Alerts
Cross-tenant incident queue · 10 open · 2 critical
Queue
12 of 12 alerts · click a row to triage
| Severity | Alert | Tenant | Category | Status | Age | Analyst | SLA timer |
|---|---|---|---|---|---|---|---|
| critical | Bulk PII exfiltration attempt via prompt chaining ALR-2481 | Falcon Bank | Data leakage | investigating | 42m | L. Haddad | 1h 18m left |
| critical | Agent heartbeat degraded on gateway stack ALR-2480 | CityGov Services | Availability | new | 26m | Unassigned | 3h 34m left |
| high | Prompt injection spike on support copilot ALR-2479 | MedCare Group | Prompt injection | investigating | 2h 5m | O. Khalil | 58m left |
| high | PHI detected in model response ALR-2478 | MedCare Group | PII exposure | contained | 6h | A. Rahman | Met |
| high | Credential stuffing pattern on portal SSO ALR-2477 | Falcon Bank | Suspicious access | new | 28m | Unassigned | 2h 32m left |
| high | Jailbreak attempts from single session ALR-2476 | CityGov Services | Jailbreak | monitoring | 3h 20m | L. Haddad | 2h 10m left |
| medium | Repeated policy block — same user ALR-2475 | GulfPay | Suspicious access | investigating | 4h | O. Khalil | 4h 32m left |
| medium | Toxicity threshold exceeded (internal bot) ALR-2474 | RetailCo | Toxicity | new | 1h 12m | Unassigned | 6h left |
| medium | Anomalous after-hours usage ALR-2473 | CityGov Services | Suspicious access | monitoring | 9h | S. Kumar | Met |
| medium | PII redaction rate anomaly ALR-2472 | MedCare Group | PII exposure | investigating | 5h 40m | O. Khalil | 1h 05m left |
| low | Unapproved model egress attempt (blocked) ALR-2471 | Falcon Bank | Data leakage | closed | 1d | S. Kumar | Met |
| low | Toxicity detector version drift ALR-2470 | TransLog | Toxicity | closed | 2d | A. Rahman | Met |
Alert records contain detection metadata only — the underlying prompts, responses and documents remain inside each tenant environment.