A practitioner-built catalog of Splunk apps, Cribl packs, and SPL utilities — the same tooling running against real production scale. Explore each one, watch it work, then try it yourself.
Pick a demo below — the player swaps to whatever you choose.
Drop the file at and it plays here automatically.
Modals, toasts, form controls, progress bars, and data tables for Splunk dashboards.
Drop high-cardinality labels and aggregate noisy metrics before they hit your TSDB.
Score your SPL against 70+ best-practice rules with real-time feedback and tips.
Production-ready apps for Splunk admins and SOC teams — investigation, asset visibility, governance, and dashboard tooling.
A UI component library for Splunk dashboards — modals, toasts, form controls, progress bars, and data tables.
Animated blast radius, MITRE ATT&CK coverage, kill-chain reconstruction, and IOC enrichment across 9+ ES data models.
Discover, classify, and track every asset across your Splunk environment. Real-time inventory, ownership, and lifecycle visibility for IT and security.
A SIEM training platform for entry-level analysts — 150 SPL challenges, sample security data, and hands-on threat-detection exercises.
Monitor license usage, search cost, and resource consumption — and apply governance policies automatically.
Watch source types for data gaps. Detects when a source type stops logging and flags it against configurable thresholds.
Purpose-built packs for Cribl Stream — shape, reduce, and route observability data to cut volume and keep the signal.
Drop high-cardinality labels and aggregate noisy metrics before they hit your TSDB. Typical environments cut metric volume by 60–90%.
Live-capture pack for Cribl Stream. Sample and inspect data in-flight without disrupting your pipelines or touching destinations.
Workflow upgrades for anyone who lives in the SPL search bar.
Terminal-style tab completion for SPL with fish-style ghost text from your search history, plus 40+ built-in abbreviations for faster queries.
Score your SPL against 70+ best-practice rules. Real-time feedback, optimization tips, achievements, and efficiency tracking.
One vendor-neutral umbrella, two vendor communities. Monthly content drops, tutorials, and early access to everything above.
Questions about a tool, a feature request, or interested in the network? Reach out directly — this catalog grows from practitioner requests.
Get in touchDrop the file at and it'll play here automatically.