Integrations

Route honeypot signal into your security stack.

GCSA HoneyTrace keeps output structured and operational: authentication attempts, session transcripts, command events, malware metadata, and indicators can flow to SIEM, SOAR, case management, or data lake targets.

Output lanes

SIEM, intelligence, and evidence destinations

Elastic Stack

Forward normalized GCSA HoneyTrace events, artifacts, and context into Elastic Stack workflows.

Microsoft Sentinel

Forward normalized GCSA HoneyTrace events, artifacts, and context into Microsoft Sentinel workflows.

Syslog

Forward normalized GCSA HoneyTrace events, artifacts, and context into Syslog workflows.

Webhooks

Forward normalized GCSA HoneyTrace events, artifacts, and context into Webhooks workflows.

MISP

Forward normalized GCSA HoneyTrace events, artifacts, and context into MISP workflows.

TheHive

Forward normalized GCSA HoneyTrace events, artifacts, and context into TheHive workflows.

S3 / Data Lake

Forward normalized GCSA HoneyTrace events, artifacts, and context into S3 / Data Lake workflows.

LLM / AI Copilot

Forward normalized GCSA HoneyTrace events, artifacts, and context into LLM / AI Copilot workflows.