﻿---
title: stack kb security-entity-analytics-api update-watchlist cli command
description: Update an existing watchlist Behaviour flags: --dry-run — validate all inputs and exit without performing any action 
url: https://www.elastic.co/elastic/docs-builder/docs/4120/reference/elastic-cli/cli/stack/kb/security-entity-analytics-api/update-watchlist
applies_to:
  - Elastic Cloud Serverless: Preview
  - Elastic Stack: Preview
---

# stack kb security-entity-analytics-api update-watchlist cli command
<cli-modifiers>
</cli-modifiers>

```bash
elastic stack kb security-entity-analytics-api update-watchlist \
  --id <id> \
  --name <name> \
  --risk-modifier <risk-modifier> \
  [options]
```

Update an existing watchlist
**Behaviour flags:**
`--dry-run` — validate all inputs and exit without performing any action

## Options

<definitions>
  <definition term="--id string required">
    The ID of the watchlist to update
  </definition>
  <definition term="--name string required">
    Unique name of the watchlist
  </definition>
  <definition term="--risk-modifier number required">
    Risk score modifier associated with the watchlist
  </definition>
  <definition term="--description string">
    Description of the watchlist
  </definition>
  <definition term="--managed">
    Indicates if the watchlist is managed by the system
  </definition>
  <definition term="--input-file string">
    path to a JSON file to use as command input
  </definition>
  <definition term="--dry-run">
    validate all inputs and exit without performing any action (preview changes without applying them)
  </definition>
</definitions>


## Global Options

<definitions>
  <definition term="--json">
    output as JSON
  </definition>
</definitions>