Skip to main content
GET
Get incident evidence

Path Parameters

workspaceId
string<uuid>
required
source
enum<string>
required
Available options:
Sentinel,
DefenderXDR,
QRadar,
Splunk,
CrowdStrike,
SentinelOne
incidentId
string
required

Response

OK

Standard v2 API response envelope for single-item responses.

data
object
meta
object