GetFinding
Queries the details of a specified finding.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
accessanalyzer:GetFinding |
none |
*Analyzer
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| FindingId |
string |
Yes |
The ID of the finding. |
da167948-446e-4df8-b8cb-159a3930f148 |
| AnalyzerName |
string |
Yes |
The name of the analyzer to which the finding belongs. |
analyzer-example |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
Schema of Response |
||
| Finding |
object |
The Finding information. |
|
| AnalyzedTime |
string |
The time when the resource was last analyzed. |
2026-05-18T10:35:36Z |
| CreatedTime |
string |
The time when the Finding was created for the resource. |
2026-05-18T10:35:36Z |
| Error |
string |
The error message during the analysis process. This value is null if no error occurs. |
ACCESS_DENIED |
| FindingDetail |
object |
The Finding details. |
|
| ExternalAccessDetail |
object |
||
| Action |
array |
||
|
string |
oss:GetBucket |
||
| Condition |
object |
||
|
string |
"acs:SourceIp": "127.0.0.1/24" |
||
| IsPublic |
boolean |
true |
|
| Principal |
object |
||
|
string |
"RAM": "*" |
||
| Sources |
array<object> |
||
|
array<object> |
|||
| Detail |
object |
||
| AccessPointDetail |
object |
||
| AccessPointArn |
string |
acs:oss:oss-cn-hangzhou:1234567890:accesspoint/my-ap |
|
| AclDetail |
string |
PUBLIC_READ |
|
| Type |
string |
Valid values:
|
BUCKET_ACL |
| InactiveRoleDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550****** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| InactiveUserDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| OverPrivilegedRoleDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| OverPrivilegedUserDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| PrivilegeEscalationRoleDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| PrivilegeEscalationUserDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| SuperRoleDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550**** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| SuperUserDetail |
object |
||
| IdentityDetail |
object |
||
| CreatedTime |
string |
2023-06-01T10:00:00Z |
|
| Id |
string |
28877424550****** |
|
| LastActiveTime |
string |
2024-01-20T15:30:00Z |
|
| ServiceDetails |
array<object> |
||
|
array<object> |
|||
| ActionDetails |
array<object> |
||
|
object |
|||
| ActionName |
string |
oss:GetObject |
|
| IsPrivilege |
boolean |
true |
|
| LastAccessedTime |
string |
2024-01-10T09:00:00Z |
|
| ActionSummary |
object |
||
| Accessed |
integer |
5 |
|
| Granted |
integer |
20 |
|
| LastAccessedTime |
string |
2024-01-15T12:00:00Z |
|
| RAMCode |
string |
ram |
|
| ServiceCodes |
array |
||
|
string |
oss |
||
| ServiceSummary |
object |
||
| Accessed |
integer |
3 |
|
| Granted |
integer |
10 |
|
| FindingType |
string |
The type of the finding. Valid values:
|
PrivilegeEscalationUser |
| Id |
string |
Finding Id |
da167948-446e-4df8-b8cb-159a3930f148 |
| ResourceArn |
string |
The Alibaba Cloud Resource Name (ARN) of the resource. |
acs:ram::1234567890123:user/user-example |
| ResourceOwnerAccount |
string |
The ID of the account that owns the resource analyzed by the finding. |
1234567890123 |
| ResourceType |
string |
The resource type, in the format of the unified Alibaba Cloud resource identifier. |
ACS::RAM::User |
| Status |
string |
The status of the finding. Valid values:
|
Active |
| UpdatedTime |
string |
The time when the finding for the resource was last updated. |
2026-05-19T02:25:51Z |
| RequestId |
string |
The request ID. |
DF8CE4A2-E2E8-57B5-B675-2E30416E9385 |
Examples
Success response
JSON format
{
"Finding": {
"AnalyzedTime": "2026-05-18T10:35:36Z",
"CreatedTime": "2026-05-18T10:35:36Z",
"Error": "ACCESS_DENIED",
"FindingDetail": {
"ExternalAccessDetail": {
"Action": [
"oss:GetBucket"
],
"Condition": {
"key": "\"acs:SourceIp\": \"127.0.0.1/24\""
},
"IsPublic": true,
"Principal": {
"key": "\"RAM\": \"*\""
},
"Sources": [
{
"Detail": {
"AccessPointDetail": {
"AccessPointArn": "acs:oss:oss-cn-hangzhou:1234567890:accesspoint/my-ap"
},
"AclDetail": "PUBLIC_READ"
},
"Type": "BUCKET_ACL"
}
]
},
"InactiveRoleDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550******",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"InactiveUserDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"OverPrivilegedRoleDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"OverPrivilegedUserDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"PrivilegeEscalationRoleDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"PrivilegeEscalationUserDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"SuperRoleDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550****",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
},
"SuperUserDetail": {
"IdentityDetail": {
"CreatedTime": "2023-06-01T10:00:00Z",
"Id": "28877424550******",
"LastActiveTime": "2024-01-20T15:30:00Z"
},
"ServiceDetails": [
{
"ActionDetails": [
{
"ActionName": "oss:GetObject",
"IsPrivilege": true,
"LastAccessedTime": "2024-01-10T09:00:00Z"
}
],
"ActionSummary": {
"Accessed": 5,
"Granted": 20
},
"LastAccessedTime": "2024-01-15T12:00:00Z",
"RAMCode": "ram",
"ServiceCodes": [
"oss"
]
}
],
"ServiceSummary": {
"Accessed": 3,
"Granted": 10
}
}
},
"FindingType": "PrivilegeEscalationUser",
"Id": "da167948-446e-4df8-b8cb-159a3930f148",
"ResourceArn": "acs:ram::1234567890123:user/user-example",
"ResourceOwnerAccount": "1234567890123",
"ResourceType": "ACS::RAM::User",
"Status": "Active",
"UpdatedTime": "2026-05-19T02:25:51Z"
},
"RequestId": "DF8CE4A2-E2E8-57B5-B675-2E30416E9385"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 500 | InternalError | The request processing has failed due to some unknown error. | An internal error occurred. |
| 404 | EntityNotExist.%s | The %s does not exist. | %s does not exist |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.