Varonis DatAlert API
API for accessing threat detection and incident response capabilities from Varonis DatAlert. Provides endpoints for retrieving alerts, managing alert status, adding notes to alerts, and accessing alerted events for investigation and threat hunting. The DatAlert API enables integration with SIEM and SOAR platforms for centralized security operations.
Documentation
Documentation
https://docs.varonis.com/api/datalert
Authentication
https://docs.varonis.com/api/authentication
Specifications
Examples
Schemas & Data
JSONSchema
Alert Schema
JSONSchema
Alerted Event Schema
JSONSchema
Threat Model Schema
JSONStructure
Alert Structure
JSONStructure
Alerted Event Structure
Other Resources
NaftikoCapability
https://raw.githubusercontent.com/api-evangelist/varonis/refs/heads/main/capabilities/datalert-alerts.yaml
NaftikoCapability
https://raw.githubusercontent.com/api-evangelist/varonis/refs/heads/main/capabilities/datalert-events.yaml
NaftikoCapability
https://raw.githubusercontent.com/api-evangelist/varonis/refs/heads/main/capabilities/datalert-threat-models.yaml