Assistant

Get Assistant Sessions

Retrieve a list of all previous chat session metadata for the authenticated user.

get/api/assistant/sessions

Response

List of previous conversation session metadata

createTimestring

The date and time that this object was created. This is a read-only field.

deleteTimestring

The time the session was deleted.

entityIdstring

The entity ID associated with this session (e.g., alert soc_id).

idstring

The ID assigned to this object by the server. This is a read-only field.

kindstring

The kind of object. This is a read-only field.

operationstring

The operation that was applied to the object. This is a read-only field.

sessionIdstring

The session identifier.

tagsstring[]

Metadata about the session.

titlestring

The title of the session. Usually the first message sent by the user.

typestring

The type of session (e.g., "alert_investigation").

updateTimestring

The date and time that this object was last modified. This is a read-only field.

userIdstring

The user ID (or API client ID) that initiated this event. This is a read-only field.

Example response

[
  {
    "createTime": "2024-11-14T15:03:22Z",
    "deleteTime": "2025-09-05T15:33:00.000Z",
    "entityId": "WKhCuTw4GPvrQA-9ksmn",
    "id": "PdFc-JIBLkNJ8-bDfz47",
    "kind": "case",
    "operation": "create",
    "sessionId": "chat_1757086398900_ykhmndscn",
    "tags": [
      "investigation"
    ],
    "title": "Can you write a suricata rule for me?",
    "type": "alert_investigation",
    "updateTime": "2024-11-14T15:33:02Z",
    "usage": {
      "totalCredits": 5,
      "totalInputTokens": 1500,
      "totalMessages": 25,
      "totalOutputTokens": 3000
    },
    "userId": "socl_my_new_client"
  }
]

Changes

Changed in 4 of the 23 revisions of this API.14

    • added the optional property items/usage/modelUsage to the response with the 200 status

      response-optional-property-added

    • added the optional property items/entityId to the response with the 200 status

      response-optional-property-added

    • added the optional property items/type to the response with the 200 status

      response-optional-property-added

    • endpoint added

      endpoint-added

    • api path removed without deprecation

      api-path-removed-without-deprecation

    This revision also has 35 changes that name no endpoint, such as unreferenced schemas being removed. See the revision's changelog