[Response Ops][Alerting] Add ability to specify custom format function when getting summarized alerts #150776
Labels
Feature:Alerting
Team:ResponseOps
Label for the ResponseOps team (formerly the Cases and Alerting teams)
For the effort to onboard detection rules onto framework alert summaries, we need to provide a way for rule types to specify custom format functions for alerts returned from the alert summaries. POC here. Security will implement the function but we will provide the hook for it inside the
getSummarizedAlerts
function.The text was updated successfully, but these errors were encountered: