53 versions

  • [Telemetry] Emit server EBT on rule create with optional template id (#282140)latestOpenAPI 3.0.336679f6d92026-08-07 21:38
  • [Agent Builder] Hide rename and delete conversation buttons in the UI when user has no permission (#281982)OpenAPI 3.0.3no API changesfef37412026-08-07 20:37
  • [Context Engine] Add `ai_indices` on agent config (#283000)OpenAPI 3.0.32b0a9f9c2026-08-07 10:36
  • [Cases][Templates] Add public template CRUD API (#280144)OpenAPI 3.0.3366901ba2026-08-06 15:00
  • [Fleet] Add OAS tags to api/fleet/space_settings API endpoints (#283420)OpenAPI 3.0.32178621c2026-08-06 14:55
  • [Lens as code] Fix histogram granularity (#283058)OpenAPI 3.0.3no API changesc69a8592026-08-06 08:40
  • [Lens as code] Fix duration `format` schema (#282815)OpenAPI 3.0.3no API changes6c1d09d2026-08-06 06:52
  • [Lens as code] Fix bucket terms operation schema to support both string and numeric values in `includes`/`excludes` (#282752)OpenAPI 3.0.3no API changesd2d328e2026-08-05 10:05
  • [One Workflow] Aligns executions view with the design (#273795)OpenAPI 3.0.31c304c632026-08-05 10:01
  • [ML] Update docsCountPercentage params for anomaly detection jobs health rule schema (#282427)OpenAPI 3.0.31c0062172026-08-04 23:40
  • [Fleet] Don't allow proxy config in Kafka outputs (#282313)OpenAPI 3.0.363c23c482026-08-04 14:06
  • [Fleet] Increase output hosts maxSize from 10 to 100 (#282066) (#282397)OpenAPI 3.0.3no API changes20057842026-08-04 13:04
  • docs: warn before deleting linked exception lists (#282198)OpenAPI 3.0.3no API changes808462e2026-08-04 12:57
  • [Security Solution][Endpoint] Enable cancel response action (#279290)OpenAPI 3.0.31112e3f79d2026-08-04 11:52
  • [Discover Session As Code] Preserve grid display settings (#282383)OpenAPI 3.0.3no API changes8eadbb32026-08-04 10:14
  • [DOCS] Add overlay for significant event API tag (#281077)OpenAPI 3.0.3no API changesc0e05be2026-08-04 08:32
  • [* as Code] Migrate to `@kbn/zod` (#268329)OpenAPI 3.0.34399cddc902026-08-03 16:42
  • [Security Solution][Endpoint] Add "Kill descendants" option to kill-process automated response action (#281120)OpenAPI 3.0.3313144121e1dadd42026-08-03 16:10
  • [EDR Workflows][Custom YARA signatures] API validator - 1st PR (#275753)OpenAPI 3.0.3180275fb45672026-08-03 09:08
  • [One Workflow] Mark workflow execution query params as 9.5+ (#282166)OpenAPI 3.0.3no API changes4d7b9952026-08-03 07:54
  • [Agent Builder] Support Confirmation (HITL) for user defined tools (#281896)OpenAPI 3.0.32d4ceddb2026-07-31 20:32
  • [SLO] Handle Cross-Project Search (CPS) (#279594)OpenAPI 3.0.3175f2f3bd2026-07-31 19:23
  • [Entity Analytics] Mark GET /api/risk_score/history as added in 9.5.0 (#281675)OpenAPI 3.0.3no API changes128122f2026-07-31 09:40
  • [APM] Dashboard ↔ Service map: preserve filter context and multi-service highlight (#281585)OpenAPI 3.0.3no API changes983e1c12026-07-30 14:10
  • Add extendedPrivileges to route authz config (#278268)OpenAPI 3.0.3no API changes508c60b2026-07-30 13:21
  • [Fleet] Pass existing expiration field in POST /enrollment_api_keys to security APIs (#281324)OpenAPI 3.0.31426a72e62026-07-30 08:05
  • [Nightshift] Render real detection occurrence charts (#281259)OpenAPI 3.0.3no API changes11461c32026-07-29 21:28
  • [Agent Builder] Allow passing `configuration_overrides` in `ai.agent` workflow step and allow overriding `skill_ids` (#280617)OpenAPI 3.0.34a153ce22026-07-29 14:03
  • [Entity Analytics] Display manual watchlist sources (#281070)OpenAPI 3.0.348b24cff2026-07-29 12:51
  • [Fleet] Add policy_base_id field to eliminate prefix/wildcard agent policy queries (B2) (#279716)OpenAPI 3.0.3383bf1972026-07-28 16:25
  • [Agent Builder] Test field-level availability metadata in OAS (#275545)OpenAPI 3.0.3no API changes8f3b6f72026-07-28 16:16
  • [Lens as code] Preserve custom name for ad-hoc form based dataviews (#280546)OpenAPI 3.0.3no API changesc8f33522026-07-28 08:36
  • [ResponseOps][Rules, MWs] Move rrule and schedule schema to a package (#280526)OpenAPI 3.0.3182790d052026-07-27 13:52
  • Bound unbounded strings in saved_objects_tagging route schemas (#280764)OpenAPI 3.0.371015ed41a2026-07-27 11:52
  • feat(fleet/epm): add allow_outdated_version flag for IaC pinned package installs (#280316)OpenAPI 3.0.33dd6bfb22026-07-27 08:13
  • [ML] Add thresholdType/docsCountPercentage params to anomaly detection jobs health rule schema (#279985)OpenAPI 3.0.321bf21fe2026-07-24 14:44
  • [Entity Analytics] Check privilges before trying to install or init ES V2 (#280251)OpenAPI 3.0.326d84ba22026-07-24 13:11
  • [Agent Builder] Link API tutorial from API docs (#280577)OpenAPI 3.0.3no API changes93fbbe12026-07-24 10:06
  • [Security Solution] Add logic to post initialization open api docs (#279526)OpenAPI 3.0.316fc82d32026-07-24 08:28
  • [Webhook connector] Fix OpenAPI docs for OAuth2 client credentials and additional HTTP methods (#280003)OpenAPI 3.0.3209a981a82026-07-24 00:41
  • [Cases][Templates] Expand template defaults server-side on case create (#280143)OpenAPI 3.0.313b5483e2026-07-23 01:42
  • [Lens as code] Preserve ad-hoc data view field settings and allow_hidden_indices through the config-builder round-trip (#280086)OpenAPI 3.0.3no API changes913d2f62026-07-23 01:17
  • [Cases][Kibana] - Ensure analytics data views are updated sooner (#280001)OpenAPI 3.0.3no API changes0567d022026-07-22 21:21
  • [Cases][Templates] Add public applicable extended-fields discovery API (#279684)OpenAPI 3.0.32c2324f52026-07-22 15:21
  • [Attacks Public API] Remove feature flag for Attacks API and publish public OAS documentation (#277822)OpenAPI 3.0.34d8bf8eb2026-07-22 07:45
  • Headers are an object, not a string (#279705)OpenAPI 3.0.322703ecf72026-07-21 21:58
  • [Fleet] Add rotate uninstall token API and UI (#278923)OpenAPI 3.0.31495698b2026-07-21 20:40
  • docs: fix Saved Objects API links in detection rule docs (#278887)OpenAPI 3.0.3no API changes37c61962026-07-21 18:18
  • [One Workflow] Fix import workflow by checking cross-space soft deleted ids (#277042)OpenAPI 3.0.310c2491b2026-07-21 16:01
  • [Security Solution] Bound endpoint metadata request fields (#275711)OpenAPI 3.0.316c2d12922026-07-21 10:21
  • [Security Solution] Bound script library request fields (#275710)OpenAPI 3.0.32141a6c23142026-07-21 10:20
  • [Security Solution] bound response action strs/arrays (#274987)OpenAPI 3.0.31234678a5152026-07-21 03:12
  • [As Code] Allow filtering dashboards and links list routes by tag names (#278874)OpenAPI 3.0.334fe7942026-07-21 00:57