GetAlert
Retrieves a single alert by its identifier.
Use ListAlerts to enumerate alerts in the space.
Request Parameters
- alertId
-
The alert to retrieve.
Type: String
Length Constraints: Fixed length of 32.
Pattern:
[0-9a-f]{32}Required: Yes
- spaceId
-
The unique ID of the space.
Type: String
Pattern:
[0-9a-f]{8}-[0-9a-f]{4}-[0-9a-f]{4}-[0-9a-f]{4}-[0-9a-f]{12}Required: Yes
Response Elements
The following element is returned by the service.
- alert
-
The full alert entity.
Type: Alert object
Errors
For information about the errors that are common to all actions, see Common Error Types.
- AccessDeniedException
-
The caller is not authorized to perform this action.
HTTP Status Code: 403
- InternalServerException
-
An unexpected error occurred while processing the request.
- errorCode
-
The error code associated with the internal error.
HTTP Status Code: 500
- ResourceNotFoundException
-
The specified resource does not exist.
- errorCode
-
The error code associated with the failure.
- resourceId
-
The identifier of the resource that could not be found. Not always present.
- resourceType
-
The type of the resource that could not be found. Not always present.
HTTP Status Code: 404
- ThrottlingException
-
The request was throttled due to exceeding the allowed request rate.
- retryAfterSeconds
-
The number of seconds to wait before retrying the request. Not always present.
HTTP Status Code: 429
- ValidationException
-
A parameter is specified incorrectly.
- errorCode
-
The error code associated with the validation failure.
HTTP Status Code: 400
Examples
Retrieve an alert
The following example retrieves an alert by its identifier, including the live evaluation state that CreateAlert does not report. Payloads are shown as JSON; on the wire they are CBOR-encoded.
Sample Request
{
"alertId": "c3d4e5f67a8b4c9d8e0f1a2b3c4d5e6f",
"spaceId": "a1b2c3d4-5e6f-4a3b-8c9d-0e1f2a3b4c5d"
}
Sample Response
{
"alert": {
"accountId": "123456789012",
"alertArn": "arn:aws:cloudwatch:us-east-1:123456789012:alert/c3d4e5f67a8b4c9d8e0f1a2b3c4d5e6f",
"alertId": "c3d4e5f67a8b4c9d8e0f1a2b3c4d5e6f",
"createdAt": "2026-09-16T14:22:31Z",
"description": "Alerts when a service logs more errors than its accepted rate.",
"name": "service-error-count-elevated",
"notificationRules": [
{
"target": {
"arn": "arn:aws:cloudwatch:us-east-1:123456789012:integration/a1b2c3d4-5e6f-4a3b-8c9d-0e1f2a3b4c5d",
"metadata": {
"channel": "oncall-alerts"
},
"type": "slack"
},
"trigger": {
"stateValues": [
"CRITICAL"
]
}
}
],
"notificationStatus": "ENABLED",
"profileId": "analyst-readonly",
"rule": {
"telemetryRule": {
"condition": {
"comparator": "GT",
"criticalThreshold": 200.0,
"thresholdField": "error_count",
"thresholdMode": "FIELD_VALUE",
"warningThreshold": 50.0
},
"evaluation": {
"intervalSeconds": 300,
"pendingDurationSeconds": 600,
"recoveryDurationSeconds": 300
},
"noData": {
"treatAs": "NODATA"
},
"query": {
"expression": "SELECT resource['attributes']['service.name'] AS service, COUNT(*) AS error_count FROM "logs.default" WHERE severityText = 'ERROR' GROUP BY service",
"language": "SQL"
}
}
},
"spaceId": "a1b2c3d4-5e6f-4a3b-8c9d-0e1f2a3b4c5d",
"state": {
"contributorSummary": {
"criticalCount": 1,
"warningCount": 3
},
"transitionedAt": "2026-09-17T09:11:52Z",
"value": "CRITICAL"
},
"updatedAt": "2026-09-17T09:11:52Z"
}
}
See Also
For more information about using this API in one of the language-specific AWS SDKs, see the following: