> For the complete documentation index, see [llms.txt](https://docs.prismacloud.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.prismacloud.io/admin-guide/33/technology-overviews/intel-stream.md).

# Intelligence Stream

The Prisma Cloud Intelligence Stream (IS) is a real-time feed that contains vulnerability data and threat intelligence from a variety of certified upstream sources. Prisma Cloud continuously pulls data from known vulnerability databases, official vendor feeds and commercial providers to provide the most accurate vulnerability detection results.

In addition to the information collected from official feeds, Prisma Cloud feeds are enriched with vulnerability data curated by a dedicated research team. Our security researchers monitor cloud and open source projects to identify security issues through automated and manual means. As a result, Prisma Cloud can detect new vulnerabilities that were only recently disclosed, and even vulnerabilities that were quietly patched.

The Prisma Cloud Console automatically connects to the Intelligence Stream server and downloads updates without any special configuration required. The Intelligence Stream (IS) is updated several times per day, and the consoles check continuously for updates.

## Multiple Intelligence Stream (IS) Builders

Prisma Cloud has introduced versioning for Intelligence Stream (IS) to ensure compatibility across different Console and Defender versions.

The purpose of Intelligence Stream (IS) versioning is to:

* **Maintain functionality for older Consoles and Defenders**: IS versioning ensures that older Consoles and Defenders continue to operate properly, even if they cannot support the latest intelligence feeds. For example, if the intelligence feed undergoes a change in its external data format, this change will not disrupt the functionality of older Consoles and Defenders.
* **Reduce disruptions**: Versioning helps minimize disruptions caused by updates, such as changes in downloaded JSON file fields that could impact CVE accuracy or result in duplicate CVEs.

To ensure consistency in vulnerability reporting across all Intelligence Stream (IS) versions, the following approach is implemented:

* **New Intelligence Stream (IS) logic updates**: Enhancements, bug fixes, and updates to the IS logic, will always be applied to the latest IS version. When customers upgrade to the latest Console version, they will receive the most recent IS logic updates.
* **Vulnerability data**: All IS versions will continue to provide up-to-date vulnerability information, and changes in IS logic or algorithms will not affect the vulnerability metrics and reporting in the Console.

The following table lists the Prisma Console releases and their corresponding Intelligence Stream (IS) versions. For Prisma Cloud release 33.00 and later, IS versions are automatically aligned with the Prisma Cloud release. For Prisma Cloud releases 32.xx and 31.xx, the applicable IS versions are listed in the following table.

| Prisma Console Release | Self-hosted Console Version / Intelligence Stream Version |
| ---------------------- | --------------------------------------------------------- |
| 33.02                  | 33.02                                                     |
| 33.01                  | 33.01                                                     |
| 33.00                  | 33.00                                                     |
| 32.xx                  | 33.00                                                     |
| 31.xx                  | 33.00                                                     |

**Note**: Updates related to the Intelligence Stream will be notified in the **Intelligence Stream Updates** section of the Prisma Cloud Release Notes.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.prismacloud.io/admin-guide/33/technology-overviews/intel-stream.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
