Skip to main content

Documentation: https://recordedfuture-professionalservices.github.io/psengine/

Github: https://github.com/RecordedFuture-ProfessionalServices/psengine

PyPi: https://pypi.org/project/psengine/


PSEngine is a simple, yet elegant, library for rapid development of integrations with Recorded Future.

PSEngine allows you to interact with the Recorded Future API extremely easily. There’s no need to manually build the URLs and query parameters, just use the modules dedicated to individual API endpoints.

PSEngine is a Python package solely built and maintained by the Recorded Future Cyber Security Engineering team powering a number of high profile integrations, such as: PS Banshee; Recorded Future Alerts for QRadar; Anomali ThreatStream: Alerts and Analyst Notes integrations; Google SecOps and many more.

Installation

PSEngine is a Python package that can be installed using pip. To install PSengine, run the following command:

pip install psengine

PSEngine officially supports Python >= 3.10, < 3.15.

Supported Features & Best Practices

PSEngine is ready for the demands of building robust and reliable integrations.

It can easily interact with the following Recorded Future datasets:

  • Analyst Notes
  • Attack Surface Intelligence
  • Collective Insights
  • Classic & Playbook Alerts
  • Detection Rules
  • Fusion File management
  • Identity Exposures management
  • List management
  • Malware Intelligence (including Auto Yara and Auto Sigma)
  • Malware Sandbox reports download
  • On demand IOC enrichment
  • Risklists
  • Risk History
  • Sandbox Detonation of files and URLs
  • STIX conversion

And facilitate the development with features like:

  • Built-in logging
  • Easy configuration management
  • Markdown creation from certain data types
  • Proxy support

Previous versions and version documentation

PSEngine has been made public from our internal version 2.0.4. Previous versions, including version 1, are not publicly available.

The documentation arrived at version 2.1.1. Older versions are not explicitly documented and changes can be found in the Release History section.

Contributing

See CONTRIBUTING.md for development setup, code standards, testing conventions, and the CI workflow.

Release files for psengine 2.12.0

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for psengine 2.12.0
File Size Uploaded
psengine-2.12.0.tar.gz 182.3 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for psengine 2.12.0
File Interpreter ABI Platform
psengine-2.12.0-py3-none-any.whl Python 3 none any Details

Total release size: 513.8 kB

Release files / psengine-2.12.0.tar.gz

Download URL psengine-2.12.0.tar.gz
Size 182.3 kB
Tags Source
SHA-256 checksum
How to use checksums
ffceeaa06adc227f9a2c16b5ff89af235a8784ea25119ee6614786f158683017
BLAKE2b-256 checksum
How to use checksums
15d18917712149e8eb60e8ef0ebb4d535f62c6f2c18595ad6bdb6d53fe048d60
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 28, 2026.

Transparency log

Release files / psengine-2.12.0-py3-none-any.whl

Download URL psengine-2.12.0-py3-none-any.whl
Size 331.5 kB
Tags Python 3
SHA-256 checksum
How to use checksums
4d44eab60e91fe91742e5de6968dd3c95b7ae3bb45764aa91233318344dfc599
BLAKE2b-256 checksum
How to use checksums
c9114dafac90eff5f47abddcb5e1af73272a289b76171261b201cfd995fcbdcb
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 28, 2026.

Transparency log

Release history Release notifications | RSS feed

2.13.0

2 release files

This release

2.12.0 This release

2 release files

2.11.0

2 release files

2.10.1

2 release files

2.10.0

2 release files

2.9.0

2 release files

2.8.5

2 release files

2.8.4

2 release files

2.8.3

2 release files

2.8.2

2 release files

2.8.1

2 release files

2.8.0

2 release files

2.7.0

2 release files

2.6.0

2 release files

2.5.2

2 release files

2.5.1

2 release files

2.5.0

2 release files

2.4.3

2 release files

2.4.2

2 release files

2.4.1

2 release files

2.4.0

2 release files

2.3.1

2 release files

2.3.0

2 release files

2.2.0

2 release files

2.1.1

2 release files

2.1.0

2 release files

2.0.7

2 release files

2.0.6

2 release files

2.0.5

2 release files

2.0.4

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page