/hackerone/programs/scopes
curl --request POST \
--url https://api.anysite.io/api/hackerone/programs/scopes \
--header 'Content-Type: application/json' \
--header 'access-token: <api-key>' \
--data '
{
"handle": "<string>",
"count": 2,
"timeout": 300,
"search": "<string>",
"eligible_for_submission": true,
"eligible_for_bounty": true,
"asset_types": [],
"sort_direction": "DESC"
}
'import requests
url = "https://api.anysite.io/api/hackerone/programs/scopes"
payload = {
"handle": "<string>",
"count": 2,
"timeout": 300,
"search": "<string>",
"eligible_for_submission": True,
"eligible_for_bounty": True,
"asset_types": [],
"sort_direction": "DESC"
}
headers = {
"access-token": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {'access-token': '<api-key>', 'Content-Type': 'application/json'},
body: JSON.stringify({
handle: '<string>',
count: 2,
timeout: 300,
search: '<string>',
eligible_for_submission: true,
eligible_for_bounty: true,
asset_types: [],
sort_direction: 'DESC'
})
};
fetch('https://api.anysite.io/api/hackerone/programs/scopes', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.anysite.io/api/hackerone/programs/scopes",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'handle' => '<string>',
'count' => 2,
'timeout' => 300,
'search' => '<string>',
'eligible_for_submission' => true,
'eligible_for_bounty' => true,
'asset_types' => [
],
'sort_direction' => 'DESC'
]),
CURLOPT_HTTPHEADER => [
"Content-Type: application/json",
"access-token: <api-key>"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.anysite.io/api/hackerone/programs/scopes"
payload := strings.NewReader("{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("access-token", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.anysite.io/api/hackerone/programs/scopes")
.header("access-token", "<api-key>")
.header("Content-Type", "application/json")
.body("{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.anysite.io/api/hackerone/programs/scopes")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["access-token"] = '<api-key>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}"
response = http.request(request)
puts response.read_body[
{
"identifier": "<string>",
"@type": "HackeroneScope",
"id": "<string>",
"asset_type": "<string>",
"display_name": "<string>",
"instruction": "<string>",
"max_severity": "<string>",
"eligible_for_bounty": true,
"eligible_for_submission": true,
"is_new": true,
"system_tags": [],
"reward_tags": [],
"resolved_report_count": 123,
"created_at": "<string>",
"updated_at": "<string>",
"attachments": []
}
]{
"detail": [
{
"loc": [
"<string>"
],
"msg": "<string>",
"type": "<string>",
"input": "<unknown>",
"ctx": {}
}
]
}/hackerone
/hackerone/programs/scopes
List structured in-scope assets of a HackerOne (hackerone.com) program
Price: 1 credit per 100 results
⚠️ Common errors: 412: Program not found
POST
/
api
/
hackerone
/
programs
/
scopes
/hackerone/programs/scopes
curl --request POST \
--url https://api.anysite.io/api/hackerone/programs/scopes \
--header 'Content-Type: application/json' \
--header 'access-token: <api-key>' \
--data '
{
"handle": "<string>",
"count": 2,
"timeout": 300,
"search": "<string>",
"eligible_for_submission": true,
"eligible_for_bounty": true,
"asset_types": [],
"sort_direction": "DESC"
}
'import requests
url = "https://api.anysite.io/api/hackerone/programs/scopes"
payload = {
"handle": "<string>",
"count": 2,
"timeout": 300,
"search": "<string>",
"eligible_for_submission": True,
"eligible_for_bounty": True,
"asset_types": [],
"sort_direction": "DESC"
}
headers = {
"access-token": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {'access-token': '<api-key>', 'Content-Type': 'application/json'},
body: JSON.stringify({
handle: '<string>',
count: 2,
timeout: 300,
search: '<string>',
eligible_for_submission: true,
eligible_for_bounty: true,
asset_types: [],
sort_direction: 'DESC'
})
};
fetch('https://api.anysite.io/api/hackerone/programs/scopes', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.anysite.io/api/hackerone/programs/scopes",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'handle' => '<string>',
'count' => 2,
'timeout' => 300,
'search' => '<string>',
'eligible_for_submission' => true,
'eligible_for_bounty' => true,
'asset_types' => [
],
'sort_direction' => 'DESC'
]),
CURLOPT_HTTPHEADER => [
"Content-Type: application/json",
"access-token: <api-key>"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.anysite.io/api/hackerone/programs/scopes"
payload := strings.NewReader("{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("access-token", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.anysite.io/api/hackerone/programs/scopes")
.header("access-token", "<api-key>")
.header("Content-Type", "application/json")
.body("{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.anysite.io/api/hackerone/programs/scopes")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["access-token"] = '<api-key>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"handle\": \"<string>\",\n \"count\": 2,\n \"timeout\": 300,\n \"search\": \"<string>\",\n \"eligible_for_submission\": true,\n \"eligible_for_bounty\": true,\n \"asset_types\": [],\n \"sort_direction\": \"DESC\"\n}"
response = http.request(request)
puts response.read_body[
{
"identifier": "<string>",
"@type": "HackeroneScope",
"id": "<string>",
"asset_type": "<string>",
"display_name": "<string>",
"instruction": "<string>",
"max_severity": "<string>",
"eligible_for_bounty": true,
"eligible_for_submission": true,
"is_new": true,
"system_tags": [],
"reward_tags": [],
"resolved_report_count": 123,
"created_at": "<string>",
"updated_at": "<string>",
"attachments": []
}
]{
"detail": [
{
"loc": [
"<string>"
],
"msg": "<string>",
"type": "<string>",
"input": "<unknown>",
"ctx": {}
}
]
}Authorizations
API token from the dashboard
Headers
Body
application/json
Minimum string length:
1Required range:
x >= 1Required range:
20 <= x <= 1500Available options:
none, low, medium, high, critical Available options:
CIDR, URL, APPLE_STORE_APP_ID, TESTFLIGHT, OTHER_IPA, GOOGLE_PLAY_APP_ID, OTHER_APK, WINDOWS_APP_STORE_APP_ID, SOURCE_CODE, DOWNLOADABLE_EXECUTABLES, SMART_CONTRACT, WILDCARD, IP_ADDRESS, HARDWARE, OTHER, AI_MODEL, API, AWS_CLOUD_CONFIG, AZURE_CLOUD_CONFIG Available options:
DESC, ASC Response
Successful Response
Show child attributes
Show child attributes
⌘I