← Back to connectors

MISP connector for Okou

Connect a public MISP instance to search and inspect threat-intelligence data and safe account metadata.

Data & infrastructure · API Key

Use MISP in Okou

Use MISP for read-only threat-intelligence searches and inspection of events, attributes, and tags.

Once connected, supported MISP actions can become steps in a reusable workflow alongside the other services your team uses. Run the workflow once, on a schedule, or when an event starts it.

What you can do with MISP

  • Read analyst annotations and analyst data attached to MISP objects.
  • Read MISP API-key metadata and prefixes without creating, rotating, or exposing raw keys.
  • Read safe MISP instance identity, version, and worker-health metadata; server configuration and synchronization credentials are excluded.
  • List, search, inspect, and summarize MISP attributes without changing them.
  • List and inspect MISP organisations.
  • Search and inspect MISP collections.
  • List and inspect MISP sharing-group blueprints and organisation filters.
  • List and inspect MISP event reports.

How the MISP connector works

A connected service becomes one permissioned step in the work you hand off.

  1. 1

    Connect MISP

    Choose API Key.

  2. 2

    Choose the work

    Use only the supported actions your workflow needs.

  3. 3

    Run it your way

    Start it once, schedule it, or attach an event trigger.

Connect MISP securely

Use the connection method that fits your account and grant only the access the workflow needs.

  • API Key

Connector access is controlled per service and per action, so a workflow does not need broader access than the work you ask it to do.

MISP connector questions

What can Okou do with MISP?
Connect a public MISP instance to search and inspect threat-intelligence data and safe account metadata. Documented actions include: Read analyst annotations and analyst data attached to MISP objects. Read MISP API-key metadata and prefixes without creating, rotating, or exposing raw keys.
How do I connect MISP to Okou?
Connect MISP using API Key. The connection controls which supported actions a workflow can use.
Can MISP run in an automated workflow?
Yes. After it is connected, supported MISP actions can run in reusable Okou workflows on demand, on a schedule, or from an event trigger.

More data & infrastructure connectors

Explore other connectors in the same product category.