type. Name the call by its SIP call IDs and a time window. To trace a call by its CDR instead, use GET /domains/{domain}/cdrs/{id}/sipflow.by) in its territory. Office Manager and the other domain-tier scopes see calls that have their own domain as a party domain. User-tier scopes see only calls where their own user is the originating or terminating party. A call outside your scope answers the same 404 as a call that does not exist. A scope without the call-trace privilege gets 403; by default Office Manager, Reseller, Super User, and Super User Read Only hold it. Every call ID you send must match a CDR in your scope inside the window; call IDs that do not are ignored, and if none remain the answer is 404.k instead of start_time, end_time, and callids to open a stored trace made with POST /domains/{domain}/cdrs/{id}/sipflow/store. A share link needs no token, is read-only, and stops working when the share expires or is revoked. A share stored on another server of the cluster is opened by adding location.sql lists every call ID it covered. The window is widened to cover the whole of every call found. A trace holds both parties' numbers, every hop's address, and the raw SIP messages, so treat it as call metadata. In cradle_to_grave, steps outside your scope are removed: by territory for a Reseller, and by domain for the other scopes below Super User.call_trace, cradle_to_grave, and csv answer inside an event envelope, and call_trace_details answers the bare object. The other renderings answer a file of their own media type:type=csv&download=yes: a CSV file (text/csv, trace.csv)type=call_trace&download=yes: the SVG diagram (image/svg+xml, sipflow.svg)type=call_trace_html: an HTML viewer page (text/html); add download=yes for sip_flow.htmltype=call_trace_text: plain text (text/plain); add download=yes for sipflow.txt In call_trace_text, each block header shows its time as YYYY-MM-DD_HH:MM:SS in UTC, and csv rows show the same form, with the millisecond Unix time in UnixTsm.GET /sipflow?start_time=2026-09-01T14:30:00+00:00&end_time=2026-09-01T14:34:10+00:00&callids=0f1e2d3c4b5a69788796a5b4c3d2e1f0@192.0.2.10&type=call_traceGET /sipflow?start_time=2026-09-01T14:30:00+00:00&end_time=2026-09-01T14:34:10+00:00&callids=0f1e2d3c4b5a69788796a5b4c3d2e1f0@192.0.2.10&type=call_trace_detailsGET /sipflow?start_time=2026-09-01T14:30:00+00:00&end_time=2026-09-01T14:34:10+00:00&callids=0f1e2d3c4b5a69788796a5b4c3d2e1f0@192.0.2.10&type=cradle_to_graveGET /sipflow?start_time=2026-09-01T14:30:00+00:00&end_time=2026-09-01T14:34:10+00:00&callids=0f1e2d3c4b5a69788796a5b4c3d2e1f0@192.0.2.10&type=csv&download=yesGET /sipflow?k=202609019f86d081884c7d659a2feaa0c55ad015&type=call_trace_htmlAuthorization: Bearer ********************type asked for. The named examples show each shape; the file renderings are listed in the description.curl --location 'https://awqacore01.crexendocloud.com/ns-api/v2/sipflow?start_time=2026-09-01T14%3A30%3A00+00%3A00&end_time=2026-09-01T14%3A34%3A10+00%3A00&callids=0f1e2d3c4b5a69788796a5b4c3d2e1f0%40192.0.2.10&servers=core1.example.com&type=call_trace_details&download=yes&k=202609019f86d081884c7d659a2feaa0c55ad015&location=Y29yZTEuZXhhbXBsZS5jb20%3D&search_callids=yes&margin=10&ds=diag&show_attendees=no' \
--header 'Authorization: Bearer <token>'type=call_trace. The SVG is base64 inside the event envelope.{
"event": [
{
"sql": [
"0f1e2d3c4b5a69788796a5b4c3d2e1f0@192.0.2.10",
"20260901143000012345-6cc082866aafdc5dee7a480c2d339c76"
],
"svg": "PHN2ZyB3aWR0aD0iMTAwJSIgeG1sbnM9Imh0dHA6Ly93d3cudzMub3JnLzIwMDAvc3ZnIj48L3N2Zz4="
}
]
}