Skip to main content

Case Timelines in Torq: Track Investigation Progress

Learn how to effectively log and retrieve information using the case timeline.

Overview

The case timeline displays comments and events chronologically, offering a detailed overview of all case-related actions. It helps you grasp the investigation's progress and plan future steps effectively.

Apply formatting to timeline comments by using markdown syntax.

Applying filters

Use the filter icon at the bottom of the timeline to filter by action type, the entity (workflow or user) that performed the action, or the time when the action occurred. Action types include:

  • Case updated

  • Workflow triggered

  • Comment added

  • SLA timer updated

Mentioning users

Mention users in comments to notify them of the timeline updates.

You can mention users in timeline comments by typing @ and selecting a user from the list. The mentioned user or users will be notified by email.

Marking comments as public

Marking a timeline comment as public adds a “Public” tag to its metadata. Workflows in Torq can use this tag, and third-party apps can access it through the API—for example, to display comments in a customer portal or share them with people who don’t have Torq access.

  • To mark a comment as public, type your comment, open the menu next to the send button, and select Send as public.

Including images

Include images related to the case investigation, such as screenshots of scan results, chat conversations, and more, in the timeline.

  1. Import image: Copy and paste the image into the timeline comment text box.

  2. Save the attachment: Click Save to save the image as an attachment.

The image is visible in the case timeline and can also be accessed through the Attachments tab.

Understanding timeline entries

The timeline captures various events, each marked with the date, time, and the initiator’s details (user or workflow). If a workflow initiates an event, the timeline will link to its execution.

These are the events that generate timeline entries:

  • Attachment added

  • Attachment removed

  • Case created

  • Case linked

  • Case link updated

  • Case unlinked

  • Case updated

  • Comment added

  • Custom field updated

  • Event attached

  • Note added

  • Note updated

  • Note removed

  • Observable added

  • Observable removed

  • SLA timer paused

  • SLA timer reset

  • SLA timer started

  • User input task assigned

  • User input task timed out

  • User input task submitted

  • Workflow triggered

Did this answer your question?