{"id":22878910,"url":"https://github.com/oasis-open/cti-taxii-client","last_synced_at":"2025-10-11T23:11:04.205Z","repository":{"id":37549846,"uuid":"96904477","full_name":"oasis-open/cti-taxii-client","owner":"oasis-open","description":"OASIS TC Open Repository: TAXII 2 Client Library Written in Python","archived":false,"fork":false,"pushed_at":"2024-04-15T21:01:49.000Z","size":326,"stargazers_count":117,"open_issues_count":15,"forks_count":55,"subscribers_count":20,"default_branch":"master","last_synced_at":"2025-09-29T19:36:52.644Z","etag":null,"topics":["client","cti","cyber-threat-intelligence","json","oasis","python","taxii","taxii2"],"latest_commit_sha":null,"homepage":"https://taxii2client.readthedocs.io/","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"bsd-3-clause","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/oasis-open.png","metadata":{"files":{"readme":"README.rst","changelog":"CHANGES.txt","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null}},"created_at":"2017-07-11T14:47:13.000Z","updated_at":"2025-09-26T10:30:57.000Z","dependencies_parsed_at":"2024-06-18T15:27:36.650Z","dependency_job_id":null,"html_url":"https://github.com/oasis-open/cti-taxii-client","commit_stats":{"total_commits":231,"total_committers":20,"mean_commits":11.55,"dds":"0.48051948051948057","last_synced_commit":"2c73aa58c26c1c079a42ad6b93a73feca7d49e66"},"previous_names":[],"tags_count":14,"template":false,"template_full_name":null,"purl":"pkg:github/oasis-open/cti-taxii-client","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcti-taxii-client","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcti-taxii-client/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcti-taxii-client/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcti-taxii-client/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/oasis-open","download_url":"https://codeload.github.com/oasis-open/cti-taxii-client/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/oasis-open%2Fcti-taxii-client/sbom","scorecard":{"id":700627,"data":{"date":"2025-08-11","repo":{"name":"github.com/oasis-open/cti-taxii-client","commit":"54dabadf1a67517e99e6a8f2961614a2a4f5ad2c"},"scorecard":{"version":"v5.2.1-40-gf6ed084d","commit":"f6ed084d17c9236477efd66e5b258b9d4cc7b389"},"score":3.9,"checks":[{"name":"Code-Review","score":5,"reason":"Found 5/10 approved changesets -- score normalized to 5","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#code-review"}},{"name":"Dangerous-Workflow","score":10,"reason":"no dangerous workflow patterns detected","details":null,"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#dangerous-workflow"}},{"name":"Maintained","score":0,"reason":"0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#maintained"}},{"name":"Packaging","score":-1,"reason":"packaging workflow not detected","details":["Warn: no GitHub/GitLab publishing workflow detected."],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#packaging"}},{"name":"Binary-Artifacts","score":10,"reason":"no binaries found in the repo","details":null,"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#binary-artifacts"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Warn: no topLevel permission defined: .github/workflows/python-ci-tests.yml:1","Info: no jobLevel write permissions found"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#token-permissions"}},{"name":"Pinned-Dependencies","score":0,"reason":"dependency not pinned by hash detected -- score normalized to 0","details":["Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci-tests.yml:16: update your workflow using https://app.stepsecurity.io/secureworkflow/oasis-open/cti-taxii-client/python-ci-tests.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/python-ci-tests.yml:18: update your workflow using https://app.stepsecurity.io/secureworkflow/oasis-open/cti-taxii-client/python-ci-tests.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/python-ci-tests.yml:30: update your workflow using https://app.stepsecurity.io/secureworkflow/oasis-open/cti-taxii-client/python-ci-tests.yml/master?enable=pin","Warn: pipCommand not pinned by hash: .github/workflows/python-ci-tests.yml:23","Warn: pipCommand not pinned by hash: .github/workflows/python-ci-tests.yml:24","Warn: pipCommand not pinned by hash: .github/workflows/python-ci-tests.yml:25","Info:   0 out of   2 GitHub-owned GitHubAction dependencies pinned","Info:   0 out of   1 third-party GitHubAction dependencies pinned","Info:   0 out of   3 pipCommand dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#pinned-dependencies"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#cii-best-practices"}},{"name":"Vulnerabilities","score":10,"reason":"0 existing vulnerabilities detected","details":null,"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#vulnerabilities"}},{"name":"Security-Policy","score":0,"reason":"security policy file not detected","details":["Warn: no security policy file detected","Warn: no security file to analyze","Warn: no security file to analyze","Warn: no security file to analyze"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#security-policy"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no fuzzer integrations found"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#fuzzing"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: project has a license file: LICENSE:0","Info: FSF or OSI recognized license: BSD 3-Clause \"New\" or \"Revised\" License: LICENSE:0"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#license"}},{"name":"Signed-Releases","score":-1,"reason":"no releases found","details":null,"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#signed-releases"}},{"name":"Branch-Protection","score":0,"reason":"branch protection not enabled on development/release branches","details":["Warn: branch protection not enabled for branch 'master'"],"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#branch-protection"}},{"name":"SAST","score":0,"reason":"SAST tool is not run on all commits -- score normalized to 0","details":["Warn: 0 commits out of 25 are checked with a SAST tool"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#sast"}}]},"last_synced_at":"2025-08-22T05:08:04.192Z","repository_id":37549846,"created_at":"2025-08-22T05:08:04.192Z","updated_at":"2025-08-22T05:08:04.192Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":279009181,"owners_count":26084555,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","status":"online","status_checked_at":"2025-10-11T02:00:06.511Z","response_time":55,"last_error":null,"robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":true,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["client","cti","cyber-threat-intelligence","json","oasis","python","taxii","taxii2"],"created_at":"2024-12-13T16:35:34.627Z","updated_at":"2025-10-11T23:11:04.173Z","avatar_url":"https://github.com/oasis-open.png","language":"Python","funding_links":[],"categories":[],"sub_categories":[],"readme":"|Build_Status| |Coverage| |Version|\n\ncti-taxii-client\n================\n\nNOTE: This is an `OASIS TC Open Repository\n\u003chttps://www.oasis-open.org/resources/open-repositories/\u003e`_. See the\n`Governance`_ section for more information.\n\ncti-taxii-client is a minimal client implementation for the TAXII 2.X server.\nIt supports the following TAXII 2.X API services:\n\n- Server Discovery\n- Get API Root Information\n- Get Status\n- Get Collections\n- Get a Collection\n- Get Objects\n- Add Objects\n- Get an Object\n- Delete an Object (2.1 only)\n- Get Object Manifests\n- Get Object Versions (2.1 only)\n\nInstallation\n------------\n\nThe easiest way to install the TAXII client is with pip\n\n.. code-block:: bash\n\n   $ pip install taxii2-client\n\nUsage\n-----\n\nThe TAXII client is intended to be used as a Python library.  There are no\ncommand line clients at this time.\n\n``taxii2-client`` provides four classes:\n\n- ``Server``\n- ``ApiRoot``\n- ``Collection``\n- ``Status``\n\nEach can be instantiated by passing a `url`, and (optional) `user` and\n`password` arguments. The authorization information is stored in the instance,\nso it need not be supplied explicitly when requesting services. By default, the\nlatest version of the supported spec will be imported. If you need a specific\nversion you can perform the following:\n\n.. code-block:: python\n\n   from taxii2client.v21 import Server\n   server = Server('https://example.com/taxii2/', user='user_id', password='user_password')\n\nOnce you have instantiated a ``Server`` object, you can get all metadata about\nits contents via its properties:\n\n.. code-block:: python\n\n   print(server.title)\n\nThis will lazily load and cache the server's information in the instance:\n\n- ``api_roots``\n- ``title``\n- ``description``\n- ``default`` (i.e. the default API root)\n- ``contact``\n\nYou can follow references to ``ApiRoot`` objects,\n``Collection`` objects, and (STIX) objects in those collections.\n\n.. code-block:: python\n\n   api_root = server.api_roots[0]\n   collection = api_root.collections[0]\n   collection.add_objects(stix_bundle)\n\nEach ``ApiRoot`` has attributes corresponding to its meta data\n\n- ``title``\n- ``description``\n- ``max_content_length``\n- ``collections``\n\nEach ``Collection`` has attributes corresponding to its meta data:\n\n- ``id``\n- ``title``\n- ``description``\n- ``alias`` (2.1 only)\n- ``can_write``\n- ``can_read``\n- ``media_types``\n\nA ``Collection`` can also be instantiated directly:\n\n.. code-block:: python\n\n    # Performing TAXII 2.0 Requests\n    from taxii2client.v20 import Collection, as_pages\n\n    collection = Collection('https://example.com/api1/collections/91a7b528-80eb-42ed-a74d-c6fbd5a26116')\n    print(collection.get_object('indicator--252c7c11-daf2-42bd-843b-be65edca9f61'))\n\n    # For normal (no pagination) requests\n    print(collection.get_objects())\n    print(collection.get_manifest())\n\n    # For pagination requests.\n    # Use *args for other arguments to the call and **kwargs to pass filter information\n    for bundle in as_pages(collection.get_objects, per_request=50):\n        print(bundle)\n\n    for manifest_resource in as_pages(collection.get_manifest, per_request=50):\n        print(manifest_resource)\n\n    # ---------------------------------------------------------------- #\n    # Performing TAXII 2.1 Requests\n    from taxii2client.v21 import Collection, as_pages\n\n    collection = Collection('https://example.com/api1/collections/91a7b528-80eb-42ed-a74d-c6fbd5a26116')\n    print(collection.get_object('indicator--252c7c11-daf2-42bd-843b-be65edca9f61'))\n\n    # For normal (no pagination) requests\n    print(collection.get_objects())\n    print(collection.get_manifest())\n\n    # For pagination requests.\n    # Use *args for other arguments to the call and **kwargs to pass filter information\n    for envelope in as_pages(collection.get_objects, per_request=50):\n        print(envelope)\n\n    for manifest_resource in as_pages(collection.get_manifest, per_request=50):\n        print(manifest_resource)\n\nIn addition to the object-specific properties and methods, all classes have a\n``refresh()`` method that reloads the URL corresponding to that resource, to\nensure properties have the most up-to-date values.\n\nGovernance\n----------\n\nThis GitHub public repository (\n**https://github.com/oasis-open/cti-taxii-client** ) was created at the request\nof the `OASIS Cyber Threat Intelligence (CTI) TC\n\u003chttps://www.oasis-open.org/committees/cti/\u003e`__ as an `OASIS TC Open Repository\n\u003chttps://www.oasis-open.org/resources/open-repositories/\u003e`__ to support\ndevelopment of open source resources related to Technical Committee work.\n\nWhile this TC Open Repository remains associated with the sponsor TC, its\ndevelopment priorities, leadership, intellectual property terms, participation\nrules, and other matters of governance are `separate and distinct\n\u003chttps://github.com/oasis-open/cti-taxii-client/blob/master/CONTRIBUTING.md#governance-distinct-from-oasis-tc-process\u003e`__\nfrom the OASIS TC Process and related policies.\n\nAll contributions made to this TC Open Repository are subject to open source\nlicense terms expressed in the `BSD-3-Clause License\n\u003chttps://www.oasis-open.org/sites/www.oasis-open.org/files/BSD-3-Clause.txt\u003e`__.\nThat license was selected as the declared `\"Applicable License\"\n\u003chttps://www.oasis-open.org/resources/open-repositories/licenses\u003e`__ when the\nTC Open Repository was created.\n\nAs documented in `\"Public Participation Invited\n\u003chttps://github.com/oasis-open/cti-taxii-client/blob/master/CONTRIBUTING.md#public-participation-invited\u003e`__\",\ncontributions to this OASIS TC Open Repository are invited from all parties,\nwhether affiliated with OASIS or not. Participants must have a GitHub account,\nbut no fees or OASIS membership obligations are required. Participation is\nexpected to be consistent with the `OASIS TC Open Repository Guidelines and\nProcedures\n\u003chttps://www.oasis-open.org/policies-guidelines/open-repositories\u003e`__, the open\nsource `LICENSE\n\u003chttps://github.com/oasis-open/cti-taxii-client/blob/master/LICENSE\u003e`__\ndesignated for this particular repository, and the requirement for an\n`Individual Contributor License Agreement\n\u003chttps://www.oasis-open.org/resources/open-repositories/cla/individual-cla\u003e`__\nthat governs intellectual property.\n\nMaintainers\n-----------\n\nTC Open Repository `Maintainers\n\u003chttps://www.oasis-open.org/resources/open-repositories/maintainers-guide\u003e`__\nare responsible for oversight of this project's community development\nactivities, including evaluation of GitHub `pull requests\n\u003chttps://github.com/oasis-open/cti-taxii-client/blob/master/CONTRIBUTING.md#fork-and-pull-collaboration-model\u003e`__\nand `preserving\n\u003chttps://www.oasis-open.org/policies-guidelines/open-repositories#repositoryManagement\u003e`__\nopen source principles of openness and fairness. Maintainers are recognized and\ntrusted experts who serve to implement community goals and consensus design\npreferences.\n\nInitially, the associated TC members have designated one or more persons to\nserve as Maintainer(s); subsequently, participating community members may select\nadditional or substitute Maintainers, per `consensus agreements\n\u003chttps://www.oasis-open.org/resources/open-repositories/maintainers-guide#additionalMaintainers\u003e`__.\n\nCurrent Maintainers of this TC Open Repository\n~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~\n\n-  `Chris Lenk \u003cmailto:clenk@mitre.org\u003e`__; GitHub ID:\n   https://github.com/clenk/; WWW: `MITRE\n   Corporation \u003chttps://www.mitre.org/\u003e`__\n-  `Rich Piazza \u003cmailto:rpiazza@mitre.org\u003e`__; GitHub ID:\n   https://github.com/rpiazza/; WWW: `MITRE\n   Corporation \u003chttps://www.mitre.org/\u003e`__\n-  `Jason Keirstead \u003cmailto:Jason.Keirstead@ca.ibm.com\u003e`__; GitHub ID:\n   https://github.com/JasonKeirstead; WWW: `IBM \u003chttp://www.ibm.com/\u003e`__\n\nAbout OASIS TC Open Repositories\n--------------------------------\n\n-  `TC Open Repositories: Overview and\n   Resources \u003chttps://www.oasis-open.org/resources/open-repositories/\u003e`__\n-  `Frequently Asked\n   Questions \u003chttps://www.oasis-open.org/resources/open-repositories/faq\u003e`__\n-  `Open Source\n   Licenses \u003chttps://www.oasis-open.org/resources/open-repositories/licenses\u003e`__\n-  `Contributor License Agreements\n   (CLAs) \u003chttps://www.oasis-open.org/resources/open-repositories/cla\u003e`__\n-  `Maintainers' Guidelines and\n   Agreement \u003chttps://www.oasis-open.org/resources/open-repositories/maintainers-guide\u003e`__\n\nFeedback\n--------\n\nQuestions or comments about this TC Open Repository's activities should be composed\nas GitHub issues or comments. If use of an issue/comment is not possible or\nappropriate, questions may be directed by email to the Maintainer(s) `listed\nabove \u003c#currentMaintainers\u003e`__. Please send general questions about Open\nRepository participation to OASIS Staff at repository-admin@oasis-open.org and\nany specific CLA-related questions to repository-cla@oasis-open.org.\n\n.. |Build_Status| image:: https://github.com/oasis-open/cti-taxii-client/workflows/cti-taxii-client%20test%20harness/badge.svg\n   :target: https://github.com/oasis-open/cti-taxii-client/actions?query=workflow%3A%22cti-taxii-client+test+harness%22\n.. |Coverage| image:: https://codecov.io/gh/oasis-open/cti-taxii-client/branch/master/graph/badge.svg\n   :target: https://codecov.io/gh/oasis-open/cti-taxii-client\n.. |Version| image:: https://img.shields.io/pypi/v/taxii2-client.svg?maxAge=3600\n   :target: https://pypi.python.org/pypi/taxii2-client/\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Foasis-open%2Fcti-taxii-client","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Foasis-open%2Fcti-taxii-client","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Foasis-open%2Fcti-taxii-client/lists"}