Actions56
- Acquisition Actions
- Asset Actions
- Baseline Actions
- Case Actions
- InterACT Actions
- Organization Actions
- Repository Actions
- Task Actions
- Triage Rule Actions
- User Actions
Triage Rule → Get Many
AI-generatedOverview
This node operation retrieves multiple triage rules from the Binalyze AIR system. It supports filtering the triage rules by description, engine types (YARA, Sigma, Osquery), search terms, and organization. Pagination options allow specifying the page number and the number of results per page. This operation is useful for users who want to list and filter triage rules for analysis or management within their security workflows.
Use Case Examples
- Retrieve all triage rules visible to the default organization.
- Filter triage rules by description containing a specific keyword.
- Get triage rules associated with specific engine types like YARA or Sigma.
- Search triage rules using a search term to find relevant rules quickly.
Properties
| Name | Meaning |
|---|---|
| Additional Fields | Optional filters and pagination settings for retrieving triage rules, including description filter, engine types filter, search term, organization filter, page number, and page size. |
Output
JSON
triageRules- Array of triage rule objects matching the filter criteria.totalCount- Total number of triage rules available for the given filters.
Dependencies
- Requires an API key credential for Binalyze AIR to authenticate requests.
Troubleshooting
- If no triage rules are returned, verify that the filter criteria are correct and that the organization ID or name is valid.
- Ensure the API key credential is correctly configured and has sufficient permissions to access triage rules.
- Pagination parameters must be positive integers; invalid values may cause errors or empty results.
- Common error messages may include authentication failures or invalid filter parameters; check the node configuration and input values.