defender_get_machine_by_id
Retrieve a specific device's security details using its Defender machine ID. Get OS, health, risk, exposure, tags, IPs, and first/last seen times.
Instructions
Get one device: DNS name, OS, health, risk and exposure level, tags, device value, IPs, first and last seen. Accepts the machine ID (the mdeDeviceId of alert evidence).
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| machine_id | Yes | The Defender for Endpoint machine (device) ID. |