Reference
Glossary
The terms used across the documentation, defined once.
- Causal chain
- The ordered sequence of related events that explains how a state came about. What an investigation reconstructs.
- Vantage
- Connector
- A configured link between a telemetry source and Datafabric. Each connector has its own setup guide under Integrations.
- IntegrationsDatafabric
- Crucible
- The detection validation product. Tests detection content against retained telemetry before it reaches production.
- Datafabric
- The telemetry substrate. Captures, retains, and governs full-fidelity telemetry, and is the layer every other product reads from.
- Datafabric
- Detection
- Encoded knowledge, derived from research, evaluated against telemetry. In Vantage a detection produces an alert as a byproduct of understanding.
- Vantage
- Entity history
- Everything known about one entity, a host, user, or process, assembled across sources and across time.
- VantageSynthAI
- Full-fidelity telemetry
- Telemetry retained exactly as produced, without sampling, truncation, or lossy summarisation.
- Datafabric
- Grounding
- Constraining an answer to evidence held in retained telemetry, with citations back to the underlying events.
- SynthAI
- HYPERCLOUD
- The deployment model for running Bloo in an environment you control, including tenancy and access management.
- HYPERCLOUD
- Machine consumer
- An agent or service that reads telemetry programmatically. Bloo is built for machine consumers first, humans second.
- SynthAI
- Organizational memory
- The compounding record of what happened across the enterprise. It gains value with age rather than expiring.
- Parser
- The rule that maps a raw event into schema fields. A parsing failure leaves an event stored but not structured.
- Datafabric
- Retention window
- How long a class of telemetry stays queryable. Configured per source or per schema, and priced by time rather than volume.
- Datafabric
- Schema
- The field structure applied to raw events so they become machine-consumable and comparable across sources.
- Datafabric
- Storage tier
- Where retained telemetry physically sits. Hot tiers answer fast; cold tiers hold long histories at lower cost.
- Datafabric
- SynthAI
- The reasoning product. Answers questions and serves agents with context grounded in retained telemetry.
- SynthAI
- System of record
- The authoritative store for enterprise telemetry. Other systems, including a SIEM, consume from it rather than holding their own copy.
- Datafabric
- Telemetry capture
- The act of bringing telemetry into Datafabric from a source. Preferred over "ingestion", which implies a per-volume cost model.
- Datafabric
- Telemetry Intelligence
- The category Bloo defines: telemetry retained in full fidelity, structured for machines, and reasoned over continuously rather than queried on demand.
- Vantage
- The security product. Investigates entity histories, evaluates detections, and maintains understanding of enterprise activity.
- Vantage