---
title: Intel
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/python)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# Intel

#### IntelASN

##### [Get ASN Overview.](https://developers.cloudflare.com/api/python/resources/intel/subresources/asn/methods/get)

intel.asn.get([ASN](<https://developers.cloudflare.com/api/python/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)asn, ASNGetParams\*\*kwargs) -> [ASN](<https://developers.cloudflare.com/api/python/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/asn/{asn}

#### IntelASNSubnets

##### [Get ASN Subnets](https://developers.cloudflare.com/api/python/resources/intel/subresources/asn/subresources/subnets/methods/get)

intel.asn.subnets.get([ASN](<https://developers.cloudflare.com/api/python/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)asn, SubnetGetParams\*\*kwargs) -> [SubnetGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/asn/{asn}/subnets

##### ModelsExpand Collapse

<details>

<summary>

class SubnetGetResponse: …

</summary>

asn: Optional\[ASN]

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20asn">Link to this property</a>

count: Optional\[float]

Total results returned based on your search parameters.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

ip\_count\_total: Optional\[int]

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20ip_count_total">Link to this property</a>

page: Optional\[float]

Current page within paginated list of results.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page: Optional\[float]

Number of results per page of results.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

subnets: Optional\[List\[str]]

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)>)

#### IntelDNS

##### [Get Passive DNS by IP](https://developers.cloudflare.com/api/python/resources/intel/subresources/dns/methods/list)

intel.dns.list(DNSListParams\*\*kwargs) -> SyncV4PagePagination\[Optional\[DNS]]

GET/accounts/{account\_id}/intel/dns

##### ModelsExpand Collapse

<details>

<summary>

class DNS: …

</summary>

count: Optional\[float]

Total results returned based on your search parameters.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

page: Optional\[float]

Current page within paginated list of results.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page: Optional\[float]

Number of results per page of results.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

<details>

<summary>

reverse\_records: Optional\[List\[ReverseRecord]]

Reverse DNS look-ups observed during the time period.

</summary>

first\_seen: Optional\[date]

First seen date of the DNS record during the time period.

formatdate

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20first_seen">Link to this property</a>

hostname: Optional\[str]

Hostname that the IP was observed resolving to.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20hostname">Link to this property</a>

last\_seen: Optional\[date]

Last seen date of the DNS record during the time period.

formatdate

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20last_seen">Link to this property</a>

</details>

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)>)

#### IntelDomains

##### [Get Domain Details](https://developers.cloudflare.com/api/python/resources/intel/subresources/domains/methods/get)

intel.domains.get(DomainGetParams\*\*kwargs) -> [Domain](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/domain

##### ModelsExpand Collapse

<details>

<summary>

class Domain: …

</summary>

<details>

<summary>

additional\_information: Optional\[AdditionalInformation]

Additional information related to the host name.

</summary>

suspected\_malware\_family: Optional\[str]

Suspected DGA malware family.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20additional_information%20%3E%20(property)%20suspected_malware_family">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20additional_information">Link to this property</a>

<details>

<summary>

application: Optional\[Application]

Application that the hostname belongs to.

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application">Link to this property</a>

<details>

<summary>

content\_categories: Optional\[List\[ContentCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories">Link to this property</a>

domain: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

<details>

<summary>

inherited\_content\_categories: Optional\[List\[InheritedContentCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories">Link to this property</a>

inherited\_from: Optional\[str]

Domain from which <code>inherited_content_categories</code> and <code>inherited_risk_types</code> are inherited, if applicable.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_from">Link to this property</a>

<details>

<summary>

inherited\_risk\_types: Optional\[List\[InheritedRiskType]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types">Link to this property</a>

popularity\_rank: Optional\[int]

Global Cloudflare 100k ranking for the last 30 days, if available for the hostname. The top ranked domain is 1, the lowest ranked domain is 100,000.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20popularity_rank">Link to this property</a>

<details>

<summary>

resolves\_to\_refs: Optional\[List\[ResolvesToRef]]

Specifies a list of references to one or more IP addresses or domain names that the domain name currently resolves to.

</summary>

id: Optional\[str]

STIX 2.1 identifier: <a href="https://docs.oasis-open.org/cti/stix/v2.1/cs02/stix-v2.1-cs02.html#_64yvzeku5a5c">https://docs.oasis-open.org/cti/stix/v2.1/cs02/stix-v2.1-cs02.html#\_64yvzeku5a5c</a>.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

value: Optional\[str]

IP address or domain name.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs">Link to this property</a>

risk\_score: Optional\[float]

Hostname risk score, which is a value between 0 (lowest risk) to 1 (highest risk).

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_score">Link to this property</a>

<details>

<summary>

risk\_types: Optional\[List\[RiskType]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)>)

#### IntelDomainsBulks

##### [Get Multiple Domain Details](https://developers.cloudflare.com/api/python/resources/intel/subresources/domains/subresources/bulks/methods/get)

intel.domains.bulks.get(BulkGetParams\*\*kwargs) -> [BulkGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/domain/bulk

##### ModelsExpand Collapse

<details>

<summary>

Optional\[List\[BulkGetResponseItem]]

</summary>

<details>

<summary>

additional\_information: Optional\[BulkGetResponseItemAdditionalInformation]

Additional information related to the host name.

</summary>

suspected\_malware\_family: Optional\[str]

Suspected DGA malware family.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20additional_information%20%3E%20(property)%20suspected_malware_family">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20additional_information">Link to this property</a>

<details>

<summary>

application: Optional\[BulkGetResponseItemApplication]

Application that the hostname belongs to.

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application">Link to this property</a>

<details>

<summary>

content\_categories: Optional\[List\[BulkGetResponseItemContentCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories">Link to this property</a>

domain: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20domain">Link to this property</a>

<details>

<summary>

inherited\_content\_categories: Optional\[List\[BulkGetResponseItemInheritedContentCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories">Link to this property</a>

inherited\_from: Optional\[str]

Domain from which <code>inherited_content_categories</code> and <code>inherited_risk_types</code> are inherited, if applicable.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_from">Link to this property</a>

<details>

<summary>

inherited\_risk\_types: Optional\[List\[BulkGetResponseItemInheritedRiskType]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types">Link to this property</a>

popularity\_rank: Optional\[int]

Global Cloudflare 100k ranking for the last 30 days, if available for the hostname. The top ranked domain is 1, the lowest ranked domain is 100,000.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20popularity_rank">Link to this property</a>

risk\_score: Optional\[float]

Hostname risk score, which is a value between 0 (lowest risk) to 1 (highest risk).

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_score">Link to this property</a>

<details>

<summary>

risk\_types: Optional\[List\[BulkGetResponseItemRiskType]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)>)

#### IntelDomain History

##### [Get Domain History](https://developers.cloudflare.com/api/python/resources/intel/subresources/domain_history/methods/get)

intel.domain\_history.get(DomainHistoryGetParams\*\*kwargs) -> [DomainHistoryGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/domain-history

##### ModelsExpand Collapse

<details>

<summary>

class DomainHistory: …

</summary>

<details>

<summary>

categorizations: Optional\[List\[Categorization]]

</summary>

<details>

<summary>

categories: Optional\[List\[CategorizationCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories">Link to this property</a>

end: Optional\[date]

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20end">Link to this property</a>

start: Optional\[date]

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20start">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations">Link to this property</a>

domain: Optional\[str]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)>)

<details>

<summary>

Optional\[List\[<a href="https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)">DomainHistory</a>]]

</summary>

<details>

<summary>

categorizations: Optional\[List\[Categorization]]

</summary>

<details>

<summary>

categories: Optional\[List\[CategorizationCategory]]

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories">Link to this property</a>

end: Optional\[date]

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20end">Link to this property</a>

start: Optional\[date]

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20start">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations">Link to this property</a>

domain: Optional\[str]

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history_get_response%20%3E%20(schema)>)

#### IntelIPs

##### [Get IP Overview](https://developers.cloudflare.com/api/python/resources/intel/subresources/ips/methods/get)

intel.ips.get(IPGetParams\*\*kwargs) -> [IPGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.ips%20%3E%20(model)%20ip_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/ip

##### ModelsExpand Collapse

<details>

<summary>

class IP: …

</summary>

<details>

<summary>

belongs\_to\_ref: Optional\[BelongsToRef]

Specifies a reference to the autonomous systems (AS) that the IP address belongs to.

</summary>

id: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20id">Link to this property</a>

country: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20country">Link to this property</a>

description: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

type: Optional\[Literal\["hosting\_provider", "isp", "organization"]]

Infrastructure type of this ASN.

</summary>

One of the following:

"hosting\_provider"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%200">Link to this property</a>

"isp"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%201">Link to this property</a>

"organization"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type">Link to this property</a>

value: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref">Link to this property</a>

ip: Optional\[str]

formatipv4

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20ip">Link to this property</a>

<details>

<summary>

risk\_types: Optional\[List\[RiskType]]

</summary>

id: Optional\[float]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[float]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)>)

<details>

<summary>

Optional\[List\[<a href="https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)">IP</a>]]

</summary>

<details>

<summary>

belongs\_to\_ref: Optional\[BelongsToRef]

Specifies a reference to the autonomous systems (AS) that the IP address belongs to.

</summary>

id: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20id">Link to this property</a>

country: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20country">Link to this property</a>

description: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

type: Optional\[Literal\["hosting\_provider", "isp", "organization"]]

Infrastructure type of this ASN.

</summary>

One of the following:

"hosting\_provider"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%200">Link to this property</a>

"isp"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%201">Link to this property</a>

"organization"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type">Link to this property</a>

value: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref">Link to this property</a>

ip: Optional\[str]

formatipv4

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20ip">Link to this property</a>

<details>

<summary>

risk\_types: Optional\[List\[RiskType]]

</summary>

id: Optional\[float]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id: Optional\[float]

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ips%20%3E%20(model)%20ip_get_response%20%3E%20(schema)>)

#### IntelIP Lists

##### ModelsExpand Collapse

<details>

<summary>

class IPList: …

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

description: Optional\[str]

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)>)

#### IntelMiscategorizations

##### [Create Miscategorization](https://developers.cloudflare.com/api/python/resources/intel/subresources/miscategorizations/methods/create)

intel.miscategorizations.create(MiscategorizationCreateParams\*\*kwargs) -> [MiscategorizationCreateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)>)

POST/accounts/{account\_id}/intel/miscategorization

##### ModelsExpand Collapse

<details>

<summary>

class MiscategorizationCreateResponse: …

</summary>

<details>

<summary>

errors: List\[Error]

</summary>

code: int

minimum1000

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20code">Link to this property</a>

message: str

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20message">Link to this property</a>

documentation\_url: Optional\[str]

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20documentation_url">Link to this property</a>

<details>

<summary>

source: Optional\[ErrorSource]

</summary>

pointer: Optional\[str]

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20source%20%3E%20(property)%20pointer">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20source">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

messages: List\[Message]

</summary>

code: int

minimum1000

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20code">Link to this property</a>

message: str

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20message">Link to this property</a>

documentation\_url: Optional\[str]

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20documentation_url">Link to this property</a>

<details>

<summary>

source: Optional\[MessageSource]

</summary>

pointer: Optional\[str]

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20source%20%3E%20(property)%20pointer">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20source">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages">Link to this property</a>

success: Literal\[true]

Whether the API call was successful.

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)>)

#### IntelWhois

##### [Get WHOIS Record](https://developers.cloudflare.com/api/python/resources/intel/subresources/whois/methods/get)

intel.whois.get(WhoisGetParams\*\*kwargs) -> [WhoisGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/whois

##### ModelsExpand Collapse

<details>

<summary>

class Whois: …

</summary>

created\_date: Optional\[date]

formatdate

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20created_date">Link to this property</a>

domain: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

nameservers: Optional\[List\[str]]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20nameservers">Link to this property</a>

registrant: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant">Link to this property</a>

registrant\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_country">Link to this property</a>

registrant\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_email">Link to this property</a>

registrant\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_org">Link to this property</a>

registrar: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrar">Link to this property</a>

updated\_date: Optional\[date]

formatdate

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20updated_date">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)>)

<details>

<summary>

class WhoisGetResponse: …

</summary>

dnssec: bool

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20dnssec">Link to this property</a>

domain: str

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

extension: str

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20extension">Link to this property</a>

found: bool

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20found">Link to this property</a>

nameservers: List\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20nameservers">Link to this property</a>

punycode: str

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20punycode">Link to this property</a>

registrant: str

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant">Link to this property</a>

registrar: str

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar">Link to this property</a>

id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

administrative\_city: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_city">Link to this property</a>

administrative\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_country">Link to this property</a>

administrative\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_email">Link to this property</a>

administrative\_fax: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_fax">Link to this property</a>

administrative\_fax\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_fax_ext">Link to this property</a>

administrative\_id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_id">Link to this property</a>

administrative\_name: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_name">Link to this property</a>

administrative\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_org">Link to this property</a>

administrative\_phone: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_phone">Link to this property</a>

administrative\_phone\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_phone_ext">Link to this property</a>

administrative\_postal\_code: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_postal_code">Link to this property</a>

administrative\_province: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_province">Link to this property</a>

administrative\_referral\_url: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_referral_url">Link to this property</a>

administrative\_street: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_street">Link to this property</a>

billing\_city: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_city">Link to this property</a>

billing\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_country">Link to this property</a>

billing\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_email">Link to this property</a>

billing\_fax: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_fax">Link to this property</a>

billing\_fax\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_fax_ext">Link to this property</a>

billing\_id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_id">Link to this property</a>

billing\_name: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_name">Link to this property</a>

billing\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_org">Link to this property</a>

billing\_phone: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_phone">Link to this property</a>

billing\_phone\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_phone_ext">Link to this property</a>

billing\_postal\_code: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_postal_code">Link to this property</a>

billing\_province: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_province">Link to this property</a>

billing\_referral\_url: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_referral_url">Link to this property</a>

billing\_street: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_street">Link to this property</a>

created\_date: Optional\[datetime]

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20created_date">Link to this property</a>

created\_date\_raw: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20created_date_raw">Link to this property</a>

expiration\_date: Optional\[datetime]

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20expiration_date">Link to this property</a>

expiration\_date\_raw: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20expiration_date_raw">Link to this property</a>

registrant\_city: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_city">Link to this property</a>

registrant\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_country">Link to this property</a>

registrant\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_email">Link to this property</a>

registrant\_fax: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_fax">Link to this property</a>

registrant\_fax\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_fax_ext">Link to this property</a>

registrant\_id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_id">Link to this property</a>

registrant\_name: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_name">Link to this property</a>

registrant\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_org">Link to this property</a>

registrant\_phone: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_phone">Link to this property</a>

registrant\_phone\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_phone_ext">Link to this property</a>

registrant\_postal\_code: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_postal_code">Link to this property</a>

registrant\_province: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_province">Link to this property</a>

registrant\_referral\_url: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_referral_url">Link to this property</a>

registrant\_street: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_street">Link to this property</a>

registrar\_city: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_city">Link to this property</a>

registrar\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_country">Link to this property</a>

registrar\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_email">Link to this property</a>

registrar\_fax: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_fax">Link to this property</a>

registrar\_fax\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_fax_ext">Link to this property</a>

registrar\_id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_id">Link to this property</a>

registrar\_name: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_name">Link to this property</a>

registrar\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_org">Link to this property</a>

registrar\_phone: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_phone">Link to this property</a>

registrar\_phone\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_phone_ext">Link to this property</a>

registrar\_postal\_code: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_postal_code">Link to this property</a>

registrar\_province: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_province">Link to this property</a>

registrar\_referral\_url: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_referral_url">Link to this property</a>

registrar\_street: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_street">Link to this property</a>

status: Optional\[List\[str]]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

technical\_city: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_city">Link to this property</a>

technical\_country: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_country">Link to this property</a>

technical\_email: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_email">Link to this property</a>

technical\_fax: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_fax">Link to this property</a>

technical\_fax\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_fax_ext">Link to this property</a>

technical\_id: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_id">Link to this property</a>

technical\_name: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_name">Link to this property</a>

technical\_org: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_org">Link to this property</a>

technical\_phone: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_phone">Link to this property</a>

technical\_phone\_ext: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_phone_ext">Link to this property</a>

technical\_postal\_code: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_postal_code">Link to this property</a>

technical\_province: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_province">Link to this property</a>

technical\_referral\_url: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_referral_url">Link to this property</a>

technical\_street: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_street">Link to this property</a>

updated\_date: Optional\[datetime]

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20updated_date">Link to this property</a>

updated\_date\_raw: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20updated_date_raw">Link to this property</a>

whois\_server: Optional\[str]

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20whois_server">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)>)

#### IntelURLs

##### [Get URL Intelligence](https://developers.cloudflare.com/api/python/resources/intel/subresources/urls/methods/get)

intel.urls.get(URLGetParams\*\*kwargs) -> [URL](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/url

##### ModelsExpand Collapse

<details>

<summary>

class URL: …

</summary>

<details>

<summary>

content\_categories: List\[ContentCategory]

Content categories associated with this URL.

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

source\_id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20source_id">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories">Link to this property</a>

full\_url: str

The full URL that was looked up.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20full_url">Link to this property</a>

hostname: str

The hostname of the URL.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20hostname">Link to this property</a>

<details>

<summary>

risk\_type: List\[RiskType]

Security risk types associated with this URL.

</summary>

id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name: Optional\[str]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

source\_id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20source_id">Link to this property</a>

super\_category\_id: Optional\[int]

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type">Link to this property</a>

url\_path: str

The path component of the URL.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20url_path">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)>)

#### IntelIndicator Feeds

##### [Get indicator feeds owned by this account](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/methods/list)

intel.indicator\_feeds.list(IndicatorFeedListParams\*\*kwargs) -> SyncSinglePage\[[IndicatorFeedListResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)>)]

GET/accounts/{account\_id}/intel/indicator-feeds

##### [Get indicator feed metadata](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/methods/get)

intel.indicator\_feeds.get(intfeed\_id, IndicatorFeedGetParams\*\*kwargs) -> [IndicatorFeedGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}

##### [Create new indicator feed](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/methods/create)

intel.indicator\_feeds.create(IndicatorFeedCreateParams\*\*kwargs) -> [IndicatorFeedCreateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)>)

POST/accounts/{account\_id}/intel/indicator-feeds

##### [Update indicator feed metadata](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/methods/update)

intel.indicator\_feeds.update(intfeed\_id, IndicatorFeedUpdateParams\*\*kwargs) -> [IndicatorFeedUpdateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)>)

PUT/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}

##### [Get indicator feed data](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/methods/data)

intel.indicator\_feeds.data(intfeed\_id, IndicatorFeedDataParams\*\*kwargs) -> [IndicatorFeedDataResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_data_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}/data

##### ModelsExpand Collapse

<details>

<summary>

class IndicatorFeedListResponse: …

</summary>

id: Optional\[int]

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description: Optional\[str]

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable: Optional\[bool]

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable: Optional\[bool]

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public: Optional\[bool]

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name: Optional\[str]

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)>)

<details>

<summary>

class IndicatorFeedGetResponse: …

</summary>

id: Optional\[int]

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description: Optional\[str]

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable: Optional\[bool]

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable: Optional\[bool]

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public: Optional\[bool]

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

<details>

<summary>

last\_upload\_summary: Optional\[LastUploadSummary]

Summary of indicator counts from the last successful upload to this feed. Populated by the custom-threat-feeds loader at the end of each successful load. Absent (omitted) when no upload has completed successfully or the upload errored before the summary write. Surfaces silent-failure paths so operators can see when their indicators were dropped (popularity allowlist, expired valid\_until, etc.) without reading loader logs.

</summary>

<details>

<summary>

persisted: Optional\[LastUploadSummaryPersisted]

Net delta applied to feed indicators by this upload. Snapshot uploads emit both \*\_added and \*\_removed; delta-add emits only \*\_added; delta-remove emits only \*\_removed.

</summary>

domains\_added: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20domains_added">Link to this property</a>

domains\_removed: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20domains_removed">Link to this property</a>

ips\_added: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20ips_added">Link to this property</a>

ips\_removed: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20ips_removed">Link to this property</a>

urls\_added: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20urls_added">Link to this property</a>

urls\_removed: Optional\[int]

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20urls_removed">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted">Link to this property</a>

<details>

<summary>

skipped: Optional\[LastUploadSummarySkipped]

Counts of indicators that were uploaded but did not reach QuickSilver, broken down by reason.

</summary>

allowlisted\_domains: Optional\[int]

Domains filtered by the global popularity allowlist at QS provisioning time. Popular domains (bing.com, naver.com, etc.) are protected from custom-threat-feed enforcement.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20allowlisted_domains">Link to this property</a>

expired\_indicators: Optional\[int]

Indicators in the upload whose valid\_until is already in the past. These are not added to QS; the expiration cron handles cleanup.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20expired_indicators">Link to this property</a>

invalid\_indicators: Optional\[int]

Reserved for future use. Currently always 0 — the unifier aborts the entire upload on a single bad indicator.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20invalid_indicators">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped">Link to this property</a>

<details>

<summary>

uploaded: Optional\[LastUploadSummaryUploaded]

Indicator counts from the unified file the loader received

</summary>

domains: Optional\[int]

Number of domain indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20domains">Link to this property</a>

ips: Optional\[int]

Number of IP indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20ips">Link to this property</a>

urls: Optional\[int]

Number of URL indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20urls">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary">Link to this property</a>

latest\_upload\_error: Optional\[str]

Human-readable error message describing why the latest upload failed. Populated only when <code>latest_upload_status</code> is <code>Error</code>. Returns one of a small fixed set of category-level messages (invalid domain / IP / URL entries, malformed row or header, invalid valid\_until timestamp, etc.) or the generic <code>Upload failed</code> for unknown or infrastructure-level errors. Never echoes raw error text from the underlying loader. Intel accounts receive the verbatim loader/API error text (including specific offending values) instead of these category-level messages.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_error">Link to this property</a>

<details>

<summary>

latest\_upload\_status: Optional\[Literal\["Mirroring", "Unifying", "Loading", 3 more]]

Status of the latest snapshot uploaded

</summary>

One of the following:

"Mirroring"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%200">Link to this property</a>

"Unifying"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%201">Link to this property</a>

"Loading"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%202">Link to this property</a>

"Provisioning"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%203">Link to this property</a>

"Complete"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%204">Link to this property</a>

"Error"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name: Optional\[str]

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

provider\_id: Optional\[int]

The unique identifier for the provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20provider_id">Link to this property</a>

provider\_name: Optional\[str]

The provider of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20provider_name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)>)

<details>

<summary>

class IndicatorFeedCreateResponse: …

</summary>

id: Optional\[int]

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description: Optional\[str]

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable: Optional\[bool]

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable: Optional\[bool]

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public: Optional\[bool]

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name: Optional\[str]

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)>)

<details>

<summary>

class IndicatorFeedUpdateResponse: …

</summary>

id: Optional\[int]

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description: Optional\[str]

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable: Optional\[bool]

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable: Optional\[bool]

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public: Optional\[bool]

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name: Optional\[str]

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)>)

str

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_data_response%20%3E%20(schema)>)

#### IntelIndicator FeedsSnapshots

##### [Update indicator feed data](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/subresources/snapshots/methods/update)

intel.indicator\_feeds.snapshots.update(intfeed\_id, SnapshotUpdateParams\*\*kwargs) -> [SnapshotUpdateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)>)

PUT/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}/snapshot

##### ModelsExpand Collapse

<details>

<summary>

class SnapshotUpdateResponse: …

</summary>

file\_id: Optional\[int]

Feed id

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20file_id">Link to this property</a>

filename: Optional\[str]

Name of the file unified in our system

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20filename">Link to this property</a>

poll\_url: Optional\[str]

Account-relative polling path. Prepend <code>/accounts/{account_id}</code> using the same account identifier and API host as the upload request. The path omits the account segment because the service does not have your account identifier in this context.

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20poll_url">Link to this property</a>

status: Optional\[str]

Current status of the upload at the moment the request returned. This is NOT a terminal state: the file is unified inline, but the durable loader has only accepted it, so the upload is still <code>Unifying</code>. Poll <code>poll_url</code> until the status reaches a terminal value (<code>Unified</code> or <code>Error</code>).

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

upload\_id: Optional\[int]

Identifier of the upload row, for polling this upload to a terminal state via <code>poll_url</code>.

formatint64

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20upload_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)>)

#### IntelIndicator FeedsPermissions

##### [List indicator feed permissions](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/list)

intel.indicator\_feeds.permissions.list(PermissionListParams\*\*kwargs) -> [PermissionListResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/indicator-feeds/permissions/view

##### [Grant permission to indicator feed](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/create)

intel.indicator\_feeds.permissions.create(PermissionCreateParams\*\*kwargs) -> [PermissionCreateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)>)

PUT/accounts/{account\_id}/intel/indicator-feeds/permissions/add

##### [Revoke permission to indicator feed](https://developers.cloudflare.com/api/python/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/delete)

intel.indicator\_feeds.permissions.delete(PermissionDeleteParams\*\*kwargs) -> [PermissionDeleteResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)>)

PUT/accounts/{account\_id}/intel/indicator-feeds/permissions/remove

##### ModelsExpand Collapse

<details>

<summary>

List\[PermissionListResponseItem]

</summary>

id: Optional\[int]

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

description: Optional\[str]

The description of the example test

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable: Optional\[bool]

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable: Optional\[bool]

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public: Optional\[bool]

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_public">Link to this property</a>

name: Optional\[str]

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)>)

<details>

<summary>

class PermissionCreateResponse: …

</summary>

success: Optional\[bool]

Whether the update succeeded or not

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)>)

<details>

<summary>

class PermissionDeleteResponse: …

</summary>

success: Optional\[bool]

Whether the update succeeded or not

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)>)

#### IntelIndicator FeedsDownloads

#### IntelSinkholes

##### [List sinkholes owned by this account](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/methods/list)

intel.sinkholes.list(SinkholeListParams\*\*kwargs) -> SyncSinglePage\[[Sinkhole](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>)]

GET/accounts/{account\_id}/intel/sinkholes

##### [Get a sinkhole](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/methods/get)

intel.sinkholes.get(strsinkhole\_id, SinkholeGetParams\*\*kwargs) -> [Sinkhole](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### [Create a new sinkhole for your account](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/methods/create)

intel.sinkholes.create(SinkholeCreateParams\*\*kwargs) -> [Sinkhole](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>)

POST/accounts/{account\_id}/intel/sinkholes

##### [Update a sinkhole](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/methods/update)

intel.sinkholes.update(strsinkhole\_id, SinkholeUpdateParams\*\*kwargs) -> object

PUT/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### [Delete a sinkhole](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/methods/delete)

intel.sinkholes.delete(strsinkhole\_id, SinkholeDeleteParams\*\*kwargs) -> object

DELETE/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### ModelsExpand Collapse

<details>

<summary>

class Sinkhole: …

</summary>

id: Optional\[str]

The unique identifier for the sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

account\_tag: Optional\[str]

The account tag that owns this sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20account_tag">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the sinkhole was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the sinkhole was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name: Optional\[str]

The name of the sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

r2\_bucket: Optional\[str]

The name of the R2 bucket to store results.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20r2_bucket">Link to this property</a>

r2\_id: Optional\[str]

The id of the R2 instance.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20r2_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>)

#### IntelSinkholesIngresses

##### [Create an ingress rule](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/subresources/ingresses/methods/create)

intel.sinkholes.ingresses.create(strsinkhole\_id, IngressCreateParams\*\*kwargs) -> [IngressCreateResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)>)

POST/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses

##### [Get an ingress rule](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/subresources/ingresses/methods/get)

intel.sinkholes.ingresses.get(stringress\_id, IngressGetParams\*\*kwargs) -> [IngressGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)>)

GET/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### [Update an ingress rule](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/subresources/ingresses/methods/update)

intel.sinkholes.ingresses.update(stringress\_id, IngressUpdateParams\*\*kwargs) -> object

PUT/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### [Delete an ingress rule](https://developers.cloudflare.com/api/python/resources/intel/subresources/sinkholes/subresources/ingresses/methods/delete)

intel.sinkholes.ingresses.delete(stringress\_id, IngressDeleteParams\*\*kwargs) -> object

DELETE/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### ModelsExpand Collapse

<details>

<summary>

class IngressCreateResponse: …

</summary>

id: Optional\[str]

The unique identifier for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

cidr: Optional\[str]

The CIDR block for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20cidr">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the ingress rule was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the ingress rule was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

sinkhole\_id: Optional\[str]

The sinkhole this ingress rule belongs to.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20sinkhole_id">Link to this property</a>

zone\_tag: Optional\[str]

The zone tag associated with this ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)>)

<details>

<summary>

class IngressGetResponse: …

</summary>

id: Optional\[str]

The unique identifier for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

cidr: Optional\[str]

The CIDR block for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20cidr">Link to this property</a>

created\_on: Optional\[datetime]

The date and time when the ingress rule was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on: Optional\[datetime]

The date and time when the ingress rule was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

sinkhole\_id: Optional\[str]

The sinkhole this ingress rule belongs to.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20sinkhole_id">Link to this property</a>

zone\_tag: Optional\[str]

The zone tag associated with this ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)>)

#### IntelAttack Surface Report

#### IntelAttack Surface ReportIssue Types

##### [Retrieves Security Center Issues Types](https://developers.cloudflare.com/api/python/resources/intel/subresources/attack_surface_report/subresources/issue_types/methods/get)

intel.attack\_surface\_report.issue\_types.get(IssueTypeGetParams\*\*kwargs) -> SyncSinglePage\[[IssueTypeGetResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.attack_surface_report.issue_types%20%3E%20(model)%20issue_type_get_response%20%3E%20(schema)>)]

GET/accounts/{account\_id}/intel/attack-surface-report/issue-types

##### ModelsExpand Collapse

str

[Link to this property](<#(resource)%20intel.attack_surface_report.issue_types%20%3E%20(model)%20issue_type_get_response%20%3E%20(schema)>)

#### IntelAttack Surface ReportIssues

##### [Retrieves Security Center Issues](https://developers.cloudflare.com/api/python/resources/intel/subresources/attack_surface_report/subresources/issues/methods/list)

Deprecated

intel.attack\_surface\_report.issues.list(IssueListParams\*\*kwargs) -> SyncV4PagePagination\[Optional\[IssueListResponse]]

GET/accounts/{account\_id}/intel/attack-surface-report/issues

##### [Retrieves Security Center Issue Counts by Class](https://developers.cloudflare.com/api/python/resources/intel/subresources/attack_surface_report/subresources/issues/methods/class)

Deprecated

intel.attack\_surface\_report.issues.class\_(IssueClassParams\*\*kwargs) -> [IssueClassResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/attack-surface-report/issues/class

##### [Retrieves Security Center Issue Counts by Severity](https://developers.cloudflare.com/api/python/resources/intel/subresources/attack_surface_report/subresources/issues/methods/severity)

Deprecated

intel.attack\_surface\_report.issues.severity(IssueSeverityParams\*\*kwargs) -> [IssueSeverityResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/attack-surface-report/issues/severity

##### [Retrieves Security Center Issue Counts by Type](https://developers.cloudflare.com/api/python/resources/intel/subresources/attack_surface_report/subresources/issues/methods/type)

Deprecated

intel.attack\_surface\_report.issues.type(IssueTypeParams\*\*kwargs) -> [IssueTypeResponse](<https://developers.cloudflare.com/api/python/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/attack-surface-report/issues/type

##### ModelsExpand Collapse

<details>

<summary>

Literal\["compliance\_violation", "email\_security", "exposed\_infrastructure", 3 more]

</summary>

One of the following:

"compliance\_violation"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"email\_security"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

"exposed\_infrastructure"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%202">Link to this property</a>

"insecure\_configuration"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%203">Link to this property</a>

"weak\_authentication"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%204">Link to this property</a>

"configuration\_suggestion"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%205">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)>)

<details>

<summary>

Literal\["low", "moderate", "critical"]

</summary>

One of the following:

"low"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"moderate"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

"critical"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%202">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)>)

<details>

<summary>

class IssueListResponse: …

</summary>

count: Optional\[int]

Indicates the total number of results.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

<details>

<summary>

issues: Optional\[List\[Issue]]

</summary>

id: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

dismissed: Optional\[bool]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20dismissed">Link to this property</a>

has\_extended\_context: Optional\[bool]

Indicates whether the insight has a large payload that requires fetching via the context endpoint.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20has_extended_context">Link to this property</a>

issue\_class: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20issue_class">Link to this property</a>

issue\_type: Optional\[IssueType]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20issue_type">Link to this property</a>

<details>

<summary>

payload: Optional\[IssuePayload]

</summary>

detection\_method: Optional\[str]

Describes the method used to detect insight.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload%20%3E%20(property)%20detection_method">Link to this property</a>

zone\_tag: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload">Link to this property</a>

resolve\_link: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20resolve_link">Link to this property</a>

resolve\_text: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20resolve_text">Link to this property</a>

<details>

<summary>

severity: Optional\[Literal\["Low", "Moderate", "Critical"]]

</summary>

One of the following:

"Low"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%200">Link to this property</a>

"Moderate"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%201">Link to this property</a>

"Critical"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity">Link to this property</a>

since: Optional\[datetime]

formatdate-time

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20since">Link to this property</a>

<details>

<summary>

status: Optional\[Literal\["active", "resolved"]]

The current status of the insight.

</summary>

One of the following:

"active"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

"resolved"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status">Link to this property</a>

subject: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20subject">Link to this property</a>

timestamp: Optional\[datetime]

formatdate-time

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20timestamp">Link to this property</a>

<details>

<summary>

user\_classification: Optional\[Literal\["false\_positive", "accept\_risk", "other"]]

User-defined classification for the insight. Can be ‘false\_positive’, ‘accept\_risk’, ‘other’, or null.

</summary>

One of the following:

"false\_positive"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%200">Link to this property</a>

"accept\_risk"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%201">Link to this property</a>

"other"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues">Link to this property</a>

page: Optional\[int]

Specifies the current page within paginated list of results.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page: Optional\[int]

Sets the number of results per page of results.

maximum1000

minimum1

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)>)

<details>

<summary>

List\[IssueClassResponseItem]

</summary>

count: Optional\[int]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)>)

<details>

<summary>

List\[IssueSeverityResponseItem]

</summary>

count: Optional\[int]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)>)

<details>

<summary>

List\[IssueTypeResponseItem]

</summary>

count: Optional\[int]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value: Optional\[str]

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)>)