Back to Platform

GridVault

Logs, Evidence & Retention

Coming Soon logs evidence retention alerts audit

GridVault is the centralized logging, alerting, and retention vault for all ecosystem apps, external integrations, backups metadata, and evidence bundles supporting GridComply audits and incident after-action packets.

What It Is

GridVault is the centralized logging, alerting, and retention vault for all ecosystem apps (GridCommand, GridAlarm, GridServ, GridTrack, etc.), external systems integrated via GridIntegrate, backups/snapshots of critical configs (network configs, workstation images metadata, database dumps metadata) as references, and evidence bundles supporting GridComply audits and incident after-action packets.

GridVault provides a log ingestion catalog, searchable log explorer, alert rules (log-based), retention policies, export bundles (incident packet, compliance evidence packet), backup inventory metadata, and multi-tenant separation with strict RBAC. Actual log ingestion pipelines can be stubbed in preview.

Why It Matters

Operational telemetry, audit evidence, and retention are scattered across systems. GridVault unifies logs from the ecosystem and integrations into one searchable, alertable, retainable vault—with evidence packets for incidents and compliance. It creates a single source of truth for operational and audit evidence.

Key Capabilities

Unified Log Sources

Ecosystem apps and GridIntegrate connectors feed logs into a single catalog.

Search & Correlation

Searchable log explorer with query DSL, filters, and correlation.

Alerting on Events

Log-based and event-based alert rules with thresholds and actions.

Retention & Legal Hold

Retention policies by source, severity, compliance domain; legal hold concepts.

Evidence Packets

Incident packets, alarm packets, compliance evidence packets for export.

Backup Inventory

Configuration snapshots, network configs, workstation images metadata (preview).

Ecosystem Integrations

Deep links to GridComply, GridAlarm, GridCommand, GridPolicy, GridIntegrate.

How It Ties Into the Ecosystem

GridVault ingests from all ecosystem apps and GridIntegrate. It exports evidence to GridComply, creates incidents in GridCommand, creates alarm events in GridAlarm, and exports rules to GridPolicy.

Example Workflows

  • Search logs across GridCommand, GridAlarm, and BMS for a time range; pin results to an incident packet.
  • Create an alert rule for failed login spikes; trigger GridCommand incident on match.
  • Build a compliance evidence packet from logs and export for auditor review.
  • View backup inventory for network configs and workstation images with retention status.

Intended Users

Security analysts Compliance officers Operations engineers Incident responders Audit teams

Launch Scope & Roadmap

First

  • Log catalog
  • Search explorer
  • Alert rules
  • Evidence packets
  • Retention policies

Next

  • Backup inventory
  • Legal hold
  • Advanced correlation
  • Export formats

Later

  • AI-assisted search
  • Anomaly detection
  • Automated evidence bundling