icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading EVERYWHERE
SHA256 checksum (everywhere_11.tgz) b139a0211aca191accee9ba4283e935d126c6ca0a51ca5df2789a539c5d0ec37 SHA256 checksum (everywhere_10.tgz) 84fa74859bff3e893224e370b703d22792d2ffe77c2974c605925797ae292df0 SHA256 checksum (everywhere_091.tgz) 2b0e891306f6c56653416b09727288351958b2effe6833a0f82486c526ea10ba
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate


This app has been archived. Learn more about app archiving.
This app is NOT supported by Splunk. Please read about what that means for you here.
Built by David Carasso at Splunk Inc.


Get Splunk Alerts, Charts, and Data on your mobile devices!

Click DOCUMENTATION above to get all the details!

Splunk Alerting on your iPhone! Available NOW!

It pushes alerts and charts to your cellphone from your Splunk servers, when you're on the beach. It's how you get your Splunk data conveniently on the go. splunkeverywhere is a one-way data push from firewalled splunk servers to mobile devices, via a cloud-based service run by Splunk or your own organization.

Not an official Splunk product, but a really useful skunkworks project. Use it and love it.

How can I get it?

What are the benefits?

It gives you quick and easy data on the go, sharing only what you want with whom you want. It's optimized for the mobile platform, and constant availability of critical data.

Who is it for?

It's for everyone that can benefit from critical data. In fact, splunkeverywhere creates new class of users that otherwise would not use Splunk.

What does the Splunk app do?

It adds the "share" search command. For all your alerts and saved searches that you want to make available to mobile users, 24/7, simply append "| share somename". User's subscribed up to the somename channel will get the charts and data on their phones. Add the "alert=true" option to the share command, and the phone will beep and give an alert when new data fires.

What does it look like?


Why is mobile important

According the users questioned by the Aberdeen Group:

  • Mobile BI can give competitive advantage: 54%
  • Increase productivity of mobile employees: 41%
  • Removes delays in alerting key decision makers to critical information: 30%

What data would useful on the go?

How are your systems, users, data performing? Is anything irregular? Is there anything I need to be alarmed about? No, that's good to know too.

Is the mobile app a clone of the Splunk user interface?

No. It's a web and native mobile app, with functionality appropriate for mobile. It is not the Splunk UI ported to mobile. It supports very limited, simple interaction for small devices. It is alert-driven.

Is it good for all my Splunk searching

No. splunkeverywhere is a one-way push of results. It is not an interactive search interface. For more investigative searching, you'll need to full power of the Splunk user interface.

Why do I need this, can't I just email PDFs to my phone?

Yes and no. This is a dedicated app that allows you to see alerts and the charts that come with it. It has a dedicated web interface that allows you to specify who sees what. Imagine an environment where the users are NOT just splunk admin people, but a dozen people in marketing that want to get charts on download numbers daily, and they want to get alerts other metrics drop below a threshold. etc.

Using this mobile app, your splunk alerts are not mixed in with all your other emails, work and personal, (I get over 100 a day) and it's not an attached PDF that you have to open up, which isn't the friendliest interface. Your splunk alerts come from a specific Splunk alerting app, that jumps you right to the chart. With the email-pdf approach, mobile email clients usually alert you on every email or never. If you want to receive alerts on specific results, each user would have to write email rules or have a separate mailbox for particular types of urgent alerts.

Using this mobile app, you have a web interface accessible from anywhere that lists out which users get what alerts. Adding/deleting users that get alerts is trivial. If you use the email-pdf approach, a splunk admin has to go (vpn) into your splunk instance, find the specific alert object and edit the "To:" line of the alert, for each user you want to add/delete.

In short, if you like the fact that you get urgent splunk alerts are separate from your email, and aren't mixed in, and you like the fact that you can easily edit who gets which alerts, try this app.

Release Notes

Version 1.1
Nov. 21, 2013

Don't send an alert if there's no search results
Improve alert message

Version 1.0
Nov. 1, 2013

Fixed problem where 'share' was called multiple times.

Version 0.91
Oct. 18, 2013

Initial Beta Release


Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk Inc. in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.