The search must return @To and @From fields (mandatory for Twilio's API) in order to trigger the Twilo flow. If you do not include values for those fields then the action will log but not fail. Additions search result fields can be sent to the Flow's Parameters.
The following "metadata" about the search is always sent to Twilio:
- search_name
- sid
- rid
The sid and rid can be used to call back to Splunk Enterprise Security and update a notable (for example, add a user's SMS reply to a notable)
Updated via Add-On Builder
Corrected an error that caused search results to be skipped if there was a runtime error in a previous result.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.