A no-op placeholder script used by visual-only widgets (e.g. Page Break, Text Widget) that require a script dataType but do not need to query any data source. Returns a mock result to prevent unnecessary database queries.
Common Widgets
- Details
- Content
- Dependencies
- Version History
Frequently used widgets pack.
| Name | Description |
|---|---|
| WidgetNoOp | |
| RSSWidget | Script Widget - RSS Feed. |
| MyToDoTasksWidget | A script that creates a table of all the ToDo tasks assigned to the current user. |
| FeedIntegrationErrorWidget | Returns a table widget of enabled feed integration instances that errors out on indicators fetch. |
| Name | Description |
|---|---|
My Messages | |
Top Active Playbooks | |
Busy Workers Count per Engine | Current number of busy workers per engine |
CPU Current Usage | |
Manual Verdict Indicators | |
Executions by status per Automated Tasks (top 5) | Executions by status per Automated Tasks (top 5) |
Least executed Commands per Instance | Least executed Commands per Instance |
Disk Usage % per Engine (last 24h) | Disk usage percentage per engine in the previous 24 hours |
Top executed Commands | Top executed Commands |
Top Users Closed Manual Tasks | Top Users Closed Manual Tasks |
MTTC by Severity | |
Active Incidents Assigned by User | |
Errors by Incident Type per Command (top 5) | Errors by Incident Type per Command (top 5) |
Task executions | Task executions |
Unassigned Incidents | |
Incidents in Error Run Status | |
Remediation SLA by Status | The remediation SLA status of all incidents that started a remediation process. The widget takes into account incidents from the last 30 days by default, and inherits new time range when the dashboard time changes. |
Average runtime per Automation (top 5) | Average runtime per Automation (top 5) |
Incidents Occurred Per Day | |
Top 10 Attack Pattern Indicators in Related Incidents | |
Incidents by Phase | |
Command executions per Integration Category | Command executions per Integration Category |
Investigation Activity Timeline | |
Most Active Investigations | |
Workers per Engine | Current number of workers per engine |
MTTR by Severity | |
Page Break Widget | Use the page break widget in a report to force a page break before the widgets that follow. |
Late Incidents | |
Incidents by Role | |
Active Indicators by Verdict | |
Late SLA by Type | |
Incident Types by Severity | |
Elastic Disk Current Usage | Elastic Disk Current Usage % |
Average runtime by Incident Type per Playbook (top 5) | Average runtime by Incident Type per Playbook (top 5) |
Command executions per Incident Type | Command executions per Incident Type |
Indicators in Related Incidents | |
Command average runtime per Instance (top 5) | Command average runtime per Instance (top 5) |
Tasks By State | |
Command execution errors | Command execution errors |
Most Active Users | |
Feed Integrations Errors | Feed integrations indicators fetch errors |
Unassigned Pending Incidents | |
Unit 42 Blog Feed | |
Closed Incidents by Role | |
Important Messages | |
Latest Messages | |
Incidents Top Close Analysts | |
Memory Usage % per Engine (last 24h) | Memory usage percentage per engine in the previous 24 hours |
MTTD by Severity | |
Busy Workers per Engine (last 24h) | Number of busy workers per engine in the previous 24 hours |
Failed Automation executions per Incident Types (top 5) | Failed Automation executions per Incident Types (top 5) |
Return On Investment (ROI) | |
Playbook run errors | Playbook run errors |
Least executed Commands | Least executed Commands |
Server CPU Usage % (last 24h) | Server CPU usage in the previous 24 hours |
Unassigned Incidents | |
Open Tasks Per User | |
Mean Time to Containment | |
Incidents By Close Reason | |
CPU Usage % per Engine | Current CPU usage percentage per engine |
Feeds Errors | |
Failed Playbooks runs | Failed Playbooks runs |
Active Incidents by Role | |
MTTT by Severity | |
Command execution errors per Instance | Command execution errors per Instance |
Manual Verdict Indicators by User | |
TopMaliciousRatioIndicators | Malicious Ratio indicator widget shows indicator that appear in high ration at bad incidents |
MTTR by Type (in minutes) | Shows changes in Mean Time to Resolution (in minutes), over time, while differentiating between incident types. |
Elastic JVM Memory Current Usage | Elastic JVM Memory Current Usage % |
Unassigned Active Incidents | |
My Tasks | |
Average runtime per Playbook (top 5) | Average runtime per Playbook (top 5) |
Server Memory Usage % (last 24h) | Server memory usage % (previous 24 hours) |
Task execution errors | Task execution errors |
Active Incidents - Line chart | |
Late Tasks | |
Relationship Generating Integrations | |
Late Tasks by User | |
Running playbooks | |
Memory Current Usage | |
Manual Command execution errors (top 5) | Manual Command execution errors (top 5) |
Detection SLA by Status | The detection SLA status of all incidents that their severity was determined. The widget takes into account incidents from the last 30 days by default, and inherits new time range when the dashboard time changes. |
Within SLA by Type | |
Malicious Indicators Activity by Type | |
Late Incidents | |
MTTR Occurred by Type | |
Mean Time to Detection | The mean time (average time) to detection across all incidents that their severity was determined. The widget takes into account incidents from the last 30 days by default. |
Memory Usage % per Engine | Current memory usage percentage per engine |
Closed By Dbot | Showing percentage of incidents handled and closed by DBot, without an owner being assigned to, across all incidents in the provided period |
Active Indicators Volumes by Feed | |
Mean Time to Triage | |
Indicators Activity by Type | |
Active Incidents - Pie chart | |
Average Incident Duration by Role (Avg) | |
Malicious Indicators Activity | |
Command execution errors per Integration Category | Command execution errors per Integration Category |
Image | |
Commands executed | Commands executed |
Executions by status per Manual Tasks (top 5) | Executions by status per Manual Tasks (top 5) |
Active vs Expired Indicators | |
Average runtime for Playbooks | Average runtime for Playbooks |
MTTD by Type | A widget that shows the Mean Time to Detection, by incident type. |
Unassigned Closed Incidents | |
Average runtime by Instance per Command (top 5) | Average runtime by Instance per Command (top 5) |
Playbook runs | Playbook runs |
Most Active Integrations | |
SLA by Incident Type | |
Disk Current Usage | |
Malicious/Suspicious Indicators in Incidents | |
Incidents Dropped in Preprocessing | |
Top 10 File Indicators in Related Incidents | |
Elastic CPU Current Usage | Elasticsearch CPU Current Usage % |
Indicators Activity | |
Command executions errors | Command executions errors |
CPU Usage % per Engine (last 24h) | CPU usage percentage per engine in the previous 24 hours |
Text Widget | |
Mean Time to Resolution (Occurred) | |
Command execution type | Command execution type |
Disk Usage % per Engine | Current disk usage percentage per engine |
MTTR by Type | Shows changes in Mean Time to Resolution (in hours), over time, while differentiating between incident types. |
Incident Severity by Type | |
My ToDo Tasks | A widget that presents a table of all the ToDo tasks assigned to the current user. |
Failed Manual Tasks | Failed Manual Tasks |
| Pack Name | Pack By |
|---|---|
| Base | By: Cortex XSOAR |
| Common Scripts | By: Cortex XSOAR |
| Pack Name | Pack By |
|---|
| Pack Name | Pack By |
|---|---|
| Common Scripts | By: Cortex XSOAR |
| Base | By: Cortex XSOAR |
| Cortex REST API | By: Cortex XSOAR |
Scripts
New: WidgetNoOp
- Added a new no-op placeholder script used by visual-only widgets (e.g. Page Break, Text Widget) that require a script dataType but do not need to query any data source. Returns an empty result to prevent unnecessary database queries.
Widgets
Page Break Widget
- Changed the dataType from incidents to scripts and set query to WidgetNoOp to prevent unnecessary database queries against the incidents table when the widget is rendered.
Text Widget
- Changed the dataType from incidents to scripts and set query to WidgetNoOp to prevent unnecessary database queries against the incidents table when the widget is rendered.
- 43572
Download
PUBLISHER
PLATFORMS
INFO
| Certification | Certified | Read more |
| Supported By | Cortex | |
| Created | June 30, 2020 | |
| Last Release | July 5, 2026 |
