TheHive (thehive-project.org). Use this skill for ANY TheHive request — reading, creating, and updating data. Whenever a task involves TheHive, use this skill instead of calling the API directly.
数据分析
TheHive 5
试用TheHive 5 (strangebee.com). Use this skill for ANY TheHive 5 request — reading, creating, and updating data. Whenever a task involves TheHive 5, use this skill instead of calling the API directly.
它能做什么
TheHive 5 (strangebee.com). Use this skill for ANY TheHive 5 request — reading, creating, and updating data. Whenever a task involves TheHive 5, use this skill instead of calling the API directly.
技能文档
TheHive 5
Operate TheHive 5 through your OOMOL-connected account. This skill calls the thehive5 connector with the oo CLI; OOMOL injects credentials server-side, so you never handle raw tokens.
Running an action
Assume the user has already installed the oo CLI, signed in, and connected TheHive 5. Do not run oo auth login or open the connection URL proactively — just run the action. Fall back to First-time setup only when a command actually fails with an auth or connection error.
1. Inspect the contract to get the authoritative input/output schema before building a payload:
oo connector schema "thehive5" --action ""
2. Run the action with a JSON payload that matches the input schema:
oo connector run "thehive5" --action "" --data '' --json
--datatakes a JSON object string or@path/to/file.json; omit it to send{}.- The response is
{ "data": ..., "meta": { "executionId": "..." } }; the execution id lives undermeta.executionId.
Each action is listed below with a one-line description; actions that change state carry a [write] or [destructive] tag. Before constructing --data, fetch the action's live schema with oo connector schema to get its authoritative input fields.
Available actions
create_alert— Create a JSON alert without file observables in a TheHive 5 instance. [write]create_case— Create a case in a TheHive 5 instance. [write]get_alert— Retrieve one TheHive 5 alert by ID.get_case— Retrieve one TheHive 5 case by ID or numeric reference.list_alerts— List alerts visible to the connected TheHive 5 user.list_cases— List cases visible to the connected TheHive 5 user.
Safety
- Untagged actions are reads (get / list / search) — safe to run directly.
- Actions tagged
[write]change TheHive 5 state — confirm the exact payload and effect with the user before running. - Actions tagged
[destructive]remove or overwrite data — always confirm the target and get explicit approval first.
First-time setup
These are one-time steps — do not repeat them on every call. Run a step only when a command fails for the matching reason.
-
oo: command not found— install the oo CLI (other platforms: ):curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / Linuxirm https://cli.oomol.com/install.ps1 | iex # Windows PowerShell -
Not signed in / authentication error — sign in to your OOMOL account once:
oo auth login -
scope_missing/credential_expired/app_not_ready/app_not_found— TheHive 5 is not connected, or the connection expired or lacks a scope. Connect once (auth type: API key) at:https://console.oomol.com/app-connections?provider=thehive5 -
HTTP 402 /
OOMOL_INSUFFICIENT_CREDIT— billing stop. Recharge athttps://console.oomol.com/billing/token-rechargebefore retrying.
Resources
- TheHive 5 homepage: https://strangebee.com/thehive
相关技能
HoneyHive (honeyhive.ai). Use this skill for ANY HoneyHive request — reading, creating, updating, and deleting data. Whenever a task involves HoneyHive, use this skill instead of calling the API directly.
Beehiiv (beehiiv.com). Use this skill for ANY Beehiiv request — reading, creating, and updating data. Whenever a task involves Beehiiv, use this skill instea...
BugHerd (bugherd.com). Use this skill for ANY BugHerd request — reading, creating, and updating data. Whenever a task involves BugHerd, use this skill instea...
Honeycomb (honeycomb.io). Use this skill for ANY Honeycomb request — reading, creating, and updating data. Whenever a task involves Honeycomb, use this skill...
SupportBee (supportbee.com). Use this skill for ANY SupportBee request — reading, creating, updating, and deleting data. Whenever a task involves SupportBee,...