ScanMalware REST API Documentation

Complete API reference for integrating website security scanning into your applications

API Endpoints

POST/api/v1/scan

Submit URL for Scanning

Submit a URL for scanning. Works anonymously for public and unlisted scans. Authenticate with a Bearer token (when logged in) or an API key with the scan:submit scope (X-API-Key header, created on your account page) to attribute the scan to your account; private scans require authentication and are visible only to you.

Parameters

NameTypeRequiredDescription
urlstringRequired
scan_typestringOptional
optionsstringOptional
csrf_tokenstringOptional

Response

{
  "scan_id": "string",
  "status": "string",
  "message": "string",
  "scan_type": "string",
  "submitted_at": "string"
}

Example

Request
curl -X POST "https://scanmalware.com/api/v1/scan" \
  -H "Content-Type: application/json" \
  -d '{"url": "https://example.com", "scan_type": "public"}'
Response
{
  "scan_id": "123e4567-e89b-12d3-a456-426614174000",
  "status": "queued",
  "message": "Scan submitted successfully",
  "scan_type": "public",
  "submitted_at": "2025-08-20T16:30:00.000Z"
}