Skip to main content

SplunkConvertConsolidatedFindingsToMD

This Script is part of the Splunk Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.2.0 and later.

Renders the Splunk Investigation consolidated_findings JSON payload as a Markdown summary (key/value table for scalar fields plus a transposed table for parallel array columns such as search_name, _time, dest, risk_score, severity, and src). Designed for use as a dynamic-section in the Splunk Investigation layout.

Script Data#


NameDescription
Script Typepython3
Tagsdynamic-section
Cortex XSOAR Version6.2.0

Inputs#


There are no input arguments for this script.

Outputs#


There are no outputs for this script.