POSThttps://api.deepinfo.com/v1/easm/discovery/assets/search

Searches discovered assets (candidates found by discovery rules) and their state.

Authentication

Send your API key in the apikey request header.

Query Parameters

ParameterRequiredDescription
page_sizeOptional
Min 25, max 100. Default 100.
Example25
pageOptional
Min 1, max 800. Default 1.
Example1

Request Body

ParameterTypeRequiredDescription
filtersobjectOptional
See Filtering below
sortarrayOptional
List of {field, order}
application/json
{}

Filtering

Example body:

JSON
{
  "filters": {
    "must": [
      {
        "name": "state",
        "type": "eq",
        "value": "<value>"
      }
    ]
  },
  "sort": [
    {
      "field": "asset",
      "order": "desc"
    }
  ]
}

See Getting Started → Search & Filters for the operators.

The Request Template example holds this body with every filter of this endpoint, one entry per field, each with an operator the field accepts and a placeholder value. Copy it, keep the filters you need and set their values.

Searchable Fields

Grouped by the operators they accept (measured against the API; sending another operator returns 400).

Operators eq in startswith endswith wildcard fuzzy contains_any contains_all exists

FieldDescription
assetThe discovered asset's name: a domain, subdomain or IP address, or for a website asset host:port.
discovery_history.idThe ID of a discovery rule that found the asset, a 32-character hex string; the Discovery page's rule name filter sends this ID.
discovery_history.seed_valueThe seed value a rule started from when it found the asset, such as an IP address, a certificate fingerprint, a phone number or an organization name.
organization_nameAn organization name recorded for the discovered asset; in the samples it is set only on some domains and holds WHOIS-style values such as redacted for privacy.

Operators eq in gte lte exists

FieldDescription
last_discovery_dateWhen a rule last found the asset, shown as the discovery date in Discovery (UTC date-time).
ignore_dateWhen the asset was ignored in Discovery (UTC date-time); empty unless it is ignored.
approve_dateWhen the asset was approved into your inventory (UTC date-time); empty unless it is approved.

Operators eq in exists

FieldDescription
asset_typeThe discovered asset's type: domain, subdomain, ip or website.
stateThe review state: in_review (found by a rule, waiting for a decision), approved (added to your inventory) or ignored (dismissed; it stays out of your inventory).

Sortable Fields

FieldDescription
assetThe discovered asset's name: a domain, subdomain or IP address, or for a website asset host:port.
stateThe review state: in_review (found by a rule, waiting for a decision), approved (added to your inventory) or ignored (dismissed; it stays out of your inventory).
discovery_historyThe rule matches that found the asset, each with the rule ID, rule name, rule type (smart_discovery, smart_monitoring or custom), seed value and discovery date.
last_discovery_dateWhen a rule last found the asset, shown as the discovery date in Discovery (UTC date-time).
organization_nameAn organization name recorded for the discovered asset; in the samples it is set only on some domains and holds WHOIS-style values such as redacted for privacy.
ignore_dateWhen the asset was ignored in Discovery (UTC date-time); empty unless it is ignored.
approve_dateWhen the asset was approved into your inventory (UTC date-time); empty unless it is approved.

Response Fields

FieldTypeDescription
pageinteger
page_sizeinteger
result_countinteger
resultsarray of object
results[].idstring
results[].assetstring
results[].asset_unicodestring
results[].statestring
One of in_review, approved, ignored
results[].asset_typestring
One of domain, subdomain, ip, website
results[].discovery_historyarray of object
results[].last_discovery_datestring
date-time
results[].organization_namestring
results[].ignore_datestring
date-time
results[].approve_datestring
date-time

Paginated. See Getting Started → Pagination.

Response Schema

Inferred from examples Built from the saved 2xx example response: the fields it contains, with the types seen there. It is not a contract.

FieldTypeExample
pagenumber1
page_sizenumber25
result_countnumber21
resultsarray<object>
results[].idstring"00000000000000000000000ea4f90001"
results[].assetstring"acme.example"
results[].asset_unicodestring"acme.example"
results[].statestring"in_review"
results[].asset_typestring"domain"
results[].discovery_historyarray<object>
results[].discovery_history[].idstring"00000000000000000000000e56420001"
results[].discovery_history[].rulestring"Main domains"
results[].discovery_history[].rule_typestring"smart_monitoring"
results[].discovery_history[].enabledbooleantrue
results[].discovery_history[].deletedbooleanfalse
results[].discovery_history[].seed_valuestring"acme.example"
results[].discovery_history[].descriptionnull
results[].discovery_history[].discovery_datestring"2025-06-01T08:00:00Z"
results[].last_discovery_datestring"2025-06-01T08:00:00Z"
results[].organization_namenull
results[].ignore_datenull
results[].approve_datenull

Examples

Selecting one loads it into the request and response panels.

Reference updated