Shadow AI Finder by Agent Trust Cloud

Domains used by Cohere

Cohere is in the Model API or platform category. These 2 domains and their subdomains identify its traffic in DNS, proxy and firewall logs.

Traffic to a model API usually comes from software, a script or an agent calling the model, not from a person in a browser. The next step is finding which application makes the calls.

Domain list

DomainCovers
cohere.comcohere.com and every subdomain (*.cohere.com)
cohere.aicohere.ai and every subdomain (*.cohere.ai)
cohere.com
cohere.ai

Download all services (CSV)

Block or allow Cohere

Ready-made entries for common systems. Blocking can break things people rely on, so decide with the teams who use it first.

Plain domain list

One domain per line. Most DNS filters, secure web gateways and firewalls accept this for custom lists; set the list to include subdomains.

# Block list — Plain domain list
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# One domain per line. Most DNS filters, secure web gateways and firewalls accept this for custom lists; set the list to include subdomains.

cohere.ai
cohere.com

Wildcard list (*.domain)

Each domain plus a *.domain entry, for gateways that need explicit wildcards.

# Block list — Wildcard list (*.domain)
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# Each domain plus a *.domain entry, for gateways that need explicit wildcards.

cohere.ai
*.cohere.ai
cohere.com
*.cohere.com

Hosts file

Blocks exact names only; subdomains not listed here still resolve. Use a DNS filter for full coverage.

# Block list — Hosts file
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# Blocks exact names only; subdomains not listed here still resolve. Use a DNS filter for full coverage.

0.0.0.0 cohere.ai
0.0.0.0 www.cohere.ai
0.0.0.0 cohere.com
0.0.0.0 www.cohere.com

dnsmasq

address=/domain/ also blocks every subdomain.

# Block list — dnsmasq
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# address=/domain/ also blocks every subdomain.

address=/cohere.ai/0.0.0.0
address=/cohere.com/0.0.0.0

Unbound

Add to unbound.conf under server:. always_nxdomain covers subdomains.

# Block list — Unbound
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# Add to unbound.conf under server:. always_nxdomain covers subdomains.

local-zone: "cohere.ai." always_nxdomain
local-zone: "cohere.com." always_nxdomain

BIND response policy zone (RPZ)

Records for a response-policy zone. Add your zone's SOA and NS records at the top.

; Block list — BIND response policy zone (RPZ)
; Cohere (2 domains)
; Generated by Shadow AI Finder (shadowaifinder.com)
; Records for a response-policy zone. Add your zone's SOA and NS records at the top.

cohere.ai CNAME .
*.cohere.ai CNAME .
cohere.com CNAME .
*.cohere.com CNAME .

Pi-hole regex

Add as regex blacklist (or whitelist) entries. Each line matches the domain and its subdomains.

# Block list — Pi-hole regex
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# Add as regex blacklist (or whitelist) entries. Each line matches the domain and its subdomains.

(\.|^)cohere\.ai$
(\.|^)cohere\.com$

Squid dstdomain

A leading dot matches the domain and all subdomains. Use with an acl ... dstdomain "/path/file" rule.

# Block list — Squid dstdomain
# Cohere (2 domains)
# Generated by Shadow AI Finder (shadowaifinder.com)
# A leading dot matches the domain and all subdomains. Use with an acl ... dstdomain "/path/file" rule.

.cohere.ai
.cohere.com

Check a log for Cohere

Paste log lines to see whether Cohere shows up and how often. Nothing leaves your browser.

Knowing the domains is step one

A list tells you where traffic goes. Agent Trust Cloud keeps an inventory of AI agents, who owns each, and what it may do, and applies your policy before an agent acts. Discover, the monitor-only tier, is free.

Other services in Model API or platform

All Model API or platform domains in one list · All 79 services