# About the Microsoft Sentinel Threat Intelligence connector

> The Microsoft Sentinel Threat Intelligence connector integrates UiPath with Microsoft's threat intelligence platform, allowing the automation to publish threat indicators whenever malicious data is identified. Each harmful item results in a new intelligence indicator, which may include additional details gathered during the process. By contributing these indicators to the organization's TI dataset, the connector supports correlation across other security events, enhances detection rules, and strengthens the organization's overall defensive posture.

The Microsoft Sentinel Threat Intelligence connector integrates UiPath with Microsoft's threat intelligence platform, allowing the automation to publish threat indicators whenever malicious data is identified. Each harmful item results in a new intelligence indicator, which may include additional details gathered during the process. By contributing these indicators to the organization's TI dataset, the connector supports correlation across other security events, enhances detection rules, and strengthens the organization's overall defensive posture.

:::note
This connector is built by UiPath and receives official support selectively. The connector supports a limited set of commonly used APIs for the target application and may cover most typical use cases. Also, they are retained in a stable state until the requirements for a new version release are met. [Learn more](https://docs.uipath.com/integration-service/automation-cloud/latest/user-guide/connectors#connectors-with-selective-support)
:::

## Authentication

Before automating processes, you need to establish a connection with your Microsoft Sentinel Threat Intelligence
instance. Step-by-step instructions are available in the [Azure Threat Intelligence authentication](https://docs.uipath.com/integration-service/automation-cloud/latest/user-guide/uipath-microsoft-azurethreatintelligence-authentication) page.

## Events

The Microsoft Sentinel Threat Intelligence connector does not currently support events.

## Activity package

You can use the connection to enable the Microsoft Sentinel Threat Intelligence [activities](https://docs.uipath.com/activities/other/latest/integration-service/uipath-azure-threat-intelligence-activities) in UiPath® Studio and build automations for the entire Azure Threat Intelligence
capabilities suite.

## API Documentation

You can read more on the Microsoft Sentinel Threat Intelligence API by accessing the [Microsoft documentation](https://learn.microsoft.com/en-us/rest/api/securityinsights/threat-intelligence-indicator). The connector was tested with API version `2024-02-01-preview`.
