Platform

One data layer for security, observability, and AI agents.

CtrlB is one lake of open Parquet in object storage you own, and four stages over it. Collect what your fleet emits, search all of it in seconds, let the system surface what changed, and give your agents the same access your engineers have.

PB scale
On object storage you own
4 components
One data layer
Open Parquet
No proprietary index
SaaS · BYOB · BYOC
Three deployment modes

Core components

One Data Layer for All Your Telemetry.

Collectors feed in. Dashboards and agents query out. Logs, metrics, and traces stay on object storage you own — searchable in real time.

Agents & collectors
CtrlBCtrlB
Real-time observability on your data lake
Ingest & Index
Federated Query
Observability Engine
Patterns
Alerting
APM
Open & Extensible
FlowFlow
Dashboards & visualization
Apps, agents & clients
Object storage
01 — Core component

Collect & Control

One control plane for every collector and agent.

Configure, update, and govern every collector and agent from one place.

Collect & Control details
CONTROL PLANEconfig v2.5aws / prod4/4 collectorsgcp / eu2/4 collectorson-prem0/4 collectorsstaged rollout · no host touched by hand
03 — Core component

Analyze & Correlate

Patterns, anomalies, and correlations across your telemetry.

Patterns, anomalies, and correlations across your telemetry.

Analyze & Correlate details
1.2M LINES3 PATTERNStimeout on /checkoutwithin baselineretry storm, shard 412× its 90-day baselinetoken refreshwithin baselinebaselines built on full history
04 — Core component

Agent Access

One MCP endpoint over the whole lake.

Give any agent fast access to complete operational history.

Agent Access details
your agentcoding agenton-call botMCP ENDPOINTone interfacecomplete history · same evidence humans query

SaaS, your bucket, or inside your cloud

The same platform runs in three shapes. The difference is where the storage and the compute live, not what the product can do.

Full deployment reference

BYOC · Managed UI

This part runs inside your cloud (your VPC / account)

Cluster #1

Logs
Traces
Metrics
Events
OTel / Vector

Cluster #2

Logs
Traces
Metrics
Events
Fluent Bit / OTel

CtrlB data plane — fully managed, in your account

Ingest & Index
Federated Query
AI Insights
MCP for Agents
Object storage · open Parquet
Inverted indexes (beside data)
Hot / cold retention tiers
Role / service account

Ingest, query, and Parquet never leave your account.

This part is on CtrlB's cloud

Managed experience

Flow UI

SaaS-simple UI queries your in-account data plane over an encrypted link. Telemetry stays in your VPC.

Auth

SSO · User authentication
RevealBYOC · In-account
  • Strict data residency

    Ingest, query, and Parquet run inside your VPC or cloud account — telemetry stays local.

  • Air-gap ready

    Run the full stack including Flow and SSO entirely inside your account when required.

  • Managed UI option

    Keep the data plane private while Flow and SSO stay on our cloud over encrypted links.

  • Regulated environments

    Built for teams where every byte and every login must stay inside a boundary you control.

Security and enterprise controls

Most of these are consequences of the architecture rather than features bolted on top: if the lake is immutable Parquet in your own bucket, residency and chain of custody follow from where the bytes already are.

Encryption everywhere

Encryption at rest and in transit, with hierarchical keys and private networking between components.

Data residency

Choose the region, or run entirely inside your own account under BYOB or BYOC so telemetry never leaves it.

Immutable storage

Write-once Parquet with object-level locking and no compaction rewrites, so the audit trail stays intact.

One copy, two jobs

Compliance retention and live investigation read the same objects, removing an entire class of reconciliation work.

Reliability

Uptime SLAs and mission-critical support for scale-out deployments.

Compliance posture

Industry-standard security practices and compliance with privacy regulations; specifics available on request.

Query a real lake before you send anything.

The playground runs against live data. Type a query, watch what it scans, and see the latency for yourself.