• fix(fleet): agentless orphan cleanup respects ownership and force (#287571)latestOpenAPI 3.0.32ddfb10f2026-08-28 09:41
  • [Synthetics] Support certificateErrorSpkiAllowlist for browser monitors (#284094)OpenAPI 3.0.3277c497e2026-08-28 09:12
  • [Osquery] Report distinct agents, not response docs, on scheduled executions (#286879)OpenAPI 3.0.3no API changes84181db2026-08-27 17:33
  • [Osquery] Remove graduated queryHistoryRework and unifiedDataTable feature flags (#284650)OpenAPI 3.0.3no API changesa364c162026-08-27 14:11
  • [Fleet] Validate uploaded packages before install (#286094)OpenAPI 3.0.3no API changes30639152026-08-27 10:45
  • [Discover][Table] Add JSON view UI toggle (#285912)OpenAPI 3.0.3no API changese2a81af2026-08-27 07:10
  • [ResponseOps][Alerting v2] Limit the upsert action policy id param length (#286988)OpenAPI 3.0.311d6cf9762026-08-26 14:12
  • [Custom content] Enables custom HTML, CSS panels in our dashboards (#286439)OpenAPI 3.0.3no API changes96405892026-08-26 14:03
  • [Agent Builder] Add thumbs-up / thumbs-down feedback on agent responses (#283897)OpenAPI 3.0.3no API changes3a319382026-08-26 13:52
  • [Agent Builder] remove inline vis rendering (#287255)OpenAPI 3.0.32f5e66ad2026-08-26 13:30
  • [AlertingV2] Add artifact type registry for per-type schema validation (#285564)OpenAPI 3.0.3no API changes84f05fc2026-08-26 11:59
  • [Security Solution] Fix PATCH rules API silently resetting max_signals to 100 (#286518)OpenAPI 3.0.3197ef59f262026-08-26 08:56
  • [SLO] Add project scope selector for cross-project search (#285463)OpenAPI 3.0.3113175753a2026-08-25 15:35
  • [Fleet] Adjust Outputs PUT privileges (#286837)OpenAPI 3.0.3no API changesa293df72026-08-25 10:32
  • [Fleet] [Alerting V2] Split Fleet alerting rule templates into Alerting v2 and Classic Alerting tabs (#285421)OpenAPI 3.0.31dda0e682026-08-24 18:26
  • [Alerting V2] make the breach block optional in composed queries (#285263)OpenAPI 3.0.39375c935f2026-08-22 01:05
  • [APM] Add low_count detector and txLowCount to Anomaly rule schema (intermediate release) (#286264)OpenAPI 3.0.31362b71c2026-08-21 14:37
  • [Workflows] Require read on execution detail routes (#285645)OpenAPI 3.0.3no API changes680442d2026-08-20 10:16
  • [Dashboard][Lens] Remove asCode.useGASchemas feature flag branches (#285015)OpenAPI 3.0.31fa953542026-08-19 00:34
  • [Inference] Pass request-level reasoning on chatComplete (default none with tools) (#284554)OpenAPI 3.0.3no API changes79c39862026-08-18 20:24
  • feat(agent builder): cross project search support for chat UI (#285252)OpenAPI 3.0.32962dbc02026-08-18 20:19
  • [Alerting V2] Split rule-management skill concepts into granular references (#285740)OpenAPI 3.0.322048063332026-08-18 18:25
  • [Agent Builder] add API to create empty conversations (#285128)OpenAPI 3.0.3115b934a2026-08-18 17:46
  • [Alerting v2] Publish OAS for v2 APIs with named schema components (#279519)OpenAPI 3.0.35233db9842026-08-17 23:06
  • Move Entity Store to platform shared with solution-neutral indices (#282130)OpenAPI 3.0.31311c4786ef2026-08-17 22:56
  • [Entity Analytics] Deprecating privileged user monitoring APIs (#281828)OpenAPI 3.0.3115a592a52026-08-17 21:11
  • [Agent Builder] Conversation access-control endpoints (#284474)OpenAPI 3.0.310a9a87f2026-08-17 19:43
  • [Fleet] Support preconfigured agent binary download sources (#283454)OpenAPI 3.0.341c8d6ca2026-08-17 12:28
  • [Agent Builder] Add a read_only flag to conversations (#284065)OpenAPI 3.0.32f3ba2262026-08-14 13:24
  • [Log threshold] Fix criteria API validation (#283965)OpenAPI 3.0.31c2e33422026-08-14 11:14
  • [Osquery][Defend Workflows] Fix stale per-query interval overrides shadowing pack-level schedule (#283635)OpenAPI 3.0.35a8647642026-08-13 14:33
  • [Streams] Add destination based processing (#279815)OpenAPI 3.0.32326f668232026-08-13 11:18
  • [One workflows] Do not require `read` to execute a workflow (#284822)OpenAPI 3.0.3no API changes2143f4b2026-08-13 09:37
  • [OAS] Fix zod .nullable() emitting a half-converted anyOf placeholder (#284550)OpenAPI 3.0.3202034d57262026-08-12 22:38
  • [Agent Builder] Default new agents to `private` (#282015)OpenAPI 3.0.3no API changes4cf42b22026-08-12 13:20
  • [Lens][XY] Add gradient style option to area charts (#277546)OpenAPI 3.0.3no API changese63d88c2026-08-11 09:52
  • [Fleet] Add user notification when automatic unenrollment is scheduled (#283123)OpenAPI 3.0.31d5a55832026-08-11 09:00
  • [OAS Docs] Fix Dashboards & Visualizations placeholder operationIds and summaries (#284047)OpenAPI 3.0.310a6e21332026-08-11 08:53
  • [Fleet] Add pre-existing customization checks to namespace index template creation (#280551)OpenAPI 3.0.3433c49ed32026-08-10 15:10
  • [Telemetry] Emit server EBT on rule create with optional template id (#282140)OpenAPI 3.0.336679f6d92026-08-07 21:38
  • [Agent Builder] Hide rename and delete conversation buttons in the UI when user has no permission (#281982)OpenAPI 3.0.3no API changesfef37412026-08-07 20:37
  • [Context Engine] Add `ai_indices` on agent config (#283000)OpenAPI 3.0.32b0a9f9c2026-08-07 10:36
  • [Cases][Templates] Add public template CRUD API (#280144)OpenAPI 3.0.3366901ba2026-08-06 15:00
  • [Fleet] Add OAS tags to api/fleet/space_settings API endpoints (#283420)OpenAPI 3.0.32178621c2026-08-06 14:55
  • [Lens as code] Fix histogram granularity (#283058)OpenAPI 3.0.3no API changesc69a8592026-08-06 08:40
  • [Lens as code] Fix duration `format` schema (#282815)OpenAPI 3.0.3no API changes6c1d09d2026-08-06 06:52
  • [Lens as code] Fix bucket terms operation schema to support both string and numeric values in `includes`/`excludes` (#282752)OpenAPI 3.0.3no API changesd2d328e2026-08-05 10:05
  • [One Workflow] Aligns executions view with the design (#273795)OpenAPI 3.0.31c304c632026-08-05 10:01
  • [ML] Update docsCountPercentage params for anomaly detection jobs health rule schema (#282427)OpenAPI 3.0.31c0062172026-08-04 23:40
  • [Fleet] Don't allow proxy config in Kafka outputs (#282313)OpenAPI 3.0.363c23c482026-08-04 14:06