# Read an IP monitor and its last results

`GET /api/v1/ip/monitors/{monitorId}`

- Authentication: Secret API key as a bearer token
- Billing: Free.
- Group: IP

The monitor plus `results`: for every address from the last run, its status (`clean`, `flagged` or `reserved`), the flags that fired (`blocklisted`, `tor`, `high_risk`), the list that names it, its score and level, and whether the status changed since the previous run; keyed by the address in canonical form, or null until the first run has finished. A monitor that belongs to another account answers `404`.

## Parameters

| Name | In | Type | Required | Description |
| --- | --- | --- | --- | --- |
| `monitorId` | path | integer | yes | The monitor's id from the list endpoint. |

## Example request

```bash
curl https://spaw.co/api/v1/ip/monitors/4 \
  -H "Authorization: Bearer sk_live_…"
```

## Responses

### 200 — The monitor.

```json
{
    "success": true,
    "data": {
        "monitor": {
            "id": 4,
            "name": "Mail servers",
            "cadence": "daily",
            "ip_count": 2,
            "next_run_at": "2026-09-06T08:00:00+00:00",
            "last_run_at": "2026-09-05T08:00:03+00:00",
            "last_summary": {
                "total": 2,
                "clean": 1,
                "flagged": 1,
                "reserved": 0,
                "changed": 1,
                "newly_flagged": 1,
                "credits_used": 0,
                "stopped_reason": null
            },
            "created_at": "2026-08-27T08:00:00+00:00",
            "results": {
                "203.0.113.25": {
                    "status": "flagged",
                    "flags": [
                        "blocklisted",
                        "high_risk"
                    ],
                    "blocklist": "Spamhaus DROP",
                    "risk_score": 80,
                    "risk_level": "high",
                    "changed": true
                },
                "2001:db8::25": {
                    "status": "clean",
                    "flags": [],
                    "blocklist": null,
                    "risk_score": 0,
                    "risk_level": "low",
                    "changed": false
                }
            }
        }
    }
}
```

### 401 — The key is missing, malformed, or revoked.

```json
{
    "success": false,
    "error": {
        "code": "UNAUTHENTICATED",
        "message": "Provide a valid API key as a bearer token.",
        "request_id": "req_01m1kgdm4xngzmbmff68g94w0c"
    }
}
```

### 404 — No such record on this account.

```json
{
    "message": "Not Found"
}
```

### 429 — Over 5 requests per second for the key. Retry after the limit resets.

```json
{
    "success": false,
    "error": {
        "code": "RATE_LIMITED",
        "message": "Too many requests. Retry after the limit resets.",
        "request_id": "req_01m1kgdm4xngzmbmff68g94w0c"
    }
}
```

## Error codes

- `UNAUTHENTICATED` — https://spaw.co/docs/errors/UNAUTHENTICATED
- `RATE_LIMITED` — https://spaw.co/docs/errors/RATE_LIMITED

---

Canonical page: https://spaw.co/docs/api/get-ip-monitor · OpenAPI document: https://spaw.co/openapi.json · All endpoints: https://spaw.co/docs/api
