All integrations
CrowdStrike Falcon logo

CrowdStrike Falcon

Monitoring Cloud Secure OAuth

Watch what is happening to your computers

What it does

CrowdStrike Falcon actions

327 actions

Ask in plain language — Praxivara picks the right CrowdStrike Falcon action, runs it, and confirms anything sensitive first.

List Access Scopes By ID

List Access Scopes By ID.

Query Access Scopes and returns IDs

Shows query Access Scopes and returns IDs.

Retrieves aggregate values for Alerts across all CIDs

Shows retrieves aggregate values for Alerts across all CIDs.

Retrieves all Alerts that match a particular FQL

Shows retrieves all Alerts that match a particular FQL.

Perform actions on detections identified

Perform actions on detections identified.

Retrieves all Alerts given their composite ids

Shows retrieves all Alerts given their composite ids.

Perform actions on Alerts identified by composite

Perform actions on Alerts identified by composite.

Retrieves all Alerts ids that match a given query

Shows retrieves all Alerts ids that match a given query.

Get all available scopes for customer

Get all available scopes for customer.

Reset existing API Client(s)'s secret based on API

Reset existing API Client(s)'s secret based on API.

Delete existing API Client(s) based on API Client

Delete existing API Client(s) based on API Client.

Get API Client(s) based on API Client ID(s) provided

Get API Client(s) based on API Client ID(s) provided.

Update existing API Client based on API Client ID

Update existing API Client based on API Client ID.

Create new API Client

Create new API Client.

Get All API client ID(s) for customer

Get All API client ID(s) for customer.

Search for hidden hosts in your environment

Search for hidden hosts in your environment.

Retrieve details about recent login sessions

Shows retrieve details about recent login sessions.

Retrieve details about recent interactive login

Shows retrieve details about recent interactive login.

Retrieve history of IP and MAC addresses of devices

Shows retrieve history of IP and MAC addresses of devices.

Search for hosts in your environment by platform

Search for hosts in your environment by platform.

Search for members of a Host Group in your

Search for members of a Host Group in your.

Search for Host Groups in your environment

Search for Host Groups in your environment.

Permanently delete hosts from the system

Permanently delete hosts from the system.

Take various actions on the hosts in your environment

Take various actions on the hosts in your environment.

Append or remove one or more Falcon Grouping Tags

Append or remove one or more Falcon Grouping Tags.

Get details on one or more hosts by providing agent

Get details on one or more hosts by providing agent.

Get details on one or more hosts by providing host

Get details on one or more hosts by providing host.

Get details on one or more hosts by providing host

Get details on one or more hosts by providing host.

Performs the specified action on the provided group

Performs the specified action on the provided group.

Perform the specified action on the Host Groups

Perform the specified action on the Host Groups.

Delete a set of Host Groups by specifying their IDs

Delete a set of Host Groups by specifying their IDs.

Retrieve a set of Host Groups by specifying their IDs

Shows retrieve a set of Host Groups by specifying their IDs.

Update Host Groups by specifying the ID of the group

Update Host Groups by specifying the ID of the group.

Create Host Groups by specifying details about

Create Host Groups by specifying details about.

Get the online status for one or more hosts

Get the online status for one or more hosts.

Retrieve hidden hosts that match the provided filter

Shows retrieve hidden hosts that match the provided filter.

Search for hosts in your environment by platform

Search for hosts in your environment by platform.

Search for hosts in your environment by platform

Search for hosts in your environment by platform.

Search for members of a Host Group in your

Search for members of a Host Group in your.

Search for Host Groups in your environment

Search for Host Groups in your environment.

Get exclusion aggregates as specified via json

Get exclusion aggregates as specified via json.

Get Self Service IOA Exclusion aggregates

Get Self Service IOA Exclusion aggregates.

Get all exclusions

Get all exclusions.

Delete the exclusions by id

Delete the exclusions by id.

Find all exclusion IDs matching the query with filter

Shows find all exclusion IDs matching the query with filter.

Updates existing Certificate Based Exclusions

Updates existing Certificate Based Exclusions.

Create new Certificate Based Exclusions

Create new Certificate Based Exclusions.

Retrieves certificate signing information for a file

Shows retrieves certificate signing information for a file.

Actions used to manipulate the content

Actions used to manipulate the content.

Create a report of ML exclusions scoped by the given

Create a report of ML exclusions scoped by the given.

Delete the exclusions by id, with ancestor fields

Delete the exclusions by id, with ancestor fields.

Get the exclusions by id, with ancestor fields

Get the exclusions by id, with ancestor fields.

Update the exclusions by id, with ancestor fields

Update the exclusions by id, with ancestor fields.

Create the exclusions, with ancestor fields

Create the exclusions, with ancestor fields.

Create a report of Self Service IOA Exclusions

Create a report of Self Service IOA Exclusions.

Delete the Self Service IOA Exclusions rule by id

Delete the Self Service IOA Exclusions rule by id.

Get the Self Service IOA Exclusions rules by id

Get the Self Service IOA Exclusions rules by id.

Update the Self Service IOA Exclusions rule by id

Update the Self Service IOA Exclusions rule by id.

Create new Self Service IOA Exclusions

Create new Self Service IOA Exclusions.

Get Self Service IOA Exclusions rules for matched

Get Self Service IOA Exclusions rules for matched.

Get defaults for Self Service IOA Exclusions

Get defaults for Self Service IOA Exclusions.

Search for cert-based exclusions

Search for cert-based exclusions.

Search for exclusions, with ancestor fields

Search for exclusions, with ancestor fields.

Search for Self Service IOA Exclusions

Search for Self Service IOA Exclusions.

Executes an SDMF data frame query against exclusion

Executes an SDMF data frame query against exclusion.

Download IOC packs, PCAP files, memory dumps

Shows download IOC packs, PCAP files, memory dumps.

Get extracted strings from a memory dump

Get extracted strings from a memory dump.

Get hex view of a memory dump

Get hex view of a memory dump.

Get memory dump content, as binary

Get memory dump content, as binary.

Get a short summary version of a sandbox report

Get a short summary version of a sandbox report.

Delete report based on the report ID. Operation can

Delete report based on the report ID. Operation can.

Get a full sandbox report

Get a full sandbox report.

Check the status of a sandbox analysis

Check the status of a sandbox analysis.

Submit an uploaded file or a URL for sandbox analysis

Submit an uploaded file or a URL for sandbox analysis.

Find sandbox reports by providing an FQL filter

Shows find sandbox reports by providing an FQL filter.

Find submission IDs for uploaded files by providing

Shows find submission IDs for uploaded files by providing.

Gets the details of one or more audit events by id

Gets the details of one or more audit events by id.

Check current installation token settings

Check current installation token settings.

Update installation token settings

Update installation token settings.

Deletes a token immediately

Deletes a token immediately.

Gets the details of one or more tokens by id

Gets the details of one or more tokens by id.

Updates one or more tokens

Updates one or more tokens.

Creates a token

Creates a token.

Search for audit events by providing an FQL filter

Search for audit events by providing an FQL filter.

Search for tokens by providing an FQL filter

Search for tokens by providing an FQL filter.

Perform statistical aggregations over incident data

Perform statistical aggregations over incident data.

Get info about actors that match provided FQL filters

Get info about actors that match provided FQL filters.

Get info about indicators that match provided FQL

Get info about indicators that match provided FQL.

Get malware entities that match provided FQL filters

Get malware entities that match provided FQL filters.

Get info about reports that match provided FQL filters

Get info about reports that match provided FQL filters.

Retrieve specific actors using their actor IDs

Shows retrieve specific actors using their actor IDs.

Retrieve full details for one or more adversary

Shows retrieve full details for one or more adversary.

Retrieve specific indicators using their indicator IDs

Shows retrieve specific indicators using their indicator IDs.

Export Mitre ATT&CK information for a given malware

Shows export Mitre ATT&CK information for a given malware.

Get malware entities for specified ids

Get malware entities for specified ids.

Export Mitre ATT&CK information for a given actor

Shows export Mitre ATT&CK information for a given actor.

Retrieves report and observable IDs associated

Shows retrieves report and observable IDs associated.

Return a Report PDF attachment

Shows return a Report PDF attachment.

Retrieve specific reports using their report IDs

Shows retrieve specific reports using their report IDs.

Download earlier rule sets

Shows download earlier rule sets.

Download the latest rule set

Shows download the latest rule set.

Retrieve details for rule sets for the specified ids

Shows retrieve details for rule sets for the specified ids.

Get vulnerabilities

Get vulnerabilities.

Get actor IDs that match provided FQL filters

Get actor IDs that match provided FQL filters.

Search for adversary incidents using FQL criteria

Search for adversary incidents using FQL criteria.

Get indicators IDs that match provided FQL filters

Get indicators IDs that match provided FQL filters.

Get malware family names that match provided FQL

Get malware family names that match provided FQL.

Gets MITRE tactics and techniques for the given

Gets MITRE tactics and techniques for the given.

Gets MITRE tactics and techniques for the given

Gets MITRE tactics and techniques for the given.

Get report IDs that match provided FQL filters

Get report IDs that match provided FQL filters.

Search for rule IDs that match provided filter

Search for rule IDs that match provided filter.

Get vulnerabilities IDs

Get vulnerabilities IDs.

Get the number of devices the indicator has run

Get the number of devices the indicator has run.

Get Indicators aggregates as specified via json

Get Indicators aggregates as specified via json.

Get Combined for Indicators

Get Combined for Indicators.

Get Actions by ids

Get Actions by ids.

Launch an indicators report creation job

Launch an indicators report creation job.

Delete Indicators by ids

Delete Indicators by ids.

Get Indicators by ids

Get Indicators by ids.

Update Indicators

Update Indicators.

Create Indicators

Create Indicators.

Query Actions

Shows query Actions.

Get the IDs of devices the indicator has run

Get the IDs of devices the indicator has run.

Get the number of processes the indicator has run

Get the number of processes the indicator has run.

Search for Indicators

Search for Indicators.

Query IOC Types

Shows query IOC Types.

Query Platforms

Shows query Platforms.

Query Severities

Shows query Severities.

Executes an SDMF data frame query against IOC

Shows executes an SDMF data frame query against IOC.

Retrieve aggregate case values based on the matched

Shows retrieve aggregate case values based on the matched.

Retrieve activities for given id's

Shows retrieve activities for given id's.

Add an activity to case

Add an activity to case.

retrieves an attachment for the case, given

Shows retrieves an attachment for the case, given.

Upload an attachment for the case

Upload an attachment for the case.

create a new case

create a new case.

Retrieve message center cases

Shows retrieve message center cases.

Retrieve activities id's for a case

Shows retrieve activities id's for a case.

Retrieve case id's that match the provided filter

Shows retrieve case id's that match the provided filter.

Search for members of a Content Update Policy

Search for members of a Content Update Policy.

Search for Content Update Policies in your

Search for Content Update Policies in your.

Search for members of a Device Control Policy

Search for members of a Device Control Policy.

Search for Device Control Policies in your

Search for Device Control Policies in your.

Search for members of a Firewall Policy in your

Search for members of a Firewall Policy in your.

Search for Firewall Policies in your environment

Search for Firewall Policies in your environment.

Increments a bulk maintenance token

Shows increments a bulk maintenance token.

Search for members of a Prevention Policy in your

Search for members of a Prevention Policy in your.

Search for Prevention Policies in your environment

Search for Prevention Policies in your environment.

Search for members of a Response policy in your

Search for members of a Response policy in your.

Search for Response Policies in your environment

Search for Response Policies in your environment.

Reveals an uninstall token for a specific device

Shows reveals an uninstall token for a specific device.

Retrieve available builds for use with Sensor Update

Shows retrieve available builds for use with Sensor Update.

Retrieve kernel compatibility info for Sensor Update

Shows retrieve kernel compatibility info for Sensor Update.

Search for members of a Sensor Update Policy in your

Search for members of a Sensor Update Policy in your.

Search for Sensor Update Policies in your

Search for Sensor Update Policies in your.

Search for Sensor Update Policies with additional

Search for Sensor Update Policies with additional.

Perform the specified action on the Content Update

Perform the specified action on the Content Update.

Sets the precedence of Content Update Policies

Sets the precedence of Content Update Policies.

Delete a set of Content Update Policies

Delete a set of Content Update Policies.

Retrieve a set of Content Update Policies

Shows retrieve a set of Content Update Policies.

Update Content Update Policies by specifying the ID

Update Content Update Policies by specifying the ID.

Create Content Update Policies by specifying details

Create Content Update Policies by specifying details.

Retrieve the configuration for a Default Device

Shows retrieve the configuration for a Default Device.

Update the configuration for a Default Device

Update the configuration for a Default Device.

Perform the specified action on the Device Control

Perform the specified action on the Device Control.

Update device control policy's classes (USB

Update device control policy's classes (USB.

Get default device control settings (USB

Get default device control settings (USB.

Update the configuration for Default Device Control

Update the configuration for Default Device Control.

Sets the precedence of Device Control Policies

Sets the precedence of Device Control Policies.

Delete a set of Device Control Policies

Delete a set of Device Control Policies.

Retrieve a set of Device Control Policies

Shows retrieve a set of Device Control Policies.

Update Device Control Policies by specifying the ID

Update Device Control Policies by specifying the ID.

Create Device Control Policies by specifying details

Create Device Control Policies by specifying details.

Get device control policies for the given filter

Get device control policies for the given filter.

Update device control policy base (USB and Bluetooth)

Update device control policy base (USB and Bluetooth).

Create/clone a device control policy (USB

Create/clone a device control policy (USB.

Perform the specified action on the Firewall

Perform the specified action on the Firewall.

Sets the precedence of Firewall Policies

Sets the precedence of Firewall Policies.

Delete a set of Firewall Policies by specifying

Delete a set of Firewall Policies by specifying.

Retrieve a set of Firewall Policies by specifying

Shows retrieve a set of Firewall Policies by specifying.

Update Firewall Policies by specifying the ID

Update Firewall Policies by specifying the ID.

Create Firewall Policies by specifying details about

Create Firewall Policies by specifying details about.

Delete the IOA exclusions by id

Delete the IOA exclusions by id.

Get a set of IOA Exclusions by specifying their IDs

Get a set of IOA Exclusions by specifying their IDs.

Update the IOA exclusions

Update the IOA exclusions.

Create the IOA exclusions

Create the IOA exclusions.

Delete the ML exclusions by id

Delete the ML exclusions by id.

Get a set of ML Exclusions by specifying their IDs

Get a set of ML Exclusions by specifying their IDs.

Update the ML exclusions

Update the ML exclusions.

Create the ML exclusions

Create the ML exclusions.

Perform the specified action on the Prevention

Perform the specified action on the Prevention.

Sets the precedence of Prevention Policies

Sets the precedence of Prevention Policies.

Delete a set of Prevention Policies by specifying

Delete a set of Prevention Policies by specifying.

Retrieve a set of Prevention Policies by specifying

Shows retrieve a set of Prevention Policies by specifying.

Update Prevention Policies by specifying the ID

Update Prevention Policies by specifying the ID.

Create Prevention Policies by specifying details

Create Prevention Policies by specifying details.

Perform the specified action on the Response

Perform the specified action on the Response.

Sets the precedence of Response Policies

Sets the precedence of Response Policies.

Delete a set of Response Policies by specifying

Delete a set of Response Policies by specifying.

Retrieve a set of Response Policies by specifying

Shows retrieve a set of Response Policies by specifying.

Update Response Policies by specifying the ID

Update Response Policies by specifying the ID.

Create Response Policies by specifying details about

Create Response Policies by specifying details about.

Perform the specified action on the Sensor Update

Perform the specified action on the Sensor Update.

Sets the precedence of Sensor Update Policies

Sets the precedence of Sensor Update Policies.

Delete a set of Sensor Update Policies by specifying

Delete a set of Sensor Update Policies by specifying.

Retrieve a set of Sensor Update Policies

Shows retrieve a set of Sensor Update Policies.

Update Sensor Update Policies by specifying the ID

Update Sensor Update Policies by specifying the ID.

Create Sensor Update Policies by specifying details

Create Sensor Update Policies by specifying details.

Retrieve a set of Sensor Update Policies

Shows retrieve a set of Sensor Update Policies.

Update Sensor Update Policies by specifying the ID

Update Sensor Update Policies by specifying the ID.

Create Sensor Update Policies by specifying details

Create Sensor Update Policies by specifying details.

Delete the sensor visibility exclusions by id

Delete the sensor visibility exclusions by id.

Get a set of Sensor Visibility Exclusions

Get a set of Sensor Visibility Exclusions.

Update the sensor visibility exclusions

Update the sensor visibility exclusions.

Create the sensor visibility exclusions

Create the sensor visibility exclusions.

Search for members of a Content Update Policy

Search for members of a Content Update Policy.

Search for content versions available for pinning

Search for content versions available for pinning.

Search for Content Update Policies in your

Search for Content Update Policies in your.

Search for members of a Device Control Policy

Search for members of a Device Control Policy.

Search for Device Control Policies in your

Search for Device Control Policies in your.

Search for members of a Firewall Policy in your

Search for members of a Firewall Policy in your.

Search for Firewall Policies in your environment

Search for Firewall Policies in your environment.

Search for IOA exclusions

Search for IOA exclusions.

Search for ML exclusions

Search for ML exclusions.

Search for members of a Prevention Policy in your

Search for members of a Prevention Policy in your.

Search for Prevention Policies in your environment

Search for Prevention Policies in your environment.

Search for members of a Response policy in your

Search for members of a Response policy in your.

Search for Response Policies in your environment

Search for Response Policies in your environment.

Retrieve kernel compatibility info for Sensor Update

Shows retrieve kernel compatibility info for Sensor Update.

Search for members of a Sensor Update Policy in your

Search for members of a Sensor Update Policy in your.

Search for Sensor Update Policies in your

Search for Sensor Update Policies in your.

Search for sensor visibility exclusions

Search for sensor visibility exclusions.

Returns count of potentially affected quarantined

Shows returns count of potentially affected quarantined.

Get quarantine file aggregates as specified via json

Get quarantine file aggregates as specified via json.

Get quarantine file metadata for specified ids

Get quarantine file metadata for specified ids.

Apply action by quarantine file ids

Apply action by quarantine file ids.

Get quarantine file ids that match the provided

Get quarantine file ids that match the provided.

Apply quarantine file actions by query

Apply quarantine file actions by query.

Get all the RTR sessions created for a customer

Get all the RTR sessions created for a customer.

Get aggregates on session data

Get aggregates on session data.

Batch executes a RTR active-responder command across

Shows batch executes a RTR active-responder command across.

Batch executes a RTR administrator command across

Shows batch executes a RTR administrator command across.

Batch executes a RTR read-only command across

Shows batch executes a RTR read-only command across.

Retrieves the status of the specified batch get

Shows retrieves the status of the specified batch get.

Batch executes `get` command across hosts

Shows batch executes `get` command across hosts.

Batch initialize a RTR session on multiple hosts

Shows batch initialize a RTR session on multiple hosts.

Batch refresh a RTR session on multiple hosts

Shows batch refresh a RTR session on multiple hosts.

Get status of an executed active-responder command

Get status of an executed active-responder command.

Execute an active responder command on a single host

Execute an active responder command on a single host.

Get status of an executed RTR administrator command

Get status of an executed RTR administrator command.

Execute a RTR administrator command on a single host

Execute a RTR administrator command on a single host.

Get status of an executed command on a single host

Get status of an executed command on a single host.

Execute a command on a single host

Execute a command on a single host.

Get RTR extracted file contents for specified

Get RTR extracted file contents for specified.

Get Falcon scripts with metadata and content of script

Get Falcon scripts with metadata and content of script.

Delete a RTR session file

Delete a RTR session file.

Get a list of files for the specified RTR session

Get a list of files for the specified RTR session.

Delete a RTR session file

Delete a RTR session file.

Get a list of files for the specified RTR session

Get a list of files for the specified RTR session.

Get RTR put file contents for a given file ID

Get RTR put file contents for a given file ID.

Delete a put-file based on the ID given

Delete a put-file based on the ID given.

Get put-files based on the ID's given

Get put-files based on the ID's given.

Upload a new put-file to use for the RTR `put` command

Upload a new put-file to use for the RTR `put` command.

Get put-files based on the ID's given

Get put-files based on the ID's given.

Upload a new put-file to use for the RTR `put` command

Upload a new put-file to use for the RTR `put` command.

Get queued session metadata by session ID

Get queued session metadata by session ID.

Delete a queued session command

Delete a queued session command.

Refresh a session timeout on a single host

Refresh a session timeout on a single host.

Delete a custom-script based on the ID given

Delete a custom-script based on the ID given.

Get custom-scripts based on the ID's given

Get custom-scripts based on the ID's given.

Upload a new scripts to replace an existing one

Upload a new scripts to replace an existing one.

Upload a new custom-script to use for the RTR

Upload a new custom-script to use for the RTR.

Get custom-scripts based on the ID's given

Get custom-scripts based on the ID's given.

Upload a new scripts to replace an existing one

Upload a new scripts to replace an existing one.

Upload a new custom-script to use for the RTR

Upload a new custom-script to use for the RTR.

Get session metadata by session id

Get session metadata by session id.

Delete a session

Delete a session.

Initialize a new session with the RTR cloud

Initialize a new session with the RTR cloud.

Get a list of Falcon script IDs available

Get a list of Falcon script IDs available.

Get a list of put-file ID's that are available

Get a list of put-file ID's that are available.

Get a list of custom-script ID's that are available

Get a list of custom-script ID's that are available.

Get a list of session_ids

Get a list of session_ids.

Removes a sample, including file, meta

Removes a sample, including file, meta.

Retrieves the file associated with the given ID

Shows retrieves the file associated with the given ID.

Retrieves a list with sha256 of samples that exist

Shows retrieves a list with sha256 of samples that exist.

Refresh an active event stream

Refresh an active event stream.

Discover all event streams in your environment

Shows discover all event streams in your environment.

Search for evaluation logic in your environment

Search for evaluation logic in your environment.

Performs a combined query and get operation

Shows performs a combined query and get operation.

Search for Vulnerabilities in your environment

Search for Vulnerabilities in your environment.

Performs a combined query and get operation

Shows performs a combined query and get operation.

Get details on evaluation logic items by providing

Get details on evaluation logic items by providing.

Get details on remediations by providing one or more

Get details on remediations by providing one or more.

Get details on vulnerabilities by providing one

Get details on vulnerabilities by providing one.

Search for evaluation logic in your environment

Search for evaluation logic in your environment.

Search for Vulnerabilities in your environment

Search for Vulnerabilities in your environment.

Get event body for the provided event ID

Get event body for the provided event ID.

Get events entities for specified ids

Get events entities for specified ids.

Get events ids that match the provided filter criteria

Get events ids that match the provided filter criteria.

Get rules entities for specified ids

Get rules entities for specified ids.

Get rules ids that match the provided filter criteria

Get rules ids that match the provided filter criteria.

Get host aggregates as specified via json in request

Get host aggregates as specified via json in request.

Get User Grant(s). This endpoint lists both direct

Get User Grant(s). This endpoint lists both direct.

Get info about a role

Get info about a role.

Get info about a role

Get info about a role.

Apply actions to one or more User

Apply actions to one or more User.

Grant or Revoke one or more role(s) to a user

Grant or Revoke one or more role(s) to a user.

Get info about users including their name, UID

Get info about users including their name, UID.

Delete a user permanently

Delete a user permanently.

Modify an existing user's first or last name

Modify an existing user's first or last name.

Create a new user

Create a new user.

Show role IDs for all roles available in your

Show role IDs for all roles available in your.

List user IDs for all users in your customer account

List user IDs for all users in your customer account.

Please use userRolesActionV1 Revoke one or more

Please use userRolesActionV1 Revoke one or more.

Please use entitiesRolesV1 Get info about a role

Shows please use entitiesRolesV1 Get info about a role.

Please use userRolesActionV1 Assign one or more

Please use userRolesActionV1 Assign one or more.

Please use queriesRolesV1 Show role IDs for all

Shows please use queriesRolesV1 Show role IDs for all.

Please use combinedUserRolesV1 Show role IDs

Shows please use combinedUserRolesV1 Show role IDs.

Please use deleteUserV1 Delete a user permanently

Please use deleteUserV1 Delete a user permanently.

Please use retrieveUsersGETV1. Get info about a user

Shows please use retrieveUsersGETV1. Get info about a user.

Please use updateUserV1 Modify an existing user's

Please use updateUserV1 Modify an existing user's.

Please use createUserV1 Create a new user

Please use createUserV1 Create a new user.

Please use retrieveUsersGETV1 List the usernames

Shows please use retrieveUsersGETV1 List the usernames.

Please use queryUserV1 List user IDs for all users

Shows please use queryUserV1 List user IDs for all users.

Please use queryUserV1 Get a user's ID by providing

Shows please use queryUserV1 Get a user's ID by providing.

Get Zero Trust Assessment data for one or more hosts

Get Zero Trust Assessment data for one or more hosts.

Get the Zero Trust Assessment audit report for one

Get the Zero Trust Assessment audit report for one.

Get Zero Trust Assessment data for one or more hosts

Get Zero Trust Assessment data for one or more hosts.

What it watches for

CrowdStrike Falcon triggers

2 triggers

Events in CrowdStrike Falcon that can start an automation on their own — no clicks required once you set it up.

New Falcon alert Polling

Checks CrowdStrike Falcon for alerts raised since the last run.

A host's status changed Polling

Watches hosts matching a filter and reports the ones whose state has changed.

Just ask

What you can ask in plain English

No menus, no automation builder to learn. Type it like you'd ask a capable assistant — Praxivara figures out the CrowdStrike Falcon steps and shows you exactly what it did.

Catch me up on what needs my attention in CrowdStrike Falcon today.
Handle this in CrowdStrike Falcon and confirm before anything goes out.
Build me an AI agent that keeps CrowdStrike Falcon tidy every morning.
Pull the latest from CrowdStrike Falcon and turn it into a one-page report.
Works great with

Related integrations

See all

Let Praxivara run CrowdStrike Falcon for you.

Connect it in seconds and hand over the busywork — with you approving anything that matters. Start your 7-day free trial today.

7 days free • Cancel anytime • Nothing charged until your trial ends