ai-agents-bump#44522
Merged
Merged
Conversation
Contributor
🤖 AI-Powered Code Review AvailableYou can leverage AI-powered code review to assist with this PR! Available Commands:
|
tcarmeli1
enabled auto-merge (squash)
June 3, 2026 16:03
jbabazadeh
approved these changes
Jun 3, 2026
Contributor
|
Validate summary Verdict: PR can be force merged from validate perspective? ✅ |
mmhw
added a commit
that referenced
this pull request
Jul 5, 2026
* Error Classification & Taxonomy * Fix/XSUP-67021/Demisto Lock fixed version issues (#44469) * cnon relevant (#44470) * Update CODEOWNERS (#44372) * Update CODEOWNERS * Update CODEOWNERS * Auto RN: sendmail-improve-arg-descriptions (#44306) * Initial release notes for sendmail-improve-arg-descriptions * Sync release notes from GitLab (2b0a285f) * Sync release notes from GitLab (e44aa7f8) * Bump pack from version Base to 1.41.86. * Sync release notes from GitLab (b0907a55) * Sync release notes from GitLab (1a47a9f6) * Sync release notes from GitLab (2b1af82f) * Sync release notes from GitLab (57884775) * update * Sync release notes from GitLab (895adb95) * Sync release notes from GitLab (8f5b7020) * Sync release notes from GitLab (143d8695) * Sync release notes from GitLab (c835b753) * Sync release notes from GitLab (c5d3930c) * Apply suggestion from @michal-dagan * Sync release notes from GitLab (28ff9f45) * Sync release notes from GitLab (28ff9f45) * Bump pack from version Base to 1.41.87. * Sync release notes from GitLab (5ded6563) * Sync release notes from GitLab (a9ea6345) * Sync release notes from GitLab (16ae301d) * Sync release notes from GitLab (e50879b3) * Sync release notes from GitLab (e50879b3) * Sync release notes from GitLab (63cf30aa) * Sync release notes from GitLab (23f07e48) * Sync release notes from GitLab (cdea5bd6) --------- Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: michal-dagan <109464765+michal-dagan@users.noreply.github.com> Co-authored-by: Content Bot <bot@demisto.com> Co-authored-by: michal-dagan <mdagan@paloaltonetworks.com> * migrate search delete emails o365 to msg (#44461) * Crtx 243858 (#44428) * Implement two-layer security for pickle deserialization across multiple scripts * Add tests for safe_pickle_loads and validate_pickle_opcodes * fix after pre-commit * reduce the duplicate code by moving logic to commonServerPython.py * Update line offset in _MODULES_LINE_MAPPING for CommonServerPython * update RN * fix build * Update and bump CommonScript RN * move tests to ommonserverpython_test * remove shared tests from each scripts * Refactor loading allowlists to extend a shared base across multiple scripts * fix test * fix pre-commit * Bump pack from version Base to 1.41.88. --------- Co-authored-by: Content Bot <bot@demisto.com> * changed image (#44475) Co-authored-by: noydavidi <nodavidi.paloaltonetworks.com> * XDR Issue commands (#43340) * Deprecated Security and Compliance – Content Search V2 integration (#44387) * Azure Command Alignment batch2 (#44362) * property get and set * azure-storage-container-property-get * last commands updates * rn * added Enable Blob Soft Deletion and small fixes * ai review * ai review * ai review * ai review * pre-commit updates * fixed validation errors * ai review * removed deprecated context path * inc current version onepassword (#44484) * Microsoftcommandsaddition (#44480) * Microsoftcommandsaddition (#44432) * Add google-drive-file-move and google-drive-file-create remediation commands * Revert formatting-only changes to non-Integration files per contribution policy * updating release pack release notes * changing the user id required paramater to false * changing the user id required paramater to false * adding field in response and set required to false * correcting naming conventions and following the patter * adding functionality to existing commands * Miplabelingcommands (#44315) * updated docker image * renamed name * fixed readme * adding microsoft 4 commands * fixed comments after ai review * fixing issue related to permission * removing unknown drive changes * Regenerate README for the 4 new driveItem commands after upstream merge * Apply markdownlint auto-fixes to README * adding readme review comment changes --------- Co-authored-by: noydavidi <nodavidi.paloaltonetworks.com> * in progress --------- Co-authored-by: ymishrapalo1992 <ymishra@paloaltonetworks.com> Co-authored-by: YuvHayun <yhayun@paloaltonetworks.com> * Add exposure_management to pack metadata in CSF, Rapid7, Tenable, Qualys (#44451) * Add exposure_management to pack metadata * Fix Rns * Update Packs/CrowdStrikeFalcon/ReleaseNotes/2_11_3.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/CrowdStrikeFalcon/ReleaseNotes/2_11_3.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Rapid7_Nexpose/ReleaseNotes/1_4_2.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Rapid7_Nexpose/ReleaseNotes/1_4_2.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_sc/ReleaseNotes/1_1_8.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_io/ReleaseNotes/2_3_26.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_sc/ReleaseNotes/1_1_8.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_io/ReleaseNotes/2_3_26.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Bump outdated docker images to fix DO106 - Tenable_io: demisto/python3 -> 3.12.13.9059085 - Tenable_sc: demisto/python3 -> 3.12.13.9059085 - Rapid7_Nexpose: demisto/auth-utils -> 1.0.0.9224111 No pack version bump; appended a docker bullet to the existing in-progress release-notes entry of each pack. * Pin existing supportedModules on content items in EM-enabled packs Per CRTX-251868 build feedback: adding exposure_management to a pack's supportedModules causes content items that don't declare their own supportedModules to be implicitly extended to that scope too. For non- integration items we don't want that, so pin each one to the pack's pre-existing supportedModules list (the pack's list MINUS exposure_management). Prevents GR109/GR114 mismatches from firing. Touched 136 content items across Tenable_io, Tenable_sc, Rapid7_Nexpose, qualys, and CrowdStrikeFalcon (Playbooks, Scripts, ModelingRules, Classifiers, IncidentFields, IncidentTypes, Layouts). RN entries appended to each pack's already-open in-progress release-notes file. * Fix DO106 + BA103 + DS108 blockers surfaced by EM-pinning DO106 (docker image outdated): - 11 CrowdStrikeFalcon Scripts: demisto/python3:3.12.12.5490952 -> 3.12.13.9059085 - qualys/Scripts/QualysCreateIncidentFromReport: demisto/python3:3.12.8.3296088 -> 3.12.13.9059085 BA103 (malformed tests section): - 3 Rapid7_Nexpose JS Scripts (NexposeEmailParser, NexposeEmailParserForVuln, NexposeVulnExtractor): added 'tests: - No tests (auto formatted)'. DS108 (description without period): - NexposeEmailParser defaultNexposeSeverity argument description. These were pre-existing issues in the touched files, surfaced because the EM-pinning commit (e618bf0) put them in the PR diff. * Fix RN114 and RN107: split Classifiers/Mappers in CrowdStrikeFalcon 2_11_3.md The 5 mapper-type classifier files (CrowdStrike Falcon - Outgoing Mapper, 2x CrowdStrike Falcon Mapper, 2x Legacy CrowdStrike Falcon-Mapper) live under a separate '#### Mappers' heading per the validator; only 'CrowdStrike Falcon Incident Classifier' (the actual classification-type) stays under '#### Classifiers'. * Revert supportedModules pinning on non-platform content items Per BEAdi's review on #44451: content items whose effective marketplaces do not include 'platform' should not have a supportedModules block at all (supportedModules is a platform-only concept). The earlier blanket pinning commit (e618bf0) incorrectly added supportedModules to 110 xsoar-only items across 4 packs. Removed the supportedModules block from: - Rapid7_Nexpose: 2 playbooks (Vulnerability_Handling, Vulnerability_Management Job) - qualys: 2 playbooks (Vulnerability_Management Qualys Job + V2) - CrowdStrikeFalcon: 106 items (Classifiers/Mappers, IncidentFields, IncidentTypes, Layouts) - all xsoar-only Also removed the corresponding RN entries from each pack's in-progress release-notes file and collapsed any sections that became empty. Platform-supporting items in thesPlatform-supporting items in thesPlatform-supporting items in thesPlatform-supporting items in theppPlatform-supporting items in thesnePlatfosure_management entry. * Revert docker changes on items which are not platform * Add GR107/PB118/RM116 to .pack-ignore for EM-enabled packs * revert skipped validations * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: CI Bot <ci@demisto.com> * New: SecurityScorecard Event Collector (#44420) * start * pre commit * pre commit and fix unit testing * Update Packs/SecurityScorecard/Integrations/SecurityScorecardEventCollector/README.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * ai reviewer comments fixes * code review fixes * little fix * add logo * fix validation * change first fetch * RN * rn * fix pack metadata --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Koby Meir <kobymeir@users.noreply.github.com> * HY/CRTX-250066/bumpSlackVersionBatch4 (#44464) * HY/CRTX-250066/bumpSlackVersionBatch4 * trigger build * ruff * slackV3 * validate no secrets * Remvoe slackV3v2 * fromversion: 5.5.0 * docker image * bump corepacks platform 8.14 after batch 4 (#44492) * Xsup 69286 cid fix (#44488) * Fix CID handling * Fix tests and ruff * Added release notes to apiModule and updated docker image * poetry files (#44485) Co-authored-by: Content Bot <bot@demisto.com> * Update Server URL parameter description in GuardiCore v2 (#44490) * Update Server URL parameter description in GuardiCore v2 * Update Packs/GuardiCore/Integrations/GuardiCoreV2/GuardiCoreV2.yml Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * fix code (#44498) * Tenable sc ingest - updated _time mapping and default fetch interval (#44479) * Tenable sc ingest - updated _time mapping and default fetch interval (#44458) * adding WIP code for Tenable.sc asset & vuln ingest * add time formatting and unit test failure * pre-commit hook updates * Remove Asset Modeling Rules * explicitly exclude WAS findings * fix failing test * ruff format * remove timestamp formatting * swap vuln _time mapping and use 12h default fetch interval w/ 1h min * fix failing test * update tag * rn * rn * rn * rn * rn * rn * rn * rn * fix ips * fix(tenable-sc): hide integration from agentix marketplace * fix(tenable-sc): remove invalid agentix value from hidden field --------- Co-authored-by: Andrew Scott <77340714+andrew-paloalto@users.noreply.github.com> Co-authored-by: yshamai <yshamai@paloaltonetworks.com> Co-authored-by: Yael Shamai <111040837+YaelShamai@users.noreply.github.com> Co-authored-by: Daniel Tal <dtal@paloaltonetworks.com> * SplunkPyV2: added new commands (#44364) * added the commands * ai-reviewer CR changes * fix validation * fix validation * Rename 4_1_1.md to 4_2_0.md * Update pack_metadata.json * Address review comments from @julieschwartz18 on PR #44364 * fix pre commit * Rubrik Release 1.7.0 (#44345) * Rubrik Release 1.7.0 (#44132) * Rubrik Release 1.7.0 * Changes as per requested comments. * Changes as per requested comments. --------- Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> * Update the docker image and refine release notes * Revert docker image changes * Update the docker image --------- Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> * CrwdStrike - improve memory consumption (#44474) * CrwdStrike - improve memory consumption * diagnostic_mode=false and revert semaphore usage * revert to master + diagnostic_mode + 100-day filter + logs * fix test * readme + description * doc review + fix test playbook * New Integration DFIRe (#44481) * Rubrikpolaris incident field fix (#44518) * Update incidentfield-Rubrik_CDM_Cluster_Name.json * Restore incident field in XSOAR marketplace in Rubrik Security Cloud * Revert version bump * Support adding multiple entries to client list in Akamai WAF (#44510) * Support adding multiple entries to client list in Akamai WAF (#44130) * feat(akamai): ✨ support adding multiple entries to client list - Updated the `akamai-add-client-list-entry` command to accept a comma-separated list of values. - Modified the implementation to handle multiple entries in a single API call. - Enhanced documentation and tests to reflect the new functionality. * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/Akamai_WAF.yml Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/README.md Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> * feat(akamai): ✨ add support for multiple client list entries * Updated `add_client_list_entry_command` to use `argToList` for `value` and `tags`. * Added validation to ensure at least one value is provided. * Enhanced README with command examples and human-readable output. * Updated `pack_metadata.json` to include relevant keywords. Co-authored-by: Copilot <copilot@github.com> * fix(akamai): address marketplace-ai-reviewer feedback - Add isArray: true to value argument for proper UI multi-select handling - Add test case for ValueError when value is empty - Fix README Command example header capitalization to lowercase * chore(contributors): ✏️ add Laura Sangeo Fontán to CONTRIBUTORS.json * Added a new contributor entry for Laura Sangeo Fontán. * chore(contributors): ✏️ fix typo in contributor name * Corrected the spelling of "Sangeao" in CONTRIBUTORS.json. * refactor: remove duplicate validation in add_client_list_entry method * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/README.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update contributor entry for Laura Sangeao Fontán --------- Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Fix pre-commit issues * Update Docker image --------- Co-authored-by: Laura Sangeao Fontán <103418101+laurasfo@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> * VectraAI Release 2.1.4 (#44515) * VectraAI Release 2.1.4 (#44503) * VectraAI Release 2.1.4 * Updated as per provided comments --------- Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> * Update 2_1_4.md --------- Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> * KOI: Add XSOAR marketplace support and graceful should_push_events handling (#44483) KOI: Add XSOAR marketplace support and graceful should_push_events handling * fix code (#44522) * HY/CRTX-244513/AddEDRToAgentixActions (#44386) * HY/XSUP-67878/AddEDRToEmailInvestigationAgent * supported modules * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Bump pack from version AIAgents to 1.0.26. * Bump pack from version AIAgents to 1.0.27. * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * rn for core and commoncripts * typo in rn * Bump pack from version CommonScripts to 1.22.16. * trigger build * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * rn * rn * Bump pack from version CommonScripts to 1.22.17. * Bump pack from version Core to 3.5.54. * Bump pack from version Base to 1.41.90. * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Bump pack from version Base to 1.41.91. --------- Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: Content Bot <bot@demisto.com> * add unified error messages and Agentix-aware return_error * Fix * Update * Added response_body * Fix * restore MicrosoftTeams * Fix * Add Release Note * Fix * Fix * ai review * Fix error * Fix error * Fix error * Fix error * Fix error * Fix error --------- Co-authored-by: Moshe Eichler <78307768+MosheEichler@users.noreply.github.com> Co-authored-by: Shir Matathias <132361594+Shir2611@users.noreply.github.com> Co-authored-by: Dan Tavori <38749041+dantavori@users.noreply.github.com> Co-authored-by: Content Bot <55035720+content-bot@users.noreply.github.com> Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: michal-dagan <109464765+michal-dagan@users.noreply.github.com> Co-authored-by: Content Bot <bot@demisto.com> Co-authored-by: michal-dagan <mdagan@paloaltonetworks.com> Co-authored-by: lironcohen272 <lircohen@paloaltonetworks.com> Co-authored-by: noydavidi <77931201+noydavidi@users.noreply.github.com> Co-authored-by: RotemAmit <ramit@paloaltonetworks.com> Co-authored-by: ymishrapalo1992 <ymishra@paloaltonetworks.com> Co-authored-by: YuvHayun <yhayun@paloaltonetworks.com> Co-authored-by: Andrew Shamah <42912128+amshamah419@users.noreply.github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Yael Shamai <111040837+YaelShamai@users.noreply.github.com> Co-authored-by: Koby Meir <kobymeir@users.noreply.github.com> Co-authored-by: hyaffe839 <hyaffe@paloaltonetworks.com> Co-authored-by: israelpoli <72099621+israelpoli@users.noreply.github.com> Co-authored-by: Shelly Tzohar <45915502+Shellyber@users.noreply.github.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> Co-authored-by: Tal Carmeli <158452762+tcarmeli1@users.noreply.github.com> Co-authored-by: Andrew Scott <77340714+andrew-paloalto@users.noreply.github.com> Co-authored-by: yshamai <yshamai@paloaltonetworks.com> Co-authored-by: Daniel Tal <dtal@paloaltonetworks.com> Co-authored-by: Israel Lappe <79846863+ilappe@users.noreply.github.com> Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> Co-authored-by: MLainer1 <93524335+MLainer1@users.noreply.github.com> Co-authored-by: Laura Sangeao Fontán <103418101+laurasfo@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: dtroushinsky <dtroushinsky@paloaltonetworks.com>
dantavori
added a commit
that referenced
this pull request
Jul 13, 2026
* Error Classification & Taxonomy * Fix/XSUP-67021/Demisto Lock fixed version issues (#44469) * cnon relevant (#44470) * Update CODEOWNERS (#44372) * Update CODEOWNERS * Update CODEOWNERS * Auto RN: sendmail-improve-arg-descriptions (#44306) * Initial release notes for sendmail-improve-arg-descriptions * Sync release notes from GitLab (2b0a285f) * Sync release notes from GitLab (e44aa7f8) * Bump pack from version Base to 1.41.86. * Sync release notes from GitLab (b0907a55) * Sync release notes from GitLab (1a47a9f6) * Sync release notes from GitLab (2b1af82f) * Sync release notes from GitLab (57884775) * update * Sync release notes from GitLab (895adb95) * Sync release notes from GitLab (8f5b7020) * Sync release notes from GitLab (143d8695) * Sync release notes from GitLab (c835b753) * Sync release notes from GitLab (c5d3930c) * Apply suggestion from @michal-dagan * Sync release notes from GitLab (28ff9f45) * Sync release notes from GitLab (28ff9f45) * Bump pack from version Base to 1.41.87. * Sync release notes from GitLab (5ded6563) * Sync release notes from GitLab (a9ea6345) * Sync release notes from GitLab (16ae301d) * Sync release notes from GitLab (e50879b3) * Sync release notes from GitLab (e50879b3) * Sync release notes from GitLab (63cf30aa) * Sync release notes from GitLab (23f07e48) * Sync release notes from GitLab (cdea5bd6) --------- Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: michal-dagan <109464765+michal-dagan@users.noreply.github.com> Co-authored-by: Content Bot <bot@demisto.com> Co-authored-by: michal-dagan <mdagan@paloaltonetworks.com> * migrate search delete emails o365 to msg (#44461) * Crtx 243858 (#44428) * Implement two-layer security for pickle deserialization across multiple scripts * Add tests for safe_pickle_loads and validate_pickle_opcodes * fix after pre-commit * reduce the duplicate code by moving logic to commonServerPython.py * Update line offset in _MODULES_LINE_MAPPING for CommonServerPython * update RN * fix build * Update and bump CommonScript RN * move tests to ommonserverpython_test * remove shared tests from each scripts * Refactor loading allowlists to extend a shared base across multiple scripts * fix test * fix pre-commit * Bump pack from version Base to 1.41.88. --------- Co-authored-by: Content Bot <bot@demisto.com> * changed image (#44475) Co-authored-by: noydavidi <nodavidi.paloaltonetworks.com> * XDR Issue commands (#43340) * Deprecated Security and Compliance – Content Search V2 integration (#44387) * Azure Command Alignment batch2 (#44362) * property get and set * azure-storage-container-property-get * last commands updates * rn * added Enable Blob Soft Deletion and small fixes * ai review * ai review * ai review * ai review * pre-commit updates * fixed validation errors * ai review * removed deprecated context path * inc current version onepassword (#44484) * Microsoftcommandsaddition (#44480) * Microsoftcommandsaddition (#44432) * Add google-drive-file-move and google-drive-file-create remediation commands * Revert formatting-only changes to non-Integration files per contribution policy * updating release pack release notes * changing the user id required paramater to false * changing the user id required paramater to false * adding field in response and set required to false * correcting naming conventions and following the patter * adding functionality to existing commands * Miplabelingcommands (#44315) * updated docker image * renamed name * fixed readme * adding microsoft 4 commands * fixed comments after ai review * fixing issue related to permission * removing unknown drive changes * Regenerate README for the 4 new driveItem commands after upstream merge * Apply markdownlint auto-fixes to README * adding readme review comment changes --------- Co-authored-by: noydavidi <nodavidi.paloaltonetworks.com> * in progress --------- Co-authored-by: ymishrapalo1992 <ymishra@paloaltonetworks.com> Co-authored-by: YuvHayun <yhayun@paloaltonetworks.com> * Add exposure_management to pack metadata in CSF, Rapid7, Tenable, Qualys (#44451) * Add exposure_management to pack metadata * Fix Rns * Update Packs/CrowdStrikeFalcon/ReleaseNotes/2_11_3.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/CrowdStrikeFalcon/ReleaseNotes/2_11_3.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Rapid7_Nexpose/ReleaseNotes/1_4_2.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Rapid7_Nexpose/ReleaseNotes/1_4_2.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_sc/ReleaseNotes/1_1_8.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/qualys/ReleaseNotes/3_4_1.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_io/ReleaseNotes/2_3_26.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_sc/ReleaseNotes/1_1_8.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update Packs/Tenable_io/ReleaseNotes/2_3_26.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Bump outdated docker images to fix DO106 - Tenable_io: demisto/python3 -> 3.12.13.9059085 - Tenable_sc: demisto/python3 -> 3.12.13.9059085 - Rapid7_Nexpose: demisto/auth-utils -> 1.0.0.9224111 No pack version bump; appended a docker bullet to the existing in-progress release-notes entry of each pack. * Pin existing supportedModules on content items in EM-enabled packs Per CRTX-251868 build feedback: adding exposure_management to a pack's supportedModules causes content items that don't declare their own supportedModules to be implicitly extended to that scope too. For non- integration items we don't want that, so pin each one to the pack's pre-existing supportedModules list (the pack's list MINUS exposure_management). Prevents GR109/GR114 mismatches from firing. Touched 136 content items across Tenable_io, Tenable_sc, Rapid7_Nexpose, qualys, and CrowdStrikeFalcon (Playbooks, Scripts, ModelingRules, Classifiers, IncidentFields, IncidentTypes, Layouts). RN entries appended to each pack's already-open in-progress release-notes file. * Fix DO106 + BA103 + DS108 blockers surfaced by EM-pinning DO106 (docker image outdated): - 11 CrowdStrikeFalcon Scripts: demisto/python3:3.12.12.5490952 -> 3.12.13.9059085 - qualys/Scripts/QualysCreateIncidentFromReport: demisto/python3:3.12.8.3296088 -> 3.12.13.9059085 BA103 (malformed tests section): - 3 Rapid7_Nexpose JS Scripts (NexposeEmailParser, NexposeEmailParserForVuln, NexposeVulnExtractor): added 'tests: - No tests (auto formatted)'. DS108 (description without period): - NexposeEmailParser defaultNexposeSeverity argument description. These were pre-existing issues in the touched files, surfaced because the EM-pinning commit (e618bf0) put them in the PR diff. * Fix RN114 and RN107: split Classifiers/Mappers in CrowdStrikeFalcon 2_11_3.md The 5 mapper-type classifier files (CrowdStrike Falcon - Outgoing Mapper, 2x CrowdStrike Falcon Mapper, 2x Legacy CrowdStrike Falcon-Mapper) live under a separate '#### Mappers' heading per the validator; only 'CrowdStrike Falcon Incident Classifier' (the actual classification-type) stays under '#### Classifiers'. * Revert supportedModules pinning on non-platform content items Per BEAdi's review on #44451: content items whose effective marketplaces do not include 'platform' should not have a supportedModules block at all (supportedModules is a platform-only concept). The earlier blanket pinning commit (e618bf0) incorrectly added supportedModules to 110 xsoar-only items across 4 packs. Removed the supportedModules block from: - Rapid7_Nexpose: 2 playbooks (Vulnerability_Handling, Vulnerability_Management Job) - qualys: 2 playbooks (Vulnerability_Management Qualys Job + V2) - CrowdStrikeFalcon: 106 items (Classifiers/Mappers, IncidentFields, IncidentTypes, Layouts) - all xsoar-only Also removed the corresponding RN entries from each pack's in-progress release-notes file and collapsed any sections that became empty. Platform-supporting items in thesPlatform-supporting items in thesPlatform-supporting items in thesPlatform-supporting items in theppPlatform-supporting items in thesnePlatfosure_management entry. * Revert docker changes on items which are not platform * Add GR107/PB118/RM116 to .pack-ignore for EM-enabled packs * revert skipped validations * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: CI Bot <ci@demisto.com> * New: SecurityScorecard Event Collector (#44420) * start * pre commit * pre commit and fix unit testing * Update Packs/SecurityScorecard/Integrations/SecurityScorecardEventCollector/README.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * ai reviewer comments fixes * code review fixes * little fix * add logo * fix validation * change first fetch * RN * rn * fix pack metadata --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Koby Meir <kobymeir@users.noreply.github.com> * HY/CRTX-250066/bumpSlackVersionBatch4 (#44464) * HY/CRTX-250066/bumpSlackVersionBatch4 * trigger build * ruff * slackV3 * validate no secrets * Remvoe slackV3v2 * fromversion: 5.5.0 * docker image * bump corepacks platform 8.14 after batch 4 (#44492) * Xsup 69286 cid fix (#44488) * Fix CID handling * Fix tests and ruff * Added release notes to apiModule and updated docker image * poetry files (#44485) Co-authored-by: Content Bot <bot@demisto.com> * Update Server URL parameter description in GuardiCore v2 (#44490) * Update Server URL parameter description in GuardiCore v2 * Update Packs/GuardiCore/Integrations/GuardiCoreV2/GuardiCoreV2.yml Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> --------- Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * fix code (#44498) * Tenable sc ingest - updated _time mapping and default fetch interval (#44479) * Tenable sc ingest - updated _time mapping and default fetch interval (#44458) * adding WIP code for Tenable.sc asset & vuln ingest * add time formatting and unit test failure * pre-commit hook updates * Remove Asset Modeling Rules * explicitly exclude WAS findings * fix failing test * ruff format * remove timestamp formatting * swap vuln _time mapping and use 12h default fetch interval w/ 1h min * fix failing test * update tag * rn * rn * rn * rn * rn * rn * rn * rn * fix ips * fix(tenable-sc): hide integration from agentix marketplace * fix(tenable-sc): remove invalid agentix value from hidden field --------- Co-authored-by: Andrew Scott <77340714+andrew-paloalto@users.noreply.github.com> Co-authored-by: yshamai <yshamai@paloaltonetworks.com> Co-authored-by: Yael Shamai <111040837+YaelShamai@users.noreply.github.com> Co-authored-by: Daniel Tal <dtal@paloaltonetworks.com> * SplunkPyV2: added new commands (#44364) * added the commands * ai-reviewer CR changes * fix validation * fix validation * Rename 4_1_1.md to 4_2_0.md * Update pack_metadata.json * Address review comments from @julieschwartz18 on PR #44364 * fix pre commit * Rubrik Release 1.7.0 (#44345) * Rubrik Release 1.7.0 (#44132) * Rubrik Release 1.7.0 * Changes as per requested comments. * Changes as per requested comments. --------- Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> * Update the docker image and refine release notes * Revert docker image changes * Update the docker image --------- Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> * CrwdStrike - improve memory consumption (#44474) * CrwdStrike - improve memory consumption * diagnostic_mode=false and revert semaphore usage * revert to master + diagnostic_mode + 100-day filter + logs * fix test * readme + description * doc review + fix test playbook * New Integration DFIRe (#44481) * Rubrikpolaris incident field fix (#44518) * Update incidentfield-Rubrik_CDM_Cluster_Name.json * Restore incident field in XSOAR marketplace in Rubrik Security Cloud * Revert version bump * Support adding multiple entries to client list in Akamai WAF (#44510) * Support adding multiple entries to client list in Akamai WAF (#44130) * feat(akamai): ✨ support adding multiple entries to client list - Updated the `akamai-add-client-list-entry` command to accept a comma-separated list of values. - Modified the implementation to handle multiple entries in a single API call. - Enhanced documentation and tests to reflect the new functionality. * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/Akamai_WAF.yml Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/README.md Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> * feat(akamai): ✨ add support for multiple client list entries * Updated `add_client_list_entry_command` to use `argToList` for `value` and `tags`. * Added validation to ensure at least one value is provided. * Enhanced README with command examples and human-readable output. * Updated `pack_metadata.json` to include relevant keywords. Co-authored-by: Copilot <copilot@github.com> * fix(akamai): address marketplace-ai-reviewer feedback - Add isArray: true to value argument for proper UI multi-select handling - Add test case for ValueError when value is empty - Fix README Command example header capitalization to lowercase * chore(contributors): ✏️ add Laura Sangeo Fontán to CONTRIBUTORS.json * Added a new contributor entry for Laura Sangeo Fontán. * chore(contributors): ✏️ fix typo in contributor name * Corrected the spelling of "Sangeao" in CONTRIBUTORS.json. * refactor: remove duplicate validation in add_client_list_entry method * Update Packs/Akamai_WAF/Integrations/Akamai_WAF/README.md Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Update contributor entry for Laura Sangeao Fontán --------- Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> * Fix pre-commit issues * Update Docker image --------- Co-authored-by: Laura Sangeao Fontán <103418101+laurasfo@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> * VectraAI Release 2.1.4 (#44515) * VectraAI Release 2.1.4 (#44503) * VectraAI Release 2.1.4 * Updated as per provided comments --------- Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> * Update 2_1_4.md --------- Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> * KOI: Add XSOAR marketplace support and graceful should_push_events handling (#44483) KOI: Add XSOAR marketplace support and graceful should_push_events handling * fix code (#44522) * HY/CRTX-244513/AddEDRToAgentixActions (#44386) * HY/XSUP-67878/AddEDRToEmailInvestigationAgent * supported modules * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Bump pack from version AIAgents to 1.0.26. * Bump pack from version AIAgents to 1.0.27. * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * rn for core and commoncripts * typo in rn * Bump pack from version CommonScripts to 1.22.16. * trigger build * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * rn * rn * Bump pack from version CommonScripts to 1.22.17. * Bump pack from version Core to 3.5.54. * Bump pack from version Base to 1.41.90. * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Trigger GitHub pipeline (user-created PR) * Bump pack from version Base to 1.41.91. --------- Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: Content Bot <bot@demisto.com> * add unified error messages and Agentix-aware return_error * Fix * Update * Added response_body * Fix * restore MicrosoftTeams * Fix * Add Release Note * Fix * Fix * ai review * Fix error * Fix error * Fix error * Fix error * HY/CRTX-257330/standardized-error-messages/UpdateCase,ListIssues,ListCases * tests * handle return error * rn * rn * CSP * Bump pack from version Core to 3.5.68. * searchIndicator, searchAssets * 3_5_66 revert * remove test * raise CortexInvalidArgError * ruff * Bump pack from version CommonScripts to 1.22.31. * Bump pack from version Core to 3.5.69. * pre commit * pre commit * Bump pack from version CommonScripts to 1.22.32. * Bump pack from version CommonScripts to 1.22.33. * Bump pack from version Core to 3.5.70. * Bump pack from version CommonScripts to 1.22.34. * Bump pack from version CommonScripts to 1.22.35. * Bump pack from version Core to 3.5.71. --------- Co-authored-by: Menachem <mwienfeld@paloaltonetworks.com> Co-authored-by: Moshe Eichler <78307768+MosheEichler@users.noreply.github.com> Co-authored-by: Shir Matathias <132361594+Shir2611@users.noreply.github.com> Co-authored-by: Dan Tavori <38749041+dantavori@users.noreply.github.com> Co-authored-by: Content Bot <55035720+content-bot@users.noreply.github.com> Co-authored-by: CI Bot <ci@demisto.com> Co-authored-by: michal-dagan <109464765+michal-dagan@users.noreply.github.com> Co-authored-by: Content Bot <bot@demisto.com> Co-authored-by: michal-dagan <mdagan@paloaltonetworks.com> Co-authored-by: lironcohen272 <lircohen@paloaltonetworks.com> Co-authored-by: noydavidi <77931201+noydavidi@users.noreply.github.com> Co-authored-by: RotemAmit <ramit@paloaltonetworks.com> Co-authored-by: ymishrapalo1992 <ymishra@paloaltonetworks.com> Co-authored-by: YuvHayun <yhayun@paloaltonetworks.com> Co-authored-by: Andrew Shamah <42912128+amshamah419@users.noreply.github.com> Co-authored-by: Marketplace AI reviewer <svc-mp-ai-reviewer@paloaltonetworks.com> Co-authored-by: Yael Shamai <111040837+YaelShamai@users.noreply.github.com> Co-authored-by: Koby Meir <kobymeir@users.noreply.github.com> Co-authored-by: israelpoli <72099621+israelpoli@users.noreply.github.com> Co-authored-by: Shelly Tzohar <45915502+Shellyber@users.noreply.github.com> Co-authored-by: Kamal Qarain <45042524+kamalq97@users.noreply.github.com> Co-authored-by: Tal Carmeli <158452762+tcarmeli1@users.noreply.github.com> Co-authored-by: Andrew Scott <77340714+andrew-paloalto@users.noreply.github.com> Co-authored-by: yshamai <yshamai@paloaltonetworks.com> Co-authored-by: Daniel Tal <dtal@paloaltonetworks.com> Co-authored-by: Israel Lappe <79846863+ilappe@users.noreply.github.com> Co-authored-by: Crest Data <60967033+crestdatasystems@users.noreply.github.com> Co-authored-by: crestdatasystems <crestdatasystems@users.noreply.github.com> Co-authored-by: Kamal Qarain <kqarain@paloaltonetworks.com> Co-authored-by: MLainer1 <93524335+MLainer1@users.noreply.github.com> Co-authored-by: Laura Sangeao Fontán <103418101+laurasfo@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Copilot <copilot@github.com> Co-authored-by: dtroushinsky <dtroushinsky@paloaltonetworks.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
No description provided.