`DELETE /investigations/{id}/alerts/{alertId}` — unlink an alert.
/investigations/{id}/alerts/{alertId}The same checks as linking. Unlinking a pair that is not linked succeeds. Neither the investigation nor the alert changes. The answer is the two ids.
Path Parameters
Investigation id
Alert id
Response Body
application/json
curl -X DELETE "https://example.com/investigations/string/alerts/string"{ "alert_id": "string", "investigation_id": "string"}`GET /investigations/{id}/alerts` — the investigation's linked alerts. GET
Newest alert first, 100 links a page. Each alert you may see comes as `GET /alerts/{id}` returns it, as it is now. `not_shown` counts the page's links to alerts you may not see or that no longer exist; nothing else about them is returned, the cursor included. A page may hold no alerts while `next_cursor` is set: follow it until it is null. The cursor is good only for you, on this investigation.
`GET /investigations/{id}/assignable-users` — the people this investigation can be assigned to: the owning team's active members, by user id and name. For anyone who may edit it; apps get 403. GET
Next Page