---
title: "GET /JSON/accessControl/action/scan/"
method: GET
path: "/JSON/accessControl/action/scan/"
tags: ["accessControl"]
---

# GET /JSON/accessControl/action/scan/

`GET /JSON/accessControl/action/scan/`

Starts an Access Control scan with the given context ID and user ID. (Optional parameters: user ID for Unauthenticated user, boolean identifying whether or not Alerts are raised, and the Risk level for the Alerts.) [This assumes the Access Control rules were previously established via ZAP gui and the necessary Context exported/imported.]

## Response `default`

Error of JSON endpoints.

- ErrorJson
  - `code` string, required
  - `message` string, required
  - `detail` string

## Changes

> 4 revisions in range; 1 could not be searched.

- **2023-09-29** `3a1d8df7169d` — 1 info
  - endpoint added
- **2019-10-10** `c7cc14d831c3` — 1 breaking
  - api path removed without deprecation

[Change history](https://skmtc.dev/zaproxy/apis/zap-api/changes/JSON/accessControl/action/scan/get.md)

---

[API](https://skmtc.dev/zaproxy/apis/zap-api.md) · [All operations](https://skmtc.dev/zaproxy/apis/zap-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/zaproxy/zap-api/revisions/bbb71f68ed4c/schema)
