xdr_get_mapping
Discover available search fields for any XDR section, including names, labels, categories, and supported operators, to understand query options before searching.
Instructions
Get all available search fields for an XDR section. Returns field names, labels, categories, and supported operators. Call this first to understand what you can search on.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| section | Yes | Section name, one of: alerts, incidents, emails, files, events, connections, assets, modules, audit, applications |