List Builder
Turn scanner evidence into allow lists, block lists, and live API feeds.
Kommento List Builder is the action layer for your scans. Run Instant Crawl, SEO, Accessibility, Link Graph, IP Forensics, or SignalScope, review the evidence, then put approved domains into the lists your networks, apps, classrooms, analysts, and customers actually use.
- Build lists from scan evidence
- Allow, block, VLAN, school, vendor, and accessibility queues
- JSON, CSV, TXT, PDF, and scoped API feed workflows
The essential last mile
A scan is useful. A list is operational.
Scanner findings become much more valuable when they can move into the systems that enforce decisions. List Builder closes that gap. It lets your team convert reviewed domains into reusable policy lists, API feeds, exports, Studies, school lists, vendor lists, and accessibility review queues without rebuilding the same decisions in every tool.
This is why List Builder sits at the center of the Kommento process: scan the domain, prove the signal, approve the decision, then deliver the list where it matters.
GET /v1/lists/42/items.txt
Where lists come from
Every scanner becomes a list source.
List Builder is strongest because it does not start from a blank spreadsheet. It starts from signals your team already reviewed: trust score, risk tier, tracker count, cookie posture, accessibility findings, SEO issues, link graph evidence, IP Forensics context, SignalScope result slices, and analyst notes.
Fast domain decisions.
Add a domain after a trust, privacy, tracker, customer-service, or intent review so the decision can move into a reusable list.
Bulk market slices.
Turn a SignalScope history run into a list of matching domains for publisher research, vendor discovery, firewall review, or compliance queues.
Review and retest queues.
Keep accessibility-only lists for remediation, retesting, procurement evidence, assistive-technology review, or follow-up scans.
Search and architecture cohorts.
Build client, competitor, publisher, sitemap, migration, broken-link, and dependency cohorts from technical findings.
Case and watch lists.
Keep protected-profile matches, evidence targets, case domains, and monitoring candidates separate from ordinary operating lists.
Approve before deployment.
Use named lists, descriptions, tags, teams, and ownership so each feed stays understandable before it reaches an API key or export.
Build the list once, then deliver it everywhere it needs to work.
List Builder is the control point between intelligence and enforcement. Review the domain once, place it into the right list, choose the delivery format, then let approved systems pull the same decision instead of recreating it by hand.
Evidence, trust score, risk tier, tags, notes, and source module.
Approved domains for firewalls, DNS filters, school networks, apps, and vendors.
Distraction, risk, unsuitable-age, campaign exclusion, or threat-review domains.
Separate staff, student, guest, kiosk, vendor, and facility policy lists.
Assigned lists:read feeds in JSON, CSV, or TXT for live systems.
Export reviewed lists for spreadsheets, reports, tickets, audits, and handoffs.
Use cases
List Builder makes scan intelligence operational for every team that touches domains.
The same reviewed domain can mean different things to different teams. List Builder lets each group keep the right list without losing the evidence that justified the decision.
Networks, firewalls, and DNS filters
Build allow lists, block lists, DNS filter lists, and VLAN-specific feeds for schools, offices, guest networks, facilities, and managed customers.
- Firewall import and API feeds
- Staff, student, guest, and kiosk policies
- Clear source evidence for each domain
Apps, SaaS, and vendor governance
Track login domains, update endpoints, approved SaaS tools, supplier sites, app dependencies, and domains that need vendor review.
- Vendor allow lists
- Software dependency lists
- Risk and trust context
Schools, age groups, and research
Create school-safe lists, classroom research lists, age-based web lists, staff lists, assistive-technology queues, and supervised-use domain sets.
- Grade and age-based feeds
- Accessibility-only queues
- Research and curriculum lists
Delivery options
Download the list, publish it to an API key, or keep it as a living workspace.
List Builder supports both human workflows and system workflows. Teams can export a list for review, assign it to an API key for live delivery, or keep it inside the portal as a living workspace for scans, Studies, audits, remediation, and recurring review.
- Export reviewed list values as JSON, CSV, TXT, or PDF when available
- Assign lists to API keys with the
lists:readscope - Use list feeds for firewalls, DNS filters, appliances, apps, dashboards, and partner systems
- Keep evidence fields such as source module, trust score, risk tier, result count, and notes
- Maintain teams, ownership, and audit context for list publishing decisions
lists:read limits a key to assigned list feeds instead of broad scanner rights.
Workflow
The List Builder path keeps decisions evidence-backed from scan to system.
Every step has a job: scan, decide, organize, publish, and reuse. That makes List Builder more than a storage table. It is how domain intelligence becomes an operating process.
Scan or search
Use scanners or SignalScope to collect domain evidence and candidate domains.
Review the decision
Check trust, risk, accessibility, SEO, privacy, list purpose, and ownership.
Add to a list
Create allow, block, watch, vendor, school, VLAN, accessibility, or research lists.
Assign delivery
Download the list or assign it to an API key with the right scope and format.
Reuse the intelligence
Feed systems, update policies, support reports, and keep the list alive over time.
FAQ
List Builder questions.
Is List Builder only for block lists?
No. It can support allow lists, block lists, watch lists, vendor lists, school lists, VLAN lists, accessibility-only queues, research cohorts, and API-ready intelligence feeds.
Can domains come from other scanners?
Yes. List entries can come from portal scanner history, SignalScope result sets, manual review, and list-to-list workflows. The goal is to preserve the reviewed evidence behind each domain.
Can I download a list?
Yes. The portal supports list exports such as JSON, CSV, TXT, and PDF where available, so a list can move into spreadsheets, reports, tickets, or import tools.
How do API keys fit in?
Lists can be assigned to API keys for feed delivery. A key with lists:read can read assigned feeds without also needing broad scan creation rights.
What does list-feed delivery cost?
Building lists inside the portal is included as workflow tooling. API/feed delivery is metered at 1 credit per 1,000 feed requests or 10,000 records delivered.
Why is List Builder essential?
Because it turns intelligence into action. Scans find evidence, but List Builder converts reviewed domains into the allow lists, block lists, downloads, and API feeds that teams can actually use.
Make scanner evidence usable
Use List Builder as the operating layer for domain decisions.
Send the systems you need to feed, the domains you want to classify, the scanner evidence you trust, and whether your workflow needs downloads, API keys, firewall feeds, school lists, VLAN policies, vendor lists, or accessibility review queues.