Skip to content

[Security Solution] [AI assistant] Docs for AI assistant esql generation with self healing #6934

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 3 commits into
base: 8.19
Choose a base branch
from

Conversation

KDKHD
Copy link
Member

@KDKHD KDKHD commented Jul 17, 2025

Closes: https://github.com/elastic/docs-content-internal/issues/102

Update Security documentation to reflect changes to how the Security AI assistant generates ES|Ql.

9.1 PR: elastic/docs-content#2168

@KDKHD KDKHD requested a review from a team as a code owner July 17, 2025 11:31
Copy link

A documentation preview will be available soon.

Request a new doc build by commenting
  • Rebuild this PR: run docs-build
  • Rebuild this PR and all Elastic docs: run docs-build rebuild

run docs-build is much faster than run docs-build rebuild. A rebuild should only be needed in rare situations.

If your PR continues to fail for an unknown reason, the doc build pipeline may be broken. Elastic employees can check the pipeline status here.

@KDKHD KDKHD changed the base branch from main to 8.19 July 17, 2025 11:32
@KDKHD
Copy link
Member Author

KDKHD commented Jul 17, 2025

/ci

@KDKHD
Copy link
Member Author

KDKHD commented Jul 17, 2025

run docs-build

@KDKHD KDKHD changed the title Enhancement/security esql with self healing [Security Solution] [AI assistant] Enhancement/security esql with self healing Jul 17, 2025
@KDKHD KDKHD changed the title [Security Solution] [AI assistant] Enhancement/security esql with self healing [Security Solution] [AI assistant] Docs for AI assistant esql generation with self healing Jul 18, 2025
@@ -162,6 +162,8 @@ The **Knowledge base** tab of the **Security AI settings** page allows you to en

Elastic AI Assistant allows you to take full advantage of the {elastic-sec} platform to improve your security operations. It can help you write an {esql} query for a particular use case, or answer general questions about how to use the platform. Its ability to assist you depends on the specificity and detail of your questions. The more context and detail you provide, the more tailored and useful its responses will be.

NOTE: The agent has access to index names and field metadata from your cluster. This contextual information helps improve ES|QL generation, though it may slightly increase response times.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
NOTE: The agent has access to index names and field metadata from your cluster. This contextual information helps improve ES|QL generation, though it may slightly increase response times.
NOTE: AI Assistant has access to index names and field metadata from your cluster. This contextual information helps improve {{esql}} generation, however it may slightly increase response times.

How would the user control whether this metadata is included?

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

They can't control this currently. I will speak with the team to see what they think about giving the user control over this.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants