> ## Documentation Index
> Fetch the complete documentation index at: https://docs.prisme.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Detect anomalies in errors, latency, and traffic

> Compares the most recent hour against a 7-day rolling baseline
and surfaces alerts for error spikes, latency regressions, and
no-traffic conditions. Sensitivity controls the multiplier on
baseline thresholds.

Requires `observability:read` permission. Rate-limited to 100
calls per minute.




## OpenAPI

````yaml /api-reference/ai-governance-v2/swagger.yml get /v1/observability/{workspaceId}/issues
openapi: 3.0.3
info:
  version: 1.0.0
  title: AI Governance API
  description: |
    Public REST API for the Prisme.ai AI Governance workspace -
    announcements, legal documents, notifications, observability
    dashboards, audit logs, and active-org listing.
  contact:
    name: Prisme.ai
    url: https://prisme.ai
servers:
  - url: https://{host}/v2/workspaces/slug:ai-governance-v2/webhooks
    description: Prisme.ai workspace webhooks
    variables:
      host:
        default: api.studio.prisme.ai
        description: API host (override for self-hosted or sandbox)
security:
  - BearerAuth: []
  - OrgApiKeyAuth: []
tags:
  - name: Announcements
    description: Platform announcements (CRUD + audience targeting).
  - name: Legal
    description: Versioned legal documents (terms, privacy, etc.).
  - name: Notifications
    description: Per-user notifications derived from announcements.
  - name: Observability
    description: >-
      Cross-workspace and per-workspace observability dashboards, traces, and
      feeds.
  - name: Orgs
    description: Organization listing and audit logs.
paths:
  /v1/observability/{workspaceId}/issues:
    parameters:
      - in: path
        name: workspaceId
        required: true
        schema:
          type: string
          maxLength: 64
          pattern: ^[a-zA-Z0-9_-]+$
        description: Workspace identifier.
    get:
      tags:
        - Observability
      summary: Detect anomalies in errors, latency, and traffic
      description: |
        Compares the most recent hour against a 7-day rolling baseline
        and surfaces alerts for error spikes, latency regressions, and
        no-traffic conditions. Sensitivity controls the multiplier on
        baseline thresholds.

        Requires `observability:read` permission. Rate-limited to 100
        calls per minute.
      operationId: getWorkspaceIssues
      parameters:
        - in: query
          name: sensitivity
          schema:
            type: string
            enum:
              - low
              - medium
              - high
            maxLength: 10
          description: Detection sensitivity (default `medium`).
      responses:
        '200':
          description: Issue analysis.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/WorkspaceIssues'
        '400':
          description: Validation error.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '401':
          description: Unauthenticated.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '403':
          description: Forbidden - missing `observability:read` permission.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '429':
          description: Rate limit exceeded.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  schemas:
    WorkspaceIssues:
      type: object
      properties:
        workspaceId:
          type: string
        analyzedAt:
          type: string
          format: date-time
        sensitivity:
          type: string
          enum:
            - low
            - medium
            - high
        baseline:
          type: object
          properties:
            period:
              type: string
            avgExecsPerHour:
              type: number
            avgErrorsPerHour:
              type: number
            avgLatencyMs:
              type: number
        recent:
          type: object
          properties:
            period:
              type: string
            executions:
              type: integer
            errors:
              type: integer
            avgLatencyMs:
              type: number
        issueCount:
          type: integer
        issues:
          type: array
          items:
            $ref: '#/components/schemas/IssueAlert'
        status:
          type: string
          enum:
            - alert
            - healthy
    Error:
      type: object
      required:
        - error
        - message
      properties:
        error:
          type: string
          description: >-
            Stable PascalCase error code (e.g. AnnouncementNotFound,
            ValidationError).
        message:
          type: string
          description: Human-readable error message.
        details:
          type: object
          description: Optional structured context.
          additionalProperties: true
    IssueAlert:
      type: object
      properties:
        type:
          type: string
          enum:
            - error_spike
            - latency_issue
            - no_traffic
        severity:
          type: string
          enum:
            - warning
            - critical
        message:
          type: string
        current:
          type: number
        baseline:
          type: number
        threshold:
          type: number
  securitySchemes:
    BearerAuth:
      type: http
      scheme: bearer
      bearerFormat: JWT
      description: |
        User-bound credential carrying an identity: either a session JWT
        or a user access token (`at:*`) generated from the user settings UI.
        Send as `Authorization: Bearer <token>`.
        Org API keys (`iak_*`) are **not** accepted here - they carry
        no user identity. Use the `x-prismeai-api-key` header instead
        (see `OrgApiKeyAuth`).
    OrgApiKeyAuth:
      type: apiKey
      in: header
      name: x-prismeai-api-key
      description: |
        Organization API key (`iak_{orgSlug}_{uuid}`), managed from the
        AI Governance UI. Unlike `Authorization: Bearer`, this credential
        is **not** tied to a user identity - it is bound to the org and
        its effective access is defined by the scopes / permission rules
        attached to it (it can be restricted to a single project, or kept
        broader - e.g. usable across AI Governance, Agent Factory and
        LLM Gateway).
        Send as `x-prismeai-api-key: iak_...`.

````