SlashNext

SlashNext is an AI-native phishing and social-engineering threat detection company founded by Atif Mushtaq (an architect of FireEye's core malware sandbox). Its Real-Time Phishing Threat Intelligence is delivered through the SlashNext On-demand Threat Intelligence (OTI) REST API at oti.slashnext.cloud, which offers URL and host reputation lookups, real-time cloud SEER-engine URL scanning in both asynchronous and blocking modes, and forensic downloads (screenshot, HTML, and rendered text) keyed by scan id, plus per-tenant API quota status. Responses are available as JSON, CSV, or plaintext and every request authenticates with a per-tenant API key passed as the authkey parameter. SlashNext was acquired by Varonis Systems in August 2025 and its detection capabilities are being integrated into the Varonis Email Security and MDDR platform.

SlashNext publishes 1 API on the APIs.io network. Tagged areas include Company, Security, Cybersecurity, Phishing, and Threat Intelligence.

SlashNext’s developer surface includes documentation, authentication, and 6 more developer resources.

13.2/100 minimal ▬ flat Agent 17/100 agent aware Full breakdown ↓
scored 2026-07-27 · rubric v0.5
AccessSelf serve
1 APIs
CompanySecurityCybersecurityPhishingThreat IntelligenceEmail SecurityAnti-PhishingAPI

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 13.2/100 · minimal
Contract Quality 0.0 / 25
Developer Ergonomics 3.9 / 20
Commercial Clarity 0.0 / 20
Operational Transparency 0.0 / 13
Governance 0.0 / 12
Discoverability 9.3 / 10
Agent readiness — 17/100 · agent aware
Machine-Readable Contract 0 / 18
Agentic Access Contract 0 / 15
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 0 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/slashnext: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 1

Individual APIs this provider publishes, each with its own machine-readable definition.

SlashNext On-demand Threat Intelligence (OTI) API

RESTful phishing threat intelligence API. Look up URL/host reputation, run real-time SEER-engine URL scans (async url/scan and blocking url/scansync), pull forensic downloads (s...

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Slashnext Authentication

apiKey · 1 scheme

SECURITY

Slashnext Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Resources

Documentation 1

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 3

Pagination, idempotency, versioning, errors, and events

Access & Security 2

Authentication, authorization, and security posture

Company 1

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: slashnext
name: SlashNext
description: SlashNext is an AI-native phishing and social-engineering threat detection company founded by Atif Mushtaq (an
  architect of FireEye's core malware sandbox). Its Real-Time Phishing Threat Intelligence is delivered through the SlashNext
  On-demand Threat Intelligence (OTI) REST API at oti.slashnext.cloud, which offers URL and host reputation lookups, real-time
  cloud SEER-engine URL scanning in both asynchronous and blocking modes, and forensic downloads (screenshot, HTML, and rendered
  text) keyed by scan id, plus per-tenant API quota status. Responses are available as JSON, CSV, or plaintext and every request
  authenticates with a per-tenant API key passed as the authkey parameter. SlashNext was acquired by Varonis Systems in August
  2025 and its detection capabilities are being integrated into the Varonis Email Security and MDDR platform.
url: https://raw.githubusercontent.com/api-evangelist/slashnext/refs/heads/main/apis.yml
x-type: company
x-source: vc-portfolio
x-backed-by:
- norwest-venture-partners
- wing-venture-capital
x-acquired-by: varonis-systems
x-acquisition-date: '2025-08-28'
accessModel:
  pricing: unknown
  onboarding: self-serve
  trial: false
  try_now: false
  public: false
  label: Self-serve signup
  confidence: medium
  source:
  - authentication
  generated: '2026-07-22'
  method: derived
specificationVersion: '0.20'
created: '2026-07-17'
modified: '2026-07-21'
tags:
- Company
- Security
- Cybersecurity
- Phishing
- Threat Intelligence
- Email Security
- Anti-Phishing
- API
image: https://slashnext.com/wp-content/uploads/2021/03/SlashNext-Logo.png
apis:
- name: SlashNext On-demand Threat Intelligence (OTI) API
  description: RESTful phishing threat intelligence API. Look up URL/host reputation, run real-time SEER-engine URL scans
    (async url/scan and blocking url/scansync), pull forensic downloads (screenshot/html/text) by scan id, and check API quota.
    API-key auth via the authkey query parameter; JSON/CSV/plaintext responses.
  humanURL: https://www.varonis.com/platform/email-security
  baseURL: https://oti.slashnext.cloud/api/
  tags:
  - Threat Intelligence
  - Phishing
  - URL Scanning
  - Reputation
  properties:
  - type: Authentication
    url: authentication/slashnext-authentication.yml
  - type: Conventions
    url: conventions/slashnext-conventions.yml
  - type: ErrorCatalog
    url: errors/slashnext-error-codes.yml
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com
- FN: APIs.json
  email: info@apis.io
common:
- type: Website
  url: https://slashnext.com
- type: Documentation
  url: https://www.varonis.com/platform/email-security
- type: Lifecycle
  url: lifecycle/slashnext-lifecycle.yml
- type: Authentication
  url: authentication/slashnext-authentication.yml
- type: Conventions
  url: conventions/slashnext-conventions.yml
- type: ErrorCatalog
  url: errors/slashnext-error-codes.yml
- type: DomainSecurity
  url: security/slashnext-domain-security.yml
- type: LLMsTxt
  url: llms/slashnext-llms.txt
x-enrichment:
  date: '2026-07-21'
  status: enriched
  artifacts_added: 6
  pass: local-v1