Skip to content

[ti_flashpoint] set X-FP-* headers for HTTP requests - #20566

Open
akshraj-crest wants to merge 2 commits into
elastic:mainfrom
akshraj-crest:ti_flashpoint-add_request_headers
Open

[ti_flashpoint] set X-FP-* headers for HTTP requests#20566
akshraj-crest wants to merge 2 commits into
elastic:mainfrom
akshraj-crest:ti_flashpoint-add_request_headers

Conversation

@akshraj-crest

@akshraj-crest akshraj-crest commented Aug 6, 2026

Copy link
Copy Markdown
Contributor
  • Enhancement

Proposed commit message

The Flashpoint API requests now carry the vendor-requested identification
headers: X-FP-IntegrationPlatform is set to "Elastic",
X-FP-IntegrationVersion to the package version and
X-FP-IntegrationPlatformVersion to the Elastic Agent version. Both
versions are taken from the policy template metadata when available
(this is the case for stacks at or above 9.3), otherwise they are set to
"unknown".

The headers are added to the alert, indicator and vulnerability data
streams.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

Author's Checklist

  • [ ]

How to test this PR locally

Related issues

Screenshots

@akshraj-crest
akshraj-crest requested review from a team as code owners August 6, 2026 05:35
@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

Reviewers

Buildkite won't run for external contributors automatically; you need to add a comment:

  • /test : will kick off a build in Buildkite.

NOTE: https://github.com/elastic/integrations/blob/main/.buildkite/pull-requests.json contains all those details.

@brijesh-elastic brijesh-elastic added enhancement New feature or request Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] Integration:ti_flashpoint Flashpoint labels Aug 6, 2026
@infra-vault-gh-plugin-prod

Copy link
Copy Markdown

Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

@brijesh-elastic brijesh-elastic left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@efd6

efd6 commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

/test

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

✅ All changelog entries have the correct PR link.

@elastic-vault-github-plugin-prod

Copy link
Copy Markdown
Contributor

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

@infra-vault-gh-plugin-prod

Copy link
Copy Markdown

💚 Build Succeeded

@mergify

mergify Bot commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

Tick the box to add this pull request to the merge queue (same as @mergifyio queue).

  • Queue this pull request

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request Integration:ti_flashpoint Flashpoint Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations]

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants