comment: |- Pre processing script for CrowdStrike Streaming, will not duplicate incidents(detection events) that have same Host. Will add entry to duplicate(older) incident notifying a duplicate incident was ignored. This automation runs using the default Limited User role, unless you explicitly change the permissions. For more information, see the section about permissions here: - For Cortex XSOAR 6 see https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/6.x/Cortex-XSOAR-Playbook-Design-Guide/Automations - For Cortex XSOAR 8 Cloud see https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/8/Cortex-XSOAR-Cloud-Documentation/Create-a-script - For Cortex XSOAR 8.7 On-prem see https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/8.7/Cortex-XSOAR-On-prem-Documentation/Create-a-script commonfields: id: CrowdStrikeStreamingPreProcessing version: -1 name: CrowdStrikeStreamingPreProcessing script: '' type: python subtype: python3 tags: - preProcessing - crowdStrike - crowdStrikeStreaming enabled: true scripttarget: 0 tests: - No test - this is a preprocessing script fromversion: 5.0.0 dockerimage: demisto/python3:3.12.13.10116658