OpenAI
Use OpenAI models for grounded investigation, summarization, app generation, and evidence-aware workflows.
Integrations
Bring models, streams, lakes, warehouses, SaaS systems, and actions into one AI-ready workspace.
bring source data into evidence context.
send approved updates through trusted workflows.
use integrations from AI, Axon, ingest pipelines, and SQL.
Catalog
Hosted and local models for investigation, app generation, summarization, and governed agent workflows.
Use OpenAI models for grounded investigation, summarization, app generation, and evidence-aware workflows.
Connect Claude models to Mach5 context for investigation, reasoning, and controlled workflow assistance.
Use Gemini models in AI workbench flows that need generated answers, charts, summaries, and actions.
Bring Qwen-family models into evidence workflows and app-building flows where teams prefer Qwen deployments.
Use Mistral models for AI-assisted search, summarization, and operational evidence workflows.
Run local models for private development, demos, and controlled AI workflows against Mach5 data.
Code, teams, messages, and workflow notifications.
Bring repository, pull request, Actions, audit, issue, and security-alert data into apps.
Read conversations and audit data, then send notifications from trusted workflows.
Users, access, sessions, and lifecycle events.
Use identity events, users, groups, apps, sessions, policies, and lifecycle actions.
Kafka-compatible and cloud-native event streams for high-volume telemetry.
Ingest high-volume operational streams and security telemetry into Mach5 apps.
Use Redpanda-compatible Kafka streams for fast event ingestion and replayable app pipelines.
Connect managed Kafka topics for cloud-scale security and operational event pipelines.

Ingest from AWS-managed Kafka topics for cloud, identity, application, and telemetry workflows.

Use Event Hubs and its Kafka-compatible endpoint for Azure event streams and operational data.

Use Pub/Sub as the Google Cloud event backbone for app-backed investigation and telemetry flows.

Use Google-managed Apache Kafka for Kafka-native streaming pipelines on Google Cloud.
Open table formats and cloud data platforms for long-retention operational evidence.
Query and ingest Iceberg-backed data for evidence apps without forcing every dataset through a SIEM hot path.

Use OneLake as a lakehouse source for operational evidence, long-retention data, and app-backed analytics.

Bring BigLake-managed datasets into Mach5 evidence workflows and cross-source investigations.
Connect Cloudflare R2 and Iceberg-backed data to low-latency search, analytics, and apps.
Analytical systems and search platforms that Mach5 can enrich, query, or extend.

Use Snowflake data alongside Mach5 search and app workflows for evidence, enrichment, and analytics.

Bring BigQuery datasets into investigations, dashboards, and operational evidence workflows.
Connect lakehouse data and Delta/Iceberg tables to Mach5 app workflows and evidence views.
Query and migrate Elasticsearch-style workloads while preserving search semantics and operational workflows.
Object data for ingest, preview, and app-backed analytics.
List, read, preview, and ingest object data from S3-backed app workflows.
Use GCS buckets as app data sources without moving everything first.
Connect containers for object listing, streaming reads, and bounded previews.
Mailbox ingest and workflow-driven email delivery.
Search, fetch, parse, flag, delete, and ingest mailbox messages.
Fetch, parse, delete, and ingest mailbox messages with UIDL tracking.
Send structured, templated, and policy-checked email from workflows.