@seb their pricing model didn’t work for us (ended up being way too expensive), and during the short ish amount of time we had it, I didn’t feel like we got what we needed out of it. Mostly due to the lack of detection-as-code and data retention being an issue. Also felt like the query language felt a bit more restrictive than Splunk or Panther. There are some nice things tho, like having a lower learning curve and being able to write detections across multiple log sources out of the box.