OpenSearch
OpenSearch provides search, analytics, and log exploration over your own clusters. Antimetal queries it for the operational records behind an incident.
What Antimetal does with OpenSearch
- Search indices for relevant events and logs
- Run analytics queries across your data
- Inspect cluster and shard health
- Explore logs stored outside your observability vendor
Connecting OpenSearch
Go to Integrations in the Antimetal dashboard and find OpenSearch.
Click Connect and follow the prompt. Depending on the tool this is either an OAuth handoff or a read-only credential you generate in OpenSearch and paste into Antimetal.
Once OpenSearch shows as connected, Antimetal begins pulling from it during investigations. No further configuration is required.
Permissions and access
Antimetal connects over MCP with read-only access and performs no write operations. The exact scopes depend on the credential you issue in the vendor tool — grant read access only.
All tenant data is processed in isolated environments. See security and compliance for details.
Need help?
Contact us via Slack or at support@antimetal.com.
