Skip to content

Alert

  • Centralized display of all alert records.
  • All fields in alerts are read-only by default and cannot be edited.
  • Analysts do not modify alert data; they only conduct investigations and response work based on alert data.

View

Supports multiple filtering and sorting functions.

img.png

img_8.png

Detail

img_1.png

img_7.png

img_9.png

Alert Operations Panel

Artifact

List of artifacts related to the alert.

img_3.png

AI

AI analysis results generated based on alert content.

img_2.png

Case

Cases associated with the alert.

img_4.png

Raw Log

Original log content of the alert. JSON format.

img_5.png

Playbook

Playbook execution history related to the alert.

img_6.png

System

System fields of the alert.