openapi: 3.0.0
info:
x-logo:
url: https://docs.shiftleft.io/img/sl-logo.svg
version: 4.0.0
title: alerting branches API
description: 'The Qwiet API allows you to programmatically interact with Qwiet. You can manage users and their roles and get scan-related information, such as which applications were scanned and what vulnerabilities were identified by Qwiet as being present. You can also compare scans to see changes to your applications over time.
# Authentication
Use of the Qwiet API requires an access token, which is available via the [Qwiet UI](https://app.shiftleft.io/user/profile).
'
servers:
- url: https://app.shiftleft.io/api/v4
tags:
- name: branches
x-displayName: Branches
description: 'The branch information for scans of applications.
'
paths:
/orgs/{orgID}/apps/{appID}/scanbranches:
parameters:
- $ref: '#/components/parameters/orgID'
- $ref: '#/components/parameters/appID'
get:
operationId: ListAppBranches
tags:
- branches
summary: List application scans branches
description: Return the list of branches of an application that have been scanned, not to be confused with the soon to be deprecated /branches endpoint.
security:
- BearerToken:
- scans:read
responses:
'200':
description: Success
content:
application/json:
schema:
allOf:
- $ref: '#/components/schemas/SuccessResponse'
- type: object
required:
- response
properties:
response:
$ref: '#/components/schemas/ScanBranch'
default:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/Error'
components:
parameters:
orgID:
name: orgID
in: path
description: The org ID
required: true
schema:
type: string
format: uuid
appID:
name: appID
in: path
description: The app ID (e.g., `HelloQwiet`)
required: true
schema:
type: string
schemas:
Error:
type: object
required:
- ok
- code
- message
properties:
ok:
type: boolean
description: Whether the request was successful (true) or not (false)
code:
type: string
description: The `enum` representing the error encountered
example: INTERNAL_SERVER_ERROR
message:
type: string
description: A message describing the error
example: Internal Server Error
validation_errors:
type: array
description: The validation errors the user should correct before re-submitting the request
items:
type: string
description: A description of the validation error
SuccessResponse:
type: object
required:
- ok
properties:
ok:
type: boolean
description: Whether the request was successful or not
ScanBranch:
type: object
description: contains information about a branch, how many scans it has, the first and the last scan in the branch
required:
- created_at
- updated_at
- branch_name
- scan_count
properties:
created_at:
type: string
description: the date-time of the creation of the branch, in UTC.
format: date-time
updated_at:
type: string
description: the date-time of the last update of the branch, in UTC.
format: date-time
branch_name:
type: string
description: the name of the branch
scan_count:
type: integer
description: the number of scans in the branch, if any
first_scan:
type: integer
description: the timestamp of the oldest scan we have for this branch, if any
last_scan:
type: integer
description: the timestamp of the newest scan we have for this branch, if any.
securitySchemes:
BearerToken:
description: 'Use of the Qwiet API requires an access token, which is available via the Qwiet Dashboard (either under [Account Settings](https://app.shiftleft.io/user/profile) or [Integration Tokens](https://app.shiftleft.io/integrations)) or via the `/tokens` endpoints. You can pass an access token to the API using the HTTP `Authorization` Request header as follows:\
`Authorization: Bearer {access token}`
'
type: http
scheme: bearer