Skip to main content

List detection alerts

Action ID: tools.elastic_security.list_detection_signals Query for Elastic Security detection alerts. Reference: https://www.elastic.co/docs/api/doc/kibana/v8/operation/operation-searchalerts

Secrets

Required secrets:
  • elastic_security: required values ELASTIC_API_KEY.

Input fields

end_time
string
required
End time for the query (exclusive).
start_time
string
required
Start time for the query (inclusive).
base_url
string | null
Kibana endpoint URL (e.g. https://localhost:5601).Default: null.
limit
integer
Maximum number of alerts to return.Default: 100.
query
string | object | null
Elastic JSON query DSL. If specified, overrides start_time and end_time.Default: null.
verify_ssl
boolean
Whether to verify SSL certificates.Default: true.