Data retention in Splunk Observability Cloud
Data retention for Splunk Observability Cloud.
The following sections list the data retention for each product in Splunk Observability Cloud.
Data retention in Application Performance Monitoring (APM)
The following table shows the retention time period for each data type in APM.
|
Data type |
Retention |
|---|---|
|
Traces |
|
|
|
|
|
|
AlwaysOn Profiling and Call Graph Profiling data |
|
Data retention in Database Monitoring
Normalized queries and query samples are stored for 15 days.
Data retention in Infrastructure Monitoring
The following table shows the retention time period for each data type in Infrastructure Monitoring.
|
Data resolution |
Retention |
|---|---|
|
Less than 1 minute |
|
|
1 minute or more |
|
Data retention in Real User Monitoring (RUM)
The following table shows the retention time period for each data type in RUM.
|
Data type |
Retention |
|---|---|
|
Spans |
|
|
|
|
|
|
Data retention in Splunk On-Call
Data collected by Splunk On-Call is retained by default unless a specific request is made for the data to be deleted.
| Data type | Retention period |
|---|---|
| Incidents/events | Retained for 13 months or 10,000 incidents/events, whichever comes first. Users may pull multiple reports to gather data exceeding 10,000 incidents if they fall within the 13-month window. |
| Viewable Timeline data | Retained for 7 days or 1,000 events, whichever comes first. |
| API reporting | Retains almost all historical incident data. |
Data retention in Splunk Synthetic Monitoring
The following table shows the retention time period for each data type in Splunk Synthetic Monitoring.
|
Data type |
Retention |
|---|---|
|
Run results |
|
|
Metric data |
|