For AI agents: visit https://threatconnect.readme.io/llms.txt for an index of all pages formatted in Markdown and endpoints in OpenAPI. Append .md to any documentation page URL to get its markdown version.
Jump to Content
Home
Guides
API Reference
Log In
API Reference
Log In
Home
Guides
API Reference
Retrieve fields
ThreatConnect v3 API Overview
Introduction
Getting Started
Postman Configuration
Features
Create Activity Logs
Create and Manage Associations
Delete Case Objects in Bulk
Enable Pagination
Filter Results With TQL
HTTP Status Codes
Include Additional Fields in API Responses
Retrieve a List of Available Fields for an Endpoint
Retrieve OpenAPI Documentation
Return a Count of Items
Sort Results
Specify an Owner
Update an Object's Metadata
Available Endpoints
ThreatConnect API
Artifacts
Artifacts Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Artifact
post
Retrieve Artifacts
get
Retrieve Artifact by ID
get
Update Artifact
put
Delete Artifacts
del
Delete Artifact by ID
del
Artifact Types
Artifact Types Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Retrieve ArtifactTypes
get
Retrieve ArtifactType by ID
get
Attribute Types
Attribute Types Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Retrieve AttributeTypes
get
Retrieve AttributeType by ID
get
Case Attributes
Case Attributes Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create CaseAttribute
post
Retrieve CaseAttributes
get
Retrieve CaseAttribute by ID
get
Update CaseAttribute by ID
put
Delete CaseAttribute by ID
del
Case Notes
Notes Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Note
post
Retrieve Notes
get
Retrieve Note by ID
get
Update Note by ID
put
Delete Notes
del
Delete Note by ID
del
Cases
Cases Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Case
post
Retrieve Cases
get
Retrieve Case by ID
get
Update Case
put
Delete Cases
del
Delete Case by ID
del
Exclusion List
Exclusion Lists Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create ExclusionList
post
Retrieve ExclusionLists
get
Retrieve ExclusionList by ID
get
Update ExclusionList by ID
put
Delete ExclusionList by ID
del
Group Attributes
Group Attributes Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create GroupAttribute
post
Retrieve GroupAttributes
get
Retrieve GroupAttribute by ID
get
Update GroupAttribute by ID
put
Delete GroupAttribute by ID
del
Groups
Groups Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Group
post
Create Document
post
Retrieve Groups
get
Retrieve Group by ID
get
Retrieve Document
get
Retrieve PDF
get
Retrieve Event Type Categories
get
Update Group by ID
put
Update Document
put
Delete Group by ID
del
Indicator Attributes
Indicator Attributes Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create IndicatorAttribute
post
Retrieve IndicatorAttributes
get
Retrieve IndicatorAttribute by ID
get
Update IndicatorAttribute by ID
put
Delete IndicatorAttribute by ID
del
Indicator Enrichment
Indicator Enrichment Overview
Enrich Indicators
post
Enrich Indicator
post
Indicators
Indicators Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Indicator
post
Retrieve Indicators
get
Retrieve Indicator by ID
get
Retrieve Deleted Indicators
get
Update Indicator by ID
put
Delete Indicator by ID
del
IntelRequirements
Intelligence Requirements Overview
Retrieve entity info
optns
Retrieve fields
optns
Retrieve tql
optns
Create Intel Requirement
post
Retrieve Intel Requirements
get
Retrieve Intel Requirement by ID
get
Update Intel Requirement by ID
put
Delete Intel Requirement by ID
del
IntelRequirementsCategories
Intelligence Requirement Categories Overview
Retrieve entity info
optns
Retrieve fields
optns