The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Playbook activities page

Prev Next

Select Response > Playbook Activities to see all playbooks that were executed in your organization.

Helix_PlaybookActivities.png

The chart at the top of the page summarizes playbook activity. Toggle the Visualization switch to hide or show the chart.

The table displays information about each executed playbook.

Click the name of a completed playbook or select Inspect from the menu at the end of the row to open a flowchart that tracks each step of the execution. Steps outlined in green were executed. Steps outlined in red were not executed.

Click a flowchart step to see details about the action in the right pane. You can scroll through the steps in the right pane, or click a step in the workflow to navigate directly to its details. Expand the step details to drill into more information, such as step inputs and outputs and trace logs.

Helix_PlaybookActivity.png

To copy or download the playbook activity JSON, click Copy Playbook Activity or Download Activity at the top of the right pane. To copy or download the activity for a specific step, click the copy or download icon at the top of the step details.

Note

The flowchart and step details are also displayed on the Response tab of the Correlations Details or Threat Details page.