Palo Alto Networks · Example Payload

Cortex Xsoar Api Incident Example

Cloud SecurityCybersecurityFirewallNetwork SecuritySASESOARThreat IntelligenceXDR

Cortex Xsoar Api Incident Example is an example object payload from Palo Alto Networks, with 20 top-level fields. It illustrates the shape of data this provider's APIs accept or return.

Top-level fields

idnametypestatusseverityownercreatedmodifiedoccurredclosedcloseReasoncloseNoteslabelsdetailsinvestigationIdplaybookIdsourceInstancesourceBrandrawJsonCustomFields

Example Payload

Raw ↑
{
  "id": "example-id",
  "name": "Production Policy 07",
  "type": "standard",
  "status": 1,
  "severity": 0,
  "owner": "example-owner",
  "created": "2024-06-01T06:29:18Z",
  "modified": "2025-03-09T18:45:26Z",
  "occurred": "2025-03-28T07:00:57Z",
  "closed": "2024-08-25T08:57:34Z",
  "closeReason": "Violation monitoring and and endpoint under activity suspicious.",
  "closeNotes": "Blocked network firewall applied blocked updated firewall for applied.",
  "labels": [
    {
      "type": "default",
      "value": "example-value"
    },
    {
      "type": "custom",
      "value": "example-value"
    }
  ],
  "details": "Endpoint updated policy endpoint network and.",
  "investigationId": "878313",
  "playbookId": "831515",
  "sourceInstance": "example-sourceInstance",
  "sourceBrand": "example-sourceBrand",
  "rawJson": "example-rawJson",
  "CustomFields": {}
}

Work with this as data

Every example here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for examples

4 MCP tools reach this
  • find_examplesBrowse and filter every example in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This example
curl "https://apis.io/api/v1/examples/cortex-xsoar-api-incident-example"
All examples
curl "https://apis.io/api/v1/examples?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.