Skip to content

[EDR Workflows] Add About tab UI for osquery query details#264867

Draft
szwarckonrad wants to merge 21 commits intoelastic:mainfrom
szwarckonrad:osquery-about-tab-ui
Draft

[EDR Workflows] Add About tab UI for osquery query details#264867
szwarckonrad wants to merge 21 commits intoelastic:mainfrom
szwarckonrad:osquery-about-tab-ui

Conversation

@szwarckonrad
Copy link
Copy Markdown
Contributor

Adds the About tab to live query and scheduled execution detail views. Includes About, Query, Schedule, and Tags cards with queryInterval support (behind resultCountsEnabled flag), OpenAPI schema updates, and lightweight FTR + Jest test coverage.

Builds on top of #264050.

@szwarckonrad szwarckonrad added release_note:skip Skip the PR/issue when compiling release notes backport:skip This PR does not require backporting Team:Defend Workflows “EDR Workflows” sub-team of Security Solution labels Apr 21, 2026
@szwarckonrad szwarckonrad self-assigned this Apr 21, 2026
@infra-vault-gh-plugin-prod
Copy link
Copy Markdown

infra-vault-gh-plugin-prod Bot commented Apr 21, 2026

🤖 Jobs for this PR can be triggered through checkboxes. 🚧

ℹ️ To trigger the CI, please tick the checkbox below 👇

  • Click to trigger kibana-pull-request for this PR!
  • Click to trigger kibana-deploy-project-from-pr for this PR!
  • Click to trigger kibana-deploy-cloud-from-pr for this PR!
  • Click to trigger kibana-entity-store-performance-from-pr for this PR!
  • Click to trigger kibana-storybooks-from-pr for this PR!

@macroscopeapp
Copy link
Copy Markdown
Contributor

macroscopeapp Bot commented Apr 21, 2026

Catch flakiness early (recommended)

Recommended before merge: run the flaky test runner against this PR to catch flakiness early.

New FTR test file scheduled_action_results.ts with async API calls added to the osquery integration suite.

Trigger a run with the Flaky Test Runner UI or post this comment on the PR:

/flaky ftrConfig:x-pack/platform/test/api_integration/apis/osquery/config.ts:30

Share feedback in the #appex-qa channel.

Posted via Macroscope — Flaky Test Runner nudge

@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/flaky ftrConfig:x-pack/platform/test/api_integration/apis/osquery/config.ts:30

@kibanamachine
Copy link
Copy Markdown
Contributor

Flaky Test Runner

✅ Build triggered - kibana-flaky-test-suite-runner#11795

  • x-pack/platform/test/api_integration/apis/osquery/config.ts x30

@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

1 similar comment
@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@kibanamachine
Copy link
Copy Markdown
Contributor

Flaky Test Runner Stats

🎉 All tests passed! - kibana-flaky-test-suite-runner#11795

[✅] x-pack/platform/test/api_integration/apis/osquery/config.ts: 30/30 tests passed.

see run history

@szwarckonrad szwarckonrad force-pushed the osquery-about-tab-ui branch from a7edd0c to 18033f0 Compare April 22, 2026 00:28
@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

1 similar comment
@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@szwarckonrad szwarckonrad force-pushed the osquery-about-tab-ui branch from 1399f3f to c7c63d3 Compare April 22, 2026 02:12
@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@szwarckonrad
Copy link
Copy Markdown
Contributor Author

/ci

@elasticmachine
Copy link
Copy Markdown
Contributor

💚 Build Succeeded

Metrics [docs]

Module Count

Fewer modules leads to a faster build time

id before after diff
osquery 757 760 +3

Async chunks

Total size of all lazy-loaded chunks that will be downloaded as the user navigates the app

id before after diff
osquery 1.3MB 1.3MB +8.2KB

Page load bundle

Size of the bundles that are downloaded on every page load. Target size is below 100kb

id before after diff
osquery 45.7KB 45.7KB +23.0B

History

cc @szwarckonrad

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport:skip This PR does not require backporting release_note:skip Skip the PR/issue when compiling release notes Team:Defend Workflows “EDR Workflows” sub-team of Security Solution

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants