Skip to content
Start here

Update the Leaked Credential Checks status for a zone.

POST/zones/{zone_id}/leaked-credential-checks

Update the Leaked Credential Checks status for the zone, enabling or disabling the detection. While enabled, the detection populates the cf.waf.credential_check.* fields, which you can reference in custom rules and rate limiting rules to challenge or block requests carrying compromised credentials.

Security
API Token

The preferred authorization scheme for interacting with the Cloudflare API. Create a token.

Example:Authorization: Bearer Sn3lZJTBX6kkg7OdcBUAxOO963GEIyGQqnFTOFYY
API Email + API Key

The previous authorization scheme for interacting with the Cloudflare API, used in conjunction with a Global API key.

Example:X-Auth-Email: user@example.com

The previous authorization scheme for interacting with the Cloudflare API. When possible, use API tokens instead of Global API keys.

Example:X-Auth-Key: 144c9defac04969c7bfad8efaa8ea194
Accepted Permissions (at least one required)
Zone WAF WriteAccount WAF Write
Path ParametersExpand Collapse
zone_id: string

Defines an identifier.

maxLength32
Body ParametersJSONExpand Collapse
enabled: optional boolean

Determines whether or not Leaked Credential Checks are enabled.

ReturnsExpand Collapse
errors: array of ResponseInfo { code, message, documentation_url, source }
code: number
minimum1000
message: string
documentation_url: optional string
source: optional object { pointer }
pointer: optional string
messages: array of ResponseInfo { code, message, documentation_url, source }
code: number
minimum1000
message: string
documentation_url: optional string
source: optional object { pointer }
pointer: optional string
result: object { enabled }

Defines the overall status for Leaked Credential Checks.

enabled: optional boolean

Determines whether or not Leaked Credential Checks are enabled.

success: true

Defines whether the API call was successful.

Update the Leaked Credential Checks status for a zone.

curl https://api.cloudflare.com/client/v4/zones/$ZONE_ID/leaked-credential-checks \
    -H 'Content-Type: application/json' \
    -H "Authorization: Bearer $CLOUDFLARE_API_TOKEN" \
    -d '{
          "enabled": true
        }'
{
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "result": {
    "enabled": true
  },
  "success": true
}
Returns Examples
{
  "errors": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "messages": [
    {
      "code": 1000,
      "message": "message",
      "documentation_url": "documentation_url",
      "source": {
        "pointer": "pointer"
      }
    }
  ],
  "result": {
    "enabled": true
  },
  "success": true
}