Splunk Query

post/data-explorer/splunk/query

Request body

organization_idstring uuid nullable

Organization whose integrations to query. Platform admins may select any org; omit to use the caller's current organization.

instancestring uuid required

Organization-scoped integration instance UUID. The frontend receives this from GET /data-explorer/config and must not invent connector IDs.

querystring required
earlieststring
lateststring
max_rowsinteger

Response

Successful Response

object required

Changes