-
Data Manipulations: Handles simple data processing on the following data types:
array
Example
- Add Text to Empty Array
Boolean
Example
- Is False
DateTime
Example
- Get Current UTC Time
HTML
Example
- Strip Tags
JSON Object
Example
- Convert JSON Array to HTML Table
Number
Example
- Get Maximum Number
Text
Example
- Ends with
-
Agent: Manages agent-related operations.
Example
- Get Agent Details
-
AI: Executes artificial intelligence-related operations.
Example
- Set Al Investigation Detail
-
Artifact: Handles artifact-related operations.
Example
- Get Related Incidents by Artifact
-
Automation Rule: Performs automation rule-related operations.
Example
- Sync Event Automation Rule
-
Case: Supports case management.
Example
- Remove Case Attachment
-
Communication: Facilitates interaction with external systems or services.
Example
- Send Email
-
Connection: Manages connections.
Example
- Sync Connection
-
Data Ingestion: Handles data ingestion-related operations.
Example
- Create Incident With Conditions
-
Domain: Performs domain-related operations.
Example
- Get from URLs
-
Dynamic Form: Performs dynamic form-related operations.
Example
- Set Incident Dynamic Field Values
-
Email: Manages email-based operations.
Example
- Extract Basic Information from Email File
-
Event: Performs event-related operations.
Example
- Get Events
-
File: Handles file-related operations.
Example
- Encrypt File with Password Protection
-
Global List: Performs global list-related operations.
Example
- Check Value Exists in Global List
-
Hash: Performs hash-related operations.
Example
- Extract Hashes from Array of JSON Objects
-
Hostname: Performs hostname-related operations.
Example
- Get Hostname for IP Addresses
-
IOC: Performs operations related to indicators of compromise.
Example
- Extract IOCs
-
IP: Performs IP-related operations.
Example
- Get IP Addresses Reputation
-
Local Shared Data: Performs operations involving locally shared data.
Example
- Add Root Key for Local Shared Data
-
Logging: Performs logging-related operations.
Example
- Get D3 Log
-
Metrics: Performs metrics-related operations.
Example
- Get D3 Application Metrics
-
MITRE: Performs operations related to MITRE frameworks to analyze and map threats or tactics.
Example
- Update Mitre Tactics and Techniques
-
Multitenancy: Performs operations related to multi-tenancy.
Example
- Sync Global List
-
Playbook: Performs playbook-related operations.
Example
- Delay
-
Reporting: Performs reporting-related operations.
Example
- Generate Incident Summary Report
-
Site: Performs site-related operations.
Example
- Create Site
-
SLA: Performs service level agreement-related operations.
Example
- Pause SLA
-
System Counter: Performs system counter-related operations.
Example
- Set System Counter
-
Tactics & Techniques: Performs tactics and techniques-related operations.
Example
- Add Tactics & Techniques to Incident
-
Trigger Output Data: Performs trigger output data-related operations.
Example
- Add Fields in Trigger Output Data
-
Uncategorized Folder: Performs miscellaneous operations.
-
URL: Performs URL-related operations.
Example
- Get URLs Reputation
-
User: Performs user-related operations.
Example
- Get All Users with Specific Role
-
Widget: Performs widget-related operations.
Example
- Get Reporting Widget