Skip to content

Alert

Alert Skill is used to view ASP alerts and perform triage analysis.

Trigger Scenarios

  • View, review, or summarize an alert.
  • Find alerts by status, severity, confidence, or Correlation UID.
  • Need to continue viewing Case, Artifact, or Enrichment based on alert.

Usage Example

Alert Skill

Input

InputDescription
alert_idReadable alert ID, e.g., alert_000001.
statusAlert status.
severitySeverity level.
confidenceConfidence level.
correlation_uidCorrelation ID.

Output

Alert summary, key context, associated Case / Artifact / Enrichment, and triage judgment.

Dependencies

MCP tool: list_alerts.