Hi folks,
I am ingesting an alert created in SecOps SIEM into SOAR using Google Chronicle connector. I have noticed that when add a variable in the outcome section of the rule, then it is visible in the event details part in SOAR alert with the name "detection_outcomes_{outcome_varname}".


Now, is it possible to edit the rule in such a manner that instead of event details, the variable is shown in the entity details page in SOAR, so I can extract this using "entity.additional_properties.get({varname})" ?



