---
title: "POST /api/audit-findings"
method: POST
path: "/api/audit-findings"
tags: ["Audit findings"]
---

# POST /api/audit-findings

`POST /api/audit-findings`

Record a finding of the caller's company on an audit it can open; 201 with the stored finding. 404 `not_found` for an audit the company cannot open. Migrated from the legacy audits-service POST /v1/audit-findings.

## Request body

- object
  - `auditId` string, required
  - `title` string, required
  - `description` string, nullable
  - `urgency` string, nullable
  - `impactAreaId` string, nullable

## Response `201`

Default Response

- object
  - `metadata` object, required
    - `success` boolean, required — True when the request succeeded.
  - `data` object, required
    - `id` string, required
    - `auditId` string, nullable, required
    - `companyId` string, required
    - `title` string, required
    - `description` string, nullable, required
    - `urgency` string, nullable, required
    - `impactAreaId` string, nullable, required
    - `source` string, nullable, required
    - `type` string, nullable, required
    - `isRemoved` boolean, required
    - `createdAt` string, nullable, required
    - `createdByUserId` string, nullable, required
    - `createdByCompanyId` string, nullable, required
    - `updatedAt` string, nullable, required
    - `updatedByUserId` string, nullable, required

## Other responses

- `400` — Default Response
- `401` — Default Response
- `403` — Default Response
- `404` — Default Response

## Changes

> 57 revisions in range; 1 not diffed.

- **2026-10-06** `6f6121dab5c2` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/retraced/apis/api-reference/changes/api/audit-findings/post.md)

---

[API](https://skmtc.dev/retraced/apis/api-reference.md) · [All operations](https://skmtc.dev/retraced/apis/api-reference/llms.txt) · [OpenAPI document](https://skmtc.dev/retraced/apis/api-reference/revisions/6f6121dab5c2?raw)
