Skip to main content

The incident data model

Field

What it tells you

Example

Incident ID

Unique identifier

INC-2026-88

Incident Name

Human-readable description

SQL Injection from lastName Parameter on /customers page

Summary

Detailed description of what happened

Descriptive text about the incident scope and impact

Severity

Platform-assessed severity

CRITICAL

Score

Numeric risk score

9.3 (out of 10)

Status

Current state

Open, Closed

Related Rules

Which attack types are involved

["sql-injection"]

Recommended Actions

What the platform suggests you do

Remediation steps

Recommended Runbooks

Links to response procedures

Runbook URLs