TruxtonInvestigationEvent
This class lets you add an investigation event to Truxton.
Contents
Attributes and Methods
color: int
Sets the color of the flag to paint on the timeline.
This corresponds to the [Color] column of the [InvestigationEvent] table.
id: str
A GUID for the investigation event.
This corresponds to the [ID] column of the [InvestigationEvent] table.
investigationid: str
A GUID for the investigation this event belongs to.
This corresponds to the [ID] column of the [Investigation] table and is
stored in the [InvestigationID] column of the [InvestigationEvent] table.
status: int
This is the status of the investigation.
It should be a value that appears in the [ID] column of a row in the InvestigationStatus table.
This corresponds to the [InvestigationStatusID] column of the [InvestigationEvent] table.
save() -> boolean
This will commit the information to the [InvestigationEvent] table.
It will return True if the record was saved to the database, False if there was an error.
text: str
The text to display on the event flag.
This corresponds to the [Text] column of the [InvestigationEvent] table.
type: int
The type of investigation event. 1 - Status change, 2 - Comment.
This corresponds to the [InvestigationEventTypeID] column of the [InvestigationEvent] table.
when: datetime
When the event happened.
This value can be set with either a datetime value or an integer representing FILETIME ticks.
This corresponds to the [When] column of the [InvestigationEvent] table.
Sample
import sys
sys.path.append('C:/Program Files/Truxton/SDK')
import truxton
def create_investigation(t):
investigation = t.newinvestigation()
investigation.name = "Collusion"
investigation.description = "United States vs. John Smith"
investigation.case = "DC-SNAFU-2016.2020"
investigation.status = truxton.INVESTIGATION_STATUS_OPEN
investigation.type = truxton.INVESTIGATION_TYPE_FRAUD
investigation.save()
return investigation
def main():
t = truxton.create()
investigation = create_investigation(t)
investigation_event = investigation.createevent()
investigation_event.text = "I did this"
investigation_event.when = truxton.parsetime("2016-08-15T12:05:00-05:00")
investigation_event.save()
return None
if __name__ == "__main__":
sys.exit(main())