DataDog/threatest

Alert Matching with Elastic

ggilligan12 opened this issue · 1 comments

Hi guys! Love the project as is, if it didn't already exist we were liable to build something similar. We'd love to discuss adding an integration for alert matching with Elastic, and Kubernetes detonators (will make a separate issue for the latter).

Earliest we (Thought Machine) are likely to be in a position to give this serious attention (if you guys are game) is Q1 2024. With that said we'd like to know two things:

  1. What's in your immediate roadmap for the tool? Ie. is it liable to shift dramatically in such a way that it no longer makes sense for us to use it?
  2. Does adding support for Elastic align with your vision for this project? Your introductory blog post suggests it does, but would like to confirm since that was some time ago (Aug 2022).

Hi there! I'd love to get contributions to support other platforms than Datadog. This is (and has always been) the vision of the project, as you point out.

We don't have an immediate roadmap for the tool (besides bug fixes and stability improvements)