Auth events are security signals, but only if they reach the place your security team actually watches. Until now, Scalekit auth activity lived in the dashboard: useful for debugging, invisible to your SIEM. Event streaming closes that gap by delivering every event to your observability stack the moment it happens.
A failed SSO attempt from an unusual location now lands in the same Splunk index as the rest of your security telemetry, where your existing detection rules and alerting already run. No polling, no nightly export jobs, no custom webhook consumer to maintain.
How it works
- Stream auth events to Datadog, Splunk, Sumo Logic, New Relic, or any system that accepts a streaming feed.
- Events cover the full auth surface: logins, token issuance, refresh, and failed attempts.
- Delivery is real time and push-based, so events arrive as they happen rather than on an export schedule.
- Streams plug directly into your existing detection, alerting, and audit pipelines with no format translation layer.
Event streaming is in early access. Talk to us to turn it on for your workspace.