Share data with Splunk Asset and Risk Intelligence

To provide and support use of the Splunk Asset and Risk Intelligence offering, Splunk must collect or receive certain aggregated Usage Data. Customers' provision of the Usage Data described below is required and may not be opted-out. Customers who prefer not to send Usage Data or to manually send Usage Data may contact their Splunk sales representative to sign separate license terms. To learn more about product Usage Data, see the Splunk Privacy Policy.

How data is collected

Splunk Asset and Risk Intelligence uses saved searches to collect Usage Data. These searches run in the background regardless of whether or not you opt in to send usage data to Splunk, and no significant impact on performance is expected.

What data is collected

Splunk Asset and Risk Intelligence uses a scripted command to collect the following Usage Data:

  • Total counts for each of the inventory searches over the past 30 days
  • Total inventory record counts
  • Run durations of processing searches
  • The Splunk Asset and Risk Intelligence version
  • The Splunk platform version
  • Last detection information for underlying data sources