---
title: Endpoint type | Wartiva GraphQL API
description: A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
url: https://wartiva.com/api-docs/types/endpoint.html
updated: 2026-10-07
---

Endpoints · GraphQL type

# `Endpoint` type

A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization. The Endpoint is the root of everything the agent collects from that computer: operating system and hardware details ([OsInfo](https://wartiva.com/api-docs/types/os-info.html), [SystemInfo](https://wartiva.com/api-docs/types/system-info.html)), installed software ([ApplicationInstall](https://wartiva.com/api-docs/types/application-install.html)), user accounts and groups ([EndpointUser](https://wartiva.com/api-docs/types/endpoint-user.html), [EndpointGroup](https://wartiva.com/api-docs/types/endpoint-group.html)), storage ([Disk](https://wartiva.com/api-docs/types/disk.html), [DiskMount](https://wartiva.com/api-docs/types/disk-mount.html)), running programs ([Executable](https://wartiva.com/api-docs/types/executable.html)), logons ([LogonSession](https://wartiva.com/api-docs/types/logon-session.html)), and security configuration such as [AccountPolicy](https://wartiva.com/api-docs/types/account-policy.html) and [Security](https://wartiva.com/api-docs/types/security.html). The collected graph objects link back to this Endpoint through their own `endpoint` field.

## Fields

| Field Name | Description |
|---|---|
| `id` - [`ID!`](https://wartiva.com/api-docs/types/id.html) | The Endpoint's unique identifier on the security graph. |
| `orgId` - [`OrganizationId!`](https://wartiva.com/api-docs/types/organization-id.html) | Unique identifier that corresponds to your deployment of this product or a specific customer account that this Endpoint belongs to. |
| `seen` - [`SeenOnline!`](https://wartiva.com/api-docs/types/seen-online.html) | Describes when this Endpoint was seen online. |
| `objectType` - [`GraphObjectType!`](https://wartiva.com/api-docs/types/graph-object-type.html) | The type of this graph object. |
| `objectTypeLabel` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A localized label describing the object type. |
| `displayName` - [`String!`](https://wartiva.com/api-docs/types/string.html) | A concise human-friendly identifier for this object suitable for display in user interface page titles and in AI chat responses that refer to the object. |
| `firstSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was first seen. |
| `lastSeen` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | Time this object was last seen. |
| `createdAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was created in the security graph. |
| `updatedAt` - [`Time!`](https://wartiva.com/api-docs/types/time.html) | The time this object was last mutated in the security graph. |
| `snapshotInfo` - [`GraphObjectSnapshotInfo!`](https://wartiva.com/api-docs/types/graph-object-snapshot-info.html) | Whether this object is a point-in-time snapshot of an object's state rather than the object's live state, and when that state was observed. |
| `enrollment` - [`EndpointEnrollment!`](https://wartiva.com/api-docs/types/endpoint-enrollment.html) | Information about the status of the Endpoint's enrollment with the service. |
| `issuesSummary` - [`IssuesSummary!`](https://wartiva.com/api-docs/types/issues-summary.html) | Summary of the active policy issues currently open on this Endpoint, broken down by severity. |
| `lastClientIp` - [`IpAddress`](https://wartiva.com/api-docs/types/ip-address.html) | Last public IP address used by Endpoint when connecting to the service. |
| `lastHeartBeat` - [`Time`](https://wartiva.com/api-docs/types/time.html) | Last time Endpoint was seen by the service. |
| `lastConnectedAt` - [`Time`](https://wartiva.com/api-docs/types/time.html) | Last time the Endpoint connected to the service. |
| `online` - [`OnlineStatus!`](https://wartiva.com/api-docs/types/online-status.html) | True if the Endpoint is currently connected to the service.graph types |
| `osInfo` - [`OsInfo`](https://wartiva.com/api-docs/types/os-info.html) | Basic information about the Endpoint's operating system. |
| `permissions` - [`EndpointPermissions`](https://wartiva.com/api-docs/types/endpoint-permissions.html) | Operating-system permissions granted to the endpoint agent. |
| `systemInfo` - [`SystemInfo`](https://wartiva.com/api-docs/types/system-info.html) | Basic system identification information for this Endpoint. |
| `tray` - [`EndpointTray`](https://wartiva.com/api-docs/types/endpoint-tray.html) | System-tray companion app status for this Endpoint. Null when the tray was never seen connected or the platform has no tray app. |
| `version` - [`EndpointVersion`](https://wartiva.com/api-docs/types/endpoint-version.html) | Version information about this product installed. |
| `accountPolicy` - [`AccountPolicy`](https://wartiva.com/api-docs/types/account-policy.html) | Returns the Endpoint AccountPolicy if available. |
| `activeDirectory` - [`ActiveDirectory`](https://wartiva.com/api-docs/types/active-directory.html) | Returns the Endpoint ActiveDirectory if available. |
| `administrativeTemplatesWindows` - [`AdministrativeTemplatesWindows`](https://wartiva.com/api-docs/types/administrative-templates-windows.html) | Returns the Endpoint AdministrativeTemplatesWindows if available. |
| `applicationInstalls` - [`ApplicationInstallConnection!`](https://wartiva.com/api-docs/types/application-install-connection.html) | Applications installed on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `applicationInstallsSeenOn` - [`ApplicationInstallConnection!`](https://wartiva.com/api-docs/types/application-install-connection.html) | Historical sightings of [ApplicationInstall](https://wartiva.com/api-docs/types/application-install.html) on this Endpoint. Each edge records when an install was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `arpTableEntries` - [`ArpTableEntryConnection!`](https://wartiva.com/api-docs/types/arp-table-entry-connection.html) | Layer-2 Address Resolution Protocol (ARP) table entries seen on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `arpTableEntriesSeen` - [`ArpTableEntryConnection!`](https://wartiva.com/api-docs/types/arp-table-entry-connection.html) | Historical sightings of [ArpTableEntry](https://wartiva.com/api-docs/types/arp-table-entry.html) on this Endpoint. Each edge records when the entry was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `auditPolicy` - [`AuditPolicy`](https://wartiva.com/api-docs/types/audit-policy.html) | Returns the Endpoint AuditPolicy if available. |
| `devicesSeen` - [`DeviceConnection!`](https://wartiva.com/api-docs/types/device-connection.html) | [Device](https://wartiva.com/api-docs/types/device.html) objects this Endpoint has had verifiable connectivity to. When timeRange is null the last 30 days will be returned. When timeRange is specified all entries seen in the time range are returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Optional time range filter. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) When true, the payload will include information about when the edge was seen in the relationship. The data set will be limited to the time range specified in the timeRange field. If includeSeen is true and timeRange is null then seen data for the default 7 day time range will be returned. |
| `diskMounts` - [`DiskMountConnection!`](https://wartiva.com/api-docs/types/disk-mount-connection.html) | Disk mount points on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `diskMountsSeen` - [`DiskMountConnection!`](https://wartiva.com/api-docs/types/disk-mount-connection.html) | Historical sightings of [DiskMount](https://wartiva.com/api-docs/types/disk-mount.html) configured on this Endpoint. Each edge records when the mount was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `disks` - [`DiskConnection!`](https://wartiva.com/api-docs/types/disk-connection.html) | Hard disks and other storage devices on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `disksSeen` - [`DiskConnection!`](https://wartiva.com/api-docs/types/disk-connection.html) | Historical sightings of [Disk](https://wartiva.com/api-docs/types/disk.html) attached to this Endpoint. Each edge records when the disk was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `executables` - [`ExecutableConnection!`](https://wartiva.com/api-docs/types/executable-connection.html) | Executable files observed running on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `executablesSeen` - [`ExecutableConnection!`](https://wartiva.com/api-docs/types/executable-connection.html) | Historical sightings of [Executable](https://wartiva.com/api-docs/types/executable.html) on this Endpoint. Each edge records when the executable was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `groups` - [`EndpointGroupConnection!`](https://wartiva.com/api-docs/types/endpoint-group-connection.html) | Groups found on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `groupsSeen` - [`EndpointGroupConnection!`](https://wartiva.com/api-docs/types/endpoint-group-connection.html) | Historical sightings of [EndpointGroup](https://wartiva.com/api-docs/types/endpoint-group.html) configured on this Endpoint. Each edge records when the group was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `interfaces` - [`InterfaceConnection!`](https://wartiva.com/api-docs/types/interface-connection.html) | Network interfaces on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `interfacesSeen` - [`InterfaceConnection!`](https://wartiva.com/api-docs/types/interface-connection.html) | Historical sightings of [Interface](https://wartiva.com/api-docs/types/interface.html) on this Endpoint. Each edge records when the interface was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `lastPosition` - [`PositionSeen`](https://wartiva.com/api-docs/types/position-seen.html) | The last position seen for this Endpoint. |
| `lastLogonSession` - [`LogonSession`](https://wartiva.com/api-docs/types/logon-session.html) | The most recent user to logon to this Endpoint. |
| `localPolicies` - [`LocalPolicies`](https://wartiva.com/api-docs/types/local-policies.html) | Returns the Endpoint LocalPolicies if available. |
| `logonSessions` - [`LogonSessionConnection!`](https://wartiva.com/api-docs/types/logon-session-connection.html) | Logon sessions seen on this Endpoint in the specified time range. When timeRange is null the last 30 days of logon sessions will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Optional time range filter. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) When true, the payload will include information about when the edge was seen in the relationship. The data set will be limited to the time range specified in the timeRange field. If includeSeen is true and timeRange is null then seen data for the default 7 day time range will be returned. |
| `networks` - [`NetworkConnection!`](https://wartiva.com/api-docs/types/network-connection.html) | Networks seen connected to this Endpoint. When timeRange is null the last 30 days will be returned. When timeRange is specified all entries seen in the time range are returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Optional time range filter. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) When true, the payload will include information about when the edge was seen in the relationship. The data set will be limited to the time range specified in the timeRange field. If includeSeen is true and timeRange is null then seen data for the default 7 day time range will be returned. |
| `paths` - [`EndpointPathConnection!`](https://wartiva.com/api-docs/types/endpoint-path-connection.html) | The [EndpointPath](https://wartiva.com/api-docs/types/endpoint-path.html) objects on this Endpoint — one per PathSensor that has reported data here. Each carries its sensor's configured path; the files a sensor discovered are listed by the object's `entries` field. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `portsSeen` - [`OpenPortConnection!`](https://wartiva.com/api-docs/types/open-port-connection.html) | [OpenPort](https://wartiva.com/api-docs/types/open-port.html) objects this Endpoint has seen. When timeRange is null the last 30 days will be returned. When timeRange is specified all entries seen in the time range are returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Optional time range filter. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) When true, the payload will include information about when the edge was seen in the relationship. The data set will be limited to the time range specified in the timeRange field. If includeSeen is true and timeRange is null then seen data for the default 7 day time range will be returned. |
| `primaryPosition` - [`PositionSeen`](https://wartiva.com/api-docs/types/position-seen.html) | The position this endpoint spent the most time at. |
| `processes` - [`ProcessesPayload!`](https://wartiva.com/api-docs/types/processes-payload.html) | List of running processes last seen on the Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `positions` - [`PositionSeenConnection!`](https://wartiva.com/api-docs/types/position-seen-connection.html) | Positions seen by this Endpoint in the specified time range. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Optional time range filter. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) When true, the payload will include information about when the edge was seen in the relationship. The data set will be limited to the time range specified in the timeRange field. If includeSeen is true and timeRange is null then seen data for the default 7 day time range will be returned. |
| `routes` - [`RouteConnection!`](https://wartiva.com/api-docs/types/route-connection.html) | Network routes on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `routesSeen` - [`RouteConnection!`](https://wartiva.com/api-docs/types/route-connection.html) | Historical sightings of [Route](https://wartiva.com/api-docs/types/route.html) on this Endpoint. Each edge records when the route was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `security` - [`Security`](https://wartiva.com/api-docs/types/security.html) | Returns the Endpoint Security if available. |
| `softwareUpdatePreferences` - [`SoftwareUpdatePreferences`](https://wartiva.com/api-docs/types/software-update-preferences.html) | Returns the Endpoint SoftwareUpdatePreferences if available. |
| `systemServices` - [`SystemServiceConnection!`](https://wartiva.com/api-docs/types/system-service-connection.html) | System services found on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `systemServicesSeen` - [`SystemServiceConnection!`](https://wartiva.com/api-docs/types/system-service-connection.html) | Historical sightings of [SystemService](https://wartiva.com/api-docs/types/system-service.html) on this Endpoint. Each edge records when the service was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `systemSettings` - [`SystemSettings`](https://wartiva.com/api-docs/types/system-settings.html) | Returns the Endpoint SystemSettings if available. |
| `users` - [`EndpointUserConnection!`](https://wartiva.com/api-docs/types/endpoint-user-connection.html) | Users found on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `usersSeen` - [`EndpointUserConnection!`](https://wartiva.com/api-docs/types/endpoint-user-connection.html) | Historical sightings of [EndpointUser](https://wartiva.com/api-docs/types/endpoint-user.html) configured on this Endpoint. Each edge records when the user was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `vulnerabilities` - [`PlatformVulnerabilities`](https://wartiva.com/api-docs/types/platform-vulnerabilities.html) | CPE identifiers determined for this endpoint's operating system and hardware and the CVEs they match in the vulnerability catalog. Null when the endpoint could not be identified precisely enough to match vulnerabilities accurately. See [PlatformVulnerabilities](https://wartiva.com/api-docs/types/platform-vulnerabilities.html). |
| `wlanInterfaces` - [`WlanInterfaceList!`](https://wartiva.com/api-docs/types/wlan-interface-list.html) | Wireless LAN interfaces on this Endpoint. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `wlanInterfacesSeen` - [`WlanInterfaceList!`](https://wartiva.com/api-docs/types/wlan-interface-list.html) | Historical sightings of [WlanInterface](https://wartiva.com/api-docs/types/wlan-interface.html) on this Endpoint. Each edge records when the interface was observed; pass timeRange to constrain the window. When timeRange is null the last 30 days will be returned. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. `timeRange` - [`DateTimeRangeInput`](https://wartiva.com/api-docs/types/date-time-range-input.html) Restrict edges to a date/time range. `includeSeen` - [`Boolean`](https://wartiva.com/api-docs/types/boolean.html) Include the per-edge seen series in the response. |
| `findings` - [`FindingsPayload!`](https://wartiva.com/api-docs/types/findings-payload.html) | Policy findings for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |
| `issues` - [`IssuesPayload!`](https://wartiva.com/api-docs/types/issues-payload.html) | Policy issues for this object. |
| Arguments `limit` - [`Int`](https://wartiva.com/api-docs/types/int.html) Maximum number of results to return. `skip` - [`Int`](https://wartiva.com/api-docs/types/int.html) Number of results to skip. |

## Returned by

- [`endpoint`](https://wartiva.com/api-docs/queries/endpoint.html) query: Retrieves an Endpoint by its graph object id: a Windows, macOS, or Linux computer running the Wartiva agent.

## Used by

- [`AccountPolicy`](https://wartiva.com/api-docs/types/account-policy.html) type: The local account password and lockout policy in effect on an Endpoint.
- [`ActiveDirectory`](https://wartiva.com/api-docs/types/active-directory.html) type: The Active Directory (AD) domain membership and directory-binding configuration of an Endpoint.
- [`AdministrativeTemplatesWindows`](https://wartiva.com/api-docs/types/administrative-templates-windows.html) type: The Group Policy Administrative Templates (ADMX) settings applied to a Windows Endpoint, read from the policy registry values those templates write.
- [`ApplicationInstall`](https://wartiva.com/api-docs/types/application-install.html) type: One installed copy of an application on one Endpoint.
- [`ArpTableEntry`](https://wartiva.com/api-docs/types/arp-table-entry.html) type: One entry in an Endpoint's neighbor cache: the IPv4 Address Resolution Protocol (ARP) table and, where the operating system reports it, the IPv6…
- [`AuditPolicy`](https://wartiva.com/api-docs/types/audit-policy.html) type: The security event auditing configuration of an Endpoint.
- [`Disk`](https://wartiva.com/api-docs/types/disk.html) type: A physical disk drive attached to an Endpoint, identified on that Endpoint by its operating-system drive ID (for example \\.\PhysicalDrive0 on…
- [`DiskMount`](https://wartiva.com/api-docs/types/disk-mount.html) type: A file system mounted on an Endpoint, identified by its device and mount point (for example C: on Windows or / on Linux and macOS).
- [`EndpointGroup`](https://wartiva.com/api-docs/types/endpoint-group.html) type: An operating system or domain group observed on an Endpoint.
- [`EndpointPath`](https://wartiva.com/api-docs/types/endpoint-path.html) type: The single graph object a PathSensor produces on an Endpoint, so an Endpoint has one EndpointPath per sensor that has reported data from it; list…
- [`EndpointUser`](https://wartiva.com/api-docs/types/endpoint-user.html) type: An operating system or domain user account observed on an Endpoint.
- [`Executable`](https://wartiva.com/api-docs/types/executable.html) type: A unique executable file observed running on an Endpoint, aggregating data across all observed processes that share the same file system path.
- [`Interface`](https://wartiva.com/api-docs/types/interface.html) type: A network interface (physical, virtual, loopback, or tunnel) on an Endpoint, collected from Windows, macOS, and Linux endpoints as part of the…
- [`LocalPolicies`](https://wartiva.com/api-docs/types/local-policies.html) type: The local security policy settings of an Endpoint.
- [`LogonSession`](https://wartiva.com/api-docs/types/logon-session.html) type: A user logon session observed on an Endpoint, identified by the username and the time the session started.
- [`PositionSeen`](https://wartiva.com/api-docs/types/position-seen.html) type: A geographic coordinate (latitude and longitude) where a managed Endpoint was observed, and the times it was seen there.
- [`Route`](https://wartiva.com/api-docs/types/route.html) type: One entry in an Endpoint's IP routing table, collected from Windows, macOS, and Linux endpoints as part of the periodic network inventory.
- [`Security`](https://wartiva.com/api-docs/types/security.html) type: The security posture of an Endpoint: its firewall, anti-malware and disk encryption state, summarized as per-component health ratings in Health.
- [`SensorRequestRun`](https://wartiva.com/api-docs/types/sensor-request-run.html) type: The record of one attempt to run a SensorRequest: when it ran, which sensor version ran it, which Endpoint ran it (none for PUBLIC-zone runs, which…
- [`SoftwareUpdatePreferences`](https://wartiva.com/api-docs/types/software-update-preferences.html) type: The operating system update configuration of an Endpoint and the updates currently available to it.
- [`SystemService`](https://wartiva.com/api-docs/types/system-service.html) type: A background service or daemon configured on an Endpoint.
- [`SystemSettings`](https://wartiva.com/api-docs/types/system-settings.html) type: The machine-wide operating system configuration of an Endpoint.
- [`WlanInterface`](https://wartiva.com/api-docs/types/wlan-interface.html) type: A wireless LAN (Wi-Fi) adapter on an Endpoint, collected from Windows, macOS, and Linux endpoints by the periodic Wi-Fi inventory.
- [`EndpointConnection`](https://wartiva.com/api-docs/types/endpoint-connection.html) type: Collection payload for Endpoint edges with total count.
- [`EndpointEdge`](https://wartiva.com/api-docs/types/endpoint-edge.html) type: Edge payload for an Endpoint with optional seen data.
- [`EndpointPayload`](https://wartiva.com/api-docs/types/endpoint-payload.html) type: Payload wrapper for a single Endpoint result.
- [`GraphObjectType`](https://wartiva.com/api-docs/types/graph-object-type.html) enum: An enumeration of the different types of security graph objects.
- [`GraphObjectTypeCategory`](https://wartiva.com/api-docs/types/graph-object-type-category.html) enum: High-level grouping used to organize GraphObjectType values in UI navigation and API discovery.
- [`ProprietaryCheckId`](https://wartiva.com/api-docs/types/proprietary-check-id.html) enum: A check that ships with the platform, run by a PROPRIETARY rule on its Schedule.
- [`RuleType`](https://wartiva.com/api-docs/types/rule-type.html) enum: Describes how a rule gathers the input its function evaluates.
- [`SensorRequestState`](https://wartiva.com/api-docs/types/sensor-request-state.html) type: Contains the current state of the SensorRequest.

## Related types

- [`AccountPolicy`](https://wartiva.com/api-docs/types/account-policy.html) The local account password and lockout policy in effect on an Endpoint.
- [`ActiveDirectory`](https://wartiva.com/api-docs/types/active-directory.html) The Active Directory (AD) domain membership and directory-binding configuration of an Endpoint.
- [`AdministrativeTemplatesWindows`](https://wartiva.com/api-docs/types/administrative-templates-windows.html) The Group Policy Administrative Templates (ADMX) settings applied to a Windows Endpoint, read from the policy registry values those templates write.
- [`ApplicationInstall`](https://wartiva.com/api-docs/types/application-install.html) One installed copy of an application on one Endpoint.
- [`ArpTableEntry`](https://wartiva.com/api-docs/types/arp-table-entry.html) One entry in an Endpoint's neighbor cache: the IPv4 Address Resolution Protocol (ARP) table and, where the operating system reports it, the IPv6…
- [`AuditPolicy`](https://wartiva.com/api-docs/types/audit-policy.html) The security event auditing configuration of an Endpoint.
- [`Device`](https://wartiva.com/api-docs/types/device.html) A physical or virtual device that does not run the Wartiva endpoint application but is visible on the network to a managed Endpoint, such as…
- [`Disk`](https://wartiva.com/api-docs/types/disk.html) A physical disk drive attached to an Endpoint, identified on that Endpoint by its operating-system drive ID (for example \\.\PhysicalDrive0 on…
- [`DiskMount`](https://wartiva.com/api-docs/types/disk-mount.html) A file system mounted on an Endpoint, identified by its device and mount point (for example C: on Windows or / on Linux and macOS).
- [`EndpointGroup`](https://wartiva.com/api-docs/types/endpoint-group.html) An operating system or domain group observed on an Endpoint.
- [`EndpointPath`](https://wartiva.com/api-docs/types/endpoint-path.html) The single graph object a PathSensor produces on an Endpoint, so an Endpoint has one EndpointPath per sensor that has reported data from it; list…
- [`EndpointUser`](https://wartiva.com/api-docs/types/endpoint-user.html) An operating system or domain user account observed on an Endpoint.
- [`Executable`](https://wartiva.com/api-docs/types/executable.html) A unique executable file observed running on an Endpoint, aggregating data across all observed processes that share the same file system path.
- [`Interface`](https://wartiva.com/api-docs/types/interface.html) A network interface (physical, virtual, loopback, or tunnel) on an Endpoint, collected from Windows, macOS, and Linux endpoints as part of the…
- [`LocalPolicies`](https://wartiva.com/api-docs/types/local-policies.html) The local security policy settings of an Endpoint.
- [`LogonSession`](https://wartiva.com/api-docs/types/logon-session.html) A user logon session observed on an Endpoint, identified by the username and the time the session started.
- [`OpenPort`](https://wartiva.com/api-docs/types/open-port.html) One TCP or UDP port at one IP address on a discovered Device, found by managed endpoints port-scanning the devices on their local networks and by…
- [`PositionSeen`](https://wartiva.com/api-docs/types/position-seen.html) A geographic coordinate (latitude and longitude) where a managed Endpoint was observed, and the times it was seen there.
- [`Route`](https://wartiva.com/api-docs/types/route.html) One entry in an Endpoint's IP routing table, collected from Windows, macOS, and Linux endpoints as part of the periodic network inventory.
- [`Security`](https://wartiva.com/api-docs/types/security.html) The security posture of an Endpoint: its firewall, anti-malware and disk encryption state, summarized as per-component health ratings in Health.
- [`SoftwareUpdatePreferences`](https://wartiva.com/api-docs/types/software-update-preferences.html) The operating system update configuration of an Endpoint and the updates currently available to it.
- [`SystemService`](https://wartiva.com/api-docs/types/system-service.html) A background service or daemon configured on an Endpoint.
- [`SystemSettings`](https://wartiva.com/api-docs/types/system-settings.html) The machine-wide operating system configuration of an Endpoint.
- [`WlanInterface`](https://wartiva.com/api-docs/types/wlan-interface.html) A wireless LAN (Wi-Fi) adapter on an Endpoint, collected from Windows, macOS, and Linux endpoints by the periodic Wi-Fi inventory.

## Example

### Example

```json
{
  "id": 4,
  "orgId": "615f3b3b28284380e28a7342",
  "seen": SeenOnline,
  "objectType": "ACCOUNT_POLICY",
  "objectTypeLabel": "xyz789",
  "displayName": "xyz789",
  "firstSeen": "2021-10-07T18:23:25.829Z",
  "lastSeen": "2021-10-07T18:23:25.829Z",
  "createdAt": "2021-10-07T18:23:25.829Z",
  "updatedAt": "2021-10-07T18:23:25.829Z",
  "snapshotInfo": GraphObjectSnapshotInfo,
  "enrollment": EndpointEnrollment,
  "issuesSummary": IssuesSummary,
  "lastClientIp": IpAddress,
  "lastHeartBeat": "2021-10-07T18:23:25.829Z",
  "lastConnectedAt": "2021-10-07T18:23:25.829Z",
  "online": "ONLINE",
  "osInfo": OsInfo,
  "permissions": EndpointPermissions,
  "systemInfo": SystemInfo,
  "tray": EndpointTray,
  "version": EndpointVersion,
  "accountPolicy": AccountPolicy,
  "activeDirectory": ActiveDirectory,
  "administrativeTemplatesWindows": AdministrativeTemplatesWindows,
  "applicationInstalls": ApplicationInstallConnection,
  "applicationInstallsSeenOn": ApplicationInstallConnection,
  "arpTableEntries": ArpTableEntryConnection,
  "arpTableEntriesSeen": ArpTableEntryConnection,
  "auditPolicy": AuditPolicy,
  "devicesSeen": DeviceConnection,
  "diskMounts": DiskMountConnection,
  "diskMountsSeen": DiskMountConnection,
  "disks": DiskConnection,
  "disksSeen": DiskConnection,
  "executables": ExecutableConnection,
  "executablesSeen": ExecutableConnection,
  "groups": EndpointGroupConnection,
  "groupsSeen": EndpointGroupConnection,
  "interfaces": InterfaceConnection,
  "interfacesSeen": InterfaceConnection,
  "lastPosition": PositionSeen,
  "lastLogonSession": LogonSession,
  "localPolicies": LocalPolicies,
  "logonSessions": LogonSessionConnection,
  "networks": NetworkConnection,
  "paths": EndpointPathConnection,
  "portsSeen": OpenPortConnection,
  "primaryPosition": PositionSeen,
  "processes": ProcessesPayload,
  "positions": PositionSeenConnection,
  "routes": RouteConnection,
  "routesSeen": RouteConnection,
  "security": Security,
  "softwareUpdatePreferences": SoftwareUpdatePreferences,
  "systemServices": SystemServiceConnection,
  "systemServicesSeen": SystemServiceConnection,
  "systemSettings": SystemSettings,
  "users": EndpointUserConnection,
  "usersSeen": EndpointUserConnection,
  "vulnerabilities": PlatformVulnerabilities,
  "wlanInterfaces": WlanInterfaceList,
  "wlanInterfacesSeen": WlanInterfaceList,
  "findings": FindingsPayload,
  "issues": IssuesPayload
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
