Vigilfield Docs
API referenceInvestigations

`PUT /investigations/{id}/alerts/{alertId}` — link an alert.

PUT/investigations/{id}/alerts/{alertId}

Link an alert to this investigation. You need to be able to edit the investigation and see the alert; apps cannot. Linking a linked pair succeeds and changes nothing. Neither the investigation nor the alert changes. The answer is the two ids. A token without alerts:read is a 403 before anything is read; an alert you cannot see, or that does not exist, is the 404 GET /alerts/{id} gives; a missing investigation is a 404; one you may not edit is a 403.

Path Parameters

id*string

Investigation id

alertId*string

Alert id

Response Body

application/json

curl -X PUT "https://example.com/investigations/string/alerts/string"
{  "alert_id": "string",  "investigation_id": "string"}