I like how easy it was for me to configure my own rules/policies using their API so i can write them in python rather than having to use cli tools which are difficult to get used too quickly with all your other code. It also has good performance when you have large amounts of historical logs coming through at once! Not much - but what there is works well enough without any major issues reported by others either here nor elsewhere online yet :) We've been able solve problems where we previously had no way forward because our existing log management software didn't give us sufficient flexibility around filtering out some types of events from being stored into audit tables etc.
ο»Ώ