Splunk SOAR (f.k.a. Phantom)

Markdown in add_task API function

Izzet
New Member

Phantom 4.9 supports Markdown notes and it is possible to add markdown note using GUI. But how to use markdown with the add_task API function? Like 

phantom.add_task(container=None, name=None, owner=None, role=None, trace=False)

By default it doesn't recognize markdown and just pastes a note as a raw text. 

Labels (1)
0 Karma
1 Solution

phanTom
SplunkTrust
SplunkTrust

@Izzet This is the `add_task` API call and this does not (AFAIK) create a note. You can use the phantom.add_note() and stipulate a task_id to assign the note to a task. I believe that markdown is now the default so any notes added will accept/interpret markdown. The docs don't seem to point to setting Markdown or HTML. All I know is any notes in HTML from 4.8 or previous need to be manually set to HTML for it to be properly interpreted. 
https://docs.splunk.com/Documentation/Phantom/4.9/PlaybookAPI/ContainerAPI#add_note 
If this helped, please give a like below!

View solution in original post

phanTom
SplunkTrust
SplunkTrust

@Izzet This is the `add_task` API call and this does not (AFAIK) create a note. You can use the phantom.add_note() and stipulate a task_id to assign the note to a task. I believe that markdown is now the default so any notes added will accept/interpret markdown. The docs don't seem to point to setting Markdown or HTML. All I know is any notes in HTML from 4.8 or previous need to be manually set to HTML for it to be properly interpreted. 
https://docs.splunk.com/Documentation/Phantom/4.9/PlaybookAPI/ContainerAPI#add_note 
If this helped, please give a like below!

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...