Skip to content

List workspace-watchdog-events

GET
/workspace-watchdog-events

Security events captured by the Workspace Watchdog polling service (F2.W.07)

pagination[page]
integer
pagination[pageSize]
integer
filters

Strapi REST filter syntax

object
sort
string
populate
string

OK

object
data
Array
object
organisation
required
One of:

DocumentId reference to api::organisation.organisation

string
workspace_tenant
One of:

DocumentId reference to api::workspace-tenant.workspace-tenant

string
event_type
required
string
Allowed values: login_anomaly bulk_download external_share admin_privilege_granted mfa_disabled account_suspended password_reset app_authorized new_admin oauth_app_added user_suspended login_from_new_country bulk_delete
severity
required
string
Allowed values: critical high medium low info
actor_email
string
target_email
string
resource
string
ip_address
string
user_agent
string
raw_event

Arbitrary JSON value (object, array, string, number, boolean, or null)

event_data

Arbitrary JSON value (object, array, string, number, boolean, or null)

status
required
string
Allowed values: new investigating resolved false_positive
notes
string
occurred_at
required
string format: date-time
notification_created
boolean
documentId
string
id
integer
createdAt
string format: date-time
updatedAt
string format: date-time
publishedAt
string format: date-time
nullable
meta
object
pagination
object
page
integer
pageSize
integer
pageCount
integer
total
integer

Missing or invalid authentication

Not authorized (tenant scope or capability)