Create a full scan from a set of package manifest files. Returns a full scan including all SBOM artifacts.
To get a list of supported filetypes that can be uploaded in a full-scan, see the Get supported file types endpoint.
The maximum number of files you can upload at a time is 10000 and each file can be no bigger than 268 MB.
To make a scan's alerts show up in notifications and the main dashboard, pass these query parameters:
branch: the repo's default branch, e.g.mainmake_default_branch=trueset_as_pending_head=true
Without them, the scan's alerts only appear in its own report. Repos created by this endpoint have no default branch until make_default_branch=true sets one, and set_as_pending_head is ignored on other branches.
Query Parameters:
scan_type(optional): The type of scan to perform. Defaults to 'socket'. Must be 32 characters or less. Used for categorizing multiple SBOM heads per repository branch.
This endpoint consumes 1 unit of your quota.
This endpoint requires the following org token scopes:
- full-scans:create
| Time | Status | User Agent | |
|---|---|---|---|
Retrieving recent requests… | |||