Description
The MailRisk by Secure Practice connector allows you to ingest email threat intelligence data from the MailRisk API into Microsoft Sentinel. This connector provides visibility into reported emails, risk assessments, and security events related to email threats.
- Declared status
- 1
- Declared author / publisher
- Secure Practice
Declared sources
Metadata from the source file. No dependencies inferred from KQL.
Data types
Declared permissions
Read and Write permissions are required.
Workspace
Workspace
API credentials
Your Secure Practice API key pair is also needed, which are created in the [settings in the admin portal](https://manage.securepractice.co/settings/security). Generate a new key pair with description `Microsoft Sentinel`.
Connector instructions
Content published in the repository. Refer to the original file for all parameters.
1. Obtain Secure Practice API Credentials
Log in to your Secure Practice account and generate an API Key and API Secret if you haven't already.
2. Connect to MailRisk API
Enter your Secure Practice API credentials below. The credentials will be securely stored and used to authenticate API requests.
API Key
API Secret
Related content
Links established from declared identifiers and solution manifests.
Source provenance
GitHubDisplayed values come from files in Azure/Azure-Sentinel. They describe the published template, not your workspace configuration.
- Commit
629d1d3↗- Source identifier
SecurePracticeMailRiskConnector
GSTEP / CATALOG TRACKING
Added to catalog : 16 Sept 2026 · 05:49 UTC
Last change observed : 16 Sept 2026 · 05:49 UTC