Data retention in Splunk Observability Cloud

Data retention for Splunk Observability Cloud.

The following sections list the data retention for each product in Splunk Observability Cloud.

Note: To learn more about archived metrics, see Archived metrics.

Data retention in Infrastructure Monitoring

The following table shows the retention time period for each data type in Infrastructure Monitoring.

Data resolution

Retention

1 second resolution

  • Standard license edition: 8 days

  • Enterprise license edition: 3 months

10 seconds or more

  • 13 months

Data retention in Real User Monitoring (RUM)

The following table shows the retention time period for each data type in RUM.

Data type

Retention

Spans

  • 8 days

Troubleshooting MetricSets

  • 8 days

Monitoring MetricSets

  • 13 months

Session Replay

  • 8 days

Data retention in Application Performance Monitoring (APM)

The following table shows the retention time period for each data type in APM.

Data type

Retention

Traces

  • All raw traces: 8 days

  • Traces of interest viewed in the Splunk APM user interface: up to 13 months. See Configure extended trace retention to learn how to extend the retention of specific traces of interest.

Troubleshooting MetricSets

  • 8 days

Monitoring MetricSets

  • 13 months

Profiling data

  • 8 days

Data retention in Splunk On-Call

Data collected by Splunk On-Call is retained unless you request that your data be deleted. For more information, see Splunk On-Call Security FAQ.

Data retention in Splunk Synthetic Monitoring

The following table shows the retention time period for each data type in Splunk Synthetic Monitoring.

Data type

Retention

Run results

  • Standard license edition: 8 days

  • Enterprise license edition: 3 months

Metric data

  • 13 months for both Standard and Enterprise.