Package-level declarations
Types
The Activity query definitions
Alerts data type for data connectors.
Describes an automation rule action to modify an object's properties
The configuration of the modify properties automation rule action
Describes an automation rule condition that evaluates a property's value
The configuration of the automation rule condition
Describes an automation rule action to run a playbook
The configuration of the run playbook automation rule action
Describes automation rule triggering logic
The available data types for Amazon Web Services CloudTrail data connector.
Logs data type.
Represents bookmark timeline item.
Information on the client (user or application) that made some action
The mapping of content type to a repo path.
Common field for data type in data connectors.
Entity insight Item.
The Time interval that the query actually executed on.
Represents AAD (Azure Active Directory) data connector.
Represents AATP (Azure Advanced Threat Protection) data connector.
Represents Activity entity query.
Settings with single toggle.
Represents Anomaly Security ML Analytics Settings
Represents ASC (Azure Security Center) data connector.
Represents an automation rule.
Represents Amazon Web Services CloudTrail data connector.
Represents a bookmark in Azure Security Insights.
The entity timeline result operation response.
Settings with single toggle.
The Get Insights result operation response.
Settings with single toggle.
Represents Fusion alert rule.
Represents an incident comment
Represents a relation between two resources
Represents an incident in Azure Security Insights.
GetInsights Query Errors.
Get Insights result metadata.
Represents MCAS (Microsoft Cloud App Security) data connector.
Represents MDATP (Microsoft Defender Advanced Threat Protection) data connector.
Metadata resource definition.
Represents MicrosoftSecurityIncidentCreation rule.
Represents office data connector.
Represents scheduled alert rule.
Sentinel onboarding state
Represents a SourceControl in Azure Security Insights.
Represents threat intelligence data connector.
Settings with single toggle.
Represents a Watchlist item in Azure Security Insights.
Represents a Watchlist in Azure Security Insights.
Describes related incident information for the bookmark
Represents an incident label
Information on the user an incident is assigned to
Query results for table insights query.
List all the source controls.
The available data types for MCAS (Microsoft Cloud App Security) data connector.
Publisher or creator of the content item.
ies for the solution content item
Dependencies for the content item, what other content items it requires to work. Can describe more complex dependencies using a recursive/nested structure. For a single dependency an id/kind/version can be supplied or operator/criteria for complex dependencies.
The original source of the content item, where it comes from.
Support information for the content item.
The available data types for office data connector.
Exchange data type connection.
SharePoint data type connection.
Teams data type connection.
Represents a repository.
metadata of a repository.
Represents security alert timeline item.
security ml analytics settings data sources
Metadata pertaining to creation and last modification of the resource.
The available data types for TI (Threat Intelligence) data connector.
Data type for indicators connection.
timeline aggregation information per kind
Timeline Query Errors.
Expansion result metadata.
User information that made some action
User information that made some action