Garrett Spong

Results 7 issues of Garrett Spong

### Summary This is a meta bug capturing several inconsistent/undesirable behaviors related to use of saved queries in detection rules. ### 1. Saved query filters referencing missing index patterns automatically...

bug
Team:SIEM
impact:medium
Feature:Detection Rules
Team:Detections and Resp
Team: SecuritySolution
Team:Detection Alerts
sdh-linked
8.5 candidate

### Problem Description Currently the Github connector only supports syncing documents with `.markdown`, `.md`, and `.rst` file extensions as [per the docs](https://www.elastic.co/guide/en/enterprise-search/current/connectors-github.html#connectors-github-client-documents-syncs). I've been working to add support for exposing...

enhancement
github

## Bug Description I was trying to sync some internal documentation from the https://github.com/elastic/security-team repo, which is an Elastic `private` repository (not `internal`), and if specifying the repo in the...

bug
team:external
github
priority:high

## Summary This is a follow-up to https://github.com/elastic/kibana/pull/184974 that updates the KB Entries API's (and underlying schema) to support `IndexEntries` in addition to `DocumentEntries`. `IndexEntries` are entries in the Knowledge...

release_note:skip
backport:skip
Feature:Security Assistant
Team:Security Generative AI
v8.16.0

## Bug Description In setting up the Zoom connector to test with the latest Security Assistant Knowledge Base features, it was noted that the scopes detailed in the [Zoom connector...

bug
team:external
priority:high

The `Rules and Connectors` UI within `Stack Management` displays all the different rule types registered with the Alerting framework, and even provides grouping by category within the `Type` filter. This...

chore
Feature:Detection Rules
Team:Detections and Resp
Team: SecuritySolution
UX Debt
Team:Detection Engine
effort:low
value:low

## Summary Adds an integration knowledge tool to Agent Builder that retrieves documentation from Fleet-installed integrations using semantic search on the `.integration_knowledge` index. The tool uses the conditional availability pattern...

release_note:enhancement
backport:skip
Team: SecuritySolution
v9.3.0