Use AI to generate a detailed explanation of the detection logic in human language. You can provide a threat report or select a detection rule and receive an in-depth summary that covers all relevant details and fine points involved in the detection logic.
To generate a full summary:
Open Prime Architect and go to the Agentic Threat Research mode.
Click Code Editor in the upper right corner and paste your rule/query or threat report.
To generate a full summary based on a threat report, paste the threat report into the Code Editor on the right.
To generate a full summary based on a detection rule, paste your rule/query into the Code Editor on the right or select the plus icon (+) in the chat input field and select Add Detections to search for the detection in the platform.
To find a detection:
Type a search term in the search bar
Select the repo to search
Apply the filters if needed
Select a detection (once selected, it will be automatically added to the Code Editor)
Tip: To remove all content from the editor, click the Clear Editor button.
Select the Analyze button.
Select the Full Summary tool from the agentic AI tools options.
Click the Enter icon to proceed.
View the generated response on the left side of the screen.
Next Steps
Once a full summary has been generated, you can:
Copy your input rule/query to the clipboard and paste it into your system
Download your input rule/query as a file by selecting Save As > File.txt or save a rule/query to a custom repository by selecting Save As > New Rule
