OTXv2
AlienVault OTX API
Decision gist · record as of 2026-08-14
Yes, with conditions. OTXv2 is stable and has no known vulnerabilities, with low install friction. However, it has been dormant since 2021-04-02—no maintenance for over 1960 days. Install it if you need to integrate with OTX and can accept that bugs or API changes won't be addressed by the maintainers. Verify license terms before use in proprietary contexts, and test compatibility with your Python version since support is unspecified.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires a valid AlienVault OTX API key (obtain from https://otx.alienvault.com).
- Installation is straightforward with low friction—three lightweight runtime dependencies (requests, python-dateutil, pytz).
- However, the package is dormant: last release was 2021-04-02, over 1960 days ago, with no recent maintenance despite an active repository.
License · maintenance · safety
(unclear) — License treatment is unclear—no SPDX identifier or raw license text is available in the package metadata. Verify the actual license before use in proprietary or compliance-sensitive contexts.
last release 2021-04-02 (1960 days) · last repo commit 2024-05-09 · 402 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 86,367 downloads/mo, #13,868 on PyPI
Alternatives
Verify before relying
pip install OTXv2
from OTXv2 import OTXv2
otx = OTXv2("YOUR_API_KEY")
indicators = otx.get_pulse_indicators("pulse_id")
for indicator in indicators:
print(indicator["indicator"])- Python version compatibility—requires_python is unspecified; verify support for your target Python version.
- Whether the dormant status (last release 2021-04-02) affects API compatibility with current OTX endpoints.
- Actual license terms—license_treatment is unclear; check the repository for LICENSE file.
- Current monthly download volume and whether dormancy has affected adoption trends.
What it is and what it does
OTXv2 wraps the AlienVault Open Threat Exchange API, allowing you to fetch threat intelligence pulses, query indicators (IPs, domains, files, URLs), and retrieve threat details programmatically. It's built on three stable dependencies: requests for HTTP calls, python-dateutil and pytz for timestamp handling. The package is designed for security teams and researchers who want to integrate live threat data into their infrastructure—pulling indicators of compromise into firewalls, IDS systems, or custom security tools.
The library supports both read and write operations: you can subscribe to pulses and download their indicators, or create and manage your own pulses in OTX. It's used in production by security analysts and threat intelligence platforms, though the package itself has been dormant since early 2021, meaning no recent updates or bug fixes have been released despite the underlying API continuing to operate.
Use it for
- Fetch indicators of compromise from subscribed OTX pulses and feed them into your firewall or IDS rules.
- Query threat details for a domain, IP, file hash, or URL to check if it's known malicious.
- Automate creation and management of threat intelligence pulses within OTX from your security workflow.
- Build a command-line tool or dashboard to monitor and display threat indicators your organization is tracking.
- Integrate OTX data into a SIEM or threat hunting platform for real-time indicator enrichment.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, with conditions.
OTXv2 is stable and has no known vulnerabilities, with low install friction. However, it has been dormant since 2021-04-02—no maintenance for over 1960 days. Install it if you need to integrate with OTX and can accept that bugs or API changes won't be addressed by the maintainers. Verify license terms before use in proprietary contexts, and test compatibility with your Python version since support is unspecified.
Install
otxv2 on PyPI
Before you install
Installation is straightforward with low friction—three lightweight runtime dependencies (requests, python-dateutil, pytz). However, the package is dormant: last release was 2021-04-02, over 1960 days ago, with no recent maintenance despite an active repository.
Requires a valid AlienVault OTX API key (obtain from https://otx.alienvault.com).
License in practice
License treatment is unclear—no SPDX identifier or raw license text is available in the package metadata. Verify the actual license before use in proprietary or compliance-sensitive contexts.
Quickstart
pip install OTXv2
from OTXv2 import OTXv2
otx = OTXv2("YOUR_API_KEY")
indicators = otx.get_pulse_indicators("pulse_id")
for indicator in indicators:
print(indicator["indicator"])
Verify before relying
- Python version compatibility—requires_python is unspecified; verify support for your target Python version.
- Whether the dormant status (last release 2021-04-02) affects API compatibility with current OTX endpoints.
- Actual license terms—license_treatment is unclear; check the repository for LICENSE file.
- Current monthly download volume and whether dormancy has affected adoption trends.
Package facts
| License | Not declared unclear |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 3 packagesrequestspython-dateutilpytz |
| Maintenance | Dormant 1,960 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 86,367 / month, #13,868 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
Evidence: OTXv2-1.5.12-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “open threat exchange python”
- OTXv2OTXv2 is a Python client for AlienVault's Open Threat Exchange API,…
- stixParses, manipulates, and generates STIX v1.2.0 (Structured Threat…
- stix2Serializes and deserializes STIX 2 JSON content, providing Python…
Give your agent the search over MCP, or paste the wish link into any chat.
More Security packages
Provides Python bindings to the FreeDesktop.org Secret Service API for securely storing and retrieving passwords and secrets through GNOME Keyring, KWallet, or KeePassXC.
MSAL for Python handles OAuth2 and OpenID Connect authentication with Microsoft identity services, managing token acquisition, caching, and refresh for applications integrating with Microsoft Entra ID, Microsoft Accounts, and Azure AD B2C.
joserfc implements JOSE standards (JWS, JWE, JWK, JWT, and related RFCs) for signing, encrypting, and managing JSON-based cryptographic tokens in Python.
Authlib provides a complete implementation of OAuth 1.0, OAuth 2.0, and OpenID Connect 1.0 for building both authentication clients and servers, with built-in support for JWS, JWK, JWA, and JWT standards.
Provides low-level CFFI bindings to the official Argon2 password hashing algorithm for use by libraries and applications that need direct access to Argon2 without higher-level abstractions.
ADAL for Python authenticates applications with Azure Active Directory to obtain tokens for accessing Azure AD-protected resources.
Install only if maintaining existing code that already depends on it, and plan a migration.
See also ioc-fanger · vt-py · stix2 · stix · pycti · domaintools-api · threatwire · taxii2-client · stix2-patterns · sigmatools