Skip to content

Conversation

KDKHD
Copy link
Member

@KDKHD KDKHD commented Jul 17, 2025

Closes: https://github.com/elastic/docs-content-internal/issues/102

Update Security documentation to reflect changes to how the Security AI assistant generates ES|Ql.

9.1 PR: elastic/docs-content#2168

@KDKHD KDKHD requested a review from a team as a code owner July 17, 2025 11:31
Copy link

A documentation preview will be available soon.

Request a new doc build by commenting
  • Rebuild this PR: run docs-build
  • Rebuild this PR and all Elastic docs: run docs-build rebuild

run docs-build is much faster than run docs-build rebuild. A rebuild should only be needed in rare situations.

If your PR continues to fail for an unknown reason, the doc build pipeline may be broken. Elastic employees can check the pipeline status here.

@KDKHD KDKHD changed the base branch from main to 8.19 July 17, 2025 11:32
@KDKHD
Copy link
Member Author

KDKHD commented Jul 17, 2025

/ci

@KDKHD
Copy link
Member Author

KDKHD commented Jul 17, 2025

run docs-build

@KDKHD KDKHD changed the title Enhancement/security esql with self healing [Security Solution] [AI assistant] Enhancement/security esql with self healing Jul 17, 2025
@KDKHD KDKHD changed the title [Security Solution] [AI assistant] Enhancement/security esql with self healing [Security Solution] [AI assistant] Docs for AI assistant esql generation with self healing Jul 18, 2025

Elastic AI Assistant allows you to take full advantage of the {elastic-sec} platform to improve your security operations. It can help you write an {esql} query for a particular use case, or answer general questions about how to use the platform. Its ability to assist you depends on the specificity and detail of your questions. The more context and detail you provide, the more tailored and useful its responses will be.

NOTE: The agent has access to index names and field metadata from your cluster. This contextual information helps improve ES|QL generation, though it may slightly increase response times.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
NOTE: The agent has access to index names and field metadata from your cluster. This contextual information helps improve ES|QL generation, though it may slightly increase response times.
NOTE: AI Assistant has access to index names and field metadata from your cluster. This contextual information helps improve {{esql}} generation, however it may slightly increase response times.

How would the user control whether this metadata is included?

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

They can't control this currently. I will speak with the team to see what they think about giving the user control over this.

@KDKHD KDKHD requested a review from benironside August 11, 2025 12:25
@benironside benironside enabled auto-merge (squash) August 12, 2025 16:40
@benironside benironside merged commit af8aca0 into elastic:8.19 Aug 12, 2025
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants