Actions56
- Acquisition Actions
- Asset Actions
- Baseline Actions
- Case Actions
- InterACT Actions
- Organization Actions
- Repository Actions
- Task Actions
- Triage Rule Actions
- User Actions
Baseline → Get Comparison Report
AI-generatedOverview
This node operation retrieves a comparison report for a baseline comparison task related to a specific asset within an organization. It is useful in scenarios where users need to analyze differences or changes detected by baseline comparisons on endpoint assets, such as security or system state changes over time. For example, a security analyst might use this to get detailed reports on baseline comparison tasks to investigate anomalies or verify system integrity.
Use Case Examples
- Retrieve a comparison report for a completed baseline comparison task on a selected asset to review detected changes.
- Get a detailed comparison report for an asset within a specific organization to support incident response or compliance auditing.
Properties
| Name | Meaning |
|---|---|
| Organization | The organization that owns the asset. This is required to scope the asset and comparison task selection. |
| Asset | The asset to get the comparison report for. This is required to specify which endpoint asset's baseline comparison report to retrieve. |
| Comparison Task | The baseline comparison task to get the report for. It must be a completed baseline comparison task for the selected asset. |
Output
JSON
comparisonReport- The detailed comparison report data retrieved for the specified baseline comparison task.
Dependencies
- Requires an API key credential for authentication to the AIR API service.
Troubleshooting
- Ensure the organization ID is a valid number if entering manually; otherwise, selection from the list is recommended.
- Verify the asset ID format contains only allowed characters (letters, numbers, hyphens, underscores).
- Confirm the comparison task ID is valid and corresponds to a completed baseline comparison task for the selected asset.
- Check API authentication credentials if the node fails to connect or retrieve data.
- If the comparison report is empty or missing, verify that the baseline comparison task has completed successfully.