Difference between revisions of "TruxtonInvestigationEvent"
| Line 32: | Line 32: | ||
This corresponds to the <code>[InvestigationEventTypeID]</code> column of the <code>[InvestigationEvent]</code> table. | This corresponds to the <code>[InvestigationEventTypeID]</code> column of the <code>[InvestigationEvent]</code> table. | ||
| − | ==<code>when: | + | ==<code>when: [https://docs.python.org/3/library/datetime.html datetime]</code>== |
| − | When the event happened | + | When the event happened. |
| + | This value can be set with either a datetime value or an integer representing [https://docs.microsoft.com/en-us/windows/win32/api/minwinbase/ns-minwinbase-filetime FILETIME] ticks. | ||
This corresponds to the <code>[When]</code> column of the <code>[InvestigationEvent]</code> table. | This corresponds to the <code>[When]</code> column of the <code>[InvestigationEvent]</code> table. | ||
| − | |||
=Sample= | =Sample= | ||
Revision as of 18:22, 2 May 2023
This class lets you add an investigation event to Truxton.
Contents
Attributes and Methods
color: int
Sets the color of the flag to paint on the timeline.
This corresponds to the [Color] column of the [InvestigationEvent] table.
id: str
A GUID for the investigation.
This corresponds to the [ID] column of the [InvestigationEvent] table.
investigationid: str
A GUID for the investigation this event belongs to.
This corresponds to the [ID] column of the [Investigation] table and is
stored in the [InvestigationID] column of the [InvestigationEvent] table.
status: int
This is the status of the investigation.
It should be a value that appears in the [ID] column of a row in the InvestigationStatus table.
This corresponds to the [InvestigationStatusID] column of the [InvestigationEvent] table.
save() -> boolean
This will commit the information to the [InvestigationEvent] table.
It will return True if the record was saved to the database, False if there was an error.
text: str
The text to display on the event flag.
This corresponds to the [Text] column of the [InvestigationEvent] table.
type: int
The type of investigation event. 1 - Status change, 2 - Comment.
This corresponds to the [InvestigationEventTypeID] column of the [InvestigationEvent] table.
when: datetime
When the event happened.
This value can be set with either a datetime value or an integer representing FILETIME ticks.
This corresponds to the [When] column of the [InvestigationEvent] table.
Sample
import sys
sys.path.append('C:/Program Files/Truxton/SDK')
import truxton
def create_investigation(t):
investigation = t.newinvestigation()
investigation.name = "Collusion"
investigation.description = "United States vs. John Smith"
investigation.case = "DC-SNAFU-2016.2020"
investigation.status = truxton.INVESTIGATION_STATUS_OPEN
investigation.type = truxton.INVESTIGATION_TYPE_FRAUD
investigation.save()
return investigation
def main():
t = truxton.create()
investigation = create_investigation(t)
investigation_event = investigation.createevent()
investigation_event.text = "I did this"
investigation_event.when = truxton.parsetime("2016-08-15T12:05:00-05:00")
investigation_event.save()
return None
if __name__ == "__main__":
main()