---
title: Intel
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/typescript)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# Intel

#### IntelASN

##### [Get ASN Overview.](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/asn/methods/get)

client.intel.asn.get([ASN](<https://developers.cloudflare.com/api/typescript/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)asn, ASNGetParams {account\_id } params, RequestOptionsoptions?): [ASN](<https://developers.cloudflare.com/api/typescript/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/asn/{asn}

#### IntelASNSubnets

##### [Get ASN Subnets](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/asn/subresources/subnets/methods/get)

client.intel.asn.subnets.get([ASN](<https://developers.cloudflare.com/api/typescript/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)>)asn, SubnetGetParams {account\_id } params, RequestOptionsoptions?): [SubnetGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)>) {asn, count, ip\_count\_total, 3 more }

GET/accounts/{account\_id}/intel/asn/{asn}/subnets

##### ModelsExpand Collapse

<details>

<summary>

SubnetGetResponse {asn, count, ip\_count\_total, 3 more }

</summary>

asn?: <a href="https://developers.cloudflare.com/api/typescript/resources/$shared#(resource)%20%24shared%20%3E%20(model)%20asn%20%3E%20(schema)">ASN</a>

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20asn">Link to this property</a>

count?: number

Total results returned based on your search parameters.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

ip\_count\_total?: number

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20ip_count_total">Link to this property</a>

page?: number

Current page within paginated list of results.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page?: number

Number of results per page of results.

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

subnets?: Array&lt;string&gt;

<a href="#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)%20%3E%20(property)%20subnets">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.asn.subnets%20%3E%20(model)%20subnet_get_response%20%3E%20(schema)>)

#### IntelDNS

##### [Get Passive DNS by IP](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/dns/methods/list)

client.intel.dns.list(DNSListParams {account\_id, ipv4, page, 2 more } params, RequestOptionsoptions?): V4PagePagination< [DNS](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)>) {count, page, per\_page, reverse\_records } >

GET/accounts/{account\_id}/intel/dns

##### ModelsExpand Collapse

<details>

<summary>

DNS {count, page, per\_page, reverse\_records }

</summary>

count?: number

Total results returned based on your search parameters.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

page?: number

Current page within paginated list of results.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page?: number

Number of results per page of results.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

<details>

<summary>

reverse\_records?: Array&lt;ReverseRecord&gt;

Reverse DNS look-ups observed during the time period.

</summary>

first\_seen?: string

First seen date of the DNS record during the time period.

formatdate

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20first_seen">Link to this property</a>

hostname?: string

Hostname that the IP was observed resolving to.

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20hostname">Link to this property</a>

last\_seen?: string

Last seen date of the DNS record during the time period.

formatdate

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records%20%3E%20(items)%20%3E%20(property)%20last_seen">Link to this property</a>

</details>

<a href="#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)%20%3E%20(property)%20reverse_records">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.dns%20%3E%20(model)%20dns%20%3E%20(schema)>)

#### IntelDomains

##### [Get Domain Details](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/domains/methods/get)

client.intel.domains.get(DomainGetParams {account\_id, domain, skip\_dns, skip\_ranking } params, RequestOptionsoptions?): [Domain](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)>) {additional\_information, application, content\_categories, 8 more }

GET/accounts/{account\_id}/intel/domain

##### ModelsExpand Collapse

<details>

<summary>

Domain {additional\_information, application, content\_categories, 8 more }

</summary>

<details>

<summary>

additional\_information?: AdditionalInformation {suspected\_malware\_family }

Additional information related to the host name.

</summary>

suspected\_malware\_family?: string

Suspected DGA malware family.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20additional_information%20%3E%20(property)%20suspected_malware_family">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20additional_information">Link to this property</a>

<details>

<summary>

application?: Application {id, name }

Application that the hostname belongs to.

</summary>

id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20application">Link to this property</a>

<details>

<summary>

content\_categories?: Array&lt;ContentCategory&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20content_categories">Link to this property</a>

domain?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

<details>

<summary>

inherited\_content\_categories?: Array&lt;InheritedContentCategory&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_content_categories">Link to this property</a>

inherited\_from?: string

Domain from which <code>inherited_content_categories</code> and <code>inherited_risk_types</code> are inherited, if applicable.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_from">Link to this property</a>

<details>

<summary>

inherited\_risk\_types?: Array&lt;InheritedRiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20inherited_risk_types">Link to this property</a>

popularity\_rank?: number

Global Cloudflare 100k ranking for the last 30 days, if available for the hostname. The top ranked domain is 1, the lowest ranked domain is 100,000.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20popularity_rank">Link to this property</a>

<details>

<summary>

resolves\_to\_refs?: Array&lt;ResolvesToRef&gt;

Specifies a list of references to one or more IP addresses or domain names that the domain name currently resolves to.

</summary>

id?: string

STIX 2.1 identifier: <a href="https://docs.oasis-open.org/cti/stix/v2.1/cs02/stix-v2.1-cs02.html#_64yvzeku5a5c">https://docs.oasis-open.org/cti/stix/v2.1/cs02/stix-v2.1-cs02.html#\_64yvzeku5a5c</a>.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

value?: string

IP address or domain name.

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20resolves_to_refs">Link to this property</a>

risk\_score?: number

Hostname risk score, which is a value between 0 (lowest risk) to 1 (highest risk).

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_score">Link to this property</a>

<details>

<summary>

risk\_types?: Array&lt;RiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domains%20%3E%20(model)%20domain%20%3E%20(schema)>)

#### IntelDomainsBulks

##### [Get Multiple Domain Details](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/domains/subresources/bulks/methods/get)

client.intel.domains.bulks.get(BulkGetParams {account\_id, domain, include\_ranking, skip\_ranking } params, RequestOptionsoptions?): [BulkGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)>)| null

GET/accounts/{account\_id}/intel/domain/bulk

##### ModelsExpand Collapse

<details>

<summary>

BulkGetResponse = Array&lt;BulkGetResponseItem&gt;| null

</summary>

<details>

<summary>

additional\_information?: AdditionalInformation {suspected\_malware\_family }

Additional information related to the host name.

</summary>

suspected\_malware\_family?: string

Suspected DGA malware family.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20additional_information%20%3E%20(property)%20suspected_malware_family">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20additional_information">Link to this property</a>

<details>

<summary>

application?: Application {id, name }

Application that the hostname belongs to.

</summary>

id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20application">Link to this property</a>

<details>

<summary>

content\_categories?: Array&lt;ContentCategory&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20content_categories">Link to this property</a>

domain?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20domain">Link to this property</a>

<details>

<summary>

inherited\_content\_categories?: Array&lt;InheritedContentCategory&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_content_categories">Link to this property</a>

inherited\_from?: string

Domain from which <code>inherited_content_categories</code> and <code>inherited_risk_types</code> are inherited, if applicable.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_from">Link to this property</a>

<details>

<summary>

inherited\_risk\_types?: Array&lt;InheritedRiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20inherited_risk_types">Link to this property</a>

popularity\_rank?: number

Global Cloudflare 100k ranking for the last 30 days, if available for the hostname. The top ranked domain is 1, the lowest ranked domain is 100,000.

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20popularity_rank">Link to this property</a>

risk\_score?: number

Hostname risk score, which is a value between 0 (lowest risk) to 1 (highest risk).

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_score">Link to this property</a>

<details>

<summary>

risk\_types?: Array&lt;RiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domains.bulks%20%3E%20(model)%20bulk_get_response%20%3E%20(schema)>)

#### IntelDomain History

##### [Get Domain History](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/domain_history/methods/get)

client.intel.domainHistory.get(DomainHistoryGetParams {account\_id, domain } params, RequestOptionsoptions?): [DomainHistoryGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history_get_response%20%3E%20(schema)>)| null

GET/accounts/{account\_id}/intel/domain-history

##### ModelsExpand Collapse

<details>

<summary>

DomainHistory {categorizations, domain }

</summary>

<details>

<summary>

categorizations?: Array&lt;Categorization&gt;

</summary>

<details>

<summary>

categories?: Array&lt;Category&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories">Link to this property</a>

end?: string

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20end">Link to this property</a>

start?: string

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20start">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations">Link to this property</a>

domain?: string

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)>)

<details>

<summary>

DomainHistoryGetResponse = Array&lt;<a href="https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)">DomainHistory</a> {categorizations, domain } &gt;| null

</summary>

<details>

<summary>

categorizations?: Array&lt;Categorization&gt;

</summary>

<details>

<summary>

categories?: Array&lt;Category&gt;

</summary>

id?: number

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20categories">Link to this property</a>

end?: string

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20end">Link to this property</a>

start?: string

formatdate

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations%20%3E%20(items)%20%3E%20(property)%20start">Link to this property</a>

</details>

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20categorizations">Link to this property</a>

domain?: string

<a href="#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.domain_history%20%3E%20(model)%20domain_history_get_response%20%3E%20(schema)>)

#### IntelIPs

##### [Get IP Overview](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/ips/methods/get)

client.intel.ips.get(IPGetParams {account\_id, ipv4, ipv6 } params, RequestOptionsoptions?): [IPGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.ips%20%3E%20(model)%20ip_get_response%20%3E%20(schema)>)| null

GET/accounts/{account\_id}/intel/ip

##### ModelsExpand Collapse

<details>

<summary>

IP {belongs\_to\_ref, ip, risk\_types }

</summary>

<details>

<summary>

belongs\_to\_ref?: BelongsToRef {id, country, description, 2 more }

Specifies a reference to the autonomous systems (AS) that the IP address belongs to.

</summary>

id?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20id">Link to this property</a>

country?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20country">Link to this property</a>

description?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

type?: "hosting\_provider"| "isp"| "organization"

Infrastructure type of this ASN.

</summary>

One of the following:

"hosting\_provider"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%200">Link to this property</a>

"isp"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%201">Link to this property</a>

"organization"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type">Link to this property</a>

value?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref">Link to this property</a>

ip?: string

formatipv4

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20ip">Link to this property</a>

<details>

<summary>

risk\_types?: Array&lt;RiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)>)

<details>

<summary>

IPGetResponse = Array&lt;<a href="https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)">IP</a> {belongs\_to\_ref, ip, risk\_types } &gt;| null

</summary>

<details>

<summary>

belongs\_to\_ref?: BelongsToRef {id, country, description, 2 more }

Specifies a reference to the autonomous systems (AS) that the IP address belongs to.

</summary>

id?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20id">Link to this property</a>

country?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20country">Link to this property</a>

description?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20description">Link to this property</a>

<details>

<summary>

type?: "hosting\_provider"| "isp"| "organization"

Infrastructure type of this ASN.

</summary>

One of the following:

"hosting\_provider"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%200">Link to this property</a>

"isp"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%201">Link to this property</a>

"organization"

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20type">Link to this property</a>

value?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref%20%3E%20(property)%20value">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20belongs_to_ref">Link to this property</a>

ip?: string

formatipv4

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20ip">Link to this property</a>

<details>

<summary>

risk\_types?: Array&lt;RiskType&gt;

</summary>

id?: number

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.ips%20%3E%20(model)%20ip%20%3E%20(schema)%20%3E%20(property)%20risk_types">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ips%20%3E%20(model)%20ip_get_response%20%3E%20(schema)>)

#### IntelIP Lists

##### ModelsExpand Collapse

<details>

<summary>

IPList {id, description, name }

</summary>

id?: number

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

description?: string

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

name?: string

<a href="#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.ip_lists%20%3E%20(model)%20ip_list%20%3E%20(schema)>)

#### IntelMiscategorizations

##### [Create Miscategorization](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/miscategorizations/methods/create)

client.intel.miscategorizations.create(MiscategorizationCreateParams {account\_id, content\_adds, content\_removes, 5 more } params, RequestOptionsoptions?): [MiscategorizationCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)>) {errors, messages, success }

POST/accounts/{account\_id}/intel/miscategorization

##### ModelsExpand Collapse

<details>

<summary>

MiscategorizationCreateResponse {errors, messages, success }

</summary>

<details>

<summary>

errors: Array&lt;Error&gt;

</summary>

code: number

minimum1000

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20code">Link to this property</a>

message: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20message">Link to this property</a>

documentation\_url?: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20documentation_url">Link to this property</a>

<details>

<summary>

source?: Source {pointer }

</summary>

pointer?: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20source%20%3E%20(property)%20pointer">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors%20%3E%20(items)%20%3E%20(property)%20source">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20errors">Link to this property</a>

<details>

<summary>

messages: Array&lt;Message&gt;

</summary>

code: number

minimum1000

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20code">Link to this property</a>

message: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20message">Link to this property</a>

documentation\_url?: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20documentation_url">Link to this property</a>

<details>

<summary>

source?: Source {pointer }

</summary>

pointer?: string

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20source%20%3E%20(property)%20pointer">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages%20%3E%20(items)%20%3E%20(property)%20source">Link to this property</a>

</details>

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20messages">Link to this property</a>

success: true

Whether the API call was successful.

<a href="#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.miscategorizations%20%3E%20(model)%20miscategorization_create_response%20%3E%20(schema)>)

#### IntelWhois

##### [Get WHOIS Record](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/whois/methods/get)

client.intel.whois.get(WhoisGetParams {account\_id, domain } params, RequestOptionsoptions?): [WhoisGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)>) {dnssec, domain, extension, 84 more }

GET/accounts/{account\_id}/intel/whois

##### ModelsExpand Collapse

<details>

<summary>

Whois {created\_date, domain, nameservers, 6 more }

</summary>

created\_date?: string

formatdate

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20created_date">Link to this property</a>

domain?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

nameservers?: Array&lt;string&gt;

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20nameservers">Link to this property</a>

registrant?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant">Link to this property</a>

registrant\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_country">Link to this property</a>

registrant\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_email">Link to this property</a>

registrant\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrant_org">Link to this property</a>

registrar?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20registrar">Link to this property</a>

updated\_date?: string

formatdate

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)%20%3E%20(property)%20updated_date">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.whois%20%3E%20(model)%20whois%20%3E%20(schema)>)

<details>

<summary>

WhoisGetResponse {dnssec, domain, extension, 84 more }

</summary>

dnssec: boolean

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20dnssec">Link to this property</a>

domain: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20domain">Link to this property</a>

extension: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20extension">Link to this property</a>

found: boolean

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20found">Link to this property</a>

nameservers: Array&lt;string&gt;

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20nameservers">Link to this property</a>

punycode: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20punycode">Link to this property</a>

registrant: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant">Link to this property</a>

registrar: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar">Link to this property</a>

id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

administrative\_city?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_city">Link to this property</a>

administrative\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_country">Link to this property</a>

administrative\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_email">Link to this property</a>

administrative\_fax?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_fax">Link to this property</a>

administrative\_fax\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_fax_ext">Link to this property</a>

administrative\_id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_id">Link to this property</a>

administrative\_name?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_name">Link to this property</a>

administrative\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_org">Link to this property</a>

administrative\_phone?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_phone">Link to this property</a>

administrative\_phone\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_phone_ext">Link to this property</a>

administrative\_postal\_code?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_postal_code">Link to this property</a>

administrative\_province?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_province">Link to this property</a>

administrative\_referral\_url?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_referral_url">Link to this property</a>

administrative\_street?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20administrative_street">Link to this property</a>

billing\_city?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_city">Link to this property</a>

billing\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_country">Link to this property</a>

billing\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_email">Link to this property</a>

billing\_fax?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_fax">Link to this property</a>

billing\_fax\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_fax_ext">Link to this property</a>

billing\_id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_id">Link to this property</a>

billing\_name?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_name">Link to this property</a>

billing\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_org">Link to this property</a>

billing\_phone?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_phone">Link to this property</a>

billing\_phone\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_phone_ext">Link to this property</a>

billing\_postal\_code?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_postal_code">Link to this property</a>

billing\_province?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_province">Link to this property</a>

billing\_referral\_url?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_referral_url">Link to this property</a>

billing\_street?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20billing_street">Link to this property</a>

created\_date?: string

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20created_date">Link to this property</a>

created\_date\_raw?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20created_date_raw">Link to this property</a>

expiration\_date?: string

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20expiration_date">Link to this property</a>

expiration\_date\_raw?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20expiration_date_raw">Link to this property</a>

registrant\_city?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_city">Link to this property</a>

registrant\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_country">Link to this property</a>

registrant\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_email">Link to this property</a>

registrant\_fax?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_fax">Link to this property</a>

registrant\_fax\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_fax_ext">Link to this property</a>

registrant\_id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_id">Link to this property</a>

registrant\_name?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_name">Link to this property</a>

registrant\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_org">Link to this property</a>

registrant\_phone?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_phone">Link to this property</a>

registrant\_phone\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_phone_ext">Link to this property</a>

registrant\_postal\_code?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_postal_code">Link to this property</a>

registrant\_province?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_province">Link to this property</a>

registrant\_referral\_url?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_referral_url">Link to this property</a>

registrant\_street?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrant_street">Link to this property</a>

registrar\_city?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_city">Link to this property</a>

registrar\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_country">Link to this property</a>

registrar\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_email">Link to this property</a>

registrar\_fax?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_fax">Link to this property</a>

registrar\_fax\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_fax_ext">Link to this property</a>

registrar\_id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_id">Link to this property</a>

registrar\_name?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_name">Link to this property</a>

registrar\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_org">Link to this property</a>

registrar\_phone?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_phone">Link to this property</a>

registrar\_phone\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_phone_ext">Link to this property</a>

registrar\_postal\_code?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_postal_code">Link to this property</a>

registrar\_province?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_province">Link to this property</a>

registrar\_referral\_url?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_referral_url">Link to this property</a>

registrar\_street?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20registrar_street">Link to this property</a>

status?: Array&lt;string&gt;

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

technical\_city?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_city">Link to this property</a>

technical\_country?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_country">Link to this property</a>

technical\_email?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_email">Link to this property</a>

technical\_fax?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_fax">Link to this property</a>

technical\_fax\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_fax_ext">Link to this property</a>

technical\_id?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_id">Link to this property</a>

technical\_name?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_name">Link to this property</a>

technical\_org?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_org">Link to this property</a>

technical\_phone?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_phone">Link to this property</a>

technical\_phone\_ext?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_phone_ext">Link to this property</a>

technical\_postal\_code?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_postal_code">Link to this property</a>

technical\_province?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_province">Link to this property</a>

technical\_referral\_url?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_referral_url">Link to this property</a>

technical\_street?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20technical_street">Link to this property</a>

updated\_date?: string

formatdate-time

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20updated_date">Link to this property</a>

updated\_date\_raw?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20updated_date_raw">Link to this property</a>

whois\_server?: string

<a href="#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)%20%3E%20(property)%20whois_server">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.whois%20%3E%20(model)%20whois_get_response%20%3E%20(schema)>)

#### IntelURLs

##### [Get URL Intelligence](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/urls/methods/get)

client.intel.urls.get(URLGetParams {account\_id, url } params, RequestOptionsoptions?): [URL](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)>) {content\_categories, full\_url, hostname, 2 more }

GET/accounts/{account\_id}/intel/url

##### ModelsExpand Collapse

<details>

<summary>

URL {content\_categories, full\_url, hostname, 2 more }

</summary>

<details>

<summary>

content\_categories: Array&lt;ContentCategory&gt;

Content categories associated with this URL.

</summary>

id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

source\_id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20source_id">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20content_categories">Link to this property</a>

full\_url: string

The full URL that was looked up.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20full_url">Link to this property</a>

hostname: string

The hostname of the URL.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20hostname">Link to this property</a>

<details>

<summary>

risk\_type: Array&lt;RiskType&gt;

Security risk types associated with this URL.

</summary>

id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

name?: string

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

source\_id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20source_id">Link to this property</a>

super\_category\_id?: number

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type%20%3E%20(items)%20%3E%20(property)%20super_category_id">Link to this property</a>

</details>

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20risk_type">Link to this property</a>

url\_path: string

The path component of the URL.

<a href="#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)%20%3E%20(property)%20url_path">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.urls%20%3E%20(model)%20url%20%3E%20(schema)>)

#### IntelIndicator Feeds

##### [Get indicator feeds owned by this account](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/methods/list)

client.intel.indicatorFeeds.list(IndicatorFeedListParams {account\_id } params, RequestOptionsoptions?): SinglePage< [IndicatorFeedListResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)>) {id, created\_on, description, 5 more } >

GET/accounts/{account\_id}/intel/indicator-feeds

##### [Get indicator feed metadata](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/methods/get)

client.intel.indicatorFeeds.get(numberfeedID, IndicatorFeedGetParams {account\_id } params, RequestOptionsoptions?): [IndicatorFeedGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)>) {id, created\_on, description, 10 more }

GET/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}

##### [Create new indicator feed](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/methods/create)

client.intel.indicatorFeeds.create(IndicatorFeedCreateParams {account\_id, description, name } params, RequestOptionsoptions?): [IndicatorFeedCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)>) {id, created\_on, description, 5 more }

POST/accounts/{account\_id}/intel/indicator-feeds

##### [Update indicator feed metadata](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/methods/update)

client.intel.indicatorFeeds.update(numberfeedID, IndicatorFeedUpdateParams {account\_id, description, is\_attributable, 3 more } params, RequestOptionsoptions?): [IndicatorFeedUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)>) {id, created\_on, description, 5 more }

PUT/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}

##### [Get indicator feed data](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/methods/data)

client.intel.indicatorFeeds.data(numberfeedID, IndicatorFeedDataParams {account\_id } params, RequestOptionsoptions?): [IndicatorFeedDataResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_data_response%20%3E%20(schema)>)

GET/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}/data

##### ModelsExpand Collapse

<details>

<summary>

IndicatorFeedListResponse {id, created\_on, description, 5 more }

</summary>

id?: number

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on?: string

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description?: string

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable?: boolean

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable?: boolean

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public?: boolean

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on?: string

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name?: string

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_list_response%20%3E%20(schema)>)

<details>

<summary>

IndicatorFeedGetResponse {id, created\_on, description, 10 more }

</summary>

id?: number

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on?: string

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description?: string

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable?: boolean

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable?: boolean

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public?: boolean

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

<details>

<summary>

last\_upload\_summary?: LastUploadSummary {persisted, skipped, uploaded }

Summary of indicator counts from the last successful upload to this feed. Populated by the custom-threat-feeds loader at the end of each successful load. Absent (omitted) when no upload has completed successfully or the upload errored before the summary write. Surfaces silent-failure paths so operators can see when their indicators were dropped (popularity allowlist, expired valid\_until, etc.) without reading loader logs.

</summary>

<details>

<summary>

persisted?: Persisted {domains\_added, domains\_removed, ips\_added, 3 more }

Net delta applied to feed indicators by this upload. Snapshot uploads emit both \*\_added and \*\_removed; delta-add emits only \*\_added; delta-remove emits only \*\_removed.

</summary>

domains\_added?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20domains_added">Link to this property</a>

domains\_removed?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20domains_removed">Link to this property</a>

ips\_added?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20ips_added">Link to this property</a>

ips\_removed?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20ips_removed">Link to this property</a>

urls\_added?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20urls_added">Link to this property</a>

urls\_removed?: number

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted%20%3E%20(property)%20urls_removed">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20persisted">Link to this property</a>

<details>

<summary>

skipped?: Skipped {allowlisted\_domains, expired\_indicators, invalid\_indicators }

Counts of indicators that were uploaded but did not reach QuickSilver, broken down by reason.

</summary>

allowlisted\_domains?: number

Domains filtered by the global popularity allowlist at QS provisioning time. Popular domains (bing.com, naver.com, etc.) are protected from custom-threat-feed enforcement.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20allowlisted_domains">Link to this property</a>

expired\_indicators?: number

Indicators in the upload whose valid\_until is already in the past. These are not added to QS; the expiration cron handles cleanup.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20expired_indicators">Link to this property</a>

invalid\_indicators?: number

Reserved for future use. Currently always 0 — the unifier aborts the entire upload on a single bad indicator.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped%20%3E%20(property)%20invalid_indicators">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20skipped">Link to this property</a>

<details>

<summary>

uploaded?: Uploaded {domains, ips, urls }

Indicator counts from the unified file the loader received

</summary>

domains?: number

Number of domain indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20domains">Link to this property</a>

ips?: number

Number of IP indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20ips">Link to this property</a>

urls?: number

Number of URL indicators in the upload

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded%20%3E%20(property)%20urls">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary%20%3E%20(property)%20uploaded">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20last_upload_summary">Link to this property</a>

latest\_upload\_error?: string

Human-readable error message describing why the latest upload failed. Populated only when <code>latest_upload_status</code> is <code>Error</code>. Returns one of a small fixed set of category-level messages (invalid domain / IP / URL entries, malformed row or header, invalid valid\_until timestamp, etc.) or the generic <code>Upload failed</code> for unknown or infrastructure-level errors. Never echoes raw error text from the underlying loader. Intel accounts receive the verbatim loader/API error text (including specific offending values) instead of these category-level messages.

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_error">Link to this property</a>

<details>

<summary>

latest\_upload\_status?: "Mirroring"| "Unifying"| "Loading"| 3 more

Status of the latest snapshot uploaded

</summary>

One of the following:

"Mirroring"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%200">Link to this property</a>

"Unifying"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%201">Link to this property</a>

"Loading"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%202">Link to this property</a>

"Provisioning"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%203">Link to this property</a>

"Complete"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%204">Link to this property</a>

"Error"

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status%20%3E%20(member)%205">Link to this property</a>

</details>

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20latest_upload_status">Link to this property</a>

modified\_on?: string

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name?: string

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

provider\_id?: number

The unique identifier for the provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20provider_id">Link to this property</a>

provider\_name?: string

The provider of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)%20%3E%20(property)%20provider_name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_get_response%20%3E%20(schema)>)

<details>

<summary>

IndicatorFeedCreateResponse {id, created\_on, description, 5 more }

</summary>

id?: number

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on?: string

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description?: string

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable?: boolean

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable?: boolean

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public?: boolean

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on?: string

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name?: string

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_create_response%20%3E%20(schema)>)

<details>

<summary>

IndicatorFeedUpdateResponse {id, created\_on, description, 5 more }

</summary>

id?: number

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

created\_on?: string

The date and time when the data entry was created

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

description?: string

The description of the example test

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable?: boolean

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable?: boolean

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public?: boolean

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20is_public">Link to this property</a>

modified\_on?: string

The date and time when the data entry was last modified

formatdate-time

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name?: string

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_update_response%20%3E%20(schema)>)

IndicatorFeedDataResponse = string

[Link to this property](<#(resource)%20intel.indicator_feeds%20%3E%20(model)%20indicator_feed_data_response%20%3E%20(schema)>)

#### IntelIndicator FeedsSnapshots

##### [Update indicator feed data](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/subresources/snapshots/methods/update)

client.intel.indicatorFeeds.snapshots.update(numberfeedID, SnapshotUpdateParams {account\_id, source, cfAsyncUpload } params, RequestOptionsoptions?): [SnapshotUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)>) {file\_id, filename, poll\_url, 2 more }

PUT/accounts/{account\_id}/intel/indicator-feeds/{feed\_id}/snapshot

##### ModelsExpand Collapse

<details>

<summary>

SnapshotUpdateResponse {file\_id, filename, poll\_url, 2 more }

</summary>

file\_id?: number

Feed id

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20file_id">Link to this property</a>

filename?: string

Name of the file unified in our system

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20filename">Link to this property</a>

poll\_url?: string

Account-relative polling path. Prepend <code>/accounts/{account_id}</code> using the same account identifier and API host as the upload request. The path omits the account segment because the service does not have your account identifier in this context.

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20poll_url">Link to this property</a>

status?: string

Current status of the upload at the moment the request returned. This is NOT a terminal state: the file is unified inline, but the durable loader has only accepted it, so the upload is still <code>Unifying</code>. Poll <code>poll_url</code> until the status reaches a terminal value (<code>Unified</code> or <code>Error</code>).

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20status">Link to this property</a>

upload\_id?: number

Identifier of the upload row, for polling this upload to a terminal state via <code>poll_url</code>.

formatint64

<a href="#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)%20%3E%20(property)%20upload_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.snapshots%20%3E%20(model)%20snapshot_update_response%20%3E%20(schema)>)

#### IntelIndicator FeedsPermissions

##### [List indicator feed permissions](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/list)

client.intel.indicatorFeeds.permissions.list(PermissionListParams {account\_id } params, RequestOptionsoptions?): [PermissionListResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)>) {id, description, is\_attributable, 3 more }

GET/accounts/{account\_id}/intel/indicator-feeds/permissions/view

##### [Grant permission to indicator feed](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/create)

client.intel.indicatorFeeds.permissions.create(PermissionCreateParams {account\_id, account\_tag, feed\_id } params, RequestOptionsoptions?): [PermissionCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)>) {success }

PUT/accounts/{account\_id}/intel/indicator-feeds/permissions/add

##### [Revoke permission to indicator feed](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/indicator_feeds/subresources/permissions/methods/delete)

client.intel.indicatorFeeds.permissions.delete(PermissionDeleteParams {account\_id, account\_tag, feed\_id } params, RequestOptionsoptions?): [PermissionDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)>) {success }

PUT/accounts/{account\_id}/intel/indicator-feeds/permissions/remove

##### ModelsExpand Collapse

<details>

<summary>

PermissionListResponse = Array&lt;PermissionListResponseItem&gt;

</summary>

id?: number

The unique identifier for the indicator feed

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

description?: string

The description of the example test

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20description">Link to this property</a>

is\_attributable?: boolean

Whether the indicator feed can be attributed to a provider

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_attributable">Link to this property</a>

is\_downloadable?: boolean

Whether the indicator feed can be downloaded

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_downloadable">Link to this property</a>

is\_public?: boolean

Whether the indicator feed is exposed to customers

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20is_public">Link to this property</a>

name?: string

The name of the indicator feed

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20name">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_list_response%20%3E%20(schema)>)

<details>

<summary>

PermissionCreateResponse {success }

</summary>

success?: boolean

Whether the update succeeded or not

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_create_response%20%3E%20(schema)>)

<details>

<summary>

PermissionDeleteResponse {success }

</summary>

success?: boolean

Whether the update succeeded or not

<a href="#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)%20%3E%20(property)%20success">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.indicator_feeds.permissions%20%3E%20(model)%20permission_delete_response%20%3E%20(schema)>)

#### IntelIndicator FeedsDownloads

#### IntelSinkholes

##### [List sinkholes owned by this account](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/methods/list)

client.intel.sinkholes.list(SinkholeListParams {account\_id } params, RequestOptionsoptions?): SinglePage< [Sinkhole](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>) {id, account\_tag, created\_on, 4 more } >

GET/accounts/{account\_id}/intel/sinkholes

##### [Get a sinkhole](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/methods/get)

client.intel.sinkholes.get(stringsinkholeID, SinkholeGetParams {account\_id } params, RequestOptionsoptions?): [Sinkhole](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>) {id, account\_tag, created\_on, 4 more }

GET/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### [Create a new sinkhole for your account](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/methods/create)

client.intel.sinkholes.create(SinkholeCreateParams {account\_id, name, r2\_bucket, 2 more } params, RequestOptionsoptions?): [Sinkhole](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>) {id, account\_tag, created\_on, 4 more }

POST/accounts/{account\_id}/intel/sinkholes

##### [Update a sinkhole](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/methods/update)

client.intel.sinkholes.update(stringsinkholeID, SinkholeUpdateParams {account\_id, name, r2\_bucket, 2 more } params, RequestOptionsoptions?): [SinkholeUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole_update_response%20%3E%20(schema)>)

PUT/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### [Delete a sinkhole](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/methods/delete)

client.intel.sinkholes.delete(stringsinkholeID, SinkholeDeleteParams {account\_id } params, RequestOptionsoptions?): [SinkholeDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole_delete_response%20%3E%20(schema)>)

DELETE/accounts/{account\_id}/intel/sinkholes/{sinkhole\_id}

##### ModelsExpand Collapse

<details>

<summary>

Sinkhole {id, account\_tag, created\_on, 4 more }

</summary>

id?: string

The unique identifier for the sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

account\_tag?: string

The account tag that owns this sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20account_tag">Link to this property</a>

created\_on?: string

The date and time when the sinkhole was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on?: string

The date and time when the sinkhole was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

name?: string

The name of the sinkhole.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20name">Link to this property</a>

r2\_bucket?: string

The name of the R2 bucket to store results.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20r2_bucket">Link to this property</a>

r2\_id?: string

The id of the R2 instance.

<a href="#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)%20%3E%20(property)%20r2_id">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole%20%3E%20(schema)>)

SinkholeUpdateResponse = unknown

[Link to this property](<#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole_update_response%20%3E%20(schema)>)

SinkholeDeleteResponse = unknown

[Link to this property](<#(resource)%20intel.sinkholes%20%3E%20(model)%20sinkhole_delete_response%20%3E%20(schema)>)

#### IntelSinkholesIngresses

##### [Create an ingress rule](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/subresources/ingresses/methods/create)

client.intel.sinkholes.ingresses.create(stringsinkholeID, IngressCreateParams {zone\_id, cidr } params, RequestOptionsoptions?): [IngressCreateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)>) {id, cidr, created\_on, 3 more }

POST/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses

##### [Get an ingress rule](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/subresources/ingresses/methods/get)

client.intel.sinkholes.ingresses.get(stringingressID, IngressGetParams {zone\_id, sinkhole\_id } params, RequestOptionsoptions?): [IngressGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)>) {id, cidr, created\_on, 3 more }

GET/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### [Update an ingress rule](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/subresources/ingresses/methods/update)

client.intel.sinkholes.ingresses.update(stringingressID, IngressUpdateParams {zone\_id, sinkhole\_id, cidr } params, RequestOptionsoptions?): [IngressUpdateResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_update_response%20%3E%20(schema)>)

PUT/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### [Delete an ingress rule](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/sinkholes/subresources/ingresses/methods/delete)

client.intel.sinkholes.ingresses.delete(stringingressID, IngressDeleteParams {zone\_id, sinkhole\_id } params, RequestOptionsoptions?): [IngressDeleteResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_delete_response%20%3E%20(schema)>)

DELETE/zones/{zone\_id}/intel/sinkholes/{sinkhole\_id}/ingresses/{ingress\_id}

##### ModelsExpand Collapse

<details>

<summary>

IngressCreateResponse {id, cidr, created\_on, 3 more }

</summary>

id?: string

The unique identifier for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

cidr?: string

The CIDR block for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20cidr">Link to this property</a>

created\_on?: string

The date and time when the ingress rule was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on?: string

The date and time when the ingress rule was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

sinkhole\_id?: string

The sinkhole this ingress rule belongs to.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20sinkhole_id">Link to this property</a>

zone\_tag?: string

The zone tag associated with this ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_create_response%20%3E%20(schema)>)

<details>

<summary>

IngressGetResponse {id, cidr, created\_on, 3 more }

</summary>

id?: string

The unique identifier for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20id">Link to this property</a>

cidr?: string

The CIDR block for the ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20cidr">Link to this property</a>

created\_on?: string

The date and time when the ingress rule was created.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20created_on">Link to this property</a>

modified\_on?: string

The date and time when the ingress rule was last modified.

formatdate-time

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20modified_on">Link to this property</a>

sinkhole\_id?: string

The sinkhole this ingress rule belongs to.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20sinkhole_id">Link to this property</a>

zone\_tag?: string

The zone tag associated with this ingress rule.

<a href="#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_get_response%20%3E%20(schema)>)

IngressUpdateResponse = unknown

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_update_response%20%3E%20(schema)>)

IngressDeleteResponse = unknown

[Link to this property](<#(resource)%20intel.sinkholes.ingresses%20%3E%20(model)%20ingress_delete_response%20%3E%20(schema)>)

#### IntelAttack Surface Report

#### IntelAttack Surface ReportIssue Types

##### [Retrieves Security Center Issues Types](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/attack_surface_report/subresources/issue_types/methods/get)

client.intel.attackSurfaceReport.issueTypes.get(IssueTypeGetParams {account\_id } params, RequestOptionsoptions?): SinglePage< [IssueTypeGetResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issue_types%20%3E%20(model)%20issue_type_get_response%20%3E%20(schema)>)>

GET/accounts/{account\_id}/intel/attack-surface-report/issue-types

##### ModelsExpand Collapse

IssueTypeGetResponse = string

[Link to this property](<#(resource)%20intel.attack_surface_report.issue_types%20%3E%20(model)%20issue_type_get_response%20%3E%20(schema)>)

#### IntelAttack Surface ReportIssues

##### [Retrieves Security Center Issues](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/attack_surface_report/subresources/issues/methods/list)

Deprecated

client.intel.attackSurfaceReport.issues.list(IssueListParams {account\_id, dismissed, issue\_class, 12 more } params, RequestOptionsoptions?): V4PagePagination< [IssueListResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)>) {count, issues, page, per\_page } >

GET/accounts/{account\_id}/intel/attack-surface-report/issues

##### [Retrieves Security Center Issue Counts by Class](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/attack_surface_report/subresources/issues/methods/class)

Deprecated

client.intel.attackSurfaceReport.issues.class(IssueClassParams {account\_id, dismissed, issue\_class, 10 more } params, RequestOptionsoptions?): [IssueClassResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)>) {count, value }

GET/accounts/{account\_id}/intel/attack-surface-report/issues/class

##### [Retrieves Security Center Issue Counts by Severity](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/attack_surface_report/subresources/issues/methods/severity)

Deprecated

client.intel.attackSurfaceReport.issues.severity(IssueSeverityParams {account\_id, dismissed, issue\_class, 10 more } params, RequestOptionsoptions?): [IssueSeverityResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)>) {count, value }

GET/accounts/{account\_id}/intel/attack-surface-report/issues/severity

##### [Retrieves Security Center Issue Counts by Type](https://developers.cloudflare.com/api/typescript/resources/intel/subresources/attack_surface_report/subresources/issues/methods/type)

Deprecated

client.intel.attackSurfaceReport.issues.type(IssueTypeParams {account\_id, dismissed, issue\_class, 10 more } params, RequestOptionsoptions?): [IssueTypeResponse](<https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)>) {count, value }

GET/accounts/{account\_id}/intel/attack-surface-report/issues/type

##### ModelsExpand Collapse

<details>

<summary>

IssueType = "compliance\_violation"| "email\_security"| "exposed\_infrastructure"| 3 more

</summary>

One of the following:

"compliance\_violation"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"email\_security"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

"exposed\_infrastructure"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%202">Link to this property</a>

"insecure\_configuration"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%203">Link to this property</a>

"weak\_authentication"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%204">Link to this property</a>

"configuration\_suggestion"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)%20%3E%20(member)%205">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)>)

<details>

<summary>

SeverityQueryParam = "low"| "moderate"| "critical"

</summary>

One of the following:

"low"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%200">Link to this property</a>

"moderate"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%201">Link to this property</a>

"critical"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)%20%3E%20(member)%202">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20severity_query_param%20%3E%20(schema)>)

<details>

<summary>

IssueListResponse {count, issues, page, per\_page }

</summary>

count?: number

Indicates the total number of results.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20count">Link to this property</a>

<details>

<summary>

issues?: Array&lt;Issue&gt;

</summary>

id?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20id">Link to this property</a>

dismissed?: boolean

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20dismissed">Link to this property</a>

has\_extended\_context?: boolean

Indicates whether the insight has a large payload that requires fetching via the context endpoint.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20has_extended_context">Link to this property</a>

issue\_class?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20issue_class">Link to this property</a>

issue\_type?: <a href="https://developers.cloudflare.com/api/typescript/resources/intel#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type%20%3E%20(schema)">IssueType</a>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20issue_type">Link to this property</a>

<details>

<summary>

payload?: Payload {detection\_method, zone\_tag }

</summary>

detection\_method?: string

Describes the method used to detect insight.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload%20%3E%20(property)%20detection_method">Link to this property</a>

zone\_tag?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload%20%3E%20(property)%20zone_tag">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20payload">Link to this property</a>

resolve\_link?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20resolve_link">Link to this property</a>

resolve\_text?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20resolve_text">Link to this property</a>

<details>

<summary>

severity?: "Low"| "Moderate"| "Critical"

</summary>

One of the following:

"Low"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%200">Link to this property</a>

"Moderate"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%201">Link to this property</a>

"Critical"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20severity">Link to this property</a>

since?: string

formatdate-time

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20since">Link to this property</a>

<details>

<summary>

status?: "active"| "resolved"

The current status of the insight.

</summary>

One of the following:

"active"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status%20%3E%20(member)%200">Link to this property</a>

"resolved"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status%20%3E%20(member)%201">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20status">Link to this property</a>

subject?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20subject">Link to this property</a>

timestamp?: string

formatdate-time

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20timestamp">Link to this property</a>

<details>

<summary>

user\_classification?: "false\_positive"| "accept\_risk"| "other"| null

User-defined classification for the insight. Can be ‘false\_positive’, ‘accept\_risk’, ‘other’, or null.

</summary>

One of the following:

"false\_positive"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%200">Link to this property</a>

"accept\_risk"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%201">Link to this property</a>

"other"

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification%20%3E%20(member)%202">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues%20%3E%20(items)%20%3E%20(property)%20user_classification">Link to this property</a>

</details>

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20issues">Link to this property</a>

page?: number

Specifies the current page within paginated list of results.

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20page">Link to this property</a>

per\_page?: number

Sets the number of results per page of results.

maximum1000

minimum1

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)%20%3E%20(property)%20per_page">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_list_response%20%3E%20(schema)>)

<details>

<summary>

IssueClassResponse = Array&lt;IssueClassResponseItem&gt;

</summary>

count?: number

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_class_response%20%3E%20(schema)>)

<details>

<summary>

IssueSeverityResponse = Array&lt;IssueSeverityResponseItem&gt;

</summary>

count?: number

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_severity_response%20%3E%20(schema)>)

<details>

<summary>

IssueTypeResponse = Array&lt;IssueTypeResponseItem&gt;

</summary>

count?: number

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20count">Link to this property</a>

value?: string

<a href="#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)%20%3E%20(items)%20%3E%20(property)%20value">Link to this property</a>

</details>

[Link to this property](<#(resource)%20intel.attack_surface_report.issues%20%3E%20(model)%20issue_type_response%20%3E%20(schema)>)