datafetch.wtf

Products

Enterprise-grade REST API

Same backend as the console — authenticate with X-Api-Key at https://api.datafetch.wtf. HTTPS only, documented JSON, plan-aware limits.

Automation should not invent a second truth. datafetch.wtf’s API exposes the same modules analysts use in the UI so SOAR playbooks and internal bots stay aligned.

On Windows PowerShell use curl.exe — the curl alias is Invoke-WebRequest and will confuse HTTPS examples.

  • HTTPS API origin: api.datafetch.wtf
  • Status and search endpoints
  • Device / IP controls on seats
  • Keys managed from the console

Integrate

Automate investigations

Pipe results into your case tool, bot, or detection pipeline. Structured responses are built for machines and humans.

Health checks, auth headers, and search flows are documented in /docs. Start with a health call, then attach your key.

  • X-Api-Key authentication
  • JSON shapes stable enough for playbooks
  • Rate limits tied to plan

Security

Hardened by default

TLS everywhere. Optional IP allowlists and device binding reduce key theft impact.

Parity

Console ↔ API

What you see in the UI is what automation can request — no shadow enrichment path.

Ship enrichment into your stack

Read the docs, mint a key, and call api.datafetch.wtf — then keep analysts on the same modules in the console.

Read the API docs

Or open the console to mint a key and test a live search.

Search now

← All products