Loading investigation data…
WorkspaceSecurity events
SIMULATED TELEMETRY
Canonical, immutable events from four simulated sources.
| Time (UTC) | Event | Source | Actor | Resource / endpoint | Outcome |
|---|---|---|---|---|---|
| 13:41:022026-09-15 | Account query accessed 64 recordsEVT-003984{
"event_id": "EVT-003984",
"timestamp": "2026-09-15T13:41:02Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-015",
"username": "atlas.engineer.15",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0021",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.25",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-015",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-015"
},
"attributes": {
"records_accessed": 64,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-003984"
}
} | Atlas | atlas.engineer.15192.0.2.25 | /v1/accounts/positions | Success |
| 13:40:562026-09-15 | Sign-in from a recognized deviceEVT-003860{
"event_id": "EVT-003860",
"timestamp": "2026-09-15T13:40:56Z",
"source": "identity",
"event_type": "authentication",
"action": "login",
"outcome": "success",
"actor": {
"user_id": "USR-009",
"username": "atlas.engineer.09",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "192.0.2.19",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-009",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-009"
},
"attributes": {
"source_previously_seen": true,
"device_previously_seen": true,
"location_previously_seen": true
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-003860"
}
} | Identity | atlas.engineer.09192.0.2.19 | Identity Service | Success |
| 13:40:552026-09-15 | Account query accessed 84 recordsEVT-001335{
"event_id": "EVT-001335",
"timestamp": "2026-09-15T13:40:55Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-008",
"username": "atlas.engineer.08",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0002",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.18",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-008",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-008"
},
"attributes": {
"records_accessed": 84,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-001335"
}
} | Atlas | atlas.engineer.08192.0.2.18 | /v1/accounts/positions | Success |
| 13:40:492026-09-15 | Internal API requestEVT-001989{
"event_id": "EVT-001989",
"timestamp": "2026-09-15T13:40:49Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-006",
"username": "atlas.engineer.06",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/v1/accounts"
},
"network": {
"source_ip": "192.0.2.16",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-006",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-006"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-001989"
}
} | Api gateway | atlas.engineer.06192.0.2.16 | /v1/accounts | Success |
| 13:40:482026-09-15 | Internal API requestEVT-000597{
"event_id": "EVT-000597",
"timestamp": "2026-09-15T13:40:48Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-024",
"username": "atlas.engineer.24",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/health"
},
"network": {
"source_ip": "192.0.2.34",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-024",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-024"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-000597"
}
} | Api gateway | atlas.engineer.24192.0.2.34 | /health | Success |
| 13:40:412026-09-15 | Posture checkEVT-003658{
"event_id": "EVT-003658",
"timestamp": "2026-09-15T13:40:41Z",
"source": "endpoint",
"event_type": "device_posture",
"action": "posture_check",
"outcome": "success",
"actor": {
"user_id": "USR-023",
"username": "atlas.engineer.23",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Endpoint telemetry",
"endpoint": null
},
"network": {
"source_ip": "192.0.2.33",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-023",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-023"
},
"attributes": {
"security_agent": "healthy"
},
"raw": {
"synthetic": true,
"adapter": "endpoint",
"source_event_id": "EVT-003658"
}
} | Endpoint | atlas.engineer.23192.0.2.33 | Endpoint telemetry | Success |
| 13:40:302026-09-15 | Account query accessed 42 recordsEVT-000679{
"event_id": "EVT-000679",
"timestamp": "2026-09-15T13:40:30Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-011",
"username": "atlas.engineer.11",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0077",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.21",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-011",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-011"
},
"attributes": {
"records_accessed": 42,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-000679"
}
} | Atlas | atlas.engineer.11192.0.2.21 | /v1/accounts/positions | Success |
| 13:40:292026-09-15 | Internal API requestEVT-000517{
"event_id": "EVT-000517",
"timestamp": "2026-09-15T13:40:29Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-024",
"username": "atlas.engineer.24",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/health"
},
"network": {
"source_ip": "192.0.2.34",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-024",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-024"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-000517"
}
} | Api gateway | atlas.engineer.24192.0.2.34 | /health | Success |
| 13:40:232026-09-15 | Posture checkEVT-000638{
"event_id": "EVT-000638",
"timestamp": "2026-09-15T13:40:23Z",
"source": "endpoint",
"event_type": "device_posture",
"action": "posture_check",
"outcome": "success",
"actor": {
"user_id": "USR-013",
"username": "atlas.engineer.13",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Endpoint telemetry",
"endpoint": null
},
"network": {
"source_ip": "192.0.2.23",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-013",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-013"
},
"attributes": {
"security_agent": "healthy"
},
"raw": {
"synthetic": true,
"adapter": "endpoint",
"source_event_id": "EVT-000638"
}
} | Endpoint | atlas.engineer.13192.0.2.23 | Endpoint telemetry | Success |
| 13:40:192026-09-15 | Account query accessed 73 recordsEVT-002220{
"event_id": "EVT-002220",
"timestamp": "2026-09-15T13:40:19Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-013",
"username": "atlas.engineer.13",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0068",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.23",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-013",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-013"
},
"attributes": {
"records_accessed": 73,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-002220"
}
} | Atlas | atlas.engineer.13192.0.2.23 | /v1/accounts/positions | Success |
| 13:40:172026-09-15 | Account query accessed 55 recordsEVT-001464{
"event_id": "EVT-001464",
"timestamp": "2026-09-15T13:40:17Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-024",
"username": "atlas.engineer.24",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0091",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.34",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-024",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-024"
},
"attributes": {
"records_accessed": 55,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-001464"
}
} | Atlas | atlas.engineer.24192.0.2.34 | /v1/accounts/positions | Success |
| 13:40:142026-09-15 | Internal API requestEVT-001591{
"event_id": "EVT-001591",
"timestamp": "2026-09-15T13:40:14Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-003",
"username": "atlas.engineer.03",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/health"
},
"network": {
"source_ip": "192.0.2.13",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-003",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-003"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-001591"
}
} | Api gateway | atlas.engineer.03192.0.2.13 | /health | Success |
| 13:40:132026-09-15 | Internal API requestEVT-000445{
"event_id": "EVT-000445",
"timestamp": "2026-09-15T13:40:13Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-007",
"username": "atlas.engineer.07",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/v1/quotes"
},
"network": {
"source_ip": "192.0.2.17",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-007",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-007"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-000445"
}
} | Api gateway | atlas.engineer.07192.0.2.17 | /v1/quotes | Success |
| 13:40:102026-09-15 | Sign-in from a recognized deviceEVT-001548{
"event_id": "EVT-001548",
"timestamp": "2026-09-15T13:40:10Z",
"source": "identity",
"event_type": "authentication",
"action": "login",
"outcome": "success",
"actor": {
"user_id": "USR-014",
"username": "atlas.engineer.14",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Identity Service",
"endpoint": null
},
"network": {
"source_ip": "192.0.2.24",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-014",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-014"
},
"attributes": {
"source_previously_seen": true,
"device_previously_seen": true,
"location_previously_seen": true
},
"raw": {
"synthetic": true,
"adapter": "identity",
"source_event_id": "EVT-001548"
}
} | Identity | atlas.engineer.14192.0.2.24 | Identity Service | Success |
| 13:40:052026-09-15 | Account query accessed 71 recordsEVT-000642{
"event_id": "EVT-000642",
"timestamp": "2026-09-15T13:40:05Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-023",
"username": "atlas.engineer.23",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0051",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.33",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-023",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-023"
},
"attributes": {
"records_accessed": 71,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-000642"
}
} | Atlas | atlas.engineer.23192.0.2.33 | /v1/accounts/positions | Success |
| 13:40:032026-09-15 | Internal API requestEVT-002623{
"event_id": "EVT-002623",
"timestamp": "2026-09-15T13:40:03Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-011",
"username": "atlas.engineer.11",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/v1/accounts"
},
"network": {
"source_ip": "192.0.2.21",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-011",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-011"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-002623"
}
} | Api gateway | atlas.engineer.11192.0.2.21 | /v1/accounts | Success |
| 13:39:582026-09-15 | Account query accessed 66 recordsEVT-001048{
"event_id": "EVT-001048",
"timestamp": "2026-09-15T13:39:58Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-003",
"username": "atlas.engineer.03",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0082",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.13",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-003",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-003"
},
"attributes": {
"records_accessed": 66,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-001048"
}
} | Atlas | atlas.engineer.03192.0.2.13 | /v1/accounts/positions | Success |
| 13:39:532026-09-15 | Internal API requestEVT-001961{
"event_id": "EVT-001961",
"timestamp": "2026-09-15T13:39:53Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-003",
"username": "atlas.engineer.03",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/v1/positions"
},
"network": {
"source_ip": "192.0.2.13",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-003",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-003"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-001961"
}
} | Api gateway | atlas.engineer.03192.0.2.13 | /v1/positions | Success |
| 13:39:522026-09-15 | Account query accessed 2 recordsEVT-002190{
"event_id": "EVT-002190",
"timestamp": "2026-09-15T13:39:52Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-023",
"username": "atlas.engineer.23",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0097",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.33",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-023",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-023"
},
"attributes": {
"records_accessed": 2,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-002190"
}
} | Atlas | atlas.engineer.23192.0.2.33 | /v1/accounts/positions | Success |
| 13:39:462026-09-15 | Internal API requestEVT-001566{
"event_id": "EVT-001566",
"timestamp": "2026-09-15T13:39:46Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-004",
"username": "atlas.engineer.04",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/health"
},
"network": {
"source_ip": "192.0.2.14",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-004",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-004"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-001566"
}
} | Api gateway | atlas.engineer.04192.0.2.14 | /health | Success |
| 13:39:392026-09-15 | Account query accessed 16 recordsEVT-003339{
"event_id": "EVT-003339",
"timestamp": "2026-09-15T13:39:39Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-009",
"username": "atlas.engineer.09",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0003",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.19",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-009",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-009"
},
"attributes": {
"records_accessed": 16,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-003339"
}
} | Atlas | atlas.engineer.09192.0.2.19 | /v1/accounts/positions | Success |
| 13:39:292026-09-15 | Account query accessed 86 recordsEVT-003438{
"event_id": "EVT-003438",
"timestamp": "2026-09-15T13:39:29Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-024",
"username": "atlas.engineer.24",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0047",
"resource_type": "account",
"service": "Account Service",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.34",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-024",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-024"
},
"attributes": {
"records_accessed": 86,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-003438"
}
} | Atlas | atlas.engineer.24192.0.2.34 | /v1/accounts/positions | Success |
| 13:39:272026-09-15 | Internal API requestEVT-003247{
"event_id": "EVT-003247",
"timestamp": "2026-09-15T13:39:27Z",
"source": "api_gateway",
"event_type": "api_request",
"action": "request",
"outcome": "success",
"actor": {
"user_id": "USR-022",
"username": "atlas.engineer.22",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "API Gateway",
"endpoint": "/v1/orders"
},
"network": {
"source_ip": "192.0.2.32",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-022",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-022"
},
"attributes": {
"method": "GET",
"status_code": 200
},
"raw": {
"synthetic": true,
"adapter": "api_gateway",
"source_event_id": "EVT-003247"
}
} | Api gateway | atlas.engineer.22192.0.2.32 | /v1/orders | Success |
| 13:39:262026-09-15 | Account query accessed 41 recordsEVT-000702{
"event_id": "EVT-000702",
"timestamp": "2026-09-15T13:39:26Z",
"source": "atlas",
"event_type": "data_access",
"action": "query",
"outcome": "success",
"actor": {
"user_id": "USR-011",
"username": "atlas.engineer.11",
"role": "engineer"
},
"target": {
"resource_id": "ACC-SYN-0026",
"resource_type": "account",
"service": "Trading API",
"endpoint": "/v1/accounts/positions"
},
"network": {
"source_ip": "192.0.2.21",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-011",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-011"
},
"attributes": {
"records_accessed": 41,
"baseline_max_records": 90
},
"raw": {
"synthetic": true,
"adapter": "atlas",
"source_event_id": "EVT-000702"
}
} | Atlas | atlas.engineer.11192.0.2.21 | /v1/accounts/positions | Success |
| 13:39:242026-09-15 | Posture checkEVT-001726{
"event_id": "EVT-001726",
"timestamp": "2026-09-15T13:39:24Z",
"source": "endpoint",
"event_type": "device_posture",
"action": "posture_check",
"outcome": "success",
"actor": {
"user_id": "USR-011",
"username": "atlas.engineer.11",
"role": "engineer"
},
"target": {
"resource_id": null,
"resource_type": "service",
"service": "Endpoint telemetry",
"endpoint": null
},
"network": {
"source_ip": "192.0.2.21",
"destination_ip": "198.51.100.10",
"user_agent": "AtlasSynthetic/1.0",
"location": "synthetic_region_a"
},
"device": {
"device_id": "DEV-011",
"trusted": true,
"posture": "compliant"
},
"session": {
"session_id": "SES-DEV-011"
},
"attributes": {
"security_agent": "healthy"
},
"raw": {
"synthetic": true,
"adapter": "endpoint",
"source_event_id": "EVT-001726"
}
} | Endpoint | atlas.engineer.11192.0.2.21 | Endpoint telemetry | Success |
Server-side search and pagination. Source payloads are displayed as inert text.