Programmatic access to threat feeds, intelligence reports, requirement data and entity information.
The API provides programmatic access to threat feeds, intelligence reports, requirement data and entity information, for custom integrations, automated workflows and connections into your existing security tooling.
All requests require an API key passed in the request header. Keys are generated from your account settings.
Authorization: Bearer YOUR_API_KEY
Retrieve threat feeds relevant to your requirements. Supports filtering by attack vector, severity and date range.
List and retrieve intelligence reports, including executive summaries, entity data and source citations.
Trigger on-demand report generation for specific threat feeds or requirement topics.
Query extracted entities: threat actors, malware families, CVEs and indicators of compromise.
Manage your Priority Intelligence Requirements: status, coverage and associated feed mappings.
Export intelligence in STIX 2.1 format for interoperability with other platforms and tools.
We are finalising comprehensive documentation with interactive examples, SDKs and integration guides. Subscribe to the newsletter to be notified when it lands.