LogoLogo
APISupportDashboard
  • Welcome
  • Platform
    • Platform Overview
    • Getting Started Guide
    • Discovery
      • Domain Discovery
      • Network Discovery
      • Discovered Assets
    • Targets
      • Scan Policies
      • Add-on Services
      • Tags & Filtering
        • Default Tags
      • Managing Targets
      • Scan Configuration
    • Risk
    • Firewalls
      • Ports
      • HTTP Servers
      • DNS Records
    • Websites
      • Certificates
      • Scripts
      • Cookies
      • Headers
      • Forms
      • Links
      • Downloads
      • Traffic Hosts
      • Meta Tags
      • Pages
    • Technology
    • Issues
      • Vulnerability Management
      • Issue Settings
    • Reports
    • Compliance
    • Projects
      • Penetration Testing
      • Other Projects
    • Events
      • Event Rules
      • Event Types
    • Automations
      • Target Automations
      • Asset Automations
      • Target Issue Automations
  • Integrations
    • Discovery Integrations
      • Azure
      • Google Cloud
      • AWS
      • Cloudflare
      • Oracle Cloud Infrastructure
      • F5
      • GoDaddy
      • Wiz
      • HTTP
    • Workflow Integrations
      • Slack
      • Google Chat
      • Jira
      • PagerDuty
      • Splunk
      • AWS
      • Vanta
      • Microsoft Teams
      • ArmorCode
      • Zapier
        • Slack (via Zapier)
        • Jira (via Zapier)
        • Service Now (via Zapier)
    • Feeds
      • Using Feeds with Google Sheets
    • API
    • Webhooks
  • Account
    • Account Overview
      • Account Security
    • Users
      • Roles & Permissions
Powered by GitBook

© 2024 Halo Security

On this page
  • Setting up event rules
  • Add rules
  • Add actions
  • Integration
  • User Email
  • Webhooks
  • Managing event rules

Was this helpful?

  1. Platform
  2. Events

Event Rules

Configure notifications for critical events across your attack surface.

PreviousEventsNextEvent Types

Last updated 2 months ago

Was this helpful?

Event Rules (formerly Alerts) allow you to define when and how you'll be notified of important changes and findings. You can configure rules to send notifications via email, trigger actions in integrated tools like Jira and Slack, or send webhooks to your own applications.

Setting up event rules

Event rules are highly configurable. To add an event rule, go to Events > and click the + icon. Give your event rule a name.

Each rule consists of two parts:

  1. Rules that determine which events will trigger notifications

  2. Actions that define how you'll be notified

Add rules

You can configure multiple conditions to determine which events will trigger your actions:

You can filter the rules that will trigger actions for the Event Rule on:

  • Match Key: Only match with selected key(s).

  • Match Tag: Only match events for targets having the selected tag(s).

  • Exclude Tag: Exclude events for targets with the selected tag(s).

  • Issue Severity: For issue events, only match issues with the selected severity.

  • Target: Only match events related to the selected target(s).

  • Host: Only match events with the selected host(s).

  • Options: Additional filtering criteria including:

    • Require CISA KEV: Only include issues designated as Known Exploited Vulnerabilities by CISA.

Add actions

Choose one or more actions to trigger when events match your rules.

Integration

User Email

Send email notifications to all or specific users on your account.

  • New issue (issue-add)

  • All PCI related events (pci-...)

Webhooks

Managing event rules

To edit or remove a rule:

  1. Click the cog icon next to the rule you want to modify

  2. Make your changes or click the trash icon to delete

  3. Click Save to apply any changes

Connect with workflow tools like or . Select an existing integration and specify the profile to use when events match your rules.

Default Rules: We include several predefined email alerts. Individual users can manage their email preferences under or opt-out of default rules on the page.

Default email alerts are triggered for the following :

Send event notifications to your own applications via .

Navigate to Events >

Event Rules
event types
Jira
Slack
Account > Settings > Notifications
Event Rules
event types
Event Rules
webhook URLs