This API provides a comprehensive list of all activities performed on endpoints, including actions taken by Leak Prevention, boundary types involved, and sensitivity classifications. It supports filters for action type and includes pagination for managing result sets.
get /api/1.4/reports/dlp/endpointactivityreport
https://{serverurl}/api/1.4/reports/dlp/endpointactivityreport
Authorization: Zoho-oauthtoken d92d4xxxxxxxxxxxxx15f52
This is for navigating to specific pages. This field denotes the current page.
specify the number of records to be displayed per page.
filter endpoint activity report records based on Leak Prevention action performed. 0 - Allowed 1 - Blocked 2 - Self Override 3 - Reported False Positive
curl --request GET \
--url https://appdomains/api/1.4/reports/dlp/endpointactivityreport \
--header 'Accept: application/json' \
--header 'Authorization: Zoho-oauthtoken d92d4xxxxxxxxxxxxx15f52' \
--header 'Content-Type: application/json'Module Code
Response.
Total Number of Records.
Maximum number of records included in this single response.
DLP.
User performing action
File path involved in activity
0-Allowed,
1-Blocked,
2-Self Override,
3-Reported False Positive
Boundary application/domain involved (e.g., powershell.exe)
User override comment
Timestamp of event
Matched classification rule
Category of classification (e.g., Custom rules)
64-Password protected files,
128-Trusted application,
256-Trusted email domain,
1024-Trusted web domain
Page Number.
Api Version.
Status of Api call.
Response code.
{
"response_code": 200,
"message_type": "dlp",
"message_response": {
"total": 1,
"limit": 25,
"dlp": [
{
"resfileaudit.user": "John",
"classification_source": "--",
"file_path": "C:\\USERS\\John\\DOCUMENTS\\POWERSHELL_TRANSCRIPT.John.VTIVDCST.20250824165748.TXT",
"resfileaudit.event_type": 1,
"resfileaudit.boundary_value": "powershell.exe",
"override_comment": "--",
"resfileaudit.event_time": 1756113369790,
"classification_category": "Custom rules",
"resfileaudit.boundary_type": 64,
"classification_type": 16,
"justication_value": "--",
"resource_name": "John",
"classification_rule": "r1"
}
],
"page": 1
},
"message_version": "1.4",
"status": "success"
}
© 2026, Zoho Corporation Pvt. Ltd. All Rights Reserved.