# Generated by API Evangelist (build-phrasing.py). Our phrasing, not observed demand. overlay: 1.0.0 info: title: API Evangelist conversational phrasing for Prisma Cloud Access Keys API Overview Anomalies API version: 1.0.0 extends: openapi/palo-alto-networks-anomalies-api-openapi.yml actions: - target: $.info update: x-apievangelist-phrasing: method: generated generated: '2026-09-26' generator: build-phrasing.py label: Generated by API Evangelist operations: 10 - target: $.paths['/anomalies/trusted_list'].get update: x-apievangelist-phrasing: intent: List anomaly trusted list entries effect: read questions: - Which IPs or resources are on my anomaly trusted list? - Can I see every entry excluded from anomaly alerts? instructions: - text: List all anomaly trusted list entries with token {auth}. slots: auth: header.x-redlock-auth - text: Show my anomaly trusted list using auth token {auth}. slots: auth: header.x-redlock-auth method: generated generated: '2026-09-26' - target: $.paths['/anomalies/trusted_list'].post update: x-apievangelist-phrasing: intent: Add entries to the anomaly trusted list effect: write questions: - How do I stop anomaly policies alerting on a known IP? - Can I scope a new trusted list entry to one account or VPC? instructions: - text: Add trusted list {name} of type {trustedListType} for policies {applicablePolicies} with entries {trustedListEntries}. slots: name: requestBody.name trustedListType: requestBody.trustedListType applicablePolicies: requestBody.applicablePolicies trustedListEntries: requestBody.trustedListEntries - text: Trust entries {trustedListEntries} in VPC {vpc} under list {name}. slots: trustedListEntries: requestBody.trustedListEntries vpc: requestBody.vpc name: requestBody.name method: generated generated: '2026-09-26' - target: $.paths['/anomalies/trusted_list/{id}'].get update: x-apievangelist-phrasing: intent: Get an anomaly trusted list entry effect: read questions: - What does a particular anomaly trusted list entry contain? - Which policies does one trusted list entry apply to? instructions: - text: Get anomaly trusted list entry {id}. slots: id: path.id - text: Show the policies covered by trusted list entry {id}. slots: id: path.id method: generated generated: '2026-09-26' - target: $.paths['/anomalies/trusted_list/{id}'].post update: x-apievangelist-phrasing: intent: Update an anomaly trusted list entry effect: write questions: - How do I change the entries in an existing anomaly trusted list? - Can I update the reason recorded on a trusted list entry? instructions: - text: Update trusted list {id} with entries {trustedListEntries}. slots: id: path.id trustedListEntries: requestBody.trustedListEntries - text: Change the description of trusted list {id} to {description}. slots: id: path.id description: requestBody.description method: generated generated: '2026-09-26' - target: $.paths['/anomalies/trusted_list/{id}'].delete update: x-apievangelist-phrasing: intent: Delete an anomaly trusted list entry effect: destructive questions: - How do I remove something from the anomaly trusted list? - Will deleting a trusted list entry make anomaly alerts fire again for it? instructions: - text: Delete anomaly trusted list entry {id}. slots: id: path.id - text: Remove trusted list {id} so anomalies alert on it again. slots: id: path.id method: generated generated: '2026-09-26' - target: $.paths['/anomalies/settings/{policyid}'].get update: x-apievangelist-phrasing: intent: Get anomaly settings for a policy effect: read questions: - What alert disposition and training threshold does one anomaly policy use? - How sensitive is a specific anomaly policy set to be? instructions: - text: Get anomaly settings for policy {policyid}. slots: policyid: path.policyid - text: Show the training model threshold for anomaly policy {policyid}. slots: policyid: path.policyid method: generated generated: '2026-09-26' - target: $.paths['/anomalies/settings/{policyid}'].post update: x-apievangelist-phrasing: intent: Update anomaly settings for a policy effect: write questions: - How do I make an anomaly policy less noisy? - Can I change the training model threshold on an anomaly policy? instructions: - text: Set alert disposition {alertDisposition} on anomaly policy {policyid}. slots: alertDisposition: requestBody.alertDisposition policyid: path.policyid - text: Change the training threshold of policy {policyid} to {trainingModelThreshold}. slots: policyid: path.policyid trainingModelThreshold: requestBody.trainingModelThreshold method: generated generated: '2026-09-26' - target: $.paths['/anomalies/trusted_list/types'].get update: x-apievangelist-phrasing: intent: List trusted list types effect: read questions: - What kinds of anomaly trusted lists can I create? - Which trusted list types are available for anomalies? instructions: - text: List the allowed anomaly trusted list types using token {auth}. slots: auth: header.x-redlock-auth - text: Show trusted list types available, authenticating with {auth}. slots: auth: header.x-redlock-auth method: generated generated: '2026-09-26' - target: $.paths['/anomalies/settings'].get update: x-apievangelist-phrasing: intent: Get all anomaly settings by type effect: read questions: - What are the settings for all my network anomaly policies? - Can I see anomaly settings for every policy of one anomaly type? instructions: - text: Get anomaly settings for every policy of type {type}. slots: type: query.type - text: List all {type} anomaly policy settings. slots: type: query.type method: generated generated: '2026-09-26' - target: $.paths['/anomalies/policies'].get update: x-apievangelist-phrasing: intent: List policies for a trusted list type effect: read questions: - Which anomaly policies can a given trusted list type apply to? - What policies should I pick for an IP trusted list? instructions: - text: List anomaly policies available for trusted list type {trustedListType}. slots: trustedListType: query.trustedListType - text: Show which policies accept trusted list type {trustedListType}. slots: trustedListType: query.trustedListType method: generated generated: '2026-09-26'