Skip to main content
API Operational Intelligence for AWS API Gateway app icon

API Operational Intelligence for AWS API Gateway

Dashboards, alerts and a morning report for Amazon API Gateway access logs and CloudTrail - traffic, latency, errors, callers, user sessions, deploy audit and ingestion-pipeline health. Indexes and sourcetypes are macros; drops onto your own data.Built by Adam Ali
splunk product badge

Default Version 1.0.2

September 11, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0

Rating
0
(0)

Log in to rate this app

Support
Developer Supported

API Operational Intelligence turns Amazon API Gateway access logs and CloudTrail into ten dashboards, five alerts and a morning report: traffic, latency and errors per API and stage, who is calling (API key, user, session), sign-in and MFA journeys, automated-QA runs, CloudTrail audit of the AWS account and of your CI/CD deploy sessions, and the health of the ingestion pipeline itself (HEC status, licence usage, index growth, overnight catch-up). Every index and sourcetype the app uses is a search macro, so it drops onto your own data without editing a dashboard. Fields are indexed at ingest, so the dashboards run on tstats and stay fast at volume. Built by Earth2 Recon to operate its own API platform - serverless microservices behind one API Gateway custom domain - and published as-is under Apache 2.0. The companion AWS ingestion pipeline (CloudWatch Logs -> Kinesis Data Firehose -> HEC, with an overnight replayer for anything Firehose could not deliver) is open source alongside the app: https://github.com/earth2recon/e2r-apioi