> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cybedefend.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Get branches from vulnerability detections

> Retrieves distinct branch names found in SAST, SCA, and IAC vulnerability detections. Use this endpoint for projects that are not linked to GitHub or GitLab integrations.



## OpenAPI

````yaml get /project/{projectId}/branches
openapi: 3.0.0
info:
  title: Cybedefend API
  description: >-
    CybeDefend is an advanced API for application security analysis. Key
    features include OAuth 2.0 authentication, user/organization/project
    management, and REBAC-based permissions. It excels in static, dynamic, and
    IaC security analyses (SAST, DAST, IaC, etc.).
  version: '1.0'
  contact: {}
servers:
  - url: https://api-eu.cybedefend.com
    description: EU
  - url: https://api-us.cybedefend.com
    description: US
security: []
tags: []
paths:
  /project/{projectId}/branches:
    get:
      tags:
        - Results & Vulnerabilities
      summary: Get branches from vulnerability detections
      description: >-
        Retrieves distinct branch names found in SAST, SCA, and IAC
        vulnerability detections. Use this endpoint for projects that are not
        linked to GitHub or GitLab integrations.
      operationId: ResultController_getProjectBranches
      parameters:
        - name: projectId
          required: true
          in: path
          description: Project identifier
          schema:
            format: uuid
            type: string
      responses:
        '200':
          description: Branches retrieved successfully
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/GetProjectBranchesResponseDto'
        '400':
          description: Bad Request
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ErrorDto'
        '401':
          description: Unauthorized
          content:
            application/json:
              schema:
                example:
                  message: Unauthorized
                  statusCode: 401
                  timestamp: '2025-02-18T12:31:18.491Z'
                  path: /example/path
        '403':
          description: Forbidden
          content:
            application/json:
              schema:
                example:
                  message: Forbidden
                  statusCode: 403
                  timestamp: '2025-02-18T12:31:18.491Z'
                  path: /example/path
components:
  schemas:
    GetProjectBranchesResponseDto:
      type: object
      properties:
        projectId:
          type: string
          description: Project identifier
          format: uuid
          example: 550e8400-e29b-41d4-a716-446655440000
        branches:
          description: >-
            List of distinct branch names found in SAST, SCA, and IAC
            vulnerability detections
          example:
            - main
            - develop
            - feature/new-feature
          type: array
          items:
            type: string
      required:
        - projectId
        - branches
    ErrorDto:
      type: object
      properties:
        timestamp:
          type: string
          example: '2025-02-18T12:31:18.491Z'
          description: Timestamp of the error
        service:
          type: string
          example: AiService
          description: Name of the service where the error occurred
        method:
          type: string
          example: startConversation
          description: Method name where the error occurred
        message:
          type: string
          example: Invalid parameters provided
          description: Error message
        code:
          type: number
          example: 400
          description: HTTP status code
          minimum: 100
          maximum: 599
      required:
        - timestamp
        - service
        - method
        - message
        - code

````