Select Response > Playbook Activities to see all playbooks that were executed in your organization.
.png)
The chart at the top of the page summarizes playbook activity. Toggle the Visualization switch to hide or show the chart.
The table displays information about each executed playbook.
Click the name of a completed playbook or select Inspect from the menu at the end of the row to open a flowchart that tracks each step of the execution. Steps outlined in green were executed. Steps outlined in red were not executed.
Click a flowchart step to see details about the action in the right pane. You can scroll through the steps in the right pane, or click a step in the workflow to navigate directly to its details. Expand the step details to drill into more information, such as step inputs and outputs and trace logs.
.png)
To copy or download the playbook activity JSON, click Copy Playbook Activity or Download Activity at the top of the right pane. To copy or download the activity for a specific step, click the copy or download icon at the top of the step details.
Note
The flowchart and step details are also displayed on the Response tab of the Correlations Details or Threat Details page.