Skip to main content
GET
Get incident by id

Path Parameters

workspaceId
string<uuid>
required
source
enum<string>
required
Available options:
Sentinel,
DefenderXDR,
QRadar,
Splunk,
CrowdStrike,
SentinelOne
incidentId
string
required

Response

OK

Standard v2 API response envelope for single-item responses.

data
object

Object that represents all the data from an incident that could come from any source

meta
object