Tool overrides changed v1
This entry is created whenever the decisions pinned on a single tool change, which override the connector’s access policy for that tool
WEBHOOK
telemetry_data_source.tool_overrides_changed.1
{
"action": "telemetry_data_source.tool_overrides_changed",
"actor": {
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"metadata": {
"user_base_role_slug": "admin",
"user_custom_role_slugs": "engineering,security"
},
"name": "John Doe",
"type": "user"
},
"context": {
"location": "1.2.3.4",
"user_agent": "Chrome/91.0.4472.114"
},
"metadata": {
"after": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"deny\"},\"set_at\":\"2026-01-02T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"before": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"allow\"},\"set_at\":\"2026-01-01T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"change_id": "01JD8ZQK9X0000000000000000",
"tool": "restart_service"
},
"occurred_at": "2021-08-17T13:28:57.801578Z",
"targets": [
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "Acme Deploy",
"type": "extension_connector"
},
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "restart_service",
"type": "extension_connector_tool"
}
],
"version": 1
}Authorizations
API key from your incident.io dashboard (Settings → API keys)
Response
200 - application/json
OK response.
The type of log entry that this is
Example:
"telemetry_data_source.tool_overrides_changed"
Show child attributes
Show child attributes
Example:
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"metadata": {
"user_base_role_slug": "admin",
"user_custom_role_slugs": "engineering,security"
},
"name": "John Doe",
"type": "user"
}
Show child attributes
Show child attributes
Example:
{
"location": "1.2.3.4",
"user_agent": "Chrome/91.0.4472.114"
}
Show child attributes
Show child attributes
Example:
{
"after": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"deny\"},\"set_at\":\"2026-01-02T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"before": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"allow\"},\"set_at\":\"2026-01-01T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"change_id": "01JD8ZQK9X0000000000000000",
"tool": "restart_service"
}
When the entry occurred
Example:
"2021-08-17T13:28:57.801578Z"
The custom field that was created
Show child attributes
Show child attributes
Example:
[
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "Acme Deploy",
"type": "extension_connector"
},
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "restart_service",
"type": "extension_connector_tool"
}
]
Which version the event is
Example:
1
Was this page helpful?
{
"action": "telemetry_data_source.tool_overrides_changed",
"actor": {
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"metadata": {
"user_base_role_slug": "admin",
"user_custom_role_slugs": "engineering,security"
},
"name": "John Doe",
"type": "user"
},
"context": {
"location": "1.2.3.4",
"user_agent": "Chrome/91.0.4472.114"
},
"metadata": {
"after": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"deny\"},\"set_at\":\"2026-01-02T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"before": "{\"surfaces\":{\"chat\":{\"value\":{\"type\":\"allow\"},\"set_at\":\"2026-01-01T00:00:00Z\",\"set_by\":\"01FCNDV6P870EA6S7TK1DSYDG0\"}}}",
"change_id": "01JD8ZQK9X0000000000000000",
"tool": "restart_service"
},
"occurred_at": "2021-08-17T13:28:57.801578Z",
"targets": [
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "Acme Deploy",
"type": "extension_connector"
},
{
"id": "01FCNDV6P870EA6S7TK1DSYDG0",
"name": "restart_service",
"type": "extension_connector_tool"
}
],
"version": 1
}