---
title: "List all expenses"
url: "https://docs.unified.to/legal/expense/List_all_expenses"
description: "List all expenses with Unified's Expense API (GET /legal/{connection_id}/expense). Filter by limit, offset and updated_gte. Supported by 12 Expense integrations."
---
# List all expenses

 GET/legal/{connection\_id}/expense

## Parameters

**limit**number  default=100

**offset**number  default=0

**updated\_gte**date-time 

Return only results whose updated date is equal or greater to this value (ISO-8601 / YYYY-MM-DDTHH:MM:SSZ format)

**sort** enum

name

updated\_at

created\_at

**order** enum

asc

desc

**query**string 

Query string to search. eg. email address or name

**matter\_id**string 

The matter ID to filter by

**user\_id**string 

The user/employee ID to filter by (reference to HrisEmployee)

**type** enum

HARD\_COST

SOFT\_COST

OTHER

**fields**string array 

id

created\_at

updated\_at

matter\_id

user\_id

description

incurred\_at

quantity

price\_amount

total\_amount

currency

type

category

is\_billable

is\_billed

invoice\_id

expense\_code

metadata

raw

Fields to return

**raw**string 

Raw parameters to include in the 3rd-party request. Encoded as a URL component. eg. raw parameters: foo=bar&zoo=bar -> raw=foo%3Dbar%26zoo%3Dbar

**connection\_id**string  required 

ID of the connection

## Returns

[LegalExpense](https://docs.unified.to/legal/expense/model.md)array

**id**string 

**created\_at**date-time 

(ISO-8601 / YYYY-MM-DDTHH:MM:SSZ format)

**updated\_at**date-time 

(ISO-8601 / YYYY-MM-DDTHH:MM:SSZ format)

**matter\_id**string 

pointer to the Legal Matter this expense is recorded against

**user\_id**string 

HR Employee who incurred or recorded the expense (reference to HrisEmployee)

**description**string 

**incurred\_at**date-time 

date the expense was incurred (ISO-8601 / YYYY-MM-DDTHH:MM:SSZ format)

**quantity**number 

**price\_amount**number 

unit price

**total\_amount**number 

**currency**string 

**type** enum

Valid values:

 "HARD\_COST" 

 "SOFT\_COST" 

 "OTHER" 

**category**string 

the vendor's expense category name

**is\_billable**boolean 

**is\_billed**boolean 

**invoice\_id**string 

pointer to the Accounting Invoice this expense was billed on (reference to AccountingInvoice)

**expense\_code**string 

UTBMS/LEDES expense code

**metadata** array 

custom field values

**raw** 

## Errors

 Errors return the HTTP status code and a JSON body with `statusCode`, `error` (the short label) and `message` (a human-readable detail). 

```json
{
  "statusCode": 429,
  "error": "Too Many Requests",
  "message": "Too many requests to unified.to API; max requests per minute: N"
}
```

| Status | Error                 | Meaning                                           |
| ------ | --------------------- | ------------------------------------------------- |
| 400    | Bad Request           | The request was malformed or failed validation.   |
| 401    | Unauthorized          | The connection is likely broken; re-authorize it. |
| 403    | Forbidden             | The connection is missing permissions or scopes.  |
| 404    | Not Found             | The requested resource does not exist.            |
| 429    | Too Many Requests     | Rate limit exceeded (see the two sources below).  |
| 500    | Internal Server Error | An unexpected error occurred.                     |
| 501    | Not Implemented       | Not supported by this integration.                |

 Errors from the underlying integration pass through: the integration's status comes back as ours (429, 401, 403, 404 or 5xx), usually with its message. When the integration's error body is unclear, Unified extracts what it can and returns a clearer message. 

### 429 Too Many Requests

A 429 has two possible sources:

* The integration's own rate limit, passed through.
* Unified's workspace limit: a rolling 60 seconds, set by plan, with the message `Too many requests to unified.to API; max requests per minute: N`.

## Code Samples

### Node.js SDK

```javascript
import { UnifiedTo } from '@unified-api/typescript-sdk';

const sdk = new UnifiedTo({
    security: {
        jwt: '<YOUR_API_KEY_HERE>',
    },
});

const connectionId = '5de520f96e439b002043d8dc';

const results = await sdk.legal.listLegalExpenses({ connectionId, 
    limit: 50,
    offset: 0,
    updated_gte: '2026-10-11T02:29:56.272Z',
    sort: 'updated_at',
    order: 'asc',
    query: '',
    matter_id: '',
    user_id: '',
    type: '',
    fields: '',
    raw: '',
 });
```

### Node.js (axios)

```javascript
const options = {
  method: 'GET',
  url: 'https://api.unified.to/legal/5de520f96e439b002043d8dc/expense',
  headers: {
    authorization: 'bearer .....'
  },
  params: {
    limit: 50,
    offset: 0,
    updated_gte: '2026-10-11T02:29:56.272Z',
    sort: 'updated_at',
    order: 'asc',
    query: '',
    matter_id: '',
    user_id: '',
    type: '',
    fields: '',
    raw: '',
  }
};

const results = await axios.request(options);
```

### Java

```java
AsyncHttpClient client = new DefaultAsyncHttpClient();

client.prepare("GET", "https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw=")
  .setHeader("accept", "application/json")
  .setHeader("authorization", ".....")
  .execute()
  .toCompletableFuture()
  .thenAccept(System.out::println)
  .join();

client.close();
```

### Go

```go
import (
	"fmt"
	"net/http"
	"io/ioutil"
)

url := `https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw=

req, _ := http.NewRequest("GET", url, nil)

req.Header.Add("accept", "application/json")
req.Header.Add("authorization", ".....")

res, _ := http.DefaultClient.Do(req)

defer res.Body.Close()
body, _ := ioutil.ReadAll(res.Body)
```

### Python

```python
import requests

url = "https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw="

headers = {
    "accept": "application/json",
    "authorization": "....."
}

response = requests.get(url, headers=headers)
```

### PHP

```php
$curl = curl_init();

curl_setopt_array($curl, [
  CURLOPT_URL => "https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw=",
  CURLOPT_RETURNTRANSFER => true,
  CURLOPT_ENCODING => "",
  CURLOPT_MAXREDIRS => 10,
  CURLOPT_TIMEOUT => 30,
  CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
  CURLOPT_CUSTOMREQUEST => "GET",
  CURLOPT_HTTPHEADER => [
    "accept: application/json",
    "authorization: ....."
  ],
]);
```

### Ruby

```ruby
require 'uri'
require 'net/http'
require 'openssl'

url = URI("https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw=")

http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true

request = Net::HTTP::Get.new(url)
request["accept"] = 'application/json'
request["authorization"] = '....'

response = http.request(request)
puts response.read_body
```

### cURL

```bash
curl --request GET \
  --url 'https://api.unified.to/legal/5de520f96e439b002043d8dc/expense?limit=50&offset=0&updated_gte=2026-10-11T02:29:56.272Z&sort=updated_at&order=asc&query=&matter_id=&user_id=&type=&fields=&raw=' \
  --header 'accept: application/json' \
  --header 'authorization: .....'
```
