cURL
Detections
Generate a detection system prompt
Generates a system prompt for a detection based on category and user objective (without generating a query)
POST
cURL
Authorizations
API Key authentication for programmatic access. Include your API key in the Authorization header as: Bearer your_api_key_here
Body
application/json
Request body for generating a detection system prompt
Natural language description of the detection objective
Minimum string length:
1The detection tool platform (SIEM or endpoint tools like SentinelOne)
Available options:
splunk, sumologic, elastic, databricks, datadog, scanner, runreveal, sentinelone, gadmin The detection category
Available options:
baseline_anomaly, first_occurrence, sequence_pattern, privilege_escalation, custom Response
Successful response
Generated system prompt for manual query mode
The customized system prompt for the detection agent