> ## Documentation Index
> Fetch the complete documentation index at: https://docs.base44.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Restore security finding

> <Info>This API is in beta. Endpoints, fields, and behavior may still change, so avoid depending on it in production.</Info>

Undoes [Ignore security finding](/api-reference/ignore-security-finding) for one finding, so it's no longer hidden. Its fingerprint leaves `ignored_fingerprints` in [Get security scan](/api-reference/get-security-scan). The finding itself stayed in the scan result the whole time, so nothing else changes.

The call succeeds without changing anything when the fingerprint isn't ignored. That includes an ignore a later scan already dropped because the finding changed.

This is limited to 60 requests a minute per app for each workspace's personal API keys, so every key in a workspace shares one allowance. Some workspaces have a different limit.

<Note>This endpoint accepts a personal API key belonging to a user with editor access to the app. A read-only key is refused, and workspace API keys are not accepted.</Note>



## OpenAPI

````yaml /developers/references/app-management/app-management-openapi.json delete /api/apps/{app_id}/security/scan/ignore/{fingerprint}
openapi: 3.1.0
info:
  title: Base44 App Management API
  version: 1.0.0
servers:
  - url: https://app.base44.com
security:
  - PersonalAccessTokenAuth: []
paths:
  /api/apps/{app_id}/security/scan/ignore/{fingerprint}:
    delete:
      summary: Restore security finding
      description: >-
        <Info>This API is in beta. Endpoints, fields, and behavior may still
        change, so avoid depending on it in production.</Info>


        Undoes [Ignore security finding](/api-reference/ignore-security-finding)
        for one finding, so it's no longer hidden. Its fingerprint leaves
        `ignored_fingerprints` in [Get security
        scan](/api-reference/get-security-scan). The finding itself stayed in
        the scan result the whole time, so nothing else changes.


        The call succeeds without changing anything when the fingerprint isn't
        ignored. That includes an ignore a later scan already dropped because
        the finding changed.


        This is limited to 60 requests a minute per app for each workspace's
        personal API keys, so every key in a workspace shares one allowance.
        Some workspaces have a different limit.


        <Note>This endpoint accepts a personal API key belonging to a user with
        editor access to the app. A read-only key is refused, and workspace API
        keys are not accepted.</Note>
      operationId: >-
        restore_finding_api_apps__app_id__security_scan_ignore__fingerprint__delete
      parameters:
        - name: fingerprint
          in: path
          required: true
          schema:
            type: string
            minLength: 1
            maxLength: 128
            description: >-
              Fingerprint of the ignored finding, as listed in
              `ignored_fingerprints` by [Get security
              scan](/api-reference/get-security-scan). Up to 128 characters.
            title: Fingerprint
          description: >-
            Fingerprint of the ignored finding, as listed in
            `ignored_fingerprints` by [Get security
            scan](/api-reference/get-security-scan). Up to 128 characters.
          example: 3f9a1c0e8b7d4a6f2e5c9b1d0a8f7e6c5b4a3d2e1f0c9b8a7d6e5f4c3b2a1d0e
        - name: app_id
          in: path
          required: true
          schema:
            type: string
            description: ID of the app.
            title: App Id
          description: ID of the app.
          example: 6820f3a4e7b91d003c45a1f2
      responses:
        '200':
          description: The call was accepted.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/SecurityFindingIgnoreStatus'
        '401':
          description: Missing or invalid credentials.
        '403':
          description: >-
            You don't have editor access to this app, your API key is read-only,
            or you used a workspace API key.
        '404':
          description: App not found.
        '422':
          description: '`fingerprint` is longer than 128 characters.'
        '429':
          description: Too many restores for this app in the last minute.
components:
  schemas:
    SecurityFindingIgnoreStatus:
      properties:
        status:
          type: string
          title: Status
          description: Always `ok`, including when nothing changed.
          example: ok
      type: object
      required:
        - status
      title: SecurityFindingIgnoreStatus
      description: Confirms the call was accepted.
  securitySchemes:
    PersonalAccessTokenAuth:
      type: http
      scheme: bearer
      description: 'Personal access token, sent as `Authorization: Bearer <token>`.'

````