Method: legacySdk.legacyAlertFullDetails

Full name: projects.locations.instances.legacySdk.legacyAlertFullDetails

Returns the complete details for a specific alert, including all associated raw event data and its current suspicion status. Use this method to deep-dive into the technical specifics of a single detection event.

HTTP request


POST https://chronicle.africa-south1.rep.googleapis.com/v1alpha/{instance}/legacySdk:legacyAlertFullDetails

Path parameters

Parameters
instance

string

Required. The GetAlertFullDetails request. Format: projects/{project}/locations/{location}/instances/{instance}/legacySdk:legacyAlertFullDetails

Query parameters

Parameters
format

string

Optional. The format of the field names in the response. Could be snake or camel.

Request body

The request body contains an instance of Struct.

Response body

If successful, the response is a generic HTTP response whose format is defined by the method.

Authorization scopes

Requires one of the following OAuth scopes:

  • https://www.googleapis.com/auth/cloud-platform
  • https://www.googleapis.com/auth/chronicle
  • https://www.googleapis.com/auth/chronicle.readonly

For more information, see the Authentication Overview.

IAM Permissions

Requires the following IAM permission on the instance resource:

  • chronicle.legacySdk.get

For more information, see the IAM documentation.