Real-time configuration intelligence for Splunk now available on Splunkbase
By Saikrishna Gundeti
Published
.png%3F2026-06-05T06%3A20%3A48.452Z&w=3840&q=100)
We’re excited to share that the Deslicer AI Insights Add-on is now available on Splunkbase. For Splunk teams, this means a new way to gain real-time visibility into your configuration state, reduce operational risk, and unlock AI-driven automation — powered by Deslicer AI, connected to the Splunk environment you already run.
When Splunk grows, complexity grows with it
Splunk is incredibly powerful but as environments scale, they also become harder to manage. Configuration changes happen frequently, often across dozens or hundreds of nodes. Drift can creep in quietly. Understanding the current state of a distributed Splunk estate takes time, deep expertise, and constant attention.
Too often, teams are forced into reactive mode:
- Manually checking configurations
- Investigating issues after something breaks
- Balancing speed against risk when making changes
The result? Time spent maintaining systems instead of improving outcomes.
From reactive maintenance to confident control
The new Deslicer AI Insights Add-on changes how teams operate. Instead of guessing what changed – or where – teams can make decisions based on live data. Instead of firefighting, they can prevent issues before they escalate.
That translates into:
- Faster troubleshooting and operational clarity.
- Safer changes, supported by auditability and human approval.
- Smarter workflows that scale as the environment grows.
It’s a shift from managing Splunk defensively to running it with confidence.
Splunk fleet intelligence, powered by Deslicer AI
The Deslicer AI Insights Add-on installs directly on your Splunk Enterprise or Splunk Cloud platform as a technology add-on. It continuously collects configuration state across indexers, search heads, forwarders, and managers – streaming it to the Deslicer AI platform in real time.
The result is a live view of your entire Splunk fleet: how every component is configured right now, where it's drifted from your approved baseline, and how it measures against your compliance levels — so you always know exactly what needs attention.
With the Insights Add-on, teams can:
- Observe live configuration state on every Splunk Enterprise host — indexers, search heads, heavy forwarders, and cluster managers.
- Detect drift the moment it happens — the Deslicer AI platform compares live state against your approved baseline.
- Index every event CIM-compliant out of the box – ready for Enterprise Security and correlation searches.
- Feed real Splunk context into Deslicer AI’s purpose-built agents — daily health checks, GDI onboarding, CIM compliance, and deployment planning — with explicit human approval, cryptographic signing, and a full audit trail on every change.
- Spot issues before they become incidents with a built-in dashboard that gives operators clear visibility into node health, collection activity, and last-seen status.
To see it in action, watch our two companion videos:
- Deslicer AI Insights — Setup in Minutes walks through how to enroll your Splunk fleet via the Deslicer Automation Copilot in under 5 minutes.
- Deslicer AI — Business Value and Insights shows how teams use the Deslicer Automation Platform to observe, plan, approve, and deploy configuration changes at scale.
AI that understands your environment, not just your prompts
Deslicer AI is purpose built for Splunk. By connecting directly to the live configuration data stream from the Insights Add on, Deslicer AI gains real operational context – how your environment is actually configured, right now.
Every change requires explicit human approval, cryptographic signing, and a full audit trail. Deslicer can run fully on premises, air gapped, or as SaaS – keeping control firmly with your team.
Built for trust, validated by the ecosystem
Availability on Splunkbase also means the Deslicer AI Insights Add-on has passed Splunk’s app review process, providing customers with an additional layer of trust and assurance.
Deslicer is an official Splunk Partner, and in 2025 we were recognized with the Splunk EMEA Technology Innovation Partner Award – a reflection of our commitment to quality, security, and meaningful innovation in the Splunk ecosystem.
Start working smarter with Splunk
The Deslicer AI Insights Add-on is available now on Splunkbase and supports both Splunk Enterprise and Splunk Cloud.
Getting started takes minutes. Install the add-on, then use the Deslicer Automation Copilot to walk through enrollment step by step — no config files, no CLI.
Observe. Plan. Approve. Deploy.
Introducing Deslicer AI: Splunk AI that actually works
Built on best-practices, safe by design - Deslicer AI automates and scales Splunk operations with context-aware agents. Free trial available now.
1 minute read
From raw Splunk data to insight dashboards
See how Deslicer AI turns existing Splunk data into insight dashboards — automatically and with best practices built in. Watch demo video.
1 minute read