SIEM replacing QRadar's EPS-tier licensing (Events Per Second bands starting at $10K+). Offenses, flows, and AQL searches metered per query — ditch the Console + EP + FP appliance sprawl.
no EPS tiersoffense chainingflow analyticsAQL search
This module is your starting point. Describe what you want to layer on top — an interface, extra fields, a workflow, a whole app. Watch it build in real time. ⌘/Ctrl + Enter to run.
Your module's ready — tell us what you need
Use it, host it, give it a home, or keep building. You pick.