Skip to content
Substation
Forensics & Incident Response
A cloud native data pipeline and transformation toolkit for security teams.
Go
·
Latest v2.8.0 · 4mo ago
Security brief →
Features
-
Extensible data processing with built‑in functions and custom Go plugins
-
Conditional routing of logs to AWS services (S3, Kinesis, SQS, Lambda) or any HTTP endpoint
-
Schema normalization supporting ECS, OCSF, or user‑defined schemas
-
Scalable enrichment via external APIs or microservices
-
Serverless deployment on AWS with Terraform, requiring no maintenance
v2.8.0
Breaking risk
·
Breaking changes
- Removed aws-sdk-go v1 dependency
Notable features
- Added custom gjson modifier to dedupe arrays
- Added FormatFromParquet Transform
Full changelog
2.8.0 (2026-01-20)
Features
- message: add custom gjson modifier to dedupe arrays (#313) (e37da27)
- transform: Add FormatFromParquet Transform (#302) (64928e1)
Bug Fixes
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
About
Languages
Go
·
HCL
·
Jsonnet
View on GitHub
Homepage
Alternative to
Cribl
Datadog
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for ""
⌘K to open
↑↓ navigate
⏎ open