> ## Documentation Index
> Fetch the complete documentation index at: https://docs.instacloud.com/llms.txt
> Use this file to discover all available pages before exploring further.

# List org zones

> **Token scope:** `account` · `org` — read-only tokens allowed.

The org's BYO delegated zones, each with its nameservers and the sweeper's last is-it-pointed-yet observation (refreshed about every minute at small fleet sizes; no per-request DNS).



## OpenAPI

````yaml /openapi/org.json get /orgs/{orgId}/zones
openapi: 3.1.0
info:
  title: InstaCloud API — Organization level
  version: 0.1.0
  description: >-
    Endpoints under `/orgs/{orgId}`: members, projects, billing, domains.
    Callable with an account-wide token or a token bound to that organization.


    Generated from the platform's own OpenAPI document
    (https://api.instacloud.com/openapi.json); see the [API
    overview](/reference/api/overview) for authentication and token scopes.
servers:
  - url: https://api.instacloud.com
    description: InstaCloud
security:
  - bearerAuth: []
tags:
  - name: Organization
    description: 'The organization itself: name, members, invitations.'
  - name: Projects
    description: Projects inside an organization.
  - name: Audit
    description: The project's event timeline, including agent-ingested events.
  - name: Domains
    description: >-
      Domains bought through InstaCloud, bring-your-own zones and their DNS
      records.
  - name: Billing
    description: Usage, cycles, invoices and credits.
paths:
  /orgs/{orgId}/zones:
    get:
      tags:
        - Domains
      summary: List org zones
      description: >-
        **Token scope:** `account` · `org` — read-only tokens allowed.


        The org's BYO delegated zones, each with its nameservers and the
        sweeper's last is-it-pointed-yet observation (refreshed about every
        minute at small fleet sizes; no per-request DNS).
      operationId: listOrgZones
      parameters:
        - schema:
            format: uuid
            type: string
          in: path
          name: orgId
          required: true
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  items:
                    type: array
                    items:
                      $ref: '#/components/schemas/OrgZone'
                required:
                  - items
        '403':
          description: Default Response
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '404':
          description: Default Response
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '503':
          description: Default Response
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  schemas:
    OrgZone:
      type: object
      properties:
        domainName:
          type: string
        status:
          type: string
          enum:
            - awaiting_ns
            - active
          description: >-
            awaiting_ns: the zone is built and seeded by the provider's record
            scan — REVIEW its records (GET .../zones/:domainName/records; the
            scan finds common records, not necessarily all of them), add
            anything missing, then set the domain to `nameservers` at your
            registrar; active: the registry answers from the managed zone
        nameservers:
          description: >-
            the managed zone's assigned nameservers — what the customer sets at
            their registrar
          type: array
          items:
            type: string
        delegated:
          description: >-
            whether the domain's public nameservers answer from the managed
            zone, as of the platform's last periodic observation (about a
            minute); a domain pointed away after activation reads false again
            within the same window
          type: boolean
      required:
        - domainName
        - status
        - nameservers
        - delegated
    Error:
      type: object
      properties:
        error:
          type: string
      required:
        - error
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: Session access JWT or an API token (`insta_<prefix>_<secret>`).

````