---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Persistent Observable Sightings activity

# Persistent Observable Sightings activity {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The Persistent Observable Sightings workflow activity retrieves
observables from the third-party integration.
The Persistent Observable Sightings activity can be used with any
workflow to record observables found in the third-party integration.

## Results

Possible results for this activity are:
{#persistent-observable-sightings-activity-arcsight-wf__table_lg3_dm5_vy__entry__2}

| Result | Description |
|-|-|
| Success | Observables retrieved. |
| Failure | An error occurred while attempting to gather observables. More error information is available in the activity output error. |
[Table 1. Results]

{#persistent-observable-sightings-activity-arcsight-wf__table_lg3_dm5_vy}

## Input variables {#persistent-observable-sightings-activity-arcsight-wf__section_dmp_ldm_3z}

Input variables determine the initial behavior of the activity.
{#persistent-observable-sightings-activity-arcsight-wf__table_pgm_tfy_jr__entry__2}

| Variable | Description |
|-|-|
| sightingsResponse |   |
| taskId | Task identifier. |
[ ]

{#persistent-observable-sightings-activity-arcsight-wf__table_pgm_tfy_jr}

## Output variables

The output variables contain data that can be used in subsequent activities.
{#persistent-observable-sightings-activity-arcsight-wf__table_bnj_jfy_jr__entry__2}

| Variable | Description |
|-|-|
| response |   |
[Table 2. Output variables]

{#persistent-observable-sightings-activity-arcsight-wf__table_bnj_jfy_jr}

