Skip to content

Incident Response Retainer ​

App in CyberLegion Managed Shield · Managed Security

Incident Response Retainer is an app in the Managed Shield solution on CyberLegion.

Start with Incident Response Retainer

Use your tenant account to open it, sign in, or request access. API calls use the same governed execution endpoint as the console.

API endpoint
POST https://api.dev.cyberlegion.io/execute
Authorization: Bearer <YOUR_TENANT_API_TOKEN>
Content-Type: application/json

{
  "app": "managedshield-rapid",
  "input": {}
}

How To Use It ​

Incident Response Retainer is delivered as a CyberLegion app inside the Managed Shield solution: a packaged capability your team uses through the console, in chat, or from the public API. Availability follows your tenant plan, roles, workspace policy, and configured permissions.

Chat ​

Work with Incident Response Retainer conversationally in the CyberLegion console. Ask in natural language, review the plan, and keep results in your workspace history. Use the action panel above to open this app in the console.

API ​

Drive Incident Response Retainer from your own systems through the governed CyberLegion execution endpoint. The action panel above shows the current environment's endpoint and request shape; the app id managedshield-rapid selects this app. Use your tenant API token and keep it in your own vault or runtime environment.

Every call is authenticated, authorized, and audited within your tenant.

Use the action panel above for sign up, sign in, the console, the website catalog, support, and the API endpoint. Those links resolve from the active docs environment.

Need help?

Use the Support action above, see the CyberLegion Managed Shield solution, or browse the full app catalog.