---
title: "Changes to Bulk entity check"
method: POST
path: "/bulk/check"
---

# Changes to Bulk entity check

`POST /bulk/check`

> Every recorded change to this endpoint, newest first.

## Timeline

Changed in 4 of 15 revisions.

- **2026-09-25** `0fa256b179f3` — 4 breaking
- **2026-09-20** `eb1bf7b5e785` — 2 info
- **2026-09-19** `1bc3c7aeff82` — 2 info
- **2026-08-31** `9d9ef31d83e5` — 12 breaking, 12 info

## Changes

- **2026-09-25** `0fa256b179f3` — 4 breaking
  - the response property `results/items/confidence` became nullable for the status `200`
  - the response property `results/items/confidence` became nullable for the status `400`
  - the response property `results/items/confidence` became optional for the status `200`
  - the response property `results/items/confidence` became optional for the status `400`
- **2026-09-20** `eb1bf7b5e785` — 2 info
  - added the optional property `results/items/lookupStatus` to the response with the `200` status
  - added the optional property `results/items/lookupStatus` to the response with the `400` status
- **2026-09-19** `1bc3c7aeff82` — 2 info
  - added the optional property `results/items/infrastructure` to the response with the `200` status
  - added the optional property `results/items/infrastructure` to the response with the `400` status
- **2026-08-31** `9d9ef31d83e5` — 12 breaking, 12 info
  - the response property `message` became nullable for the status `401`
  - the response property `message` became nullable for the status `429`
  - the response property `message` became optional for the status `401`
  - the response property `message` became optional for the status `429`
  - the `processed` response's property format changed from `int32` to no format for status `200`
  - the `results/items/riskScore` response's property format changed from `int32` to `int64` for status `200`
  - the `results/items/sources` response's property format changed from `int32` to `int64` for status `200`
  - the `total` response's property format changed from `int32` to no format for status `200`
  - removed the required property `error` from the response with the `400` status
  - removed the required property `message` from the response with the `400` status
  - removed the required property `processing_time_ms` from the response with the `200` status
  - removed the required property `results/items/is_malicious` from the response with the `200` status
  - added the optional property `errors` to the response with the `400` status
  - the response property `results/items/analystStatus` became required for the status `200`
  - the response property `results/items/observedAt` became required for the status `200`
  - the response property `results/items/recommendedAction` became required for the status `200`
  - removed `#/components/schemas/SocEvidence, subschema #1` from the `results/items/evidence` response property `oneOf` list for the response status `200`
  - added the required property `processed` to the response with the `400` status
  - added the required property `processingTimeMs` to the response with the `200` status
  - added the required property `processingTimeMs` to the response with the `400` status
  - added the required property `results` to the response with the `400` status
  - added the required property `results/items/isMalicious` to the response with the `200` status
  - added the required property `success` to the response with the `400` status
  - added the required property `total` to the response with the `400` status

---

[Operation](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api/docs/bulk/check/post.md) · [API](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api.md) · [Page](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api/changes/bulk/check/post)
