Skip to content

aws.inspector.describe_assessment_runs

Example SQL Queries

SELECT * FROM
aws.inspector.describe_assessment_runs
WHERE
"assessment_run_arns" = 'VALUE';

Description

Describes the assessment runs that are specified by the ARNs of the assessment runs.

Table Definition

Column NameColumn Data Type
assessment_run_arns Required Input Column

The ARN that specifies the assessment run that you want to describe.

VARCHAR[]
Show child fields
assessment_run_arns[]
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
assessment_runs

Information about the assessment run.

STRUCT(
"arn" VARCHAR,
"name" VARCHAR,
"assessment_template_arn" VARCHAR,
"state" VARCHAR,
"duration_in_seconds" BIGINT,
"rules_package_arns" VARCHAR[],
"user_attributes_for_findings" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"created_at" TIMESTAMP_S,
"started_at" TIMESTAMP_S,
"completed_at" TIMESTAMP_S,
"state_changed_at" TIMESTAMP_S,
"data_collected" BOOLEAN,
"state_changes" STRUCT(
"state_changed_at" TIMESTAMP_S,
"state" VARCHAR
)[],
"notifications" STRUCT(
"date" TIMESTAMP_S,
"event" VARCHAR,
"message" VARCHAR,
"error" BOOLEAN,
"sns_topic_arn" VARCHAR,
"sns_publish_status_code" VARCHAR
)[],
"finding_counts" MAP(VARCHAR, BIGINT)
)[]
Show child fields
assessment_runs[]
Show child fields
assessment_runs[].arn

The ARN of the assessment run.

assessment_runs[].assessment_template_arn

The ARN of the assessment template that is associated with the assessment run.

assessment_runs[].completed_at

The assessment run completion time that corresponds to the rules packages evaluation completion time or failure.

assessment_runs[].created_at

The time when StartAssessmentRun was called.

assessment_runs[].data_collected

A Boolean value (true or false) that specifies whether the process of collecting data from the agents is completed.

assessment_runs[].duration_in_seconds

The duration of the assessment run.

assessment_runs[].finding_counts

Provides a total count of generated findings per severity.

assessment_runs[].name

The auto-generated name for the assessment run.

assessment_runs[].notifications[]
Show child fields
assessment_runs[].notifications[].date

The date of the notification.

assessment_runs[].notifications[].error

The Boolean value that specifies whether the notification represents an error.

assessment_runs[].notifications[].event

The event for which a notification is sent.

assessment_runs[].notifications[].message

The message included in the notification.

assessment_runs[].notifications[].sns_publish_status_code

The status code of the SNS notification.

assessment_runs[].notifications[].sns_topic_arn

The SNS topic to which the SNS notification is sent.

assessment_runs[].rules_package_arns[]
assessment_runs[].started_at

The time when StartAssessmentRun was called.

assessment_runs[].state

The state of the assessment run.

assessment_runs[].state_changed_at

The last time when the assessment run's state changed.

assessment_runs[].state_changes[]
Show child fields
assessment_runs[].state_changes[].state

The assessment run state.

assessment_runs[].state_changes[].state_changed_at

The last time the assessment run state changed.

assessment_runs[].user_attributes_for_findings[]
Show child fields
assessment_runs[].user_attributes_for_findings[].key

The attribute key.

assessment_runs[].user_attributes_for_findings[].value

The value assigned to the attribute key.

failed_items

Assessment run details that cannot be described. An error code is provided for each failed item.

MAP(VARCHAR, STRUCT(
"failure_code" VARCHAR,
"retryable" BOOLEAN
))