Nano
SIEM and observability platform that unifies security logs, OpenTelemetry traces and metrics in one store with one query language for sub-second search and agentic investigation
The product is a SIEM and observability platform that unifies security logs, OpenTelemetry traces and metrics in one store with one query language for sub-second search, detection and agentic investigation. It sells to developers, operations, IT and security teams in b2b organizations ranging from startups to enterprises that need control over security and observability data. It is positioned as built from scratch with a dedicated cluster per tenant, an open-core Rust and ClickHouse engine, and deployment options from cloud to local, hybrid and air-gapped versus shared-tenant, per-gigabyte metered SIEMs.
Key features
- Sub-second search over billions of events
- Unified store for logs traces metrics
- One query language over all data
- Pipe-based search with autocomplete
- Detection rules with MITRE mapping
- Risk scoring and prevalence enrichment
- Agentic investigation assistant
- Plain English to query generation
- Parser generation from sample log
- Ingest from 50+ sources
- OpenTelemetry traces and metrics ingest
- Columnar storage with ClickHouse
- Rust core with Vector ingest
- Dedicated cluster per tenant
- Cloud local hybrid air-gapped deploy
- No social media activity within the last 30 days
- Blog
- Partner program
- Marketplace
- Community
- Docs
- Changelog
- Security teams
- DevOps sre teams
- IT teams