---
title: EndpointPath type | Wartiva GraphQL API
description: The single graph object a PathSensor produces on an Endpoint, so an Endpoint has one EndpointPath per sensor that has reported data from it.
url: https://wartiva.com/api-docs/types/endpoint-path.html
updated: 2026-10-07
---

File path sensors · GraphQL type

# `EndpointPath` type

The single graph object a [PathSensor](https://wartiva.com/api-docs/types/path-sensor.html) produces on an [Endpoint](https://wartiva.com/api-docs/types/endpoint.html), so an Endpoint has one EndpointPath per sensor that has reported data from it; list them with the Endpoint's `paths` field. Path sensors run on Windows, macOS, and Linux endpoints. Its `path` is the sensor's configured absolute path. The files the sensor discovered are not graph objects: each file's stat record and collected bytes are stored as this object's alternate data, listed through `entries` and fetched through `entry`. A file's stat record ([EndpointPathEntryStats](https://wartiva.com/api-docs/types/endpoint-path-entry-stats.html)) carries its size, timestamps, owner, mode, and checksum, with platform-specific detail such as ACLs and extended attributes in [EndpointPathWindows](https://wartiva.com/api-docs/types/endpoint-path-windows.html), [EndpointPathMacOS](https://wartiva.com/api-docs/types/endpoint-path-mac-os.html), or [EndpointPathLinux](https://wartiva.com/api-docs/types/endpoint-path-linux.html).

## Fields

| Field Name | Description |
|---|---|
| `id` - [`ID!`](https://wartiva.com/api-docs/types/id.html) | The EndpointPath's unique identifier on the security graph. |
| `orgId` - [`OrganizationId!`](https://wartiva.com/api-docs/types/organization-id.html) | Unique identifier that corresponds to your deployment of this product or a specific customer account that this EndpointPath belongs to. |
| `objectType` - [`GraphObjectType!`](https://wartiva.com/api-docs/types/graph-object-type.html) | The type of this graph object. |
| `objectTypeLabel` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A localized label describing the object type. |
| `displayName` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A concise human-friendly identifier for this object suitable for display in user interface page titles and in AI chat responses that refer to the object. |
| `firstSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was first seen. |
| `lastSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was last seen. |
| `seen` - [`SeenOnline!`](https://wartiva.com/api-docs/types/seen-online.html) | Describes when this EndpointPath was seen. |
| `createdAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was created in the security graph. |
| `updatedAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was last mutated in the security graph. |
| `snapshotInfo` - [`GraphObjectSnapshotInfo!`](https://wartiva.com/api-docs/types/graph-object-snapshot-info.html) | Whether this object is a point-in-time snapshot of an object's state rather than the object's live state, and when that state was observed. |
| `endpoint` - [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) | The Endpoint this EndpointPath was observed on if available. |
| `pathSensor` - [`PathSensor`](https://wartiva.com/api-docs/types/path-sensor.html) | The PathSensor configuration that produced this result if still available. |
| `path` - [`String!`](https://wartiva.com/api-docs/types/string.html) | The sensor's configured absolute path — the root the sensor scans, not an individual discovered file. Discovered file paths are listed by `entries`. |
| `entriesUpdatedAt` - [`Time`](https://wartiva.com/api-docs/types/time.html) | The last time this sensor's collected entries changed — stamped when a file report (a new or changed stat record, streamed contents, or a deletion) finishes committing. Null until the first report completes. |
| `entries` - [`EndpointPathEntriesPayload!`](https://wartiva.com/api-docs/types/endpoint-path-entries-payload.html) | The paths this sensor has discovered on the endpoint, in ascending path order, without reading any file data. Each entry only names one discovered file; retrieve its stat record with the separate [endpointPathEntryStats](https://wartiva.com/api-docs/queries/endpoint-path-entry-stats.html) query (a deleted file stays listed — its stat record's `deleted` is true) and its collected bytes with [endpointPathEntryContents](https://wartiva.com/api-docs/queries/endpoint-path-entry-contents.html). |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of entries to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of entries to skip. |
| `entry` - [`EndpointPathEntry`](https://wartiva.com/api-docs/types/endpoint-path-entry.html) | The discovered entry for one exact file path, or null when the sensor has never reported that path. A cheap existence probe — no file data is read; see [endpointPathEntryStats](https://wartiva.com/api-docs/queries/endpoint-path-entry-stats.html) and [endpointPathEntryContents](https://wartiva.com/api-docs/queries/endpoint-path-entry-contents.html) for the file's stat record and bytes. |
| Arguments `path` - [`String!`](https://wartiva.com/api-docs/types/string.html) The absolute file path exactly as reported by the endpoint. |
| `findings` - [`FindingsPayload!`](https://wartiva.com/api-docs/types/findings-payload.html) | Policy findings for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `issues` - [`IssuesPayload!`](https://wartiva.com/api-docs/types/issues-payload.html) | Policy issues for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `issuesSummary` - [`IssuesSummary!`](https://wartiva.com/api-docs/types/issues-summary.html) | Summary of the active policy issues currently open on this object, broken down by severity. |

## Returned by

- [`endpointPath`](https://wartiva.com/api-docs/queries/endpoint-path.html) query: Retrieves an EndpointPath by its graph object id: the files a configured PathSensor found under its path on one endpoint, with each file's stat…

## Used by

- [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) type: A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
- [`EndpointPathConnection`](https://wartiva.com/api-docs/types/endpoint-path-connection.html) type: Collection payload for EndpointPath edges with total count.
- [`EndpointPathEdge`](https://wartiva.com/api-docs/types/endpoint-path-edge.html) type: Edge payload for an EndpointPath with optional seen data.
- [`EndpointPathEntrySearchMatch`](https://wartiva.com/api-docs/types/endpoint-path-entry-search-match.html) type: One path search match: a discovered file entry together with the EndpointPath whose sensor collected it.
- [`EndpointPathPayload`](https://wartiva.com/api-docs/types/endpoint-path-payload.html) type: Payload wrapper for a single EndpointPath.
- [`GraphObjectType`](https://wartiva.com/api-docs/types/graph-object-type.html) enum: An enumeration of the different types of security graph objects.
- [`GraphObjectTypeCategory`](https://wartiva.com/api-docs/types/graph-object-type-category.html) enum: High-level grouping used to organize GraphObjectType values in UI navigation and API discovery.
- [`RuleType`](https://wartiva.com/api-docs/types/rule-type.html) enum: Describes how a rule gathers the input its function evaluates.

## Related types

- [`Endpoint`](https://wartiva.com/api-docs/types/endpoint.html) A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
- [`PathSensor`](https://wartiva.com/api-docs/types/path-sensor.html) An organization-wide instruction telling endpoints to collect file metadata under one filesystem path.

## Example

### Example

```json
{
  "id": "4",
  "orgId": "615f3b3b28284380e28a7342",
  "objectType": "ACCOUNT_POLICY",
  "objectTypeLabel": "xyz789",
  "displayName": "abc123",
  "firstSeen": "2021-10-07T18:23:25.829Z",
  "lastSeen": "2021-10-07T18:23:25.829Z",
  "seen": SeenOnline,
  "createdAt": "2021-10-07T18:23:25.829Z",
  "updatedAt": "2021-10-07T18:23:25.829Z",
  "snapshotInfo": GraphObjectSnapshotInfo,
  "endpoint": Endpoint,
  "pathSensor": PathSensor,
  "path": "abc123",
  "entriesUpdatedAt": "2021-10-07T18:23:25.829Z",
  "entries": EndpointPathEntriesPayload,
  "entry": EndpointPathEntry,
  "findings": FindingsPayload,
  "issues": IssuesPayload,
  "issuesSummary": IssuesSummary
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
