Preview: This endpoint is currently in a preview state and is subject to breaking changes without warning.
Preview endpoint. This endpoint is in preview: its request and response shapes may change without a version increment. A v2 of this API is planned to supersede it, targeting 2026-11.
Returns the commands that recorded any activity in the time range across all tools, each annotated with its event_count, device_count, and the highest observed severity over the range, ordered by the optional metric parameter (defaults to event_count).
Backed by device_tool_command_hourly. A window with no command activity returns 200 with an empty commands array.
The optional, mutually exclusive min_severity (floor) and severity (exact match) query parameters filter the underlying hourly rows before aggregation, so the returned counts and severity reflect only that activity.
Note: device_count is a distinct count and is NOT additive: it does not sum across commands (a device that ran more than one command is counted under each).
Required Permissions: ai-visibility:read
| Time | Status | User Agent | |
|---|---|---|---|
Retrieving recent requests… | |||