Skip to main content
POST
QR Code Scan
QR Code Scan decodes a base64-encoded image and checks the extracted content for suspicious links and other threats.

Authentication

Send your API key as Authorization: Bearer <key>.

Request

string
required
Set this value to qr.
string
required
The base64-encoded QR code image. Do not include a data URL prefix.
string
The original image file name.
boolean
Set to true to include STIX 2.1 output when available. Defaults to false.

Example request

Example response

QR code result fields

object[]
Codes decoded from the image, including each code’s format and text.
string[]
Security signals found in the decoded content.
See Malware Scan for the complete response schema and shared fields.

Errors

The API returns 400 for invalid base64 content or an unreadable image, 401 for a missing or invalid API key, 402 when your account has insufficient credits, and 429 when you exceed a rate limit.

Credits

A successful scan costs 1 credit. Repeating the same scan kind and content is deduplicated for billing.