Actions
Blink supports the following SentinelOne Actions:
- Abort Scan
- Add Threat To Exclusions
- Add To Block List
- Add To Blocklist Deep Visibility
- Ban Hash
- Broadcast Message To Users
- Create Deep Visibility Query
- Create Firewall Rule
- Create USB Device Control Rule
- Deep Visibility Query
- Delete Firewall Rules
- Delete User
- Disable Agent
- Download From Cloud
- Enable Agent
- Export Agents Data
- Export Events
- Export Mitigation Report
- Export Threat Timeline
- Export Threats
- Fetch Deep Visibility Query Results
- Get Account By ID
- Get Agents Count
- Get Alerts
- Get CVEs For Application
- Get Endpoint Tags
- Get Events
- Get Local Upgrade Agent Authorization
- Get Passphrases
- Get Threat Timeline
- Get Threats
- Initiate Scan
- Isolate Endpoint
- Lift Endpoint Isolation
- List Accounts
- List Activities
- List Activities Types
- List Agent Applications
- List Agents
- Mitigate Threats
- SentinelOne Custom Action
- Uninstall Agent
- Update Alert Analyst Verdict
- Update Incident Details Of An Alert
- Update Threat Analyst Verdict
- Update Threat External Ticket ID
- Update Threat Incident
info
Missing an action? You can always create your own.