{"uid":"cap_zMJORjOKHte4grA7Q9q4G","slug":"telesint-api-onrender-com-12bc99e5","name":"TeleSint Full Intel Feed","description":"Full intel feed across all categories. Filters: category(ioc|c2|actor|breach|intent|vulnerability), severity, min_confidence, since, tag, tlp, limit, offset. Returns all record types newest first. Use for SIEM ingestion.","url":"https://telesint-api.onrender.com/feed","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","properties":{"tag":{"type":"string","description":"Tag keyword filter, e.g. ransomware, cobalt-strike, apt"},"tlp":{"type":"string","description":"TLP classification: WHITE | GREEN | AMBER | RED"},"limit":{"type":"number","description":"Page size, default 20, max 100"},"since":{"type":"string","description":"ISO 8601 timestamp filter, e.g. 2026-05-01T00:00:00Z"},"offset":{"type":"number","description":"Pagination offset, default 0"},"category":{"type":"string","description":"Intel category filter: ioc | c2 | actor | breach | intent | vulnerability"},"severity":{"type":"string","description":"Minimum severity: critical | high | medium | low | info"},"min_confidence":{"type":"number","description":"Minimum AI confidence score 0-100"}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":{"type":"json","example":{"items":[{"id":"f1e2e3d4-5678-90ab-cdef-123456789abc","ts":"2026-05-27T14:32:00Z","tlp":"WHITE","iocs":[{"type":"sha256","value":"d4e5f6a7b8c9d0e1...","context":"Ransomware dropper"}],"tags":["blackcat","alphv","ransomware"],"ttps":[{"id":"T1486","name":"Data Encrypted for Impact","tactic":"Impact"}],"channel":"https://t[.]me/vxunderground","summary":"New ransomware dropper IOCs from BlackCat/ALPHV campaign","category":"ioc","severity":"critical","confidence":88}],"limit":20,"total":156,"offset":0,"source":"TeleSint","endpoint":"feed"}},"example":{"request":{"input":{"type":"http","method":"GET","queryParams":{}}},"response":{"_truncated":true,"_originalSize":15572}},"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.05","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"settled","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.05/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_sfsZmkz1VwJp_tSB7UwSK","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.05","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns a unified threat intelligence feed across all categories (IOCs, C2, actors, breaches, intent signals) sourced from Telegram CTI channels, newest first, suitable for SIEM ingestion.","exampleAgentPrompt":"Pull the full TeleSint intel feed for all categories, severity high or critical, minimum confidence 75, since the last 24 hours, TLP amber only, and give me the 50 newest records — I need this for SIEM ingestion.","exampleUseCases":null,"resultDescription":"A unified list of threat intelligence records sorted newest first, spanning IOCs, C2 infrastructure, threat actor profiles, breach disclosures, and pre-attack intent signals. Each record includes confidence scores, severity ratings, TLP classification, tags, and category-specific fields sourced from Telegram CTI channels.","failureModes":["Invalid category enum value returns 400 bad request","since parameter in unrecognized format causes parse error","min_confidence out of 0-100 range returns validation error","Payment not provided or insufficient USDC results in 402 Payment Required","Offset beyond available records returns empty items array","Upstream Telegram data source lag may cause stale results"],"whenToPreferThis":"Use this endpoint when you need a single unified feed spanning all threat intelligence categories at once, rather than querying each category endpoint separately. Ideal for SIEM ingestion pipelines, bulk CTI aggregation, or when you want cross-category correlation in one call. Prefer the category-specific sibling endpoints when you need deep filtering unique to a single record type (e.g., C2 framework filtering or nation-state actor filtering).","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T12:42:26.447Z","isFirstParty":false}