icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

We are working on something new...

A Fresh New Splunkbase
We are designing a New Splunkbase to improve search and discoverability of apps. Check out our new and improved features like Categories and Collections. New Splunkbase is currently in preview mode, as it is under active development. We welcome you to navigate New Splunkbase and give us feedback.

Accept License Agreements

Thank You

Downloading Splunk Datasets Add-on
SHA256 checksum (splunk-datasets-add-on_10.tgz) 37979c2b6f0a7dcf0880fae616aff81c8c3ec8186e08445cb012b969d614361d
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate


Splunk Datasets Add-on

Splunk Cloud
Splunk Built
The Splunk Datasets Add-on provides an intuitive interface to build, edit and analyze table datasets (tables) without SPL. After you install it, tables become a seamless part of your Splunk user experience.

With the Splunk Datasets Add-On, you can:
- Build tables with initial data from source types and indexes, searches, or existing datasets.
- Quickly shape your tables to fit your analysis and reporting requirements, without needing to learn or use complex SPL.
- Maintain tables over time or share them with others and let them take the tables in new directions.

Splunk Enterprise customers should install the Datasets Add-on as part of any installation of Splunk Enterprise 6.5.x until 8.0.x. The Splunk Datasets Add-on is preinstalled with Splunk Cloud instances of version 6.5.x or later and Splunk Enterprise (on prem) 8.1 or later.


With Splunk 6.5, we are introducing a new type of dataset called table datasets, or tables.

Use the Splunk Datasets Add-on to create, edit and analyze tables.
Create tables: Build and curate sophisticated tables using an interaction-based UI, and without any need to learn or write SPL.
Edit tables: Filter events, edit field values, add fields from lookups and other sources, perform statistical data aggregations, and more.
Analyze tables: The Table Editor provides a "Summarize Fields" view, which displays a variety of analytical details about the fields in your table. You can see top value distributions, null value percentages, numeric value statistics, and more. Open datasets in Pivot to analyze their data and translate their contents into visualization-rich reports and dashboard panels.

Tables and the Table Editor are seamlessly integrated into version 6.5 when you install the Splunk Datasets Add-on.

For Splunk Datasets Add-On documentation go here.

To view a short demo go here.


  1. Download the Splunk Datasets Add-on. The file downloads with a .tar.gz extension. Do not attempt to run this file.
  2. Save the archive in an accessible location.
  3. Log into Splunk Enterprise on the host on which you want to install the Splunk Datasets Add-on.
  4. In the Home screen, select Apps > Manage Apps.
  5. Click Install app from file.
  6. Click Choose file and locate the installation package you just uploaded.
  7. Click Upload. Your Splunk instance installs the Splunk Datasets Add-on.

After installation, the Splunk Datasets Add-on does not appear as a separate app in the Apps menu.

See the Splunk Datasets Add-on documentation for more installation information.

Release Notes

Version 1.0
July 28, 2016

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk Inc. in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.