openapi: 3.2.0
info:
version: 3.0.0
title: /Incidents Alerts API
description: This API enables you to retrieve and update alerts and incidents, and other APIs relating to them
termsOfService: https://www.moogsoft.com/legal-information/express-terms-conditions/
contact:
name: API Support
url: https://docs.moogsoft.com/en/moogsoft-apis.html
email: support@moogsoft.com
license:
url: https://www.moogsoft.com/legal-information
name: Apex AIOps Incident Management Proprietary
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
security:
- ApiKeyAuth: []
tags:
- name: Alerts
description: Alerts generated by Moogsoft Cloud
paths:
/v2/situation-room/{incidentId}/alerts:
post:
tags:
- Alerts
summary: Get alerts for an incident, for the situation room
operationId: getSituationRoomAlertsV2
parameters:
- name: incidentId
in: path
required: true
schema:
type: integer
format: int64
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/SituationRoomAlertsRequestV2'
__errors__:
'#/components/schemas/ColumnFilterMap': No foreign doc with id components found
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseSituationRoomAlertList'
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/{alertId}/external-ids/{integrationId}:
get:
tags:
- Alerts
summary: Get details associated with specific external system
description: Get details associated with a specific external system in the alert. Returns the systemName and all the details
operationId: getAlertExternalId
parameters:
- name: alertId
in: path
description: alert ID
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
- name: integrationId
in: path
description: integration ID
required: true
schema:
type: string
minLength: 1
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseExternalSystemDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
patch:
tags:
- Alerts
summary: Add externalID information to an alert
description: Add details about an external system to the alert
operationId: patchAlertExternalId
parameters:
- name: alertId
in: path
description: alert ID
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
- name: integrationId
in: path
description: integration ID
required: true
schema:
type: string
minLength: 1
requestBody:
description: Configs used to update existing configs.
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/ExternalSystemDto'
responses:
'204':
description: No Content
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
delete:
tags:
- Alerts
summary: Delete externalID information to an alert
description: Delete details about an external system in the alert
operationId: deleteAlertExternalId
parameters:
- name: alertId
in: path
description: alert ID
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
- name: integrationId
in: path
description: integration ID
required: true
schema:
type: string
minLength: 1
responses:
'204':
description: No Content
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
post:
tags:
- Alerts
summary: Add externalID information to an alert
description: Add details about an external system to the alert
operationId: postAlertExternalId
parameters:
- name: alertId
in: path
description: alert ID
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
- name: integrationId
in: path
description: integration ID
required: true
schema:
type: string
minLength: 1
requestBody:
description: Configs used to update existing configs.
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/ExternalSystemDto'
responses:
'201':
description: Created
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
/v1/alerts/{alert_id}/events-timeline:
get:
tags:
- Alerts
summary: List the event timeline buckets associated with the specified alert
description: Get the event timeline buckets that represent the count of event severities, for specified interval and start time
operationId: getEventTimelineByAlertId
parameters:
- name: bucket_interval
in: query
description: Time interval of each bucket (in seconds).
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
examples:
- 3600
examples:
default:
value: 3600
- name: bucket_start_time
in: query
description: Start time of the first bucket. If it is not provided, the default will be considered as the first_event_time.
schema:
type: integer
format: int64
examples:
- 1720083965000
examples:
default:
value: 1720083965000
- name: alert_id
in: path
description: ID of the alert to use, returns 404 if there is no alert for the alertId.
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
examples:
- 1
examples:
default:
value: 1
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseListOfEventTimelineBucket'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/{alertId}/snapshot:
get:
tags:
- Alerts
summary: Get an alert snapshots, with highest severity
description: The alert returned is a snapshot of the earliest and highest severity.
operationId: getAlertSnapshot
parameters:
- name: alertId
in: path
description: ID of the alert to use. Returns 404 if there is no alert for the alertId.
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/{alertId}:
patch:
tags:
- Alerts
summary: Update the "status" or "assignee" or "assigned_groups" field in a specific alert
description: Updates a single alert.
operationId: updateAlert
parameters:
- name: alertId
in: path
required: true
schema:
type: integer
format: int64
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/AlertUpdateRequest'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
get:
tags:
- Alerts
summary: Get details of the alert with the specified ID
description: Returns a single alert.
operationId: alertDetails
parameters:
- name: User-Agent
in: header
schema:
type: string
- name: alertId
in: path
description: ID of the alert to return. Returns 400 (Invalid ID Supplied) if this value is anything other than a non-negative integer.
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/{alertId}/tags:
patch:
tags:
- Alerts
summary: Overwrite the tags of an alert with the supplied tags
description: Updates the tags of an alert.
operationId: updateAlertTags
parameters:
- name: alertId
in: path
required: true
schema:
type: integer
format: int64
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/SetAlertTagsPayloadDto'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
/v1/alerts/{alert_id}/events:
get:
tags:
- Alerts
summary: List event by alertId with given timeline
description: Get event details for given filter and pagination parameters
operationId: listEventsByAlertId
parameters:
- name: end_time
in: query
description: End time to fetch events up to. If not provided then consider alert's last event time as default
schema:
type: integer
format: int64
examples:
- 1720083965000
examples:
default:
value: 1720083965000
- name: limit
in: query
description: Maximum number of events to return per page.
schema:
type: integer
format: int32
exclusiveMinimum: 0
maximum: 1000
default: 1000
examples:
- 1000
examples:
default:
value: 1000
- name: offset
in: query
description: Number of events to skip
schema:
type: integer
format: int32
minimum: 0
default: 0
examples:
- 0
examples:
default:
value: 0
- name: start_time
in: query
description: Start time to fetch events from.
schema:
type: integer
format: int64
examples:
- 1720083965000
examples:
default:
value: 1720083965000
- name: alert_id
in: path
description: ID of the alert to use. Returns 404 if there is no alert for the alertId.
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
examples:
- 1
examples:
default:
value: 1
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseEventList'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/{alertId}/external-ids:
get:
tags:
- Alerts
summary: Get all externalIds associated with the alert
description: Get all externalIds associated with the alert. Returns the systemName and all the details
operationId: getAllAlertExternalIds
parameters:
- name: alertId
in: path
description: alert ID
required: true
schema:
type: integer
format: int64
exclusiveMinimum: 0
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseListOfExternalSystemDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts/snapshot:
post:
tags:
- Alerts
summary: Get a list of alert snapshots, with highest severity
description: Each alert returned is a snapshot of the earliest and highest severity.
operationId: listAlertSnapshots
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/ListSnapshotRequest'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertList'
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/situation-room/{incidentId}/alerts/unlabeled:
get:
tags:
- Alerts
summary: Get alerts for an incident, that are unlabeled
description: Get alerts for an incident as recommended alerts to take action on
operationId: getUnlabeledAlerts
parameters:
- name: limit
in: query
schema:
type: integer
format: int32
exclusiveMinimum: 0
default: 100
- name: rc_bucket
in: query
schema:
$ref: '#/components/schemas/PrcBucket'
- name: sort_by
in: query
required: true
schema:
type: string
enum:
- rc_probability
- rc_bucket
description: Specifies the sort criteria to use
pattern: ^(rc_probability|rc_bucket)$
default: rc_probability
- name: sort_order
in: query
required: true
schema:
type: object
description: Sort order
default: desc
- name: incidentId
in: path
required: true
schema:
type: integer
format: int64
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseSituationRoomAlertList'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/situation-room/alerts/unlabeled:
post:
tags:
- Alerts
summary: Get total count of unlabeled incidents/alerts, for a set of incidents
description: Count number of incidents and alerts that are unlabeled, given a set of incident IDs
operationId: getUnlabeledCount
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/UnlabeledRequestDto'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseUnlabeledResponseDto'
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/alerts:
patch:
tags:
- Alerts
summary: Update the "status" or "assignee" or "assigned_groups" field in multiple alerts
description: Updates bulk alerts.
operationId: updateAlerts
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/BulkAlertUpdateRequest'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseListOfAlertDto'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:edit
description: Required user permissions for this endpoint
post:
tags:
- Alerts
summary: Get a list of all alerts with matching criteria
description: Get a list of all alerts with matching criteria. Note that all POST requests are limited to a maximum of 10,000 items per query.
operationId: listAlertsPost
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/ListAlertsRequest'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertList'
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
get:
tags:
- Alerts
summary: Get a list of all alerts with matching criteria
description: Get a list of all alerts with matching criteria. Note that all GET requests are limited to a maximum of 10,000 items per query.
operationId: listAlerts
parameters:
- name: User-Agent
in: header
schema:
type: string
- name: filter
in: query
description: Return only alerts that match this filter.
Returns **400 (Invalid parameters)** if the filter format is invalid.
schema:
type: string
examples:
- '''event count'' > 3 AND severity in (Critical, Major, Minor, Warning)'
examples:
default:
value: '''event count'' > 3 AND severity in (Critical, Major, Minor, Warning)'
- name: jsonFilter
in: query
description: Return only alerts that match this AG-Grid-style JSON filter, such as {"status":{"values":["open","in progress","resolved"],"filterType":"set"}}
deprecated: true
schema:
type: string
- name: jsonSort
in: query
description: Sort the results according to this AG-Grid-style JSON sort info, such as [{"sort":"asc","colId":"severity"}]
deprecated: true
schema:
type: string
- name: keyword
in: query
description: Return only alerts that contain these keywords.
schema:
type: string
examples:
- compute
examples:
default:
value: compute
- name: limit
in: query
description: Maximum number of alerts to return. This is equivalent to the maximum number of alerts per page. Between 1 and 5
schema:
type: integer
format: int32
exclusiveMinimum: 0
maximum: 5000
default: 100
examples:
- 100
examples:
default:
value: 100
- name: start
in: query
description: The starting offset of alerts to retrieve. The initial offset to use is 0 and thereafter is typically multiples of 'limit'. NOTE: 'start' + 'limit' must not exceed 10,000 -- use 'searchAfter' with the listAlertsPost operation instead.
schema:
type: integer
format: int32
minimum: 0
default: 0
examples:
- 0
examples:
default:
value: 0
- name: utcOffset
in: query
description: UTC Offset
schema:
type: string
default: GMT-0
examples:
- GMT-0
examples:
default:
value: GMT-0
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseAlertList'
'400':
description: Invalid parameters or data validation violation
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
/v1/situation-room/{incidentId}/alerts:
post:
tags:
- Alerts
summary: Get alerts for an incident, for the situation room
operationId: getSituationRoomAlerts
parameters:
- name: incidentId
in: path
required: true
schema:
type: integer
format: int64
requestBody:
required: true
content:
application/json:
schema:
$ref: '#/components/schemas/SituationRoomAlertsRequest'
responses:
'200':
description: OK
content:
application/json:
schema:
$ref: '#/components/schemas/MoogResponseSituationRoomAlertList'
'400':
description: Bad Request
'404':
description: Requested object(s) not found
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
4XX:
description: Authorization or other error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogFailureResponse'
5XX:
description: Error
content:
application/json:
schema:
$ref: '#/components/schemas/MoogErrorResponse'
security:
- ApiKeyAuth: []
servers:
- url: https://api.moogsoft.ai
- url: https://api.dev.moogsoft.cloud
x-permissions:
value:
- alerts:view
description: Required user permissions for this endpoint
components:
schemas:
PrcLabel:
type: string
enum:
- RootCause
- NonCausal
- DontKnow
title: Prc Label
description: Root-Cause Label (case-insensitive)
LocationDto:
type: object
title: Location
properties:
street:
type: string
building:
type: string
suite:
type: integer
format: int32
floor:
type: string
city:
type: string
state_or_province:
type: string
country:
type: string
postcode:
type: string
geo_coordinates:
$ref: '#/components/schemas/GeoLocationDto'
rack:
type: string
aisle:
type: string
u_position:
type: string
region:
type: string
data_center:
type: string
availability_zone:
type: string
geo_coordinates_lat:
type: integer
format: int32
geo_coordinates_long:
type: integer
format: int32
MaintenanceWindowStatDto:
type: object
title: Maintenance Window Stat Dto
properties:
window_id:
type: string
description: unique id of the maintenance window
occurrence_id:
type: string
description: unique id of the maintenance window occurrence
enter:
type: integer
description: Epoch timestamp in millis of when the alert entered maintenance
format: int64
exit:
type: integer
description: Epoch timestamp in millis of when the alert left maintenance
format: int64
NumberColumnFilter:
type: object
title: Number Column Filter
description: Filter a numeric column based on numeric value(s) and a comparison type
filterType = "number"
properties:
type:
$ref: '#/components/schemas/ComparisonType'
description: Comparison operator
filter:
type: integer
description: Numeric filter value to used with comparison operator
format: int64
filterTo:
type: integer
description: Numeric filter value to used when comparison operator is inRange
format: int64
filterType:
const: number
description: Declares number filterType
required:
- type
- filterType
MoogResponseListOfExternalSystemDto:
type: object
description: Alerts/Incidents API ExternalSystemDto response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
type: array
items:
$ref: '#/components/schemas/ExternalSystemDto'
required:
- status
- data
ComparisonType:
type: string
enum:
- equals
- notEqual
- contains
- notContains
- startsWith
- endsWith
- lessThan
- lessThanOrEqual
- greaterThan
- greaterThanOrEqual
- inRange
- blank
- notBlank
- exactMatch
- notExactMatch
title: Comparison Type
description: Comparison operator type to use for the filter
EventList:
type: object
title: Event List
properties:
total_results:
type: integer
format: int32
results:
type: array
items:
$ref: '#/components/schemas/EventTimelineDto'
PrcBucket:
type: string
enum:
- High
- Medium
- Low
title: Prc Bucket
description: Root-Cause Level (case-insensitive)
EventTimelineBucket:
type: object
title: Event Timeline Bucket
properties:
start_time:
type: integer
description: Bucket start time in epoch timestamp in milliseconds
format: int64
examples:
- 1720083965000
end_time:
type: integer
description: Bucket end time in epoch timestamp in milliseconds
format: int64
examples:
- 1720084565000
severity_count:
type: object
description: Bucket severity count
additionalProperties:
type: integer
format: int32
examples:
- critical: 5
major: 2
minor: 3
MoogResponseEventList:
type: object
description: Alerts/Incidents API EventList response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/EventList'
required:
- status
- data
AlertList:
type: object
title: Alert List
properties:
result:
type: array
items:
$ref: '#/components/schemas/AlertDto'
count:
type: integer
format: int64
search_after:
type: array
description: When needing to scroll through a large number of alerts, the value of this field can be provided to the 'searchAfter' parameter of the next query invocation.
searchAfter:
type: array
description: Use search_after instead
readOnly: true
x-deprecated: true
Status:
type: string
enum:
- error
- open
- in progress
- superseded
- resolved
- closed
title: Status
description: Status for incidents and alerts (case-insensitive)
BulkAlertUpdateRequest:
type: object
title: Bulk Alert Update Request
properties:
status:
$ref: '#/components/schemas/Status'
assignee:
type: string
description: Username of the assignee, specified as one string. Returns an error if the username is not found.
examples:
- john.doe@company.com
assigned_groups:
type: array
description: An array of group ids or group names, returns error if any of them not found
examples:
- - groupid1
- groupid2
uniqueItems: true
items:
type: string
ids:
type: array
description: Unique alert ids to update
minItems: 1
examples:
- - 12
- 29
uniqueItems: true
items:
type: integer
format: int64
required:
- ids
SetColumnFilter:
type: object
title: Set Column Filter
description: Filter a column based on a set of values provided for comparison
filterType = "set"
properties:
type:
$ref: '#/components/schemas/ComparisonType'
description: Comparison operator
values:
type: array
description: Set filter value(s) to used with comparison operator
items:
type: string
filterType:
const: set
description: Declares set filterType
required:
- type
- values
- filterType
GeoLocationDto:
type: object
title: GeoLocation
properties:
lat:
type: number
format: float
long:
type: number
format: float
UnlabeledResponseDto:
type: object
title: Unlabeled Response Dto
properties:
total_incidents:
type: integer
format: int64
total_alerts:
type: integer
format: int64
unlabeled_counts:
type: object
additionalProperties:
type: integer
format: int64
SituationRoomAlertsRequestV2:
type: object
title: Situation Room Alerts Request V2
description: Situation Room alerts POST request body.
properties:
filter:
$ref: '#/components/schemas/QueryFilter'
description: The filter type and object to retrieve data by
start:
type: integer
description: The starting offset of alerts to retrieve. The initial offset to use is 0 and thereafter is typically multiples of 'limit'. NOTE: 'start' + 'limit' must not exceed 10,000 -- use 'searchAfter' instead.
format: int32
minimum: 0
default: 0
limit:
type: integer
description: Maximum number of alerts to return. This is equivalent to the maximum number of alerts per page. Between 1 and 5000
format: int32
exclusiveMinimum: 0
maximum: 5000
default: 100
fields:
type: array
description: Subset of fields to return (default is all non-null alert fields
examples:
- []
items:
type: string
required:
- filter
SituationRoomAlertList:
type: object
title: Situation Room Alert List
properties:
result:
type: array
items:
$ref: '#/components/schemas/SituationRoomAlertDto'
count:
type: integer
format: int64
MoogResponseAlertDto:
type: object
description: Alerts/Incidents API AlertDto response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/AlertDto'
required:
- status
- data
SortOrder:
type: string
enum:
- asc
- desc
title: Sort Order
default: desc
ExternalSystemDto:
type: object
title: External System Dto
properties:
integration_id:
type: string
external_name:
type: string
external_id:
type: string
external_link:
type: string
integration_name:
type: string
integration_type:
type: string
AgGridSortColumn:
type: object
title: Ag Grid Sort Column
description: Sorting criteria to use for searches
properties:
colId:
type: string
description: The column on which to sort
minLength: 1
sort:
type: string
enum:
- asc
- desc
description: The direction in which to sort
pattern: asc|desc
required:
- colId
- sort
SituationTextFilterDto:
type: object
title: Situation Text Filter Dto
properties:
type:
const: TEXT
description: Declares text filter type
filter_object:
type: string
sort_criteria:
$ref: '#/components/schemas/SortCriteriaDto'
required:
- type
AlertDto:
type: object
title: AlertDetails
properties:
status:
$ref: '#/components/schemas/Status'
description: alert/incident status
severity:
$ref: '#/components/schemas/Severity'
description: alert/incident severity level
severity_high_water:
$ref: '#/components/schemas/Severity'
description: alert/incident high-water severity level
assignee:
type: string
description: email of the user who is assigned to the alert/incident
examples:
- test@moogsoft.com
assigned_groups:
type: array
description: An array of group ids
examples:
- - goupid1
- groupid2
items:
type: string
first_event_time:
type: integer
description: Epoch timestamp in seconds of the first event for this alert/incident
format: int64
examples:
- 1607985505
last_event_time:
type: integer
description: Epoch timestamp in seconds of the last event for this alert/incident
format: int64
examples:
- 1607985505
description:
type: string
description: description that usually contains the alert/incident ID, source and service
examples:
- '1 Source: www.your-source.com Affected retail, support
'
status_numeric:
type: integer
format: int32
severity_numeric:
type: integer
format: int32
severity_high_water_numeric:
type: integer
format: int32
alert_id:
type: integer
format: int64
class:
type: string
event_count:
type: integer
format: int32
manager_id:
type: string
location:
type: object
description: Mapping of location name/value pairs
examples:
- street: 1234 Battery St.
city: San Francisco
state: CA
postcode: '95454'
service:
type: array
items:
type: string
incidents:
type: array
items:
type: integer
format: int64
source:
type: string
in_maintenance:
type: boolean
description: Boolean indicating if the alert is currently in maintenance
maintenance:
type: string
description: The id of the current or most recent maintenance window occurrence the alert was in
maintenance_windows:
type: array
description: Set of all maintenance windows and occurrences the alert has been associated with
uniqueItems: true
items:
$ref: '#/components/schemas/MaintenanceWindowStatDto'
tags:
type: object
description: Mapping of tag name/value pairs
examples:
- key1: value1
key2: value2
namespace:
type: string
manager:
type: string
dedupe_key:
type: string
created_at:
type: integer
description: Epoch timestamp in seconds indicating when the alert was created
format: int64
examples:
- 1607985505
last_status_change_time:
type: integer
format: int64
alias:
type: string
check:
type: string
type:
type: string
policy:
type: string
external_details:
type: array
items:
$ref: '#/components/schemas/ExternalSystemDto'
external_names:
type: array
items:
type: string
QueryFilter:
type: object
title: Query Filter
description: Types of inputs for the queryFilter.
oneOf:
- $ref: '#/components/schemas/SituationTextFilterDto'
- $ref: '#/components/schemas/SituationJsonFilterDto'
TextColumnFilter:
type: object
title: Text Column Filter
description: Filter a text column based on a string comparison
filterType = "text"
properties:
type:
$ref: '#/components/schemas/ComparisonType'
description: Comparison operator
filter:
type: string
description: Text filter value to used with comparison operator
filterType:
const: text
description: Declares text filterType
required:
- type
- filterType
MoogResponseListOfAlertDto:
type: object
description: Alerts/Incidents API AlertDto response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
type: array
items:
$ref: '#/components/schemas/AlertDto'
required:
- status
- data
ColumnFilter:
type: object
title: Column Filter
description: Polymorphic column filter, based upon filterType
oneOf:
- $ref: '#/components/schemas/DateColumnFilter'
- $ref: '#/components/schemas/NumberColumnFilter'
- $ref: '#/components/schemas/SetColumnFilter'
- $ref: '#/components/schemas/TextColumnFilter'
- $ref: '#/components/schemas/BooleanColumnFilter'
discriminator:
propertyName: filterType
mapping:
text: '#/components/schemas/TextColumnFilter'
set: '#/components/schemas/SetColumnFilter'
number: '#/components/schemas/NumberColumnFilter'
date: '#/components/schemas/DateColumnFilter'
boolean: '#/components/schemas/BooleanColumnFilter'
MoogFailureResponse:
type: object
description: Alerts/Incidents API failure response body
properties:
status:
type: string
description: Failure status indicator (always "failure")
examples:
- failure
message:
type: string
additional:
type: array
items:
type: string
required:
- status
- message
SituationRoomAlertsRequest:
type: object
title: Situation Room Alerts Request
description: Situation Room alerts POST request body.
properties:
json_filter:
type: object
description: Return only alerts that match this AG-Grid-style JSON filter. Each filter can be of a different filterType.
additionalProperties:
$ref: '#/components/schemas/ColumnFilter'
examples:
- status:
values:
- open
- in progress
- resolved
filterType: set
json_sort:
type: array
description: Sort the results according to this AG-Grid-style JSON sort array.
examples:
- - sort: asc
colId: severity
- sort: desc
colId: alert_id
items:
$ref: '#/components/schemas/AgGridSortColumn'
start:
type: integer
description: The starting offset of alerts to retrieve. The initial offset to use is 0 and thereafter is typically multiples of 'limit'. NOTE: 'start' + 'limit' must not exceed 10,000 -- use 'searchAfter' instead.
format: int32
minimum: 0
default: 0
limit:
type: integer
description: Maximum number of alerts to return. This is equivalent to the maximum number of alerts per page. Between 1 and 5000
format: int32
exclusiveMinimum: 0
maximum: 5000
default: 100
fields:
type: array
description: Subset of fields to return (default is all non-null alert fields
items:
type: string
MoogResponseAlertList:
type: object
description: Alerts/Incidents API AlertList response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/AlertList'
required:
- status
- data
AlertUpdateRequest:
type: object
title: Alert Update Request
properties:
status:
$ref: '#/components/schemas/Status'
assignee:
type: string
description: Username of the assignee, specified as one string. Returns an error if the username is not found.
examples:
- john.doe@company.com
assigned_groups:
type: array
description: An array of group ids or group names, returns error if any of them not found
examples:
- - groupid1
- groupid2
uniqueItems: true
items:
type: string
SituationRoomAlertDto:
type: object
title: SituationRoomAlertDetails
properties:
status:
$ref: '#/components/schemas/Status'
description: alert/incident status
severity:
$ref: '#/components/schemas/Severity'
description: alert/incident severity level
severity_high_water:
$ref: '#/components/schemas/Severity'
description: alert/incident high-water severity level
assignee:
type: string
description: email of the user who is assigned to the alert/incident
examples:
- test@moogsoft.com
assigned_groups:
type: array
description: An array of group ids
examples:
- - goupid1
- groupid2
items:
type: string
first_event_time:
type: integer
description: Epoch timestamp in seconds of the first event for this alert/incident
format: int64
examples:
- 1607985505
last_event_time:
type: integer
description: Epoch timestamp in seconds of the last event for this alert/incident
format: int64
examples:
- 1607985505
description:
type: string
description: description that usually contains the alert/incident ID, source and service
examples:
- '1 Source: www.your-source.com Affected retail, support
'
status_numeric:
type: integer
format: int32
severity_numeric:
type: integer
format: int32
severity_high_water_numeric:
type: integer
format: int32
alert_id:
type: integer
format: int64
class:
type: string
event_count:
type: integer
format: int32
manager_id:
type: string
location:
type: object
description: Mapping of location name/value pairs
examples:
- street: 1234 Battery St.
city: San Francisco
state: CA
postcode: '95454'
service:
type: array
items:
type: string
incidents:
type: array
items:
type: integer
format: int64
source:
type: string
in_maintenance:
type: boolean
description: Boolean indicating if the alert is currently in maintenance
maintenance:
type: string
description: The id of the current or most recent maintenance window occurrence the alert was in
maintenance_windows:
type: array
description: Set of all maintenance windows and occurrences the alert has been associated with
uniqueItems: true
items:
$ref: '#/components/schemas/MaintenanceWindowStatDto'
tags:
type: object
description: Mapping of tag name/value pairs
examples:
- key1: value1
key2: value2
namespace:
type: string
manager:
type: string
dedupe_key:
type: string
created_at:
type: integer
description: Epoch timestamp in seconds indicating when the alert was created
format: int64
examples:
- 1607985505
last_status_change_time:
type: integer
format: int64
alias:
type: string
check:
type: string
type:
type: string
policy:
type: string
external_details:
type: array
items:
$ref: '#/components/schemas/ExternalSystemDto'
external_names:
type: array
items:
type: string
root_cause:
$ref: '#/components/schemas/AlertPrc'
Severity:
type: string
enum:
- clear
- unknown
- warning
- minor
- major
- critical
title: Severity
description: Severity Level (case-insensitive)
ListAlertsRequest:
type: object
title: List Alerts Request
description: List alerts POST request body.
properties:
filter:
type: string
description: Return only alerts that match this filter.
Returns **400 (Invalid parameters)** if the filter format is invalid.
examples:
- '''event count'' > 3 AND severity in (Critical, Major, Minor, Warning)'
json_filter:
type: object
description: Return only alerts that match this AG-Grid-style JSON filter. Each filter can be of a different filterType.
additionalProperties:
$ref: '#/components/schemas/ColumnFilter'
examples:
- status:
values:
- open
- in progress
- resolved
filterType: set
json_sort:
type: array
description: Sort the results according to this AG-Grid-style JSON sort array.
examples:
- - sort: asc
colId: severity
- sort: desc
colId: alert_id
items:
$ref: '#/components/schemas/AgGridSortColumn'
keyword:
type: string
description: Return only alerts that contain these keywords.
utc_offset:
type: string
description: UTC Offset
default: GMT-0
start:
type: integer
description: The starting offset of alerts to retrieve. The initial offset to use is 0 and thereafter is typically multiples of 'limit'. NOTE: 'start' + 'limit' must not exceed 10,000 -- use 'searchAfter' instead.
format: int32
minimum: 0
default: 0
limit:
type: integer
description: Maximum number of alerts to return. This is equivalent to the maximum number of alerts per page. Between 1 and 5000
format: int32
exclusiveMinimum: 0
maximum: 5000
default: 100
sort_by:
type: string
description: Field to sort by
sort_order:
$ref: '#/components/schemas/SortOrder'
description: Sort order
search_after:
type: array
description: When needing to scroll through a large number of alerts, this parameter can be used instead of 'start' to proceed with alerts that follow the previous search result. The 'searchAfter' from the previous response must be provided along with the same filter and sort criteria. All results are exhausted when a search response includes no more alerts.
fields:
type: array
description: Subset of fields to return (default is all non-null alert fields
items:
type: string
MoogResponseExternalSystemDto:
type: object
description: Alerts/Incidents API ExternalSystemDto response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/ExternalSystemDto'
required:
- status
- data
SituationJsonFilterDto:
type: object
title: Situation Json Filter Dto
properties:
type:
const: JSON
description: Declares json filter type
filter_object:
$ref: '#/components/schemas/ColumnFilterMap'
description: Return only alerts that match this AG-Grid-style JSON filter (See ColumnFilter schema).
sort_criteria:
type: array
description: Sort the results according to this AG-Grid-style JSON sort array.
examples:
- - sort: asc
colId: severity
- sort: desc
colId: alert_id
items:
$ref: '#/components/schemas/AgGridSortColumn'
required:
- type
MoogResponseUnlabeledResponseDto:
type: object
description: Alerts/Incidents API UnlabeledResponseDto response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/UnlabeledResponseDto'
required:
- status
- data
EventTimelineDto:
type: object
title: Event Timeline Dto
properties:
event_id:
type: string
source:
type: string
check:
type: string
severity:
$ref: '#/components/schemas/Severity'
description:
type: string
dedupe_key:
type: string
time:
type: integer
format: int64
services:
type: array
items:
type: string
alias:
type: string
utc_offset:
type: string
manager:
type: string
manager_id:
type: string
class:
type: string
namespace:
type: string
maintenance:
type: string
type:
type: string
tags:
type: object
location:
$ref: '#/components/schemas/LocationDto'
policy:
type: string
additional_info:
type: object
sequence_id:
type: integer
format: int32
required:
- source
- check
- severity
- description
MoogErrorResponse:
type: object
description: Alerts/Incidents API error response body
properties:
status:
type: string
description: Error status indicator (always "error")
examples:
- error
message:
type: string
additional:
type: array
items:
type: string
required:
- status
- message
MoogResponseSituationRoomAlertList:
type: object
description: Alerts/Incidents API SituationRoomAlertList response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
$ref: '#/components/schemas/SituationRoomAlertList'
required:
- status
- data
SortCriteriaDto:
type: object
title: Sort Criteria Dto
properties:
sort_by:
type: string
sort_order:
$ref: '#/components/schemas/SortOrder'
UnlabeledRequestDto:
type: object
title: Unlabeled Request Dto
properties:
incident_ids:
type: array
description: Set of unique incident IDs which are to be queried
minItems: 1
uniqueItems: true
items:
type: integer
format: int64
required:
- incident_ids
BooleanColumnFilter:
type: object
title: Boolean Column Filter
description: Filter a boolean column based on a boolean comparison
filterType = "boolean"
properties:
type:
$ref: '#/components/schemas/ComparisonType'
description: Comparison operator
filter:
type: boolean
description: Boolean value to used for comparison
filterType:
const: boolean
description: Declares boolean filterType
required:
- type
- filter
- filterType
MoogResponseListOfEventTimelineBucket:
type: object
description: Alerts/Incidents API EventTimelineBucket response body
properties:
status:
type: string
description: Success status indicator (always "success")
examples:
- success
data:
type: array
items:
$ref: '#/components/schemas/EventTimelineBucket'
required:
- status
- data
SetAlertTagsPayloadDto:
type: object
title: Set Alert Tags Payload Dto
properties:
tags:
type: object
description: The tags being added to the alert.
additionalProperties:
type: string
required:
- tags
ListSnapshotRequest:
type: object
title: List Snapshot Request
description: List alert snapshot POST request body.
properties:
ids:
type: array
description: Unique alert IDs for which to retrieve earliest/highest severity snapshot
minItems: 1
examples:
- - 12
- 29
items:
type: integer
format: int64
fields:
type: array
description: Subset of fields to return (default is all non-null alert fields)
items:
type: string
required:
- ids
AlertPrc:
type: object
title: SituationRoomAlertDetails
properties:
rc_probability:
type: number
description: The computed root cause probability, 0.0 - 1.0, if any
rc_label:
$ref: '#/components/schemas/PrcLabel'
description: The user-assigned label, if any
rc_bucket:
$ref: '#/components/schemas/PrcBucket'
description: 'The computed level: high, medium, low'
DateColumnFilter:
type: object
title: Date Column Filter
description: Filter a date-based column based on date or date ranges, and a comparison type
filterType = "date"
properties:
type:
$ref: '#/components/schemas/ComparisonType'
description: Comparison operator
dateFrom:
type: string
description: Date filter value to used with comparison operator
dateTo:
type: string
description: Date filter value to used when comparison operator is inRange
filterType:
const: date
description: Declares date filterType
required:
- type
- filterType
securitySchemes:
ApiKeyAuth:
type: apiKey
description: API Key for accessing Alerts/Incidents API
name: apiKey
in: header
externalDocs:
url: https://docs.moogsoft.com/en/moogsoft-apis.html
description: Find out more about Apex AIOps Incident Management