v1
latestOpenAPI 3.1.02026-07-2481742657.4 KBGet host history for a certificate
Retrieve the historical observations of hosts associated with a certificate. This is useful for threat hunting, detection engineering, and timeline generation. Certificate history is also visible to Adversary Investigation users in the Platform UI on the certificate timeline.<br><br>You can define a specific time frame of interest. If you do not specify a time frame, this endpoint will search the historical dataset that is available to your account. You may also filter results by port and transport protocol.<br><br>This endpoint is available to organizations that have access to the Adversary Investigation module. It costs 5 credits per page of results.
Path parameters
SHA-256 hash of the certificate
SHA-256 hash of the certificate
Query parameters
The ID of a Censys organization to associate the request with. See the Getting Started docs for more information.
The ID of a Censys organization to associate the request with. See the Getting Started docs for more information.
Only show ranges ending at or after this time (ISO 8601)
Only show ranges ending at or after this time (ISO 8601)
Only show ranges starting at or before this time (ISO 8601)
Only show ranges starting at or before this time (ISO 8601)
The port to filter by
The port to filter by
The transport protocol to filter by
The transport protocol to filter by
Pagination token from previous response to retrieve next page of results
Pagination token from previous response to retrieve next page of results
Number of results per page. Maximum 100, defaults to 100 if not specified
Number of results per page. Maximum 100, defaults to 100 if not specified
Headers
The ID of a Censys organization to associate the request with. See the Getting Started docs for more information. Note: The header parameter is supported for atypical use cases; we recommend always providing this field via the query parameter.
The ID of a Censys organization to associate the request with. See the Getting Started docs for more information. Note: The header parameter is supported for atypical use cases; we recommend always providing this field via the query parameter.
Response
A list of host observations for the certificate