# Build With Deepinfo Data, in Code or in the Platform

The Deepinfo API reference and Platform Guide. Every endpoint with its parameters, code samples and saved example responses, and the Deepinfo Platform screen by screen.

Source: https://docs.deepinfo.com/

---
Look up and search Deepinfo's internet-wide domain, DNS, WHOIS, SSL, dark web and vulnerability data,
and work with your External Attack Surface Management, Cyber Threat Intelligence and Brand Risk
Protection findings, from your own code or in the Deepinfo Platform.

- [API Reference](/reference/)
- [Platform Guide](/guide/)
- [Getting Started](/getting-started/)
- [Changelog](/changelog/)

## Your First Request

[Domain WHOIS](/reference/lookup/domain-whois/): `GET /lookup/whois`. Your API key goes in the `apikey` header.

```bash
curl 'https://api.deepinfo.com/v1/lookup/whois?domain=deepinfo.com' \
  -H 'apikey: YOUR_API_KEY' \
  -H 'Accept: application/json'
```

Response (200 OK · application/json), with the fields left out marked `…`:

```json
{
  "domain_name": "deepinfo.com",
  "parsed": {
    "create_date": "2001-06-05T02:57:08Z",
    "expiry_date": "2028-10-20T11:59:59Z",
    "registrar": "godaddy online services cayman islands ltd.",
    "name_servers": [
      "may.ns.cloudflare.com",
      "simon.ns.cloudflare.com"
    ],
    …
  },
  …
}
```

## Production or Demo?

Every account belongs to one environment: paid customer accounts use **Production**, demo accounts use
**Demo**. Open the API reference in yours below. The code samples and platform links follow it, and the
**Environment** switch at the top of the API Reference sidebar changes it.

| Environment | Account | Platform | API base URL |
|---|---|---|---|
| Production | Paid (customer) account | platform.deepinfo.com | https://api.deepinfo.com/v1 |
| Demo | Demo account | platform.deepinfodemo.com | https://api.deepinfodemo.com/v1 |

See [Environments & Base URL](/getting-started/environments-and-base-url/).

## Getting Started

What every request has in common: your API key, the base URL, rate limits, pagination, search filters
and errors.

- [Authentication](/getting-started/authentication/): Every Deepinfo API request is authenticated with your API key in the apikey header.
- [Environments & Base URL](/getting-started/environments-and-base-url/): Paid accounts use the Production addresses and demo accounts the Demo addresses; the version is the first path segment, bodies are JSON and timestamps UTC.
- [Rate Limits](/getting-started/rate-limits/): Limits apply per API key and per endpoint; responses carry ratelimit headers that show where you stand.
- [Pagination](/getting-started/pagination/): Paginated endpoints take page and page_size and share one response envelope.
- [Search & Filters](/getting-started/search-and-filters/): The filters body used by search endpoints, its operators, which operators each field accepts, the errors a filter returns, and query-parameter filters on list endpoints.
- [Errors](/getting-started/errors/): The Deepinfo error formats, the status codes they use, the forms a search filter error takes, and an example request and response for each one.
- [Postman Collection](/getting-started/postman/): Every Deepinfo API endpoint as a Postman collection. Download it with the Production environment, add your API key and send requests.

## Deep Search & Insights (DSI)

Deepinfo's internet-wide dataset: look up and search domains, IP addresses, DNS, WHOIS and SSL
records, dark web sources, vulnerabilities and domain registration statistics, or download it as data
feeds.

- [Lookup](/reference/lookup/): Look up a single domain, host, IP address or website, either in real time or from Deepinfo's history.
- [Discovery](/reference/discovery/): Search Deepinfo's internet-wide domain dataset: find subdomains, associated domains, domains registered at the same time, and domains that share a WHOIS email, name server, IP or mail server.
- [Darkweb](/reference/darkweb/): Search dark web sources (forums, markets, paste sites, chats, leaks).
- [Vulnerability](/reference/vulnerability/): Deepinfo's vulnerability (CVE) database: search, CVE details, EPSS history and global statistics.
- [Domain Intelligence](/reference/domain-intelligence/): Global domain registration statistics.
- [Feeds](/reference/feeds/): Download Deepinfo data feeds (all domains/subdomains, daily registered/updated/deleted domains, daily discovered subdomains).

## Platform APIs

Your organization's data in the Deepinfo Platform: its EASM, CTI and BRP findings, notifications and
reports.

- [EASM (External Attack Surface Management)](/reference/easm/): Your monitored assets (domains, subdomains, IPs, websites), what Deepinfo discovers around them, and the issues, vulnerabilities and technologies found on them.
- [CTI (Cyber Threat Intelligence)](/reference/cti/): Email breaches, compromised employee/client/payment credentials, compromised devices, threat actors and security news relevant to your organization.
- [BRP (Brand Risk Protection)](/reference/brp/): Domains that imitate your brand.
- [Platform](/reference/platform/): Notifications and reports.

## Latest Changes

- 2026-10-05: [The New Deepinfo Documentation Site](/changelog/the-new-documentation-site/). docs.deepinfo.com now documents every API endpoint, generated from the Deepinfo Postman collection, with Getting Started guides, search and a Markdown version of every page.
- 2026-09-27: [Operator Support per Field](/changelog/operator-support/). Search endpoints now list their searchable fields grouped by the operators each field accepts, measured against the API, and the docs show the forms a filter error takes.
- 2026-09-24: [A Guide to the Deepinfo Platform](/changelog/platform-guide/). A new section of the documentation explains the Deepinfo Platform screen by screen, from your first sign-in to reports and notification rules.

All changes: [/changelog/](/changelog/)

## Get Help From Deepinfo Support

Which endpoints you can call depends on your plan. For access, API keys and questions about a request,
email Deepinfo support. About a specific request? Include its `deepinfo-request-id` response header.

- Email support: [support@deepinfo.com](mailto:support@deepinfo.com)
- Get an API key: in the Deepinfo Platform under **Settings → Organization Settings → API Keys** ([Authentication](/getting-started/authentication/#get-an-api-key)).
- Docs for AI tools: every page has a Markdown version; [llms.txt](/llms.txt) lists them all, [llms-full.txt](/llms-full.txt) has them in one file.
