Commands › Exchange Online

Get-ProtectionAlert

Exchange Online ExchangeOnlineManagement Get-*

For more information, see Security & Compliance PowerShell. Use the Get-ProtectionAlert cmdlet to view alert policies in the Microsoft Purview compliance portal.

Quick start script

# Get-ProtectionAlert — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Run and inspect
Get-ProtectionAlert | Format-List

# 3. Export for evidence / drift tracking
Get-ProtectionAlert | Export-Clixml .\ProtectionAlert-$(Get-Date -Format yyyyMMdd).xml

Syntax

Get-ProtectionAlert [[-Identity] <ComplianceRuleIdParameter>]
 [-IncludeRuleXml]
 [<CommonParameters>]

Parameters (2)

ParameterTypeRequiredWhat it controls
-Identity ComplianceRuleIdParameter The Identity parameter specifies the alert policy that you want to view. You can use any value that uniquely identifies the alert policy. For example:
-IncludeRuleXml SwitchParameter {{ Fill IncludeRuleXml Description }}

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.