Palo Alto Networks · Arazzo Workflow
Prisma Cloud Alert Triage and Dismissal
Version 1.0.0
Authenticate to Prisma Cloud, list open alerts, inspect one, then dismiss it with a note.
View Spec
View on GitHub
Cloud SecurityCybersecurityFirewallNetwork SecuritySASESOARThreat IntelligenceXDRArazzoWorkflows
Provider
Workflows
triage-and-dismiss-alert
Triage a Prisma Cloud alert from login through dismissal.
Authenticates with Prisma Cloud, lists alerts of the requested severity over a relative time window, fetches the first alert's details, and dismisses it with a note.
1
authenticate
login
Authenticate with access-key credentials and capture the JWT for later steps.
2
listAlerts
getAlerts
List open alerts of the requested severity over a relative time window, authorizing with the JWT from the login step.
3
getAlertDetail
getAlert
Retrieve the full detail of the first alert returned by the list step.
4
dismissAlert
dismissAlerts
Dismiss the inspected alert with the supplied dismissal note.