Enumerate URLs and assets captured for a domain
domain
Enumerate URLs and assets captured for a domain
Returns unique URLs harvested from infected machines that had saved credentials for the given domains — internal tools, admin panels, VPN portals, SaaS apps. Use to map attack surface. Not paginated (capped by limit, max 30).
POST
Enumerate URLs and assets captured for a domain
Authorizations
Static API key, format vp_<env>_<8-hex-prefix>.<40-hex-secret>. Preferred header for server-to-server integrations.
Body
application/json
Minimum array length:
1employees = corporate emails matching the searched domain(s); users = end-user accounts with the domain in their saved URL; both = no filter. See Domain Intelligence Overview.
Available options:
employees, users, both Required range:
1 <= x <= 30Aggregated breach summary for one or more domainsThird-party services co-present on infected machines