Request a waiver for one finding, with a reason of at least 20 characters (REQ-072).
const url = 'https://example.com/api/v1/docs/2489E9AD-2EE2-8E00-8EC9-32D5F69181C0/waivers';const options = { method: 'POST', headers: {'Content-Type': 'application/json'}, body: '{"finding_id":"2489E9AD-2EE2-8E00-8EC9-32D5F69181C0","reason":"example","trace":{"status":"out_of_scope","target":"example"},"standalone":true}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://example.com/api/v1/docs/2489E9AD-2EE2-8E00-8EC9-32D5F69181C0/waivers \ --header 'Content-Type: application/json' \ --data '{ "finding_id": "2489E9AD-2EE2-8E00-8EC9-32D5F69181C0", "reason": "example", "trace": { "status": "out_of_scope", "target": "example" }, "standalone": true }'Parameters
Section titled “ Parameters ”Path Parameters
Section titled “Path Parameters”The ID of one spec doc.
Request Bodyrequired
Section titled “Request Bodyrequired”object
The answer to a coverage gap that says the ID is intentionally absent from this doc. It is an Acknowledgement, and it follows the profile’s waiver policy.
object
For covered_by, the slug of the doc that covers the ID.
Mark the doc standalone: the answer to a links.has-upstream finding. It is an Acknowledgement, and its approval writes standalone to the doc’s sidecar.
Responses
Section titled “ Responses ”The waiver.
object
Withdrawn is an approved Acknowledgement that a person took out of the sidecar.
The waiver policy (§9.1).
The approvals the policy needs.
Whether the caller can approve or reject it now.
Why the waiver is rejected. Only a rejected waiver has one.
The byte range of the waiver’s section in the current main doc. Absent when the section is gone.
object
An Acknowledgement of one upstream trace ID. On approval it goes in the sidecar under trace.
object
What a verification waiver excuses. It never goes in the sidecar.
object
The code repo, or the folder, as the verification run names it.
The verification run the request came from. Empty for a request that named no run.
True for a standalone Acknowledgement. On approval it goes in the sidecar under standalone.
Who withdrew the Acknowledgement. Only a withdrawn one has it.
Example
{ "status": "requested", "trace": { "status": "out_of_scope" }}default
Section titled “default”An error.
RFC 9457 problem details with a stable code.
object
A stable machine-readable error code.
Examplegenerated
{ "type": "example", "title": "example", "status": 1, "detail": "example", "instance": "example", "code": "example"}