↳ GitHub sourceConnector

PRODAFT USTA - Payment Card Fraud Intelligence (via Codeless Connector Framework)

Description

The PRODAFT USTA Payment Card Fraud Intelligence data connector ingests compromised payment-card tickets from the PRODAFT USTA platform into Microsoft Sentinel. Sensitive values are redacted at ingestion: the full card number (PAN) is never stored — only the BIN (first 6), the last 4 digits, the card brand, and the length are retained for triage.
Declared status
1
Declared author / publisher
PRODAFT

Declared sources

Metadata from the source file. No dependencies inferred from KQL.

Data types

Declared permissions

Read and Write permissions are required.
Workspace
Workspace
PRODAFT USTA API key
A long-lived PRODAFT USTA API key with access to the Payment Card Fraud Intelligence endpoint is required.

Connector instructions

Content published in the repository. Refer to the original file for all parameters.

Connect PRODAFT USTA Payment Card Fraud Intelligence to Microsoft Sentinel
Enter your USTA base URL and a long-lived API key, then select Connect. The connector authenticates to USTA with the `Authorization: Bearer <api-key>` header and polls every minute. To load history from before the connection time, deploy the **PRODAFTUstaPCFI-Backfill** playbook shipped with this solution.
USTA Base URL
API Key

Related content

Links established from declared identifiers and solution manifests.

Source provenance

GitHub

Displayed values come from files in Azure/Azure-Sentinel. They describe the published template, not your workspace configuration.

Source identifier
PRODAFTUstaPCFICCPDefinition
Additional source files 2Solutions/PRODAFT USTA - Payment Card Fraud Intelligence/Data Connectors/PRODAFTUstaPCFI_ccp/PRODAFTUstaPCFI_ConnectorDefinition.jsonsource ↗Solutions/PRODAFT USTA - Payment Card Fraud Intelligence/Data/Solution_PRODAFTUstaPCFI.jsonsolution-membership ↗
GSTEP / CATALOG TRACKING

Added to catalog : 16 Sept 2026 · 05:49 UTC
Last change observed : 16 Sept 2026 · 05:49 UTC

GSTEP sync dates, separate from the source content’s publication dates.