get_provenance
Trace any credential or finding back to its exact evidence: get the segment, terminal, timestamp, and byte range of the source observation.
Instructions
Trace a fact back to its evidence: the observations that support an entity or finding, and for each the segment, terminal, timestamp, and exact byte range it came from. This answers 'where did this credential come from'.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| entity_id | No | ||
| engagement | No | Engagement name; defaults to the bound one. | |
| finding_id | No |