The operating system update configuration of an Endpoint and the updates currently available to it. Collected on Windows and macOS: on Windows it records whether the Automatic Updates service is functional, the Automatic Updates settings (notification level, scheduled install day and hour), the last successful search and install times, and each pending update with its KB article IDs and MSRC severity, in SoftwareUpdatePreferencesWindows; on macOS it records the automatic download and install preferences, any enforced update deferral, the last successful update check and the recommended updates, in SoftwareUpdatePreferencesMacOS. Each Endpoint has at most one SoftwareUpdatePreferences, reachable from the Endpoint's softwareUpdatePreferences field.
Fields
| Field Name | Description |
|---|---|
id - ID!
|
The SoftwareUpdatePreferences' unique identifier on the security graph. |
orgId - OrganizationId!
|
Unique identifier that corresponds to your deployment of this product or a specific customer account that this Endpoint belongs to. |
seen - SeenOnline!
|
Describes when this SoftwareUpdatePreferences was seen. |
objectType - GraphObjectType!
|
The type of this graph object. |
objectTypeLabel - String!
|
A localized label describing the object type. |
displayName - String!
|
A concise human-friendly identifier for this object suitable for display in user interface page titles and in AI chat responses that refer to the object. |
firstSeen - Time!
|
Time this object was first seen. |
lastSeen - Time!
|
Time this object was last seen. |
createdAt - Time!
|
The time this object was created in the security graph. |
updatedAt - Time!
|
The time this object was last mutated in the security graph. |
snapshotInfo - GraphObjectSnapshotInfo!
|
Whether this object is a point-in-time snapshot of an object's state rather than the object's live state, and when that state was observed. |
endpoint - Endpoint
|
The Endpoint this SoftwareUpdatePreferences belongs to if available. |
osSpecific - SoftwareUpdatePreferencesOsSpecific
|
The platform-specific update settings and available updates: SoftwareUpdatePreferencesWindows on Windows or SoftwareUpdatePreferencesMacOS on macOS. |
findings - FindingsPayload!
|
Policy findings for this object. |
issues - IssuesPayload!
|
Policy issues for this object. |
issuesSummary - IssuesSummary!
|
Summary of the active policy issues currently open on this object, broken down by severity. |
Returned by
softwareUpdatePreferencesquery: Retrieves an endpoint's SoftwareUpdatePreferences by its graph object id: the operating system update configuration and the updates currently…
Used by
Endpointtype: A Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.GraphObjectTypeenum: An enumeration of the different types of security graph objects.GraphObjectTypeCategoryenum: High-level grouping used to organize GraphObjectType values in UI navigation and API discovery.ProprietaryCheckIdenum: A check that ships with the platform, run by a PROPRIETARY rule on its Schedule.SoftwareUpdatePreferencesPayloadtype: Payload wrapper for a single SoftwareUpdatePreferences result.
Related types
EndpointA Windows, macOS, or Linux computer that runs the Wartiva endpoint agent and is enrolled with an organization.
Example
Example
{
"id": 4,
"orgId": "615f3b3b28284380e28a7342",
"seen": SeenOnline,
"objectType": "ACCOUNT_POLICY",
"objectTypeLabel": "abc123",
"displayName": "abc123",
"firstSeen": "2021-10-07T18:23:25.829Z",
"lastSeen": "2021-10-07T18:23:25.829Z",
"createdAt": "2021-10-07T18:23:25.829Z",
"updatedAt": "2021-10-07T18:23:25.829Z",
"snapshotInfo": GraphObjectSnapshotInfo,
"endpoint": Endpoint,
"osSpecific": SoftwareUpdatePreferencesMacOS,
"findings": FindingsPayload,
"issues": IssuesPayload,
"issuesSummary": IssuesSummary
}