivatedOwners": [
{
"reason": "DEACTIVATED_OWNER_REASON_UNSPECIFIED",
"userId": "<string>"
}
]
},
"decoyCredentialUsed": {
"decoyId": "<string>",
"kind": "DECOY_CREDENTIAL_KIND_UNSPECIFIED"
},
"decoyPubliclyExposed": {
"decoyDisplayName": "<string>",
"decoyId": "<string>"
},
"decoyPubliclyExposedEvidence": {
"credentialRevoked": true,
"fingerprintPrefix": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"firstScannerId": "<string>",
"reportingScanners": [
"<string>"
],
"revokedAt": "2023-11-07T05:31:56Z",
"sourceKind": "<string>",
"sourceUrl": "<string>"
},
"decoyTarget": {
"decoyId": "<string>"
},
"dedupKeyParts": [
"<string>"
],
"description": "<string>",
"fingerprint": "<string>",
"firstObservedAt": "2023-11-07T05:31:56Z",
"id": "<string>",
"identityUserTarget": {
"identityUserId": "<string>"
},
"lastAppearedAt": "2023-11-07T05:31:56Z",
"lastObservedAt": "2023-11-07T05:31:56Z",
"nhiUnowned": {},
"recurrenceCount": 123,
"remediationDescription": "<string>",
"resolvedAt": "2023-11-07T05:31:56Z",
"riskAcceptanceExpiresAt": "2023-11-07T05:31:56Z",
"riskAcceptanceJustification": "<string>",
"riskScore": {
"originalScore": 123,
"overrideByUserId": "<string>",
"overrideScore": 123,
"riskFactors": [
{
"description": "<string>",
"name": "<string>",
"severity": "FINDING_SEVERITY_UNSPECIFIED",
"weight": 123
}
],
"score": 123,
"systemScore": 123
},
"serviceAccountMisclassification": {
"currentAccountType": "APP_USER_TYPE_UNSPECIFIED",
"detectedAccountType": "APP_USER_TYPE_UNSPECIFIED"
},
"serviceAccountMisclassificationEvidence": {
"detectionReason": "<string>"
},
"serviceAccountUnowned": {},
"severity": "FINDING_SEVERITY_UNSPECIFIED",
"similarUsernameMatch": {
"proposedIdentityUserId": "<string>"
},
"similarUsernameMatchEvidence": {
"appUsername": "<string>",
"identityUsername": "<string>",
"similarityScore": 123
},
"snoozeReason": "<string>",
"snoozeUntil": "2023-11-07T05:31:56Z",
"sourceDetectorId": "<string>",
"sourceKind": "FINDING_SOURCE_KIND_UNSPECIFIED",
"state": "FINDING_STATE_UNSPECIFIED",
"stateUpdatedById": "<string>",
"suppressReason": "<string>",
"taskId": "<string>",
"tenantTarget": {},
"unusedSecret": {},
"unusedSecretEvidence": {
"lastUsedAt": "2023-11-07T05:31:56Z"
},
"updatedAt": "2023-11-07T05:31:56Z"
},
"taskId": "<string>"
}Authorizations
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
This API uses OAuth2 with the Client Credential flow. Client Credentials must be sent in the BODY, not the headers. For an example of how to implement this, refer to the c1TokenSource.Token() function.
Path Parameters
The ID of the finding to create a remediation task for.
Body
The CreateFindingTaskRequest message.
Optional policy ID. Defaults to the app's grant policy or the built-in "Finding Review" policy.
Response
Successful response
The CreateFindingTaskResponse message.
The Finding message.
This message contains a oneof named finding_type. Only a single field of the following list may be set at a time:
- similarUsernameMatch
- serviceAccountMisclassification
- nhiUnowned
- serviceAccountUnowned
- decoyCredentialUsed
- custom
- connectorAnomalyDetectionDisabled
- deactivatedOwner
- unusedSecret
- credentialPubliclyExposed
- decoyPubliclyExposed
- credentialExpiring
This message contains a oneof named target. Only a single field of the following list may be set at a time:
- identityUserTarget
- appUserTarget
- decoyTarget
- appResourceTarget
- tenantTarget
- connectorTarget
This message contains a oneof named evidence. Only a single field of the following list may be set at a time:
- similarUsernameMatchEvidence
- serviceAccountMisclassificationEvidence
- deactivatedOwnerEvidence
- unusedSecretEvidence
- credentialPubliclyExposedEvidence
- decoyPubliclyExposedEvidence
- credentialExpiringEvidence
Show child attributes
Show child attributes
The ID of the created task.
Was this page helpful?