---
title: "Sugra NetAtlas primary-source provenance"
method: GET
path: "/api/v1/network/sources/coverage"
tags: ["Sugra NetAtlas"]
---

# Sugra NetAtlas primary-source provenance

`GET /api/v1/network/sources/coverage`

Per-source ingestion counts and freshness for every primary source the Sugra NetAtlas is built from. Categories: registry (RIR delegated), bgp_collector (RouteViews RIB), operator_published (RFC 8805 Geofeeds), privacy_signal (Tor exits, firehol, static anycast prefixes), and cloud_provider (AWS / GCP / Cloudflare published IP ranges). All sources are first-party primary publications - no paid aggregator data.

## Response `200`

Successful Response

- NetworkSourcesCoverageData
  - `data` Data
    - `ripestat` CrtshCt
      - `status` string, nullable
      - `category` string, nullable
      - `source_url` string, nullable
      - `operator` string, nullable
      - `serves` string[], nullable
      - `notes` string, nullable
    - `crtsh_ct` CrtshCt
      - `status` string, nullable
      - `category` string, nullable
      - `source_url` string, nullable
      - `operator` string, nullable
      - `serves` string[], nullable
      - `notes` string, nullable
    - `bgp_hijacks` BgpHijacks
      - `status` string, nullable
      - `category` string, nullable
      - `source_url` string, nullable
      - `serves` string[], nullable
      - `notes` string, nullable
    - `rir_delegated` RirDelegated
      - `ipv4_alloc_count` union
        - integer
        - number
      - `ipv6_alloc_count` union
        - integer
        - number
      - `last_ingested_at` unknown
      - `source_url` string, nullable
      - `category` string, nullable
      - `prefix_country_mapped` PrefixCountryMapped
        - `ipv4_total` union
          - integer
          - number
        - `ipv4_mapped` union
          - integer
          - number
        - `ipv6_total` union
          - integer
          - number
        - `ipv6_mapped` union
          - integer
          - number
    - `routeviews_rib` RouteviewsRib
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` unknown
      - `source_url` string, nullable
      - `category` string, nullable
    - `geofeeds` Geofeeds
      - `asn_count` union
        - integer
        - number
      - `last_ingested_at` unknown
      - `source_url` string, nullable
      - `category` string, nullable
      - `status` string, nullable
      - `status_reason` string, nullable
    - `caida_geofeed` CaidaGeofeed
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` unknown
      - `source_url` string, nullable
      - `category` string, nullable
      - `status` string, nullable
      - `status_reason` unknown
    - `tor_exits` TorExits
      - `ip_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
    - `firehol_anonymous` FireholAnonymous
      - `cidr_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
    - `static_anycast_prefixes` AwsIpRanges
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
    - `aws_ip_ranges` AwsIpRanges
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
    - `gcp_cloud_json` AwsIpRanges
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
    - `cloudflare_ips` AwsIpRanges
      - `prefix_count` union
        - integer
        - number
      - `last_ingested_at` string, nullable
      - `source_url` string, nullable
      - `category` string, nullable
  - `_meta` AtlasMeta
    - `product` string, required — Always 'Sugra NetAtlas'.
    - `atlas_built_at` string, nullable — UTC ISO-8601 build time of the atlas snapshot that answered; null only when no connector can vouch for one.
    - `privacy_signal_version` string, required — Version of the privacy/default-route signal set.
    - `confidence` string, required — Confidence of the privacy/default-route signal: high, medium or low.
    - `accuracy` string, required — Accuracy class of the answer (e.g. public, city, country, unknown).
    - `sources` string[], required — Sugra-branded upstream families that contributed.
    - `data_time` string, nullable — When the DATA is from (UTC ISO-8601); null when nothing can vouch for it.
    - `response_time` string, required — When Sugra answered (UTC ISO-8601).
    - `partial` boolean, required — True when at least one upstream failed and the answer is incomplete.
    - `geo_confidence` string, nullable — IP-geo responses only: how trustworthy the resolved city/country is (downgrades for anycast/CDN).
    - `served_from` string, nullable — Where the answer came from (local atlas, live proxy, cache).
    - `fallback_reason` string, nullable — Why a fallback path served the answer, when one did.
    - `sources_coverage` unknown
    - `cached` boolean, nullable — True when the answer was served from the response cache (routes that cache whole answers).
    - `atlas_sha256` string, nullable — SHA-256 of the atlas snapshot (sources/coverage).
    - `endpoint_version` string, nullable — Endpoint contract version where a route declares one (sources/coverage: v1).

## Other responses

- `401` — Missing or invalid `x-api-key` header. JSON body with a stable `code` distinguishing `missing_api_key` (no header sent) from `invalid_api_key` (header sent, key not accepted); any other 401 source carries the generic `unauthorized` with its detail as `reason`. Plus `hint`. `plan` is always null on 401 - an unauthenticated request has no plan; quota exhaustion is 429, not 401.
- `429` — Daily rate limit exceeded. Check `X-RateLimit-Reset` for the next window.
- `503` — Upstream source is temporarily unavailable. Retry after a short delay.

---

[API](https://skmtc.net/sugra/apis/sugra-api.md) · [All operations](https://skmtc.net/sugra/apis/sugra-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/sugra/sugra-api/revisions/914af3d38c7c/schema)
