home/categories/debugging/refractionpoint-lc-ai-marketplace-plugins-lc-essentials-skills-investigation-creation-skill-md
debuggingtoolsmarketplace ready

investigation-creation

Create investigations from security events, detections, or LCQL queries. Performs HOLISTIC investigations - not just process trees, but initial access hunting, org-wide scope assessment, lateral movement detection, and full host context. Builds Investigation Hive records documenting findings with events, detections, entities, and analyst notes. Use for incident investigation, threat hunting, alert triage, or building SOC working reports.

refractionPOINT
maintainer
refractionPOINT
آخر تحديث 1/19/2026
النجوم
2
التفرعات
1
quick start

Installation and usage

Create investigations from security events, detections, or LCQL queries. Performs HOLISTIC investigations - not just process trees, but initial access hunting, org-wide scope assessment, lateral movement detection, and full host context. Builds Investigation Hive records documenting findings with events, detections, entities, and analyst notes. Use for incident investigation, threat hunting, alert triage, or building SOC working reports.

التثبيت
$ install --globalskills.sh
الاستخدام

بعد التثبيت، يمكنك استخدام هذه المهارة بتشغيل الأمر التالي في الطرفية:

skills use investigation-creation