Enable or disable a bot route rule
const url = 'https://api.nsin.ir/domains/example.com/rules/bot-route/1/toggle';const options = {method: 'PATCH', headers: {Authorization: 'Bearer <token>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request PATCH \ --url https://api.nsin.ir/domains/example.com/rules/bot-route/1/toggle \ --header 'Authorization: Bearer <token>'Flips the rule’s enabled flag. Takes no request body — the new state
is always the opposite of the current one, and is returned. Requires
rules.edit.
Authorizations
Section titled “Authorizations ”Parameters
Section titled “ Parameters ”Path Parameters
Section titled “Path Parameters ”The domain name (for example example.com) — not a numeric id.
Example
example.comNumeric id of the rule.
Responses
Section titled “ Responses ”The rule in its new state.
object
Deprecated single-record scope. Prefer record_ids. Absent for
zone-wide rules.
The proxied DNS records this rule applies to. Empty or absent means zone-wide — every proxied record of the domain.
Evaluation order; lower runs first. Defaults to 100.
Optional hostname filter. Empty means the rule is not host-scoped.
How host_pattern is matched. The empty string means “no host filter”,
and is the only valid value when host_pattern is empty — the two
fields are set and cleared together.
enforce— the rule acts (block, redirect, challenge, …).dry_run— the rule matches and is logged as “would have acted”, but the request reaches the origin unchanged. Use it to test a rule safely.
Not every rule type honours this; cache ignores it.
Which bots this rule matches. Must not be empty.
Only match bots whose identity was verified (by reverse DNS or published IP ranges), not merely self-declared in the user agent.
block— refuse the request.alt_content— servebodywithstatusinstead of the origin.alt_origin— proxy toalt_dest:alt_portoveralt_scheme.tag— let it through, but tag it in telemetry.
Status code for alt_content.
Response body for alt_content.
Origin address for alt_origin.
Origin port for alt_origin.
Scheme used to reach alt_dest.
Example
{ "type": "cache", "host_match_type": "", "action_mode": "enforce", "bot_kinds": [ "*" ], "action": "block", "status": 200, "alt_scheme": "http"}Missing, malformed, revoked or expired API key — or the owning account is inactive.
The single error shape used by every endpoint.
object
Human-readable description of what went wrong.
Examples
{ "error": "invalid API key"}The domain or the rule does not exist, the rule belongs to another domain or another rule type, or your role does not permit this operation.
The single error shape used by every endpoint.
object
Human-readable description of what went wrong.
Example
{ "error": "read-only API key"}The key exceeded its request budget (300 requests per minute by default).
The single error shape used by every endpoint.
object
Human-readable description of what went wrong.
Examples
{ "error": "rate limit exceeded"}