Discovery Policies for Identifiers
Discovery policies give you precise control over subdomain enumeration. They define rules that determine which identifiers are automatically created or recommended and which patterns are ignored, letting you focus enumeration on the subdomains that matter to you and reduce noise in your Events feed.

Creating a Discovery Policy
Navigate to the Identifiers page and select the Policies tab.
Locate Identifiers Discovery Policies and select Create Identifier Discovery Policy.
In the Discovery Policy Terms field, enter the patterns you want to ignore to avoid the discovery of irrelevant subdomain identifiers. You can enter multiple patterns separated by commas.

Click Create Policy to save it.
Each policy appears in the Identifiers Discovery Policies list, showing its Identifier Types and Terms.
To edit a policy, select it from the list and edit its configuration.To remove a policy, select the delete icon on its card.
Disabling all Subdomain Enumeration
To stop subdomain enumeration entirely across all of your domain identifiers:
- Navigate to the Identifiers page and select the Policies tab.
- Locate Identifiers Discovery Policies and select Create Identifier Discovery Policy.
- In the Discovery Policy Terms field, enter *.
- Select Create Policy.
No new subdomains are enumerated while this policy is active. Subdomains that were already discovered are not removed. To stop monitoring them, delete those identifiers individually.
Ignoring Specific Patterns
When creating a discovery policy, you can define ignore patterns to exclude specific subdomains from enumeration. The following patterns are supported:
- *: Ignores all enumerated subdomains.
- *.domain.com: Ignores all enumerated subdomains under a specific domain, for example test.domain.com and dev.domain.com.
- api.*: Ignores the API subdomain across all domains, for example api.domain1.com and api.domain2.com.
These rules help fine-tune subdomain enumeration by excluding unnecessary or irrelevant Identifiers.
Creating a new policy does not affect previously discovered subdomains.