CTIX
Network live
CTIXGET

Get Quick Add Intel Relation Objects

Source docs
GEThttps://cs-testv2.cyware.com/ctixapi/ingestion/threat-data/report/{report_id}/relations/

Retrieve the details of the threat objects (indicators, SDOs, SCOs, relations, and custom objects) that are ingested and added as relationship objects of the report that is created as part of the quick add intel submission.

Path Parameters

NameTypeRequiredDescription
report_idstringoptional

Pass the unique ID of a report object to retrieve the related objects. You can retrieve the report ID using the List Quick Add Intel History endpoint.

Query Parameters

NameTypeRequiredDescription
page_sizestringoptional

Pass the number of objects to retrieve on each page.

qstringoptional

Pass the keyword to search based on the object name.

pagestringoptional

Pass the page number to retrieve objects.

Run it

Use the Request parameters panel to enter path IDs, query values, JSON body, and credentials. Then run any snippet below — all languages use the same values. Base URL: https://cs-testv2.cyware.com/ctixapi (change in API Settings).

Playground

Request parameters

Edit values here before running any snippet below (cURL, JavaScript, or Python). Code blocks are reference only — your inputs above are what gets sent.

CTIXConnect to Intel ExchangeConnect to run

Open API (HMAC signature) · Get credentials from Cyware Admin → Open API → Generate Credentials.

Signature and Expires are generated when you run a request. Access ID and Secret Key stay in memory for this tab only.

Credentials from Authentication auto-fill here for this product. If fields are empty after connecting, refresh this page or open the product docs again.

Path Parameters
Query Parameters
cURL
curl --request GET \
  --url "https://cs-testv2.cyware.com/ctixapi/ingestion/threat-data/report/d42fb454-62c7-4b5f-9330-40036bd2da1f/relations/?AccessID=%3Cyour%20access%20id%3E&Signature=%3Cyour%20signature%3E&Expires=%3Cyour%20expires%3E"

View-only example — running live API calls requires a role with snippet testing access.

JavaScript
const url = "https://cs-testv2.cyware.com/ctixapi/ingestion/threat-data/report/d42fb454-62c7-4b5f-9330-40036bd2da1f/relations/?AccessID=%3Cyour%20access%20id%3E&Signature=%3Cyour%20signature%3E&Expires=%3Cyour%20expires%3E";

const response = await fetch(url, {
  method: "GET",
});

const text = await response.text();
let data;
try { data = JSON.parse(text); } catch { data = text; }
console.log(response.status, data);

View-only example — running live API calls requires a role with snippet testing access.

Python
import requests

url = "https://cs-testv2.cyware.com/ctixapi/ingestion/threat-data/report/d42fb454-62c7-4b5f-9330-40036bd2da1f/relations/"
params = {
    "AccessID": "<your access id>",
    "Signature": "<your signature>",
    "Expires": "<your expires>"
}
headers = {}
response = requests.request("GET", url, params=params, headers=headers)
print(response.status_code)
print(response.text)

View-only example — running live API calls requires a role with snippet testing access.

Example Response
{
  "next": {},
  "page_size": 10,
  "previous": {},
  "results": [
    {}
  ],
  "total": 1
}

View-only example — running live API calls requires a role with snippet testing access.