FullHunt Intelligence APIs
For Security Vendors, Builders & AI Workflows
Query host, domain, exposure, vulnerability, exploit, and passive DNS data through the console, REST APIs, or Model Context Protocol server.
Embed internet asset, service, vulnerability, and exploit data without building scanners. Map complete external footprints in minutes.
Security vendors embed it. Enterprises monitor exposure. MSSPs run it across clients.
examples: domain:kaspersky.com kaspersky.com port:80 has_ipv6:true Read more about search filters
Search across domains, subdomains, hosts, IPs, open ports, services, technologies, certificates and CVEs.
FullHunt supplies discovery, exposure, exploit, and credential intelligence through APIs, the enterprise platform, and the multi-tenant MSSP workspace.
Internet-scale enumeration of subdomains, IPs, services, and cloud assets - continuously updated.
Open ports, misconfigurations, expired certificates, and exposed admin panels surfaced automatically.
Change events when new assets appear or known assets change state, configuration, or risk posture.
CVEs matched to your live attack surface, each carrying an exploitability-weighted score.
Curated exploit PoC tracking and KEV alignment so you remediate what attackers will actually use.
Credential leaks, breached accounts, and dark web mentions tied back to your monitored domains.
For Security Vendors, Builders & AI Workflows
Query host, domain, exposure, vulnerability, exploit, and passive DNS data through the console, REST APIs, or Model Context Protocol server.
For Enterprises & MSSPs
Use FullHunt's intelligence directly for continuous external exposure monitoring, vulnerability validation, dark web monitoring, and reporting across your organization or client environments.
Query host, domain, passive DNS, vulnerability, and exploit data for product features, enrichment pipelines, and investigations.
{
"host": "legacy-vpn.acme-corp.com",
"ip_address": "185.220.101.47",
"is_live": true,
"network_ports": [443, 8443, 4433],
"technologies": ["Pulse Secure 9.1R3", "Apache 2.4.49"],
"vulnerabilities": [
{
"cve_id": "CVE-2021-22893",
"cvss_v3_score": 10.0,
"severity": "CRITICAL",
"is_kev": true,
"epss_score": 0.974,
"has_public_exploit": true,
"exploit_count": 14
}
],
"metadata": { "last_seen": "2026-03-08T14:22:00Z", "validated": true }
}
Embed FullHunt data in a security product, monitor your own perimeter, or operate across client environments.
Create a workspace for each client, control access with roles, and send alerts and reports from one MSSP account.
Add discovery, exposure, vulnerability, and exploit data to your product through APIs and feeds, without building and maintaining scanners.
Host, port, CVE, and tech stack data, delivered as structured feeds or via API.
Dedicated infrastructure isolated from shared tenants. Your SLA, your capacity.
Flexible commercial terms for enterprise integrations and high-volume use cases.
Trigger scans programmatically and receive structured results through the full pipeline: discovery, fingerprinting, vulnerability mapping, and alerting in one flow.
FullHunt discovers infrastructure, tracks change, validates exposures, and delivers findings to products and security teams.
Step 1
Enumerate domains, subdomains, IPs, cloud services, technologies, and certificates from internet-facing infrastructure.
Step 2
Continuous monitoring records newly observed assets, service changes, certificate changes, and configuration drift.
Step 3
Runtime checks map CVEs to observed assets and add Exploit Prediction Scoring System and CISA Known Exploited Vulnerabilities context.
Step 4
Send structured findings through APIs, data feeds, webhooks, security integrations, or the FullHunt platform.
Query FullHunt through REST, Python, or Model Context Protocol. Send findings to SIEM, SOAR, ticketing, and messaging tools.
REST API and Python SDK.
FullHunt tools for MCP-compatible clients.
Splunk, Microsoft Sentinel, Cortex XSOAR, and FortiSOAR.
Jira, ServiceNow, Slack, and Microsoft Teams.
Connect Claude, Copilot, or any MCP-compatible AI agent to FullHunt data. Query infrastructure, trigger authorized scans, and retrieve vulnerability and exploit context.
Use FullHunt APIs and data feeds for discovery, exposure management, vulnerability intelligence, and threat intelligence features inside your product.
Curated security research and continuously updated exploit tracking, delivered through the console and APIs.
Use FullHunt data in your product, enterprise program, MSSP service, or investigation workflow.
Map observed external-facing assets: subdomains, IPs, cloud services, and shadow IT. Records update as the footprint changes.
Track newly observed services, certificate changes, and configuration drift. Alerts identify changes between observations.
Run maintained vulnerability checks against observed services and keep the affected asset, evidence, and validation status together.
Map CVEs to observed assets and add EPSS, CISA KEV, and public exploit context for prioritization.
Credential leaks, breached accounts, typosquatting, and phishing domains, detected and tied back to your monitored assets.
Extend visibility to vendors and subsidiaries with scoped monitoring, risk scoring, and consolidated reporting.
FullHunt maps newly added checks to observed internet-facing assets and exposes the results through the platform and APIs.
Loading vulnerability check data…
FullHunt began with continuous external exposure monitoring. That discovery and enrichment engine now supplies APIs, enterprise workflows, and multi-tenant MSSP operations.
FullHunt started by helping security teams understand and continuously monitor their external exposure.
The discovery and validation engine expanded into vulnerability, exploit, passive DNS, and historical infrastructure data.
Security vendors embed that intelligence through OEM APIs. Enterprises use it directly. MSSPs operate it across client environments.
Send findings to SIEM, SOAR, ticketing, and messaging platforms, or query the same data through APIs and Model Context Protocol.
Native integrations and delivery options
Embed it in a product, query it directly, or run the enterprise platform across your organization or client environments.
For Security Vendors, Builders & AI Workflows
Query host, domain, exposure, vulnerability, exploit, and passive DNS data through the console, REST APIs, or Model Context Protocol server.
For Enterprises & MSSPs
Use FullHunt's intelligence directly for continuous external exposure monitoring, vulnerability validation, dark web monitoring, and reporting across your organization or client environments.
Embed it in your product, monitor your enterprise, or run it across client environments.