Skip to content

Conversation

@content-bot
Copy link
Collaborator

Original External PR

external pull request

Contributor

@crestdatasystems

Contributing to Cortex XSOAR Content

Make sure to register your contribution by filling the contribution registration form

The Pull Request will be reviewed only after the contribution registration form is filled.

Status

  • In Progress
  • Ready
  • In Hold - (Reason for hold)

Description

Updated "Vectra Detect" Integration:

  • Added support for Advanced: Fetch escalated Accounts and Hosts parameter to fetch escalated accounts and hosts.

  • Added support for Re-Fetch closed incidents via mirroring parameter.

  • Added support for the OAuth2.0 authentication.

  • Added support for Authentication Type parameter to select the authentication method (API Token or OAuth 2.0).

  • Added support for vectra-detections-mark-asopen command to mark detections as open with provided detection IDs in the argument.

  • Added support for vectra-account-markall-detections-asclosed command to mark active detections as closed by providing the ID of the account in the argument.

  • Added support for vectra-detections-mark-asclosed command to mark detections as close with provided detection IDs in the argument.

  • Added support for vectra-host-markall-detections-asclosed command to mark active detections as closed by providing the ID of the host in the argument.

Must have

  • Tests
  • Documentation

* Vectra AI Release 2.1.0

* Applied the suggested review comments changes from the PR

---------

Co-authored-by: crestdatasystems <[email protected]>
@content-bot content-bot added Contribution Thank you! Contributions are always welcome! docs-approved Partner pending-demo Demo pending Contribution Form Filled Whether contribution form filled or not. pending-contributor The PR is pending the response of its creator Partner Support Level Indicates that the contribution is for Partner supported pack Internal PR Partner-Approved ready-for-pipeline-running Whether the pr is ready for running the whole pipeline, including testing on SAAS machines labels Nov 20, 2025
@github-actions
Copy link

github-actions bot commented Nov 20, 2025

Coverage

Coverage Report
FileStmtsMissCoverMissing
Packs/Vectra_AI/Integrations/VectraDetect
   VectraDetect.py176016890%356–357, 360, 367, 371–373, 416, 418, 423, 425, 430, 432, 436, 514, 516, 521, 523, 528, 530, 537, 541, 597, 599, 604, 606, 611, 613, 620, 624, 659, 664, 669, 674, 679, 683, 724, 728, 732, 736, 837, 890, 893, 901, 904, 906, 966–969, 1206, 1221–1222, 1284, 1287, 1300, 1533, 1585, 1587, 1611, 1616, 1636–1637, 1686–1687, 1786, 2005–2007, 2086, 2095, 2114–2116, 2196, 2691, 2699, 2702, 2775–2784, 2786, 2903, 2906, 2911, 2917, 2921, 2942–2943, 3007, 3009–3012, 3121, 3124, 3129, 3136–3140, 3286–3291, 3293–3298, 3302, 3323, 3328, 3330–3331, 3333–3334, 3342, 3350, 3371, 3376, 3383–3384, 3386, 3388–3389, 3397, 3405, 3426, 3431, 3433–3434, 3436–3437, 3445, 3453, 3470, 3474, 3477, 3517, 3521, 3524, 3561, 3565, 3568, 3763–3765, 3767, 3817, 3965, 4036, 4383–4387
TOTAL176016890% 

Tests Skipped Failures Errors Time
367 0 💤 0 ❌ 0 🔥 11.815s ⏱️

@content-bot
Copy link
Collaborator Author

Validate summary
The following errors were thrown as a part of this pr: .
If the AG100 validation in the pre-commit GitHub Action fails, the pull request cannot be force-merged.

Verdict: PR can be force merged from validate perspective? ✅

@merit-maita merit-maita merged commit 91feca5 into master Nov 23, 2025
20 checks passed
@merit-maita merit-maita deleted the contrib/crestdatasystems_Vectra-AI-Release-210 branch November 23, 2025 09:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Contribution Form Filled Whether contribution form filled or not. Contribution Thank you! Contributions are always welcome! docs-approved Internal PR Partner Support Level Indicates that the contribution is for Partner supported pack Partner Partner-Approved pending-contributor The PR is pending the response of its creator pending-demo Demo pending ready-for-pipeline-running Whether the pr is ready for running the whole pipeline, including testing on SAAS machines

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants