Custom alert actions overview
Unique use cases can require custom alerting functionality and integration.
Use the Splunk custom alert action API to create alert action apps that admins can download and install from Splunkbase. Users can access and configure installed custom alert actions in Splunk Web. The API lets you create a user experience consistent with the standard Splunk alerting workflow.
Use the following resources to learn how to build a custom alert action.
- API overview
- Custom alert action component reference
- Build custom alert action components
- Create custom alert configuration files
- Create a custom alert script
- Define a custom alert action user interface
- Optional custom alert action components
- Advanced options for working with custom alert actions
- Migration advice for script alert actions
- Convert a script alert action to a custom alert action
To try out a custom alert action, you can use the built-in webhook alert action to send notifications to a web resource, like a chat room or blog. For more information, see Use a webhook alert action in the Alerting Manual.
Custom visualizations in SplunkJS
Custom alert action component reference
This documentation applies to the following versions of Splunk Cloud Platform™: 8.2.2203, 8.1.2103, 8.2.2105, 8.2.2107, 8.2.2109, 8.2.2111, 8.2.2112, 8.2.2201 (latest FedRAMP release), 8.2.2202, 8.2.2106