CTIPilot

RSS feeds

Ten feeds in total. The two main feeds carry every day page and every entry (plus every update or correction to one); the eight sector slices filter the per-entry feed to the audience you care about. <pubDate> derives from each entry's discovered_at · the moment the pipeline verified the finding, not a publish schedule · or from an update record's own timestamp. <content:encoded> carries full HTML; categories carry tags / regions / CVE / status. No UTM parameters, no per-source variants · every link is plain canonical.

Main feeds

  • One item per archived day. Description carries the day's TL;DR bullets; <content:encoded> carries the full day-page HTML. Categories carry the day's CVEs.

  • One item per pipeline entry (<pubDate> = the entry's discovered_at · true discovery latency) PLUS one item per changelog record · an update, correction or improvement appended to a published entry (guid <entry url>#update-<at>, <pubDate> = the record's time, title prefixed by the record type). Categories carry tags + regions + CVE status + CVE ids.

Sector slices

Per-sector filtered slices of feed-items.xml, matched on each entry's sectors / tags. Subscribe to the slice you care about instead of parsing every entry.

Autodiscovery

Every page on this site advertises the two main feeds via <link rel="alternate" type="application/rss+xml"> in the document head, so any feed reader pointed at the homepage finds them automatically. The eight sector slices are accessible through this page.

STIX 2.1

For TIP platforms (OpenCTI and friends) the same content ships as pull-model STIX 2.1 bundle endpoints · full corpus, rolling window, entity graph, and the same sector slices · with deterministic object ids, so re-ingestion is idempotent.