activity

Return the activity context surrounding a single security event (event) — the enclosing trace's references and security events, plus other same-agent security events within a few minutes (any trace), each carrying its full detail — for the before/after timeline on the event detail. Resolution is by event id within the organization, with no date-range / group filter, so a shared link always resolves the anchor within the recipient's permission scope. Restricted to organization admins/managers and gated by the activity-tracking flag.

get/api/activity/reports/security-event-context/

Query parameters

organizationstring uuid required

UUID of the organization to scope the report to.

eventstring uuid required

UUID of the security event to build surrounding context around.

Changes

No recorded changes to this endpoint across all 1 revision of this API.