FAQ

FAQ for the Site

Do I have to operate any servers?

Just one lightweight agent on a host that can receive syslog from your firewall, IDS, or SIEM. The platform — database, dashboards, identity, analytics — is managed by us.

What SIEM / firewall vendors do you support?

Native parsers for the major firewall/IDS formats — Snort, Suricata, Cisco ASA / Firepower, Palo Alto, Fortinet, Zeek, pfSense, generic CEF. Webhook ingest for the major SIEMs — Splunk, Graylog, Elastic, QRadar.

How am I licensed?

You buy a tenant license for the hosted platform. Pricing is custom-scoped to your environment — event volume, integrated source count, and support tier. Contact us to talk through what's right for you.

Are we accepting Pilots?

Yes we are — contact us for more information.

Is this open source?

The platform is built on mature open-source foundations (PostgreSQL, Keycloak, Apache Superset, Podman, openSUSE). The product itself is a commercial licensed platform.

Will it scale?

The platform is engineered for high-throughput batch processing and horizontal scaling at every layer. Your tenant scales with your event volume — you don't manage capacity, we do.