list_lookup_definitions
Retrieve metadata for all lookup definitions in Splunk, including name, type, filename, fields, and permissions. Filter by owner, app, or search criteria.
Instructions
List lookup definitions (transforms) in Splunk. Returns metadata including name, type, associated filename, fields configuration, app, owner, and permissions. Lookup definitions specify how CSV files or external lookups are used in searches.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| owner | No | Filter by owner. Default: 'nobody' (all users) | nobody |
| app | No | Filter by app context. Default: '-' (all apps) | - |
| count | No | Max results to return. 0=all, default: 50 for performance | |
| offset | No | Result offset for pagination. Default: 0 | |
| search_filter | No | Filter results (e.g., 'filename=*.csv') |