On This Page

Home / Search/ Language Reference/ Virtual Tables/$vt_jobs

$vt_jobs ​

The $vt_jobs virtual table lists previously executed searches.

// returns a list of all searches that were run within the past hour and are available to the current user
dataset="$vt_jobs" earliest=-1h

Purpose ​

Use $vt_jobs for troubleshooting or performance analysis, or to monitor search activity in your Organization.

Permissions ​

Search Member TypePermissions
AdminCan see all searches in their Organization.
Editor or UserCan see only those searches that they ran themselves or that were shared with them.

Syntax ​

dataset="$vt_jobs"

Returns ​

Returns one event for every search run within the specified time range, filtered through any additional criteria you specify.

Each event contains fields with the search’s details.

Examples ​

Aggregate searches from the past seven days by their status.

dataset="$vt_jobs" earliest=-7d
  | summarize count() by status