Splunk SOAR

Help with Display Extracted List Items Vertically in Format Block

Sidpet
Loves-to-Learn

Hi all,

I have a playbook where I extract multiple rule titles from an ES investigation.  Currently, the data shows like this in the results 

Rule Title: 2 items

0: item 1

1: item 2

when I extract it and create a servicenow ticket it shows the items like this ['item 1', 'item 2'].  I want them to be displayed like they show in the results vertically one item below the other and without the brackets. I tried the %% 

{0}

%% but it does not work. any ideas to help resolve this? 

I’m using SOAR version 6.4.x. Any guidance or best practices would be appreciated. still a novice learning the tool.

Thanks!

Labels (1)
0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...