Skip to Content
Research with Our Labs
ReconnaissanceStorage Bucket ExposureStorage & Bucket Exposure – Endpoint

Storage & Bucket Exposure – Endpoint

Base URL

https://api.rsch.io

Path

/api/v1/recon/storage

Method

GET

Query Parameters

  • domainRequired. Domain or full URL to fetch and scan for storage URLs,
    for example aws.amazon.com or https://aws.amazon.com.

Example Request

GET https://api.rsch.io/api/v1/recon/storage?domain=https://aws.amazon.com

Example Response

{ "status": "success", "request_id": "a8b45c6f-6ee5-420e-80bc-ab67e8cd27db", "date": "2025-11-26 07:47:11", "duration": 3.97259163670242, "data": { "input": "https://aws.amazon.com", "url": "https://aws.amazon.com", "final_url": "https://aws.amazon.com/", "status_code": 200, "host": "aws.amazon.com", "analysis": { "storage_endpoints": [ { "provider": "aws_s3", "bucket": "spot-bid-advisor", "host": "spot-bid-advisor.s3.amazonaws.com", "sample_url": "https://spot-bid-advisor.s3.amazonaws.com", "probe": { "status_code": 403, "content_type": "application/xml", "access_level": "ACCESS_DENIED_OR_PRIVATE", "public_readable": false, "error": null } }, { "provider": "aws_s3", "bucket": "aws-quickstart", "host": "aws-quickstart.s3.amazonaws.com", "sample_url": "https://aws-quickstart.s3.amazonaws.com", "probe": { "status_code": 403, "content_type": "application/xml", "access_level": "ACCESS_DENIED_OR_PRIVATE", "public_readable": false, "error": null } }, { "provider": "aws_s3", "bucket": "awsmedia", "host": "awsmedia.s3.amazonaws.com", "sample_url": "https://awsmedia.s3.amazonaws.com", "probe": { "status_code": 403, "content_type": "application/xml", "access_level": "ACCESS_DENIED_OR_PRIVATE", "public_readable": false, "error": null } }, { "provider": "aws_s3", "bucket": "spot-price", "host": "spot-price.s3.amazonaws.com", "sample_url": "https://spot-price.s3.amazonaws.com", "probe": { "status_code": 403, "content_type": "application/xml", "access_level": "ACCESS_DENIED_OR_PRIVATE", "public_readable": false, "error": null } } ], "summary": { "total_storage_hosts": 4, "public_readable_endpoints": 0, "provider_breakdown": { "aws_s3": 4 } } } } }
  • analysis.storage_endpoints lists discovered storage hosts and a sample URL for each.
  • probe.public_readable indicates whether the endpoint appears publicly readable.
Last updated on