Sign in
Welcome back.
Sign in with your tenant credentials. SSO is available on workplace plans, and MFA can be enabled from your account settings.
Threat Intelligence API
What you're signing into.
- ✓Evidence chain under every answer→Every claim carries the document it came from — source, fetch time, TLP and a confidence score. No uncited assertions.
- ✓One graph, not four lookups→Indicators, CVEs, actors, malware and MITRE ATT&CK techniques resolve as a single traversable graph.
- ✓KSA / MENA data residency→Pin a tenant to a region. KSA tenant data stays on KSA infrastructure — enforced in the pipeline, not promised in a policy.
- ✓STIX 2.1 over TAXII 2.1→Discovery, collections and bundles at /v1/feeds/api-root — your SOAR or SIEM polls it directly, no translation layer.
polled on a cadence
queried per indicator
GreyNoiseVirusTotalShodan
one Bearer key · every endpoint
curl https://omniintel.sirp.io/v1/enrich/1.2.3.4 \
-H "Authorization: Bearer $OMNI_INTEL_KEY"Free tier is 10,000 requests at a 20/second burst, no card. Plan limits →