how to change the "to" address when an alert email is generated. I would like the "to" address to be pulled from the splunk query data that generated the alert.
Hi @dwing71641
Please use $field name$ from the search in the to mail address action
Thanks