Loading investigation data…
WorkspaceSecurity events
SIMULATED TELEMETRY
Canonical, immutable events from four simulated sources.
| Time (UTC) | Event | Source | Actor | Resource / endpoint | Outcome |
|---|---|---|---|---|---|
| 14:24:002026-09-15 | Previous role restoredEVT-SCENARIO-009{
"event_id": "EVT-SCENARIO-009",
"timestamp": "2026-09-15T14:24:00Z",
"source": "identity",
"event_type": "privilege_change",
"action": "role_revert",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"previous_role": "platform_admin",
"new_role": "engineer"
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-SCENARIO-009"
}
} | Identity | atlas.engineer.04203.0.113.77 | Identity Service | Success |
| 14:21:002026-09-15 | Sign-in from an unrecognized deviceEVT-SCENARIO-008{
"event_id": "EVT-SCENARIO-008",
"timestamp": "2026-09-15T14:21:00Z",
"source": "identity",
"event_type": "authentication",
"action": "login",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-02",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-02"
},
"attributes": {
"source_previously_seen": true,
"device_previously_seen": false,
"location_previously_seen": true
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-SCENARIO-008"
}
} | Identity | atlas.engineer.04203.0.113.77 | Identity Service | Success |
| 14:17:002026-09-15 | Account query accessed 2,400 recordsEVT-SCENARIO-007{
"event_id": "EVT-SCENARIO-007",
"timestamp": "2026-09-15T14:17:00Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": "ACC-SYN-BATCH",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/internal/v1/accounts/query"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"records_accessed": 2400,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-SCENARIO-007"
}
} | Atlas | atlas.engineer.04203.0.113.77 | /internal/v1/accounts/query | Success |
| 14:14:002026-09-15 | Sensitive account resource accessedEVT-SCENARIO-006{
"event_id": "EVT-SCENARIO-006",
"timestamp": "2026-09-15T14:14:00Z",
"source": "atlas",
"event_type": "account_access",
"action": "read_sensitive",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": "ACC-SYN-0042",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/internal/v1/accounts/ACC-SYN-0042/profile"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"sensitive": true
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-SCENARIO-006"
}
} | Atlas | atlas.engineer.04203.0.113.77 | /internal/v1/accounts/ACC-SYN-0042/profile | Success |
| 14:11:172026-09-15 | Internal API requestEVT-SCENARIO-ENUM-18{
"event_id": "EVT-SCENARIO-ENUM-18",
"timestamp": "2026-09-15T14:11:17Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/18"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": true,
"distinct_endpoints": 18
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-18"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/18 | Success |
| 14:11:162026-09-15 | Internal API requestEVT-SCENARIO-ENUM-17{
"event_id": "EVT-SCENARIO-ENUM-17",
"timestamp": "2026-09-15T14:11:16Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/17"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 17
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-17"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/17 | Success |
| 14:11:152026-09-15 | Internal API requestEVT-SCENARIO-ENUM-16{
"event_id": "EVT-SCENARIO-ENUM-16",
"timestamp": "2026-09-15T14:11:15Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/16"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 16
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-16"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/16 | Success |
| 14:11:142026-09-15 | Internal API requestEVT-SCENARIO-ENUM-15{
"event_id": "EVT-SCENARIO-ENUM-15",
"timestamp": "2026-09-15T14:11:14Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/15"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 15
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-15"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/15 | Success |
| 14:11:132026-09-15 | Internal API requestEVT-SCENARIO-ENUM-14{
"event_id": "EVT-SCENARIO-ENUM-14",
"timestamp": "2026-09-15T14:11:13Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/14"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 14
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-14"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/14 | Success |
| 14:11:122026-09-15 | Internal API requestEVT-SCENARIO-ENUM-13{
"event_id": "EVT-SCENARIO-ENUM-13",
"timestamp": "2026-09-15T14:11:12Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/13"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 13
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-13"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/13 | Success |
| 14:11:112026-09-15 | Internal API requestEVT-SCENARIO-ENUM-12{
"event_id": "EVT-SCENARIO-ENUM-12",
"timestamp": "2026-09-15T14:11:11Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/12"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 12
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-12"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/12 | Success |
| 14:11:102026-09-15 | Internal API requestEVT-SCENARIO-ENUM-11{
"event_id": "EVT-SCENARIO-ENUM-11",
"timestamp": "2026-09-15T14:11:10Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/11"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 11
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-11"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/11 | Success |
| 14:11:092026-09-15 | Internal API requestEVT-SCENARIO-ENUM-10{
"event_id": "EVT-SCENARIO-ENUM-10",
"timestamp": "2026-09-15T14:11:09Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/10"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 10
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-10"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/10 | Success |
| 14:11:082026-09-15 | Internal API requestEVT-SCENARIO-ENUM-09{
"event_id": "EVT-SCENARIO-ENUM-09",
"timestamp": "2026-09-15T14:11:08Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/09"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 9
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-09"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/09 | Success |
| 14:11:072026-09-15 | Internal API requestEVT-SCENARIO-ENUM-08{
"event_id": "EVT-SCENARIO-ENUM-08",
"timestamp": "2026-09-15T14:11:07Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/08"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 8
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-08"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/08 | Success |
| 14:11:062026-09-15 | Internal API requestEVT-SCENARIO-ENUM-07{
"event_id": "EVT-SCENARIO-ENUM-07",
"timestamp": "2026-09-15T14:11:06Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/07"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 7
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-07"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/07 | Success |
| 14:11:052026-09-15 | Internal API requestEVT-SCENARIO-ENUM-06{
"event_id": "EVT-SCENARIO-ENUM-06",
"timestamp": "2026-09-15T14:11:05Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/06"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 6
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-06"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/06 | Success |
| 14:11:042026-09-15 | Internal API requestEVT-SCENARIO-ENUM-05{
"event_id": "EVT-SCENARIO-ENUM-05",
"timestamp": "2026-09-15T14:11:04Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/05"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 5
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-05"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/05 | Success |
| 14:11:032026-09-15 | Internal API requestEVT-SCENARIO-ENUM-04{
"event_id": "EVT-SCENARIO-ENUM-04",
"timestamp": "2026-09-15T14:11:03Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/04"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 4
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-04"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/04 | Success |
| 14:11:022026-09-15 | Internal API requestEVT-SCENARIO-ENUM-03{
"event_id": "EVT-SCENARIO-ENUM-03",
"timestamp": "2026-09-15T14:11:02Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/03"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 3
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-03"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/03 | Success |
| 14:11:012026-09-15 | Internal API requestEVT-SCENARIO-ENUM-02{
"event_id": "EVT-SCENARIO-ENUM-02",
"timestamp": "2026-09-15T14:11:01Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/02"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 2
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-02"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/02 | Success |
| 14:11:002026-09-15 | Internal API requestEVT-SCENARIO-ENUM-01{
"event_id": "EVT-SCENARIO-ENUM-01",
"timestamp": "2026-09-15T14:11:00Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "platform_admin"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Admin Service",
"endpoint": "/internal/v1/catalog/01"
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"method": "GET",
"status_code": 200,
"enumeration": false,
"distinct_endpoints": 1
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-SCENARIO-ENUM-01"
}
} | Api gateway | atlas.engineer.04203.0.113.77 | /internal/v1/catalog/01 | Success |
| 14:07:002026-09-15 | Privileged role assignedEVT-SCENARIO-004{
"event_id": "EVT-SCENARIO-004",
"timestamp": "2026-09-15T14:07:00Z",
"source": "identity",
"event_type": "privilege_change",
"action": "role_assign",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"previous_role": "engineer",
"new_role": "platform_admin"
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-SCENARIO-004"
}
} | Identity | atlas.engineer.04203.0.113.77 | Identity Service | Success |
| 14:03:002026-09-15 | MFA challenge acceptedEVT-SCENARIO-003{
"event_id": "EVT-SCENARIO-003",
"timestamp": "2026-09-15T14:03:00Z",
"source": "identity",
"event_type": "mfa",
"action": "mfa_accept",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-SCENARIO-003"
}
} | Identity | atlas.engineer.04203.0.113.77 | Identity Service | Success |
| 14:02:002026-09-15 | Sign-in from an unrecognized deviceEVT-SCENARIO-002{
"event_id": "EVT-SCENARIO-002",
"timestamp": "2026-09-15T14:02:00Z",
"source": "identity",
"event_type": "authentication",
"action": "login",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "203.0.113.77",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_b"
},
"device": {
"device_id": "DEV-UNRECOGNIZED-01",
"trusted": false,
"posture": "unknown"
},
"session": {
"session_id": "SES-DEV-UNRECOGNIZED-01"
},
"attributes": {
"source_previously_seen": false,
"device_previously_seen": false,
"location_previously_seen": false
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-SCENARIO-002"
}
} | Identity | atlas.engineer.04203.0.113.77 | Identity Service | Success |
Server-side search and pagination. Source payloads are displayed as inert text.