APIs.io Engineering Platform Email Security API

The Email Security API from APIs.io Engineering Platform — 7 operation(s) for email security.

Operations 7

GET /accounts/{account_id}/email-security/investigate APIs.io Engineering Platform Search email messages #
GET /accounts/{account_id}/email-security/investigate/{postfix_id} APIs.io Engineering Platform Get message details #
GET /accounts/{account_id}/email-security/investigate/{postfix_id}/detections APIs.io Engineering Platform Get message detection details #
GET /accounts/{account_id}/email-security/investigate/{postfix_id}/preview APIs.io Engineering Platform Get email preview #
GET /accounts/{account_id}/email-security/investigate/{postfix_id}/raw APIs.io Engineering Platform Get raw email content #
GET /accounts/{account_id}/email-security/investigate/{postfix_id}/trace APIs.io Engineering Platform Get email trace #
GET /accounts/{account_id}/email-security/phishguard/reports APIs.io Engineering Platform Get PhishGuard reports #

Documentation

Specifications

Other Resources

🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-1ab188a6-cc1f-490d-9413-9c6da20918d0?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-0e94f581-cbc1-48e0-b594-1f6b3d07a328?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-4517d93a-e7f7-4dc2-b572-06762bbe14de?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-88f9ddbb-3115-47dc-b6e5-7fc6f1d2a190?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-3a12caae-4945-4df4-8ab9-bb6219ba7a9f?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-863b18f0-c2f2-4e32-a5fa-0d1e6ccf77a9?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-189876d1-f207-49a2-a4bc-5c67ae78cd19?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-c1e74fd9-3f84-4d95-943d-d645d6cb82f7?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-b002164d-6e8a-4b6d-b409-4929476e7818?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-508660fd-30b8-4c9c-aede-8edbac8a514d?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-da35e0ba-f1a9-42fe-a77a-56ff0a47e341?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-1d4df7d0-9c92-4fa8-946f-2110c2b3b48d?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-2af6f54f-d259-46c0-8f86-78856f5885cd?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-cc203f31-e7f6-42ec-ad34-c5c4cde58904?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-f19285da-48dd-4691-bbdf-f7d6bec157a3?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-aa69cacc-4bbf-4724-a1d4-78cdad57fee8?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-a5858f86-04d3-4e15-ae11-b42c7516688b?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-c2052341-766c-43c7-b1dc-ed4985e4606b?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-aa777c90-8271-4809-8eac-3ec39a9a899c?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-4d5957dc-df05-4216-a5fc-d46b3ba811d8?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-28d97617-fdba-46a5-ac3e-40f3d2e0fa57?action=share&creator=35240
🔗
PostmanCollection
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-7429b451-d812-4abc-b497-b763372cf5c5?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-b0eafdd0-adaa-48a2-a855-6a31beb86d83?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-209f34ef-13c1-400c-bca8-fcddb304aff5?action=share&creator=35240
🔗
PostmanCapability
https://api-evangelist.postman.co/workspace/APIs.io-Engineering-Platform/fe320942-e505-4ee8-8b7c-d72eae00d93f/collection/35240-fb2bbbb8-d4cc-48b1-a660-c8e158bfbbea?action=share&creator=35240

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/engineering-platform-email-security-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

engineering-platform-email-security-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  description: 'To get started using Cloudflare''s products and services via the API, refer to [how to interact with Cloudflare](https://developers.cloudflare.com/fundamentals/basic-tasks/interact-with-cloudflare/), which covers using tools like [Terraform](https://developers.cloudflare.com/terraform/#cloudflare-terraform) and the [official SDKs](https://developers.cloudflare.com/fundamentals/api/reference/sdks/) to maintain your Cloudflare resources.


    Using the Cloudflare API requires authentication so that Cloudflare knows who is making requests and what permissions you have. Create an API token to grant access to the API to perform actions.


    To create an API token, from the Cloudflare dashboard, go to My Profile > API Tokens and select Create Token. For more information on how to create and troubleshoot API tokens, refer to

    our [API fundamentals](https://developers.cloudflare.com/fundamentals/api/).


    Totally new to Cloudflare? [Start here](https://developers.cloudflare.com/fundamentals/get-started/).'
  license:
    name: BSD-3-Clause
    url: https://opensource.org/licenses/BSD-3-Clause
  title: APIs.io Engineering Platform Cloudflare Email Security API
  version: 4.0.0
tags:
- name: Email Security
paths:
  /accounts/{account_id}/email-security/investigate:
    get:
      description: This endpoint returns information for each email that matches the search parameter(s).
      operationId: email_security_investigate
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - description: 'The beginning of the search date range.

          Defaults to `now - 30 days`.'
        example: '2022-07-25T14:30:00Z'
        in: query
        name: start
        schema:
          format: date-time
          type: string
      - description: 'The end of the search date range.

          Defaults to `now`.'
        example: '2022-06-25T14:30:00Z'
        in: query
        name: end
        schema:
          format: date-time
          type: string
      - description: 'Space delimited query term(s).

          The search is case-insensitive.


          The content of the following email metadata fields are searched:

          * alert_id

          * CC

          * From (envelope_from)

          * From Name

          * final_disposition

          * md5 hash (of any attachment)

          * sha1 hash (of any attachment)

          * sha256 hash (of any attachment)

          * name (of any attachment)

          * Reason

          * Received DateTime (yyyy-mm-ddThh:mm:ss)

          * Sent DateTime (yyyy-mm-ddThh:mm:ss)

          * ReplyTo

          * To (envelope_to)

          * To Name

          * Message-ID

          * smtp_helo_server_ip

          * smtp_previous_hop_ip

          * x_originating_ip

          * Subject'
        example: bob jones
        in: query
        name: query
        schema:
          type: string
      - description: If `false`, the search includes non-detections.
        in: query
        name: detections_only
        schema:
          default: true
          type: boolean
      - description: Controls whether the message action log in included in the response.
        in: query
        name: action_log
        schema:
          default: true
          type: boolean
      - description: Filter messages by the provided disposition.
        in: query
        name: final_disposition
        schema:
          allOf:
          - enum:
            - MALICIOUS
            - SUSPICIOUS
            - SPOOF
            - SPAM
            - BULK
            type: string
      - in: query
        name: metric
        schema:
          type: string
      - description: Filter messages by actions applied to them
        in: query
        name: message_action
        schema:
          allOf:
          - enum:
            - PREVIEW
            - QUARANTINE_RELEASED
            - MOVED
            type: string
      - example: me@example.com
        in: query
        name: recipient
        schema:
          type: string
      - example: noreply@example.com
        in: query
        name: sender
        schema:
          type: string
      - example: 4Njp3P0STMz2c02Q-2022-12-30T02:44:49
        in: query
        name: alert_id
        schema:
          type: string
      - description: Filter by the sender domain
        example: example.com
        in: query
        name: domain
        schema:
          type: string
      - example: <4VAZPrAdg7IGNxdt1DWRNu0gvOeL_iZiwP4BQfo4DaE.Yw-woXuugQbeFhBpzwFQtqq_v2v1HOKznoMBqbciQpE@example.com>
        in: query
        name: message_id
        schema:
          type: string
      - description: Page number of paginated results.
        in: query
        name: page
        schema:
          default: 1
          format: int32
          minimum: 1
          type: integer
      - description: Number of results to display.
        in: query
        name: per_page
        schema:
          default: 20
          format: int32
          minimum: 1
          type: integer
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      items:
                        $ref: '#/components/schemas/email-security_MailsearchMessage'
                      type: array
                    result_info:
                      $ref: '#/components/schemas/email-security_ResultInfo'
                  required:
                  - result
                  - result_info
                  type: object
          description: Search results for the provided query
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Search email messages
      tags:
      - Email Security
      x-api-token-group:
      - 'Cloud Email Security: Write'
      - 'Cloud Email Security: Read'
  /accounts/{account_id}/email-security/investigate/{postfix_id}:
    get:
      operationId: email_security_get_message
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - in: path
        name: postfix_id
        required: true
        schema:
          description: Message identifier
          example: 4Njp3P0STMz2c02Q
          title: postfix_id
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      allOf:
                      - properties:
                          action_log: {}
                          alert_id:
                            type:
                            - string
                            - 'null'
                          client_recipients:
                            items:
                              type: string
                            type: array
                          delivery_mode:
                            allOf:
                            - $ref: '#/components/schemas/email-security_MessageDeliveryMode'
                            - type:
                              - string
                              - 'null'
                          detection_reasons:
                            items:
                              type: string
                            type: array
                          edf_hash:
                            type:
                            - string
                            - 'null'
                          final_disposition:
                            allOf:
                            - $ref: '#/components/schemas/email-security_DispositionLabel'
                            - type:
                              - string
                              - 'null'
                          from:
                            type:
                            - string
                            - 'null'
                          from_name:
                            type:
                            - string
                            - 'null'
                          is_phish_submission:
                            type: boolean
                          is_quarantined:
                            type: boolean
                          message_id:
                            type: string
                          postfix_id:
                            $ref: '#/components/schemas/email-security_PostfixId'
                          sent_date:
                            type:
                            - string
                            - 'null'
                          subject:
                            type:
                            - string
                            - 'null'
                          threat_categories:
                            items:
                              type: string
                            type:
                            - array
                            - 'null'
                          to:
                            items:
                              type: string
                            type:
                            - array
                            - 'null'
                          to_name:
                            items:
                              type: string
                            type:
                            - array
                            - 'null'
                          ts:
                            type: string
                          validation:
                            allOf:
                            - properties:
                                comment:
                                  type:
                                  - string
                                  - 'null'
                                dkim:
                                  allOf:
                                  - $ref: '#/components/schemas/email-security_ValidationStatus'
                                  - type:
                                    - string
                                    - 'null'
                                dmarc:
                                  allOf:
                                  - $ref: '#/components/schemas/email-security_ValidationStatus'
                                  - type:
                                    - string
                                    - 'null'
                                spf:
                                  allOf:
                                  - $ref: '#/components/schemas/email-security_ValidationStatus'
                                  - type:
                                    - string
                                    - 'null'
                              type: object
                            - type:
                              - object
                              - 'null'
                        required:
                        - ts
                        - message_id
                        - client_recipients
                        - postfix_id
                        - detection_reasons
                        - action_log
                        - is_quarantined
                        - is_phish_submission
                        type: object
                      - properties:
                          id:
                            type: string
                        required:
                        - id
                        type: object
                      example:
                        action_log: []
                        alert_id: 4Njp3P0STMz2c02Q-2022-12-30T02:44:49
                        client_recipients:
                        - email@example.com
                        delivery_mode: DIRECT
                        detection_reasons:
                        - 'Selector is a source of spam/uce : Smtp-Helo-Server-Ip=<b>127.0.0[dot]186</b>'
                        edf_hash: null
                        final_disposition: MALICIOUS
                        from: d1994@example.com
                        from_name: Sender Name
                        id: 47JJcT1w6GztQV7-email@example.com
                        is_phish_submission: false
                        is_quarantined: false
                        message_id: <4VAZPrAdg7IGNxdt1DWRNu0gvOeL_iZiwP4BQfo4DaE.Yw-woXuugQbeFhBpzwFQtqq_v2v1HOKznoMBqbciQpE@example.com>
                        postfix_id: 47JJcT1w6GztQV7
                        sent_date: 2019-11-21 00:22:01
                        subject: listen, I highly recommend u to read that email, just to ensure not a thing will take place
                        threat_categories:
                        - IPReputation
                        - ASNReputation
                        to:
                        - email@example.com
                        to_name:
                        - Recipient Name
                        ts: 2019-11-20 23:22:01
                        validation:
                          comment: null
                          dkim: pass
                          dmarc: none
                          spf: fail
                  required:
                  - result
                  type: object
          description: Email message details
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get message details
      tags:
      - Email Security
  /accounts/{account_id}/email-security/investigate/{postfix_id}/detections:
    get:
      description: 'For emails that have a detection, this endpoint returns detection details

        such as threat categories, sender information, and links.'
      operationId: email_security_get_message_detections
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - in: path
        name: postfix_id
        required: true
        schema:
          description: Message identifier
          example: 4Njp3P0STMz2c02Q
          title: postfix_id
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      example:
                        action: QUARANTINED
                        attachments: []
                        final_disposition: MALICIOUS
                        headers:
                        - name: From
                          value: Sender Name <d1994@example.com>
                        - name: Subject
                          value: listen, I highly recommend u to read that email, just to ensure not a thing will take place
                        links:
                        - href: https://example.com
                          text: Click here!
                        sender_info:
                          as_name: AS0
                          as_number: 0
                          geo: US/-/-
                          ip: 127.0.0.1
                          pld: example.com
                        threat_categories:
                        - description: null
                          id: 1234
                          name: IP Reputation
                        validation:
                          comment: null
                          dkim: pass
                          dmarc: none
                          spf: fail
                      properties:
                        action:
                          type: string
                        attachments:
                          items:
                            $ref: '#/components/schemas/email-security_Attachment'
                          type: array
                        final_disposition:
                          allOf:
                          - $ref: '#/components/schemas/email-security_DispositionLabel'
                          - type:
                            - string
                            - 'null'
                        headers:
                          items:
                            $ref: '#/components/schemas/email-security_MessageHeader'
                          type: array
                        links:
                          items:
                            $ref: '#/components/schemas/email-security_Link'
                          type: array
                        sender_info:
                          properties:
                            as_name:
                              description: Name of the autonomous system
                              type:
                              - string
                              - 'null'
                            as_number:
                              description: Number of the autonomous system
                              format: int64
                              type:
                              - integer
                              - 'null'
                            geo:
                              type:
                              - string
                              - 'null'
                            ip:
                              type:
                              - string
                              - 'null'
                            pld:
                              type:
                              - string
                              - 'null'
                          type: object
                        threat_categories:
                          items:
                            $ref: '#/components/schemas/email-security_ThreatCategory'
                          type: array
                        validation:
                          properties:
                            comment:
                              type:
                              - string
                              - 'null'
                            dkim:
                              allOf:
                              - $ref: '#/components/schemas/email-security_ValidationStatus'
                              - type:
                                - string
                                - 'null'
                            dmarc:
                              allOf:
                              - $ref: '#/components/schemas/email-security_ValidationStatus'
                              - type:
                                - string
                                - 'null'
                            spf:
                              allOf:
                              - $ref: '#/components/schemas/email-security_ValidationStatus'
                              - type:
                                - string
                                - 'null'
                          type: object
                      required:
                      - validation
                      - headers
                      - threat_categories
                      - sender_info
                      - links
                      - action
                      - attachments
                      type: object
                  required:
                  - result
                  type: object
          description: Email detection details
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get message detection details
      tags:
      - Email Security
  /accounts/{account_id}/email-security/investigate/{postfix_id}/preview:
    get:
      description: 'For emails that have a detection, this endpoint returns a preview of the

        message body as a base64 encoded PNG image.'
      operationId: email_security_get_message_preview
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - in: path
        name: postfix_id
        required: true
        schema:
          description: Message identifier
          example: 4Njp3P0STMz2c02Q
          title: postfix_id
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      example:
                        screenshot: iVBORw0KGgoAAAANSUhEUgAAAGAAAABgCAYAAADimHc4AAAAAXNSR0IArs4c6QAAAIRlWElmTU0AKgAAAAgABQESAAMAAAABAAEAAAEaAAUAAAABAAAASgEbAAUAAAABAAAAUgEoAAMAAAABAAIAAIdpAAQAAAABAAAAWgAAAAAAAABgAAAAAQAAAGAAAAABAAOgAQADAAAAAQABAACgAgAEAAAAAQAAAGCgAwAEAAAAAQAAAGAAAAAAtVTeigAAAAlwSFlzAAAOxAAADsQBlSsOGwAAAVlpVFh0WE1MOmNvbS5hZG9iZS54bXAAAAAAADx4OnhtcG1ldGEgeG1sbnM6eD0iYWRvYmU6bnM6bWV0YS8iIHg6eG1wdGs9IlhNUCBDb3JlIDYuMC4wIj4KICAgPHJkZjpSREYgeG1sbnM6cmRmPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5LzAyLzIyLXJkZi1zeW50YXgtbnMjIj4KICAgICAgPHJkZjpEZXNjcmlwdGlvbiByZGY6YWJvdXQ9IiIKICAgICAgICAgICAgeG1sbnM6dGlmZj0iaHR0cDovL25zLmFkb2JlLmNvbS90aWZmLzEuMC8iPgogICAgICAgICA8dGlmZjpPcmllbnRhdGlvbj4xPC90aWZmOk9yaWVudGF0aW9uPgogICAgICA8L3JkZjpEZXNjcmlwdGlvbj4KICAgPC9yZGY6UkRGPgo8L3g6eG1wbWV0YT4KGV7hBwAACXtJREFUeAHtmwtwXFUZgP9zX7t3b7LNa9M2tGmLDbaWKpL6aBBJHdERQWGkU4u8CraVWmYQYWQUMSoKhZJikYo4Qqc6RVqkKmNHC0K1FGYoM9pqS4FAa9s0aTavfd3d+zq/527YSNvdzWY3m2ySc2c2595z/vOf///+e+4959wTAH5wApwAJ8AJcAKcACfACXACnAAnwAlwApwAJ8AJcAKcACfACXACnAAnwAlwApwAJ8AJcAKcACfACXACnAAnwAlwAhOJABmvzuCz158HXmUp2rCEOlhGbEdFh2qASFAgtiCKMUGgh8FM7IDDp3aQlt12Kfo6rgKAz3ylAQ3rJ/Fg39XYfyx32wUJpJpZ7wiq8LPebuGJaXfuipVKMHJ3YowsRgQC265aE+/quYf2/Le2YDM85aBOn/m7GDHX+m/4W0/B+gpUUNIBwN98rknvif4J+9urC/Tz7OqKBp66+vWSUf9dsvpx62yB0ckpyQDgLxtlS5iyyTx59OuATlFJkOrZYV9l7afItdv/XdSGMigvuQBEHmyqJRLug9DJ+gw2j3y2qIDWcOEPyFef/tHIK8+usaQCEGpdPFd0rEMQC8rZzS5OqXr+JU+JV2+5pjja02sV0mePfm7/I5+eIznm22MF3/U4/p+/L3d23LhxNL0viR7Qs/ETfo/lnIBIsHw0nU/bFiGgLbp0BfnirzanLR/hzJLoAV6QXywJ+C5cNu6N7d/7JD6zat4Is06rbswDENvU/A3sPd6Y1rqxyjRjkDj1zp7RaH5MA3CkpdkL0fAvRsPR4bbhBNtqcNvS7w233nDlxzQAgUp7E+pjPhnNyEw/duRefJLdJEU8pGLo7mptnuuTSJNHkeaBIPhMK/6Gbjm7A7ftfTPV3sGWBQpEu1ekrksxxWgQoLr6Tmbbj4tl34iOgmIbPnsLG8w9hKETajqDiX86sCXJe/1a4D4QEnfF2t/6fjq5UsojFTNQu21v0Z4UIxKA4LqL6nwyfQ3DJ8/JBR7x1wGIEmDfsVzEx1xGO3f+xeT6v7xcDEMKjmystXmRSkPtucJ3nWCy4wZ+0l7wfLsY8F2dBQWg46cfDaDVtw+MSLHsKwm98VDky8UypKAA+BVpF8T7i2Vb6eg1IiPyqE7nUN6joL51jUsw2nVBOqUTLc9TGfi965O++dLlomZvBSICyBoQpdyQVP8R4hFfgAQ+Spb8/PBwfc87AGWadrcR7x5ue+NS3qK2OxQFpcq72jGi7CXGvlGYYUAz7LGi7e6Shftba/x5ma1UB9ZDL2khlz1iuHWGOvJ+BJl65DNDKZ8I5UL17E515a4jri+OEbsoq096l2QeP3iXaR5N4MurH8SWliH5DimQqUHUezMVTah8tVx7wHUIdy6/gv3N7YlhRcHseOsOc9HBKL54S9Z1rrwCcLxlQdWEopzJGfbdGG7Y+XAyABK9MZNYxvx4t2r2vv067l55ayaZvAJgQ0zPpHAi5StT52xjnwfQ9cnWI9kfP5kcZ+8LM9i2EXfffE86kbwCMBuOmiCnXW1I18a4zCO+KuiVrZtSxqMVn5o6zyc1g+/+EF+47uYz6+Y8vg0/vPhygQjLRFH5JLXNWgx3+oGW5GazM33M61o+Z96VnpV//WOqsrF9SbInpK7zStnwVdDqmuQvbHk1VT9rAI63Lq6qJnQTNfRlkAin6kz4VKit/5ZvzZ7ksz/lrPmHy6KsF7CXQoGHp1JXOmoqUnuRMj6CEq0ff6Ay2tVDQ52TB77INmME6lecCd9FLlfUPFUg+oHqRp+Pzk08mtJ1Vg/oallQVlZR/i/a3/GBlNBkSIWqGW2iR7vCs3pX2tksvtQi2frBU1TvLnwEKChgls2ZWv75x7pOC4C7O8GbMNvYGD8wGaAD27QrT2s4KsrON6UVz+8cymd8fZUPYvLzZk9bEzjmUOJZy5VAw29J8+PXnRaAWGvjIQx3z89aM89CEmhwRMUXQVGRmOMC+x5AWOr+2NIKSwl7Ggoish8lRKDsSxplTVnuTwTU2aZzQwCMszehxXYu2AIhCQDKpvvERAImUGIK7jXSePJHWWpRHWw7wQYLcaDolplA0GLnukWddvmmpw+khpnDcQvfXF8DAlkKhnkhmEY52IYKlqGiZWho2z5KDYWtEPtpondGRr3eKlDKFsqDAQhvaLxfCHV/J2OFQgpkL2g152mw6rl4Pg4X0nSx6iL7PwQ4tF0GpXOAYchDIdIxMFIKHkRQKz2m8W4nWzcqz2SDUvfhS5KVO+9vXFhm9B5gd0gm2YLzhepze8G2goiCA6J7dxN31y0bxxKbBcUdz9psJ3ryjgc2d2Gb0m0KaDGTbHbHs/7Ozh1IUGC5wHoDEsthZQjUrWMTBMtheQSphQJYyFKB9Q6Kznup24Mck3Uvk1IITaP73iAtTFkeB+6/oxao8jHWA2ex3lVLEQPEtmqpZVewfxKpQjOmYLx/OpjR6mzqlfqFTyQDEHrogufESN/l2YQnXBmLuhyY+YpBjS/5177WM5R/+I9bA+Cl66ye0DUYbfcMJZ9LuVgz/wQJbrh4uho+wb4R5nUz5NJOact4/WznQ8VHylbuOZDJUNx97Vazu2P5SDMi5bNAKpetpfZkhe8SdyeYEfUVdlZ2ZgBwx5UVjoL7zWB7/ZllI3GNiW425vDVrBkJZeNaR/iUFnns4g+93wd89qpqC+Jtjh4uCvxkW1YMBDNhfvD9DU/Wc0VwBoff+FKz5JDwPrTNrC/Rglm5/zyIkVMF65kICmyHzRPeO5w+2Ow4dE7qumgpmwsIk2JXQw4E43H9n65Y75am8x2HfC2HKgWLEG+1I4BU1L2nBRs5GgrcLZM1t+9vd9vy+jx3j0abbhuypu0TSNnkWPbJBpWtV/w6VS6gsDR1XvQU6Vapa4qkJvrVaRTEMFvAsB2drcewQ/Q5BNj0JOSjA1NtljdFFwY/Srgzlwp1QNaVTx1inNU77dV12gU4qjSoI1XHictn5dla71l5KfnBdIjXl1U2oNcMKTh9SgfaPazthoHaXjswuBQ/8/ZX4ymdHVFHU+tmimoo4Ul4JBmdBFt5khDVBJtbS1junvt0REtO/tx6RLaSjIg+kKZ0oclktCibx//fP0HzCIIlCwnPFLn2+LHJsa8nBYSnnAAnwAlwApwAJ8AJcAKcACfACXACnAAnwAlwApwAJ8AJcAKcACfACXACnAAnwAlwApwAJ8AJcAKcACfACXACk4DA/wDoepVZ2hARhAAAAABJRU5ErkJggg==
                      properties:
                        screenshot:
                          description: Base64 encoded PNG image
                          type: string
                      required:
                      - screenshot
                      type: object
                  required:
                  - result
                  type: object
          description: Email preview
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get email preview
      tags:
      - Email Security
      x-api-token-group:
      - 'Cloud Email Security: Write'
      - 'Cloud Email Security: Read'
  /accounts/{account_id}/email-security/investigate/{postfix_id}/raw:
    get:
      description: 'For emails that have a detection, this endpoint returns the raw email

        as an EML file.'
      operationId: email_security_get_message_raw
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - in: path
        name: postfix_id
        required: true
        schema:
          description: Message identifier
          example: 4Njp3P0STMz2c02Q
          title: postfix_id
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      example:
                        raw: 'MIME-Version: 1.0

                          Content-Type: text/plain; charset="utf-8"


                          From: sender@example.com

                          To: recipient@example.com

                          Subject: Test Email


                          This is a test email.'
                      properties:
                        raw:
                          description: UTF-8 encoded eml file
                          type: string
                      required:
                      - raw
                      type: object
                  required:
                  - result
                  type: object
          description: Raw email content
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get raw email content
      tags:
      - Email Security
      x-api-token-group:
      - 'Cloud Email Security: Write'
      - 'Cloud Email Security: Read'
  /accounts/{account_id}/email-security/investigate/{postfix_id}/trace:
    get:
      operationId: email_security_get_message_trace
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - in: path
        name: postfix_id
        required: true
        schema:
          description: Message identifier
          example: 4Njp3P0STMz2c02Q
          title: postfix_id
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      properties:
                        inbound:
                          properties:
                            lines:
                              items:
                                $ref: '#/components/schemas/email-security_TraceLine'
                              type:
                              - array
                              - 'null'
                          type: object
                        outbound:
                          properties:
                            lines:
                              items:
                                $ref: '#/components/schemas/email-security_TraceLine'
                              type:
                              - array
                              - 'null'
                          type: object
                      required:
                      - inbound
                      - outbound
                      type: object
                  required:
                  - result
                  type: object
          description: Email trace
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get email trace
      tags:
      - Email Security
      x-api-token-group:
      - 'Cloud Email Security: Write'
      - 'Cloud Email Security: Read'
  /accounts/{account_id}/email-security/phishguard/reports:
    get:
      operationId: email_security_get_phishguard_reports
      parameters:
      - in: path
        name: account_id
        required: true
        schema:
          $ref: '#/components/schemas/email-security_AccountId'
      - example: '2020-08-01'
        in: query
        name: from_date
        required: true
        schema:
          format: date
          type: string
      - example: '2020-09-01'
        in: query
        name: to_date
        required: true
        schema:
          format: date
          type: string
      responses:
        4XX:
          $ref: '#/components/responses/email-security_ClientError'
        '200':
          content:
            application/json:
              schema:
                allOf:
                - $ref: '#/components/schemas/email-security_ApiResponseCommon'
                - properties:
                    result:
                      items:
                        $ref: '#/components/schemas/email-security_PhishGuardReport'
                      type: array
                  required:
                  - result
                  type: object
          description: PhishGuard reports
      security:
      - api_email: []
        api_key: []
      summary: APIs.io Engineering Platform Get PhishGuard reports
      tags:
      - Email Security
components:
  schemas:
    email-security_PostfixId:
      description: Message identifier
      example: 4Njp3P0STMz2c02Q
      title: postfix_id
      type: string
    email-security_ApiResponseCommon:
      properties:
        errors:
          example: []
          items:
            $ref: '#/components/schemas/email-security_Message'
          type: array
        messages:
          example: []
          items:
            $ref: '#/components/schemas/email-security_Message'
          type: array
        success:
          example: true
          type: boolean
      required:
      - success
      - errors
      - messages
      type: object
    email-security_Link:
      properties:
        href:
          type: string
        text:
          type:
          - string
          - 'null'
      required:
      - href
      type: object
    email-security_MessageDeliveryMode:
      enum:
      - DIRECT
      - BCC
      - JOURNAL
      - REVIEW_SUBMISSION
      - DMARC_UNVERIFIED
      - DMARC_FAILURE_REPORT
      - DMARC_AGGREGATE_REPORT
      - THREAT_INTEL_SUBMISSION
      - SIMULATION_SUBMISSION
      - API
      - RETRO_SCAN
      type: string
    email-security_AccountId:
      description: Account Identifier
      example: 023e105f4ecef8ad9ca31a8372d0c353
      maxLength: 32
      minLength: 32
      readOnly: true
      title: account_id
      type: string
    email-security_Attachment:
      properties:
        content_type:
          type:
          - string

# --- truncated at 32 KB (41 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/engineering-platform/refs/heads/main/openapi/engineering-platform-email-security-api-openapi.yml