Account API reference
Every Account endpoint in the Orbit API (10): method and path, the token scope it needs, its parameters, and the matching CLI command and MCP tool.
20 endpoints, 9 of them read-only. Every one is also a command in the orbit CLI, a method in the SDKs and a tool on the MCP server.
| Endpoint | Scope | Parameters | CLI · MCP tool |
|---|---|---|---|
GET /cdn/sites/{id}/threatsThreat intelligence for a site: share of traffic by risk band, top ASNs / countries / reasons, timeline (aggregates only) | read | id integer?range 24h | 7d | orbit shield sites threats <id>shield_sites_threats |
GET /cdn/sitesList Shield sites (proxied hostnames) | read | ?limit integer?offset integer | orbit shield sites listshield_sites_list |
POST /cdn/sitesOnboard a hostname by CNAME (DNS stays at your provider) | write | body: hostname* string, origin* string, origin_scheme http | https | strict, origin_host_header boolean, service_id integer | orbit shield sites createshield_sites_create |
GET /cdn/sites/{id}Get a site | read | id integer | orbit shield sites get <id>shield_sites_get |
PATCH /cdn/sites/{id}Update site settings (partial) | write | id integerbody: waf object, cache_ttl integer, cache_mode all | static | origin, cache_html_ttl integer, force_https boolean, rate_limit integer, origin_scheme http | https | strict, origin_host_header boolean, cert_pem string, key_pem string, waiting_room object, under_attack boolean, bot_fight boolean, sense object | orbit shield sites patch <id>shield_sites_patch |
DELETE /cdn/sites/{id}Remove a CNAME-mode site (zone-hosted sites are removed by un-proxying their record) | write | id integer | orbit shield sites delete <id>shield_sites_delete |
PUT /cdn/sites/{id}/originPoint a hostname at a Pages project, an Orbit Link tunnel, or back at its own origin | write | id integerbody: pages_project_id integer, link_tunnel_id integer | orbit shield sites origin <id>shield_sites_origin |
POST /cdn/sites/{id}/verifyCheck the CNAMEs in public DNS; request the certificate once seen | write | id integer | orbit shield sites verify <id>shield_sites_verify |
POST /cdn/sites/{id}/purgePurge cache (everything, or given paths) | write | id integerbody: urls string[] | orbit shield sites purge <id>shield_sites_purge |
POST /cdn/sites/{id}/origin-certificateIssue an Orbit Origin CA certificate for the origin | write | id integer | orbit shield sites origincert <id>shield_sites_origincert |
POST /cdn/sites/{id}/acmeStart automated Let's Encrypt issuance (dns-01) | write | id integer | orbit shield sites acme <id>shield_sites_acme |
GET /cdn/sites/{id}/analyticsTraffic analytics: exact per-minute counters plus top lists and latency from the sampled logs | read | id integer?range 1h | 24h | 7d | orbit shield sites analytics <id>shield_sites_analytics |
GET /cdn/sites/{id}/waf/hitsWhich firewall rules have been matching, with one example path each | read | id integer?range 15m | 1h | 24h | 7d | orbit shield sites wafhits <id>shield_sites_wafhits |
| Endpoint | Scope | Parameters | CLI · MCP tool |
|---|---|---|---|
GET /onboard/recommendWhich onboarding modes fit a hostname, best first | read | ?hostname string | orbit shield onboard recommendshield_onboard_recommend |
| Endpoint | Scope | Parameters | CLI · MCP tool |
|---|---|---|---|
GET /cdn/sites/{id}/logsRequest logs (sampled), newest first, cursor-paged; format=csv exports up to 10 000 rows | read | id integer?since string?until string?ray string?ip string?path string?status string?action pass | netrule_block | waf | challenge | ratelimit | waiting | origin_error | redirect?cc string?limit integer?cursor string?format json | csv | orbit shield logs list <id>shield_logs_list |
GET /cdn/sites/{id}/logs/{ray}One request by Ray ID, with every header | read | id integerray string | orbit shield logs get <id> <ray>shield_logs_get |
| Endpoint | Scope | Parameters | CLI · MCP tool |
|---|---|---|---|
GET /security/rulesList security rules | read | ?limit integer?offset integer?site_id integer?zone_id integer | orbit shield rules listshield_rules_list |
POST /security/rulesAdd a rule for a site or a whole zone | write | body: site_id integer, zone_id integer, field* country | asn | ip | isp, op* in | not_in, value* string, action* block | allow | challenge | ratelimit, seq integer, note string | orbit shield rules createshield_rules_create |
PATCH /security/rules/{id}Enable/disable a rule | write | id integerbody: enabled* boolean | orbit shield rules patch <id>shield_rules_patch |
DELETE /security/rules/{id}Delete a rule | write | id integer | orbit shield rules delete <id>shield_rules_delete |
Every Account endpoint in the Orbit API (10): method and path, the token scope it needs, its parameters, and the matching CLI command and MCP tool.
Every Organization endpoint in the Orbit API (10): method and path, the token scope it needs, its parameters, and the matching CLI command and MCP tool.
Every Services endpoint in the Orbit API (15): method and path, the token scope it needs, its parameters, and the matching CLI command and MCP tool.