Developer API

Read-only infrastructure health data with no account or API key. Responses use permissive CORS and reports are cached for five minutes.

Stable report endpoint
curl https://api.varlog.in/v1/report/example.com

Add ?fresh=1 to verify a fix. Fresh scans are locked per domain for 60 seconds.

Embeddable grade badge
![varlog.in](https://varlog.in/v1/badge/example.com.svg)

Report semantics

Each finding is pass, fail, or inconclusive. External evidence failures do not count as target failures. An overall grade is withheld when weighted evidence coverage is below 70%.

Other endpoints

GET /api/status returns the latest provider snapshot. GET /api/history/{provider} returns seven days of hourly samples. Existing DNS, TLS, probe, inspection, routing, and subdomain endpoints remain available.

Download OpenAPI 3.1 specification · Scoring methodology · Changelog