Request the investigation of an alert by identifying observables and assessing its overall risk.
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
Almond, CortexN, CortexXDR, Email, Sentinel, Unknown, EDElevatorIpConnections, GuardDuty, LetsDefend, Sekoia, Splunk The alert content, to be investigated by Qevlar AI engine, should be provided as a JSON object literal.This data can either be in the form of a JSON object literal or a string that strictly follows the JSON specification.
The unique identifier of the alert for display on the Qevlar AI platform. The ID must not exceed 200 characters in length.
Additional metadata for display on the Qevlar AI platform. This should be a dictionary with string or URL values, where each key is up to 40 characters long and each value is up to 500 characters long. You are responsible for ensuring that the URL is secure.