[Security][9.5 & Serverless] Document the new flyout system for alert and event details - #7719
[Security][9.5 & Serverless] Document the new flyout system for alert and event details#7719nastasha-solomon wants to merge 22 commits into
Conversation
… and event details Rewrites the alert details flyout page around the new EUI session flyout (main + tools flyouts, no more right/left/preview panels), and updates related pages that referenced the old panel model. Fixes #7607. Co-authored-by: Cursor <cursoragent@cursor.com>
Elastic Docs AI PR menuCheck the box to run an AI review for this pull request.
Powered by GitHub Agentic Workflows and docs-actions. For more information, reach out to the docs team. |
✅ Elastic Docs Style Checker (Vale)No issues found on modified lines! The Vale linter checks documentation changes against the Elastic Docs style guide. To use Vale locally or report issues, refer to Elastic style guide for Vale. |
There was a problem hiding this comment.
Looks good overall, added a few comments for your consideration.
Thanks!
Edit: I've also pushed a commit (b137dba) that replaces the "expand" wording in two other EA files.
…ls.md Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
…ls.md Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
…ls.md Co-authored-by: natasha-moore-elastic <137783811+natasha-moore-elastic@users.noreply.github.com>
PhilippeOberti
left a comment
There was a problem hiding this comment.
Overall LGTM. I did leave a few comments for some (to me) unnecessary notes as well as some (again to me) odd content order
natasha-moore-elastic
left a comment
There was a problem hiding this comment.
LGTM, thanks!
Summary
For 9.5, the new flyout system (EUI session flyout) goes GA in Security Solution, replacing the legacy right/left/preview panel model with a single flyout plus child flyouts that layer on top of it. This rewrites the primary affected page, adds a shared "Details flyouts" reference for the mechanics common to all of these flyouts (to avoid re-documenting the same header/footer/navigation on every page), and updates related pages that referenced the old panel structure or were missing version tags for the new behavior.
Fixes #7607.
All UI details (button labels, icons, which actions open a new flyout vs. a popover, and which behaviors are version-gated) were verified against the Kibana source rather than assumed.
Previews
applies_totag to the Insights section.applies_totags and legacy notes for the pre-9.5 wording.securitySolution:enableNewFlyoutadvanced setting, fixes a broken anchor left over from the old page structure, and points the legacy-flyout reference to the new shared Details flyouts section.Follow-ups (not included in this PR)
A few screenshots likely still show the old flyout chrome and should be recaptured separately:
security-ig-alert-flyout.png,security-ig-alert-flyout-invest-tab.png(investigation guide)security-alerts-flyout-rs.png,security-risk-summary.png(risk score data)security-alerts-flyout-table.png(table settings menu)security-osquery-results-tab.png(Osquery response actions)Generative AI disclosure
Tool(s) and model(s) used: Cursor (Claude)