Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
1589 commits
Select commit Hold shift + click to select a range
65642ba
[8.15] Documents risk score recalculation when asset criticality is c…
natasha-moore-elastic Jul 1, 2024
5730776
[8.15] Endpoint API documentation for `scan` response action (#5476)
ashokaditya Jul 1, 2024
dacd3a2
First draft (#5499)
joepeeples Jul 3, 2024
7daa866
Update backport tool & Mergify configs for new 8.15 branch (#5500)
joepeeples Jul 3, 2024
50c3806
Edit related_integrations field for custom rules in UI [classic] (#5151)
joepeeples Jul 3, 2024
3bdfc22
Edit `max_signals` field for custom rules in UI [classic] (#5106)
joepeeples Jul 3, 2024
ff8d574
Edit required_fields field for custom rules in UI [classic] (#5287)
joepeeples Jul 3, 2024
c8aa530
Updates related_integrations field API docs (#5183)
maximpn Jul 5, 2024
bfdc179
First draft (#5482)
nastasha-solomon Jul 5, 2024
1dfd1d6
Updates note about number of alerts AD can analyze (#5511)
benironside Jul 5, 2024
55e9eec
Adds LM Studio connector guide (#5496)
benironside Jul 8, 2024
13eaeb0
Adds beta tag (#5519)
benironside Jul 8, 2024
a99cb44
[Serverless] Updates D4C badge from tech preview to beta (#5520)
benironside Jul 8, 2024
f6696a6
[Serverless] [Attack discovery] twin PR for AI IA and AD note update …
benironside Jul 8, 2024
d9968da
[ESS] BYO LLM guide (#5530)
benironside Jul 9, 2024
d1cd713
[CNVM] Adds notes about CNVM architecture support (#5340)
benironside Jul 9, 2024
bf5f72e
[serverless] Refactors the LM Studio connector guide (#5550)
benironside Jul 10, 2024
0253ee4
Adds 8.14.3 release notes (#5551)
benironside Jul 10, 2024
43b22d3
Update .backportrc.json: remove 7.x preset (#5501)
joepeeples Jul 11, 2024
bce4151
Removes legacy risk scoring docs (#5497)
natasha-moore-elastic Jul 12, 2024
a154eeb
Antivirus registration enabled by default (#5494)
joepeeples Jul 17, 2024
f76b34f
Remove cloud shell editor deprecation notification (#5554)
uri-weisman Jul 17, 2024
2533812
Twin PR - adds requirement (#5570)
benironside Jul 17, 2024
095c7e1
updates dashboard landing pg images (#5576)
benironside Jul 17, 2024
5d44e69
creates Google vertex guide for ESS (#5549)
benironside Jul 17, 2024
5c199b0
(Doc+) Alerts UI cannot be CCS (#5513)
stefnestor Jul 17, 2024
9e7d734
(Doc+) Alerts UI cannot be CCS [serverless] + bonus fixes (#5582)
joepeeples Jul 19, 2024
883d67f
Add case templates for serverless (#5567)
lcawl Jul 22, 2024
ef0470f
Add case templates (#5565)
lcawl Jul 22, 2024
1128301
Remove unused anchors in case settings (#5593)
lcawl Jul 23, 2024
cfac679
[DE Team][8.15][Serverless] Bulk-update a rule's custom highlighted f…
nastasha-solomon Jul 23, 2024
1fe3f9e
[8.15 & Serverless] Update the Security Timeline Documentation in acc…
nastasha-solomon Jul 23, 2024
e0c3763
[8.14.3] Adds link to the 8.14.3 RNs (#5599)
nastasha-solomon Jul 24, 2024
26aee2a
Scan response action [ESS] (#5563)
joepeeples Jul 25, 2024
c62809a
[8.14] [bug] Updates LLM Matrix (#5614)
benironside Jul 26, 2024
294e0f5
Case custom fields GA (#5591)
lcawl Jul 26, 2024
80a0804
Revises IA of the getting started section (#5597)
benironside Jul 30, 2024
87713a8
Updates ESS LLM recommended model matrix (#5622)
benironside Jul 30, 2024
3886a21
Host isolation exceptions and VPN communication (#5579)
joepeeples Jul 31, 2024
506ad4d
[Request][8.15 & Serverless] Alert suppression for ES|QL and ML rules…
nastasha-solomon Jul 31, 2024
5d20347
[TH: Investigations][Serverless & 8.15] New previews in expandable fl…
nastasha-solomon Jul 31, 2024
bdc1222
[DE Team][Serverless] Case system action being added for rules (#5615)
nastasha-solomon Jul 31, 2024
1617d22
[Request][8.15 & Serverless] AI Assistant for rule creation (#5598)
nastasha-solomon Jul 31, 2024
77d5d53
Add link to region docs (#5604)
shainaraskas Aug 1, 2024
f8e7ca6
Adds Allowlist Elastic Endpoint in third-party antivirus apps page to…
natasha-moore-elastic Aug 2, 2024
77c09d8
[8.15] xMatters connector available for rule actions (#5625)
nastasha-solomon Aug 2, 2024
7fe7e28
[Enhancement][Serverless, 8.14, & 8.15]: add note to highlight that i…
nastasha-solomon Aug 2, 2024
cad139b
Process descendant filtering in event filters [ESS] (#5626)
joepeeples Aug 6, 2024
7c23048
CrowdStrike bidirectional response actions (isolate & release) (#5529)
joepeeples Aug 7, 2024
17d6080
[815][serverless]AI Assistant 8.15 (#5668)
benironside Aug 7, 2024
6d77a03
[Serverless] Adds auto import page (#5560)
benironside Aug 7, 2024
3c997eb
[8.15][ESS] Adds ESS automatic import page (#5676)
benironside Aug 7, 2024
9446b04
[815][ESS] Gen AI updates (#5673)
benironside Aug 7, 2024
a662e9e
Adds note about DaemonSet support (#5675)
benironside Aug 7, 2024
db80fb2
8.15.0 Release notes (#5602)
nastasha-solomon Aug 7, 2024
01c5ab5
[Entity Analytics] Add Asset Criticality public API docs (#5660)
hop-dev Aug 8, 2024
03dc65a
What's new 8.15 (#5667)
natasha-moore-elastic Aug 8, 2024
96204f6
Security AI Assistant APIs (#5620)
YulNaumenko Aug 8, 2024
1691c11
Adds AI Assistant APIs link to release highlights (#5690)
natasha-moore-elastic Aug 9, 2024
9d06354
(Doc+) SIEM + frozen tier compatibility (#5564)
stefnestor Aug 9, 2024
6976019
[Response Actions][kill-process] Update API docs for `kill-process` t…
paul-tavares Aug 12, 2024
0fa35f1
[BUG] Refreshing outdated images and gifs that demonstrate UI accessi…
nastasha-solomon Aug 13, 2024
c195f96
Scan response action [serverless] (#5566)
joepeeples Aug 13, 2024
324d9f9
Process descendant filtering in event filters [serverless] (#5672)
joepeeples Aug 13, 2024
86b0fbb
SentinelOne bidirectional `processes`, `kill-process`, and detection …
joepeeples Aug 20, 2024
965eca5
[Known Issue] In bulk action menu we show manual rule run, but it's n…
nastasha-solomon Aug 20, 2024
8152d7f
[Security Solution Gen AI]Docs for prompts and anonymization fields (…
YulNaumenko Aug 21, 2024
f36675d
[Docs IA][ESS] Rework the Elastic Defend and endpoint protection sect…
joepeeples Aug 21, 2024
0d7ad23
[Docs IA][serverless] Rework Elastic Defend sections [serverless] (#5…
joepeeples Aug 21, 2024
9699c3b
Moves LLM perf matrix page (#5724)
benironside Aug 21, 2024
a999da4
Adds CSPM privilege reqs (#5728)
benironside Aug 22, 2024
24fafb5
Update setting name (#5740)
joepeeples Aug 23, 2024
73c48a4
Serverless changes to rework main overview landing page (#5738)
joepeeples Aug 28, 2024
333e84c
First draft (#5447)
joepeeples Aug 29, 2024
96b523d
Add Elastic Defend troubleshooting topics to "Troubleshooting" sectio…
joepeeples Aug 30, 2024
b8ba187
[Docs IA][ESS] Create Investigation Tools section (#5736)
nastasha-solomon Aug 30, 2024
98b7474
[serverless] Updates Data Quality Dashboard UI (#5718)
benironside Sep 3, 2024
11535f0
[DE Team][BUG]: Missing info in req docs for detections (#5708)
nastasha-solomon Sep 4, 2024
ea10f5e
8.15.1 Release Notes (#5748)
nastasha-solomon Sep 5, 2024
665ff37
[Known Issue] Doc Elastic Defend bug that stopped security events fro…
nastasha-solomon Sep 5, 2024
ff919e0
[Docs IA][Serverless] Create Investigation Tools section (#5790)
nastasha-solomon Sep 6, 2024
47c4859
Update ML jobs list on rule monitoring page
joepeeples Sep 9, 2024
d2ef5bf
Deploy Elastic Defend with MDM (#5749)
natasha-moore-elastic Sep 11, 2024
f548288
Adds Elastic Endpoint command reference (#5778)
natasha-moore-elastic Sep 11, 2024
aed9294
Endpoint data volume reduction mechanisms (#5800)
joepeeples Sep 11, 2024
2815edd
fixes typo (#5805)
benironside Sep 11, 2024
d7ebe83
Updates refs to LLMs (#5806)
benironside Sep 11, 2024
ff90551
Delete known-issue.yaml (#5820)
benironside Sep 12, 2024
e599446
LLM performance matrix Serverless IA update (#5821)
benironside Sep 12, 2024
d797740
Update .backportrc.json (#5835)
jmikell821 Sep 16, 2024
7ece476
Update .mergify.yml (#5834)
jmikell821 Sep 16, 2024
13530ea
[DE Team][8.16] Case system action being added for rules (#5703)
nastasha-solomon Sep 17, 2024
5e7608d
Update serverless billing docs with ingest & retention size calculati…
joepeeples Sep 17, 2024
9c34da7
SentinelOne bidirectional `processes`, `kill-process`, and detection …
joepeeples Sep 18, 2024
247c6f4
New `is` operator option for blocklist Windows signatures (#5780)
joepeeples Sep 18, 2024
9b556a7
Custom roles & privileges: Revise, reorder, add serverless requiremen…
joepeeples Sep 20, 2024
8b99520
Creates new template for breaking changes (#5851)
benironside Sep 23, 2024
318505f
Updates ESS get started page with tutorial links (#5854)
benironside Sep 23, 2024
670868d
Fix requirements statements (#5852)
joepeeples Sep 23, 2024
40804b4
Updates to our templates for clarification (#5858)
jmikell821 Sep 25, 2024
72f2317
[8.16] Filtering out cold and frozen data tiers during rule execution…
nastasha-solomon Sep 25, 2024
6984eb7
8.15.2 Release notes (#5843)
nastasha-solomon Sep 26, 2024
2b534cf
Updates readme with note about known issues template (#5823)
benironside Sep 26, 2024
182b6f8
Add TheHive connector for cases (#5859)
lcawl Sep 27, 2024
3991a60
Fixing yaml errors (#5867)
jmikell821 Sep 27, 2024
2279d8a
New rule types support automated response actions (#5797)
joepeeples Oct 1, 2024
bceccfb
[Known Issue][Detection Engine] Alert tags maintain state (#5884)
nastasha-solomon Oct 4, 2024
d887c55
Fixes support matrix (#5882)
benironside Oct 9, 2024
2d2a22b
Direct users to new API reference site (#5911)
natasha-moore-elastic Oct 11, 2024
c14e4f8
Get started with KSPM minor update (#5917)
benironside Oct 14, 2024
ed14429
[serverless] Updates DQ dashboard page (#5919)
benironside Oct 14, 2024
632deff
Permissions for alert suppression in machine learning rules (#5819)
joepeeples Oct 16, 2024
6e01499
[doc] Noted blocklisted files are quarantined (#5918)
rseldner Oct 16, 2024
61b4a66
[Serverless][8.16] Logs request during preview rule execution (#5871)
nastasha-solomon Oct 16, 2024
4cbfd6d
[Serverless] Manual rule run docs (#5589)
nastasha-solomon Oct 16, 2024
64d64d7
[8.16] Manual rule run docs (#5631)
nastasha-solomon Oct 16, 2024
9969f71
Fixes list formatting for note in manual run docs (#5942)
nastasha-solomon Oct 16, 2024
5ec4c64
8.15.3 Release notes (#5905)
nastasha-solomon Oct 16, 2024
4f742d8
Entity risk scoring available in multiple Kibana spaces (#5931)
natasha-moore-elastic Oct 17, 2024
dd3b9e7
Update text about risk scoring recalculation after file upload (#5924)
natasha-moore-elastic Oct 17, 2024
a14abe6
Update .mergify.yml (#5958)
jmikell821 Oct 18, 2024
0f9f545
Update .backportrc.json (#5960)
jmikell821 Oct 18, 2024
0bf4d00
[serverless] Attack Discovery UI updates (#5956)
benironside Oct 22, 2024
50c8673
[8.16]`excludedDataTiersForRuleExecution` advanced setting applies to…
nastasha-solomon Oct 23, 2024
d154348
[Request][Serverless][8.16] GA-ing alert suppression for IM rule, Thr…
nastasha-solomon Oct 23, 2024
c73c723
[Request][Serverless][8.16] Document the new `kibana.alert.rule.execu…
nastasha-solomon Oct 23, 2024
360e4c7
Remove feature flag conditionals (#5853)
joepeeples Oct 24, 2024
1c62f2d
Revises 8.x-8.x upgrade guide (#5830)
natasha-moore-elastic Oct 24, 2024
b0e7e61
Data qual dash 8.16 updates - ESS (#5945)
benironside Oct 24, 2024
3d18f62
BYO LLM 8.16 updates (#5967)
benironside Oct 24, 2024
d65c95f
Asset criticality navigation change (#5990)
natasha-moore-elastic Oct 25, 2024
e673098
[Request][Serverless][8.16] Visualizations in alert flyout - technica…
nastasha-solomon Oct 29, 2024
2390859
Asset criticality advanced setting removed (#5991)
natasha-moore-elastic Oct 30, 2024
3c6e809
Add the ability to backport to `main` (#5992)
bmorelli25 Oct 30, 2024
686800d
Spaces in serverless (#5813)
joepeeples Nov 1, 2024
958fbb8
Navigation changes: Upgrade Security, post-upgrade steps, endpoint pr…
natasha-moore-elastic Nov 5, 2024
fa71c9d
[mdx → asciidoc] Add AsciiDoc serverless files (#6061)
Nov 5, 2024
6e6628e
delete mdx and docnav files (#6068)
Nov 5, 2024
264ac5e
[Serverless][8.16] Notes docs (#6006)
nastasha-solomon Nov 6, 2024
ab71692
Fixes incorrect attribute (#6069)
natasha-moore-elastic Nov 7, 2024
1b13703
[Serverless][8.16] New notes experience - Impacted screenshots and mi…
nastasha-solomon Nov 7, 2024
2736ed0
[Request][8.16] Update nav references for all "Detection and alerts" …
nastasha-solomon Nov 8, 2024
45e2c25
[8.16] Adds entity store docs (#6053)
natasha-moore-elastic Nov 8, 2024
feca603
[8.16][serverless] adds Insights section to hosts and users details f…
benironside Nov 8, 2024
21b9b46
[8.16] AI usecase updates (#6076)
benironside Nov 8, 2024
6fb01bc
Supported rule types for automated response actions (#6050)
joepeeples Nov 8, 2024
ea279e9
New option to install and enable rules in one step (#6051)
joepeeples Nov 8, 2024
e3fae86
Fix image reference (#6094)
joepeeples Nov 8, 2024
e210b0d
[Request][8.16] Update nav references for all "Investigation tools" t…
nastasha-solomon Nov 11, 2024
adbc277
[8.16]Adds Knowledge Base page and updates AI Assistant doc (#6040)
benironside Nov 11, 2024
7913339
[8.16] Updates automatic import guide (#6064)
benironside Nov 11, 2024
fabbd5f
Adds automatic import updates to serverless docs (#6108)
benironside Nov 11, 2024
4e0ee5f
[8.16] Updates CSPM guides to include agentless option (#5863)
benironside Nov 11, 2024
8b7467f
Known Issues + Access requirements for Crowdstrike Connector (#5848)
joepeeples Nov 11, 2024
dc06264
[8.16] [Cloud Security] Third-party cloud data (#6046)
benironside Nov 11, 2024
5f71cc1
Nav changes for "Manage Elastic Defend" and "Endpoint response action…
joepeeples Nov 11, 2024
e1d7a6f
8.15.4 Release notes (#6062)
nastasha-solomon Nov 12, 2024
88103ce
AD updates for 8.16 (#6114)
benironside Nov 12, 2024
0a02b4f
[Serverless] Knowledge base and AI Assistant updates (twin PR) (#6119)
benironside Nov 12, 2024
7f4f23b
[serverless] 3p cloud data updates (#6120)
benironside Nov 12, 2024
411ac24
What's new in 8.16 (#6077)
natasha-moore-elastic Nov 12, 2024
6a8979e
Fixes incorrect ref in the 8.15.4 release notes (#6126)
nastasha-solomon Nov 12, 2024
b43a8bc
[Serverless][8.16] Push and overlay display options added to flyout (…
nastasha-solomon Nov 12, 2024
122bea2
[BUG] All Kibana privileges don't grant Security / Elastic Defend fea…
joepeeples Nov 12, 2024
671a78c
Fixes typos (#6135)
joepeeples Nov 12, 2024
54e3466
8.16 Elastic Security Release Notes (#5977)
benironside Nov 12, 2024
3c3e4c8
Updates nav references (#6147)
benironside Nov 12, 2024
9127f00
[main] Update allowlist-endpoint-3rd-party-av.asciidoc (backport #608…
mergify[bot] Nov 13, 2024
d0eab8a
Fixes style issue on Deploy with MDM page (#6163)
natasha-moore-elastic Nov 14, 2024
73637d5
Fixes style issue on Event filters page (#6162)
natasha-moore-elastic Nov 14, 2024
222cecb
[Known Issue] Error on Alert Page when upgrading to 8.16.0 (#6169)
nastasha-solomon Nov 14, 2024
cd4f12b
[8.16] Updates docs for and related to the `excludedDataTiersForRuleE…
nastasha-solomon Nov 14, 2024
ec1b8fd
Update Discover URL in serverless docs (#6180)
leemthompo Nov 19, 2024
ed9ef68
Adding acorretti as temporary codeowner (#6185)
Nov 19, 2024
643b772
Removing acorretti from codeowners (#6186)
Nov 19, 2024
9727cd4
Removes tech preview banners and technical preview limitations page (…
benironside Nov 20, 2024
ed8b9bb
[ESS & Serverless] Adds OrganizationUnitIDs description to agentless …
benironside Nov 20, 2024
c5b5f65
Adds web crawler example to Knowledge Base doc (#6176)
benironside Nov 20, 2024
4450b05
8.16.1 Release notes (#6178)
nastasha-solomon Nov 20, 2024
b1dec23
Remove known issue for AI Assistant from the 8.15.1-8.16.1 release no…
nastasha-solomon Nov 21, 2024
c9bc415
[main] [8.16] Remove known issue for AI Assistant from the 8.15.1-8.1…
mergify[bot] Nov 21, 2024
a6c3736
Fixes link ref on Install Elastic Defend page (#6164)
natasha-moore-elastic Nov 21, 2024
77958fa
[Serverless bug bash] Fixes links and nav steps (#6189)
natasha-moore-elastic Nov 21, 2024
6247f6c
[Serverless bug bash] Removes outdated content (#6188)
natasha-moore-elastic Nov 21, 2024
b87a5c2
Fixes atypical terminology (#6161)
natasha-moore-elastic Nov 21, 2024
115cbe6
[Serverless bug bash] Updates cases API link (#6160)
natasha-moore-elastic Nov 21, 2024
6bafdb8
Removes 199791 from the 8.16.1 release notes (#6207)
nastasha-solomon Nov 21, 2024
671a027
[8.x] [main] Update .mergify.yml (#6217)
jmikell821 Nov 21, 2024
4d1c727
Update .backportrc.json (#6218)
jmikell821 Nov 21, 2024
0283525
Update billing.asciidoc (#6247)
jmikell821 Nov 26, 2024
db188fa
Creates agentless troubleshooting page (#6184)
benironside Nov 26, 2024
863c54f
Updates "Cloud native security" to "Cloud security" (#6175)
benironside Nov 26, 2024
5fb37a6
Signature option available for macOS Trusted Apps conditions (#6183)
natasha-moore-elastic Nov 27, 2024
44b15bd
[Serverless] Removes D4C documentation (#6236)
benironside Nov 27, 2024
b21848b
[Serverless] Document impact of using logsDB for security users (#6221)
nastasha-solomon Dec 2, 2024
a93c703
Removes content not applicable to serverless (#6216)
natasha-moore-elastic Dec 3, 2024
09040ae
[Serverless] Fixes attributes (#6265)
jmikell821 Dec 3, 2024
e91fcff
Removes 8.x RNs and What's new from main (#6246)
benironside Dec 4, 2024
8e29c53
Updates LLM performance matrix (#6268)
benironside Dec 5, 2024
bb61132
Create a detection rule serverless fixes (#6273)
benironside Dec 5, 2024
9e0b4b0
[Serverless]: Security - Visual event analyzer and CCS warning advanc…
nastasha-solomon Dec 6, 2024
8fda998
[ESS][9.0] Create breaking changes and deprecations placeholder for 9…
nastasha-solomon Dec 10, 2024
34ebe2b
[Serverless]: Security - Cases nav steps are slightly incorrect (#6283)
nastasha-solomon Dec 10, 2024
61b1f1b
[8.17] Document impact of using logsDB for security users (#6272)
nastasha-solomon Dec 12, 2024
b3ea929
Update .mergify.yml (#6310)
bmorelli25 Dec 12, 2024
b5e6d2e
removes outdated pic (#6298)
benironside Dec 13, 2024
51b58c2
Creates CSPM privileges standalone page (#6269)
benironside Dec 13, 2024
a74bc31
adds note to LLM perf matrix (#6297)
benironside Dec 13, 2024
907b8e9
Updates conditions for the 8.0 branch (#6328)
nastasha-solomon Dec 16, 2024
ad10bd8
[main] Update detections-logsdb-impact.asciidoc (backport #6327) (#6330)
mergify[bot] Dec 16, 2024
87e3acb
Document ways to provide multiple Agent uninstall tokens (#6300)
natasha-moore-elastic Dec 17, 2024
b445b87
[Serverless][8.17] Cases subfeatures (#6288)
nastasha-solomon Dec 17, 2024
b8c374b
Changes dropdown ESS release field to free-text in docs issue templat…
natasha-moore-elastic Dec 17, 2024
900040b
[ESS] [Serverless] Updates BYO LLM page (#6326)
benironside Dec 17, 2024
19e3484
Risk score calculation for closed alerts (#6271)
natasha-moore-elastic Dec 18, 2024
0cec577
[Serverless][8.17][8.16]: Security – Alerts section bugs (#6240)
nastasha-solomon Dec 19, 2024
f8eb92a
BYO LLM Image Update (#6368)
benironside Dec 19, 2024
ed389ce
[Serverless][8.18] EQL Sequence alert suppression (#6291)
nastasha-solomon Dec 23, 2024
c4db057
Document how to troubleshoot Defend's self-healing feature on Windows…
natasha-moore-elastic Jan 6, 2025
066441b
New endpoint rules (#6100)
natasha-moore-elastic Jan 8, 2025
bfeb7b2
Endpoint data volume reduction mechanisms [ESS] (#5881)
joepeeples Jan 9, 2025
42f1798
[Serverless]: Security – About detection rules (#6239)
nastasha-solomon Jan 9, 2025
76989b1
[Serverless]: Security – Monitor and troubleshoot rule executions (#6…
nastasha-solomon Jan 9, 2025
32cecfd
[8.18][Serverless] Alert status information re-added to flyout (#6415)
nastasha-solomon Jan 14, 2025
414527e
[Detection Engine][Exceptions] - Update docs for single and shared ex…
nastasha-solomon Jan 21, 2025
6d64b54
Adds LLM matrix for OSS models (#6424)
benironside Jan 21, 2025
e9f0d81
Update rules-ui-create.asciidoc - fallback behavior in timestamp over…
rseldner Jan 21, 2025
16ca639
GA for entity risk scoring (#6472)
natasha-moore-elastic Jan 22, 2025
31791b5
update custom dashboard docs (#6470)
angorayc Jan 24, 2025
966c104
[Request] [8.18, 9.0, and Serverless] Observables can be added to cas…
nastasha-solomon Jan 28, 2025
9148adb
[Jan 28] MS Defender for Endpoint third-party response integration (#…
natasha-moore-elastic Jan 28, 2025
285d9d3
GA for third-party response actions (#6471)
natasha-moore-elastic Jan 28, 2025
4a52fe9
[Jan 28] Adds new runscript Crowdstrike response action (#6435)
natasha-moore-elastic Jan 28, 2025
dd70609
Updates RBAC requirements for 3rd-party response actions (#6434)
natasha-moore-elastic Jan 28, 2025
eb22ead
Endpoint Insights feature — Serverless (#6480)
benironside Jan 28, 2025
a81db71
Automatic Import: CEL Input (#6492)
benironside Jan 28, 2025
7d9a58b
github-action: Add AsciiDoc freeze warning (#6486)
reakaleek Jan 30, 2025
e0f259f
Update .mergify.yml (#6509)
jmikell821 Feb 5, 2025
4972d3d
Update .backportrc.json for `main` (#6508)
jmikell821 Feb 5, 2025
2911242
add the new ci checks (#6553)
Feb 27, 2025
a7baa39
[docs] Migrate docs from AsciiDoc to Markdown (#6554)
Feb 27, 2025
3390c00
Fix broken svg links in prebuilt jobs page (#6555)
lcawl Feb 27, 2025
1b8f12d
Fix links to Elastic Defend content (#6556)
lcawl Feb 27, 2025
dcb8811
clean up cross-repo links (#6557)
Mar 3, 2025
c26c2c5
Removes Endpoint command ref and prebuilt anomaly detection jobs docs…
nastasha-solomon Mar 6, 2025
e1cfc05
delete prebuilt-rules (#6670)
Mar 26, 2025
f53546e
Add temporary file to trigger rebuild (#6672)
Mar 26, 2025
46a4c23
workflow: update elastic/workflows reference to elastic/dev-docs-work…
reakaleek Sep 23, 2025
70f5dda
Remove docs-build.yml and docs-cleanup.yml workflow files (#7170)
Copilot Apr 24, 2026
96ee511
test: add docs/serverless dir for authorized workflow research
Jul 12, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
2 changes: 1 addition & 1 deletion .backportrc.json
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
{
"upstream": "elastic/security-docs",
"branches": [{ "name": "7.x", "checked": true }, "8.4", "8.3", "8.2", "8.1", "8.0", "7.17", "7.16", "7.15", "7.14", "7.13", "7.12", "7.11", "7.10", "7.9", "7.8"],
"branches": ["8.x", "8.18", "8.17", "8.16", "8.15", "8.14", "8.13", "8.12", "8.11", "8.10", "8.9", "8.8", "8.7", "8.6", "8.5", "8.4", "8.3", "8.2", "8.1", "8.0", "7.17", "7.16", "7.15", "7.14", "7.13", "7.12", "7.11", "7.10", "7.9", "7.8"],
"labels": ["backport"]
}
2 changes: 2 additions & 0 deletions .github/CODEOWNERS
Original file line number Diff line number Diff line change
@@ -0,0 +1,2 @@
* @elastic/security-docs
/.github/workflows/co-docs-builder.yml @elastic/docs-engineering
40 changes: 40 additions & 0 deletions .github/ISSUE_TEMPLATE/breaking-change.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,40 @@
name: "Breaking change report"
description: "Report a breaking change in Elastic Security"
title: "[BREAKING CHANGE] "
labels: "breaking-change"
body:
- type: markdown
attributes:
value: |
Hello! Use this form to report a breaking change in Elastic Security software to the [@elastic/security-docs](https://github.com/orgs/elastic/teams/security-docs) team. We will add it to the release notes for the version that introduces the breaking change.
- type: textarea
id: description
attributes:
label: Description
description: What feature will break? Any more details about how it will break? Please include any recommendations for users who were using the feature with the breaking change.
validations:
required: true
- type: dropdown
id: doc-set
attributes:
label: Which deployment types are affected?
description: ESS (classic), serverless, or both?
options:
- ESS and serverless
- ESS only
- Serverless only
- Unknown
default: 0
validations:
required: true
- type: textarea
id: software-version
attributes:
label: Release version
description: If you selected ESS above, please list which Stack version(s) this breaking change applies to.
placeholder: |
For example:
"This breaking change applies to Stack versions 8.10 and newer."
"N/A"
validations:
required: false
12 changes: 0 additions & 12 deletions .github/ISSUE_TEMPLATE/bug-report.md

This file was deleted.

58 changes: 58 additions & 0 deletions .github/ISSUE_TEMPLATE/bug-report.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,58 @@
name: "Bug report"
description: "Report a bug in the Elastic Security documentation"
title: "[BUG] "
labels: "bug"
body:
- type: markdown
attributes:
value: |
Hello! Use this form to report an Elastic Security documentation bug to the [@elastic/security-docs](https://github.com/orgs/elastic/teams/security-docs) team.
- type: textarea
id: doc-links
attributes:
label: Documentation links
description: Which doc(s) is affected?
placeholder: |
Elastic Security overview: https://www.elastic.co/guide/en/security/current/es-overview.html
validations:
required: true
- type: textarea
id: description
attributes:
label: Description
description: Describe the bug. What needs to be removed, edited, added, or replaced? Please also include instructions on how to reproduce the bug, if necessary.
validations:
required: true
- type: dropdown
id: doc-set
attributes:
label: Which documentation set(s) does this bug apply to?
description: ESS (classic), serverless, or both?
options:
- ESS and serverless
- ESS only
- Serverless only
- Unknown
default: 0
validations:
required: true
- type: textarea
id: software-version
attributes:
label: Release version
description: If you selected ESS above, please list which Stack version(s) this bug applies to.
placeholder: |
For example:
"This bug applies to Stack versions 8.10 and newer."
"N/A"
validations:
required: false
- type: textarea
id: testing-env
attributes:
label: Testing environment
description: Please include the URL to the server or test environment, or include instructions on how to generate test data.
placeholder: |
You can find this in the Kibana dev server: https://kibana.siem.estc.dev/
validations:
required: true
100 changes: 100 additions & 0 deletions .github/ISSUE_TEMPLATE/docs-request-internal.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,100 @@
name: "Doc request for a new feature or enhancement (Elastic employees only)"
description: Request documentation for a new feature or enhancement.
title: "[Request] "
body:
- type: markdown
attributes:
value: |
Hello! This form will create an issue that the Security docs team will triage and prioritize. Please do not add any labels to your issue — we'll take care of that.
- type: textarea
id: description
attributes:
label: Description
description: Describe what needs to be documented. What details do users need to know about? What are typical workflows for the feature?
placeholder: |
What: We're introducing new feature A.
Why: This feature will make X, Y, and Z easier for the user.
How: The user navigates to *Foo* → *Bar*, then clicks the *Wow* button.
validations:
required: true
- type: textarea
id: related
attributes:
label: Background & resources
description: |
Please include relevant pull requests or issues, and at least one point of contact.
Also include any test environments where we can access the feature, and list steps to generate data we can test.
value: |
* PRs:
* Issues/metas:
* Point of contact:
* Test environments:
validations:
required: true
- type: dropdown
id: doc-set
attributes:
label: Which documentation set does this change impact?
description: ESS (classic), serverless, or both?
options:
- ESS and serverless
- ESS only
- Serverless only
- Unknown
default: 0
validations:
required: true
- type: textarea
id: version-ess
attributes:
label: ESS release
description: Please provide a release version if your request is tied to the Elastic Stack release schedule.
placeholder: |
For example:
"The functionality is being introduced in ESS version 8.18.0"
validations:
required: true
- type: input
id: release-serverless
attributes:
label: Serverless release
description: When do you expect the feature to be promoted and available in the _**serverless production environment**_?
placeholder: The week of April 1, 2024
validations:
required: true
- type: textarea
id: doc-set-differences
attributes:
label: Feature differences
description: If you selected both ESS and serverless above, please describe how, if at all, the feature differs in each platform.
placeholder: The feature is identical in ESS and serverless.
validations:
required: true
- type: textarea
id: api-docs
attributes:
label: API docs impact
description: Please provide endpoint and parameter descriptions, and request and response examples.
placeholder: |
What: We're introducing new endpoint A.
Why: Users can send a request to endpoint A to use feature A.
How: The user provides the specific information in the request.
validations:
required: true
- type: textarea
id: prereqs
attributes:
label: Prerequisites, privileges, feature flags
description: |
What are the feature's requirements _**in both ESS and serverless**_? What subscription tiers or user role privileges are required?
Is the feature behind a feature flag, and if so, what is it?
placeholder: |
* ESS: Requires Enterprise subscription; `write` privilege for `yada-yada-*` index
* Serverless: Requires Security Analytics Complete tier and Endpoint Protection Complete add-on; X, Y, or Z user roles
* Feature flag: None
validations:
required: false
- type: markdown
attributes:
value: |
Thanks for completing this form to help us understand and plan accordingly. We'll be in touch soon!
23 changes: 0 additions & 23 deletions .github/ISSUE_TEMPLATE/documentation-issue.md

This file was deleted.

58 changes: 58 additions & 0 deletions .github/ISSUE_TEMPLATE/enhancement-request.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,58 @@
name: "Request a documentation improvement"
description: Request a change to improve Elastic Security docs.
title: "[Suggestion] "
labels: "suggestion"
body:
- type: markdown
attributes:
value: |
Hello! Do you see something in our docs that needs clarification, more info, or something else we can improve? Use this form to submit a request to our [@elastic/security-docs](https://github.com/orgs/elastic/teams/security-docs) team.
- type: textarea
id: description
attributes:
label: What can we change to make the docs better?
description: Please describe what the issue is and what we can do to improve it.
placeholder: |
What: We need documentation for X.
Why: We've received support requests that indicate customers are struggling with Y in versions A and B.
validations:
required: true
- type: textarea
id: related
attributes:
label: Doc URL
description: How can we learn more about the problem?
value: |
Please include the doc URL and any other related information where applicable:
Doc URL:
Github issue link(s)/Other resources:
validations:
required: false
- type: dropdown
id: doc-set
attributes:
label: Which documentation set needs improvement?
description: ESS, serverless, or both?
options:
- ESS and serverless
- ESS only
- Serverless only
- Unknown / Not applicable
default: 0
validations:
required: true
- type: textarea
id: software-version
attributes:
label: Software version
description: Is the problem applicable to a particular release version? If so, which one(s)?
placeholder: |
For example:
"The functionality was introduced in 8.11.0, so docs need updating for 8.11+";
"The docs are good after version 8.10, but need updating in 8.7, 8.8, and 8.9"
validations:
required: true
- type: markdown
attributes:
value: |
Thanks for submitting this issue! For urgent issues, we encourage you to send a message in the [#security-docs](https://elastic.slack.com/archives/C013W8WME2Z) Slack channel.
12 changes: 0 additions & 12 deletions .github/ISSUE_TEMPLATE/issue.md

This file was deleted.

Loading
Loading