53 versions
- [Telemetry] Emit server EBT on rule create with optional template id (#282140)latestOpenAPI 3.0.336679f6d92026-08-07 21:38
- [Agent Builder] Hide rename and delete conversation buttons in the UI when user has no permission (#281982)OpenAPI 3.0.3no API changesfef37412026-08-07 20:37
- [Fleet] Add OAS tags to api/fleet/space_settings API endpoints (#283420)OpenAPI 3.0.32178621c2026-08-06 14:55
- [Lens as code] Fix histogram granularity (#283058)OpenAPI 3.0.3no API changesc69a8592026-08-06 08:40
- [Lens as code] Fix duration `format` schema (#282815)OpenAPI 3.0.3no API changes6c1d09d2026-08-06 06:52
- [Lens as code] Fix bucket terms operation schema to support both string and numeric values in `includes`/`excludes` (#282752)OpenAPI 3.0.3no API changesd2d328e2026-08-05 10:05
- [One Workflow] Aligns executions view with the design (#273795)OpenAPI 3.0.31c304c632026-08-05 10:01
- [ML] Update docsCountPercentage params for anomaly detection jobs health rule schema (#282427)OpenAPI 3.0.31c0062172026-08-04 23:40
- [Fleet] Increase output hosts maxSize from 10 to 100 (#282066) (#282397)OpenAPI 3.0.3no API changes20057842026-08-04 13:04
- docs: warn before deleting linked exception lists (#282198)OpenAPI 3.0.3no API changes808462e2026-08-04 12:57
- [Security Solution][Endpoint] Enable cancel response action (#279290)OpenAPI 3.0.31112e3f79d2026-08-04 11:52
- [Discover Session As Code] Preserve grid display settings (#282383)OpenAPI 3.0.3no API changes8eadbb32026-08-04 10:14
- [DOCS] Add overlay for significant event API tag (#281077)OpenAPI 3.0.3no API changesc0e05be2026-08-04 08:32
- [Security Solution][Endpoint] Add "Kill descendants" option to kill-process automated response action (#281120)OpenAPI 3.0.3313144121e1dadd42026-08-03 16:10
- [EDR Workflows][Custom YARA signatures] API validator - 1st PR (#275753)OpenAPI 3.0.3180275fb45672026-08-03 09:08
- [One Workflow] Mark workflow execution query params as 9.5+ (#282166)OpenAPI 3.0.3no API changes4d7b9952026-08-03 07:54
- [Agent Builder] Support Confirmation (HITL) for user defined tools (#281896)OpenAPI 3.0.32d4ceddb2026-07-31 20:32
- [Entity Analytics] Mark GET /api/risk_score/history as added in 9.5.0 (#281675)OpenAPI 3.0.3no API changes128122f2026-07-31 09:40
- [APM] Dashboard ↔ Service map: preserve filter context and multi-service highlight (#281585)OpenAPI 3.0.3no API changes983e1c12026-07-30 14:10
- Add extendedPrivileges to route authz config (#278268)OpenAPI 3.0.3no API changes508c60b2026-07-30 13:21
- [Fleet] Pass existing expiration field in POST /enrollment_api_keys to security APIs (#281324)OpenAPI 3.0.31426a72e62026-07-30 08:05
- [Nightshift] Render real detection occurrence charts (#281259)OpenAPI 3.0.3no API changes11461c32026-07-29 21:28
- [Agent Builder] Allow passing `configuration_overrides` in `ai.agent` workflow step and allow overriding `skill_ids` (#280617)OpenAPI 3.0.34a153ce22026-07-29 14:03
- [Fleet] Add policy_base_id field to eliminate prefix/wildcard agent policy queries (B2) (#279716)OpenAPI 3.0.3383bf1972026-07-28 16:25
- [Agent Builder] Test field-level availability metadata in OAS (#275545)OpenAPI 3.0.3no API changes8f3b6f72026-07-28 16:16
- [Lens as code] Preserve custom name for ad-hoc form based dataviews (#280546)OpenAPI 3.0.3no API changesc8f33522026-07-28 08:36
- [ResponseOps][Rules, MWs] Move rrule and schedule schema to a package (#280526)OpenAPI 3.0.3182790d052026-07-27 13:52
- Bound unbounded strings in saved_objects_tagging route schemas (#280764)OpenAPI 3.0.371015ed41a2026-07-27 11:52
- feat(fleet/epm): add allow_outdated_version flag for IaC pinned package installs (#280316)OpenAPI 3.0.33dd6bfb22026-07-27 08:13
- [ML] Add thresholdType/docsCountPercentage params to anomaly detection jobs health rule schema (#279985)OpenAPI 3.0.321bf21fe2026-07-24 14:44
- [Entity Analytics] Check privilges before trying to install or init ES V2 (#280251)OpenAPI 3.0.326d84ba22026-07-24 13:11
- [Agent Builder] Link API tutorial from API docs (#280577)OpenAPI 3.0.3no API changes93fbbe12026-07-24 10:06
- [Security Solution] Add logic to post initialization open api docs (#279526)OpenAPI 3.0.316fc82d32026-07-24 08:28
- [Webhook connector] Fix OpenAPI docs for OAuth2 client credentials and additional HTTP methods (#280003)OpenAPI 3.0.3209a981a82026-07-24 00:41
- [Cases][Templates] Expand template defaults server-side on case create (#280143)OpenAPI 3.0.313b5483e2026-07-23 01:42
- [Lens as code] Preserve ad-hoc data view field settings and allow_hidden_indices through the config-builder round-trip (#280086)OpenAPI 3.0.3no API changes913d2f62026-07-23 01:17
- [Cases][Kibana] - Ensure analytics data views are updated sooner (#280001)OpenAPI 3.0.3no API changes0567d022026-07-22 21:21
- [Cases][Templates] Add public applicable extended-fields discovery API (#279684)OpenAPI 3.0.32c2324f52026-07-22 15:21
- [Attacks Public API] Remove feature flag for Attacks API and publish public OAS documentation (#277822)OpenAPI 3.0.34d8bf8eb2026-07-22 07:45
- docs: fix Saved Objects API links in detection rule docs (#278887)OpenAPI 3.0.3no API changes37c61962026-07-21 18:18
- [One Workflow] Fix import workflow by checking cross-space soft deleted ids (#277042)OpenAPI 3.0.310c2491b2026-07-21 16:01
- [Security Solution] Bound endpoint metadata request fields (#275711)OpenAPI 3.0.316c2d12922026-07-21 10:21
- [Security Solution] Bound script library request fields (#275710)OpenAPI 3.0.32141a6c23142026-07-21 10:20
- [Security Solution] bound response action strs/arrays (#274987)OpenAPI 3.0.31234678a5152026-07-21 03:12
- [As Code] Allow filtering dashboards and links list routes by tag names (#278874)OpenAPI 3.0.334fe7942026-07-21 00:57