AT&T · Schema
ThreatIndicator
ThreatIndicator schema
5GBroadbandCAMARAConnectivityDevice StatusEdge ComputingEnterpriseFortune 100MessagingMobileNetworkNetwork APIsSIM SwapSpeechTelecommunicationsWirelessWireline
Properties
| Name | Type | Description |
|---|---|---|
| type | string | Type of threat detected |
| severity | string | Severity of the threat indicator |
| description | string | Human-readable description of the threat |
| detectedAt | string | When the threat indicator was detected |
JSON Schema
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"$id": "https://raw.githubusercontent.com/api-evangelist/att/refs/heads/main/json-schema/mobility-threat-anomaly-detection-api-threat-indicator-schema.json",
"title": "ThreatIndicator",
"description": "ThreatIndicator schema",
"type": "object",
"properties": {
"type": {
"type": "string",
"description": "Type of threat detected",
"enum": [
"UNUSUAL_LOCATION",
"ABNORMAL_DATA_USAGE",
"KNOWN_MALWARE_TRAFFIC",
"SIM_CLONING",
"ROAMING_ANOMALY",
"CALL_PATTERN_ANOMALY"
],
"example": "UNUSUAL_LOCATION"
},
"severity": {
"type": "string",
"description": "Severity of the threat indicator",
"enum": [
"LOW",
"MEDIUM",
"HIGH",
"CRITICAL"
],
"example": "MEDIUM"
},
"description": {
"type": "string",
"description": "Human-readable description of the threat",
"example": "Device location changed rapidly from expected home area"
},
"detectedAt": {
"type": "string",
"format": "date-time",
"description": "When the threat indicator was detected",
"example": "2026-04-19T14:30:00Z"
}
}
}
Work with this as data
Every JSON Schema here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for schemas
4 MCP tools reach this
find_json_schemasBrowse and filter every JSON Schema in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This JSON Schema
curl "https://apis.io/api/v1/json-schemas/mobility-threat-anomaly-detection-api-threat-indicator"
All schemas
curl "https://apis.io/api/v1/json-schemas?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.