Notification Types
- Incident alerts — New incidents by severity level
- Gamebook activity — Action execution results and pending approvals
- System alerts — Module status changes and deployment notifications
Configuration
- Navigate to Settings → Notifications
- Add email recipients
- Configure severity filters (which severity levels trigger notifications)
- Select which workspaces to monitor
Module Requirements
| Feature | XDR Module | XDR + SIEM Module |
|---|---|---|
| Basic notifications | Limited | ✅ Full |
| Custom severity filters | Limited | ✅ Full |
| Real-time delivery | ❌ | ✅ |