Enrich events before they reach your SIEM. 175+ sources. Live now.
Read the blog
Read the blog
Resources / Blog / Product Release Notes: October 2025

October 31, 2025

Product Release Notes: October 2025

Christian Almenar

Co-founder & CEO

Darwin Salazar

Head of Growth

October brought our biggest launch yet: Pipeline Enrichments - the industry's broadest enrichment ecosystem with 175+ sources that add real-time context to security events before they hit your SIEM. 

We also shipped 30+ new data integrations and quality-of-life improvements that make security teams' lives easier. 

Let's dive in!

Introducing Pipeline Enrichments

Our JSON path picker lets you select nested fields directly from sample data—just click to add.

Security logs arrive with more questions than answers. When an alert fires, your team burns 30+ minutes answering: Is this user still employed? Is this IP legitimate? Is this system critical?

Pipeline Enrichments solves this. Unlike tools that require complex joins, CSV lookup tables, and only enrich after SIEM ingestion, Monad lets you add context from 175+ sources with a few clicks—before events hit your SIEM. No SQL expertise, no manual table management, no post-ingestion enrichment latency.

Plus, test enrichment logic in our sandbox environment before production deployment, and use our JSON path picker for point-and-click field selection.

Read the full launch post →

30+ New Integrations

  • ServiceNow (21 inputs) - Universal, Database Instance, User, Incident, Change Request, Config Items, Infrastructure Services, and more
  • 1Password (3 inputs) - Audit Logs, Item Usages, and Sign-in Attempts for complete credential access visibility
  • Duo Security (3 inputs) - Offline Enrollment Logs, Activity Logs, and Telephony Logs for comprehensive MFA monitoring
  • Polymer DLP Activity Logs - Track data exfiltration attempts and policy violations
  • PagerDuty Audit Logs - Monitor incident response workflows and on-call changes
  • Salesforce PubSub - Real-time streaming of Salesforce events for high-volume ingestion
  • Coda Audit Events - Visibility into collaboration and document access
  • Zoom Activity Logs - Meeting joins, recordings, and admin actions
  • Tanium Gateway & Monad GraphQL Inputs - Flexible queries for endpoint and security data
  • Datadog Logs Output - Ship processed security logs directly to Datadog for centralized monitoring and alerting

UI Improvements

Beta Feature Indicators

New visual badges on component cards show which features are still in beta. 

Per-Destination Egress Metrics

See exactly how much data is flowing to each output destination. Critical for cost management, capacity planning, and identifying which outputs are consuming the most bandwidth.

Looking Ahead

October brought us Pipeline Enrichments with 175+ sources, 30+ new data integrations, and UI improvements that remove friction from your daily workflow. 

November? Even more fireworks.

We build based on what's actually broken in your day-to-day. What's eating up your security team's time? What data sources are you still copying into CSVs manually or building Python scripts for??

Tell us, and we'll fix it.

Try Our Free Trial Today!

Try Monad today on our free tier - up to 1TB of ingested data, completely free. No catches.

Got questions? Hit us up at product@monad.com! We're always around to help.

Related content

Product Release Notes: October 2025

Darwin Salazar

|

October 31, 2025

Product Release Notes: October 2025

Introducing Pipeline Enrichments: Real-Time Context Before SIEM Ingestion

Darwin Salazar

|

October 30, 2025

Introducing Pipeline Enrichments: Real-Time Context Before SIEM Ingestion

Enrich Before SIEM Ingestion, Not After

Darwin Salazar

|

October 28, 2025

Enrich Before SIEM Ingestion, Not After

Security runs on data.
Make it work for you.

Effortlessly transform, filter, and route your security data. Tune out the noise and surface the signal with Monad.