惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

GbyAI
GbyAI
Martin Fowler
Martin Fowler
I
InfoQ
腾讯CDC
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
爱范儿
爱范儿
Microsoft Security Blog
Microsoft Security Blog
Google DeepMind News
Google DeepMind News
D
DataBreaches.Net
云风的 BLOG
云风的 BLOG
F
Fortinet All Blogs
N
Netflix TechBlog - Medium
博客园 - 聂微东
Microsoft Azure Blog
Microsoft Azure Blog
D
Docker
博客园 - 三生石上(FineUI控件)
Y
Y Combinator Blog
博客园 - Franky
Engineering at Meta
Engineering at Meta
B
Blog
罗磊的独立博客
Apple Machine Learning Research
Apple Machine Learning Research
Jina AI
Jina AI
V
Visual Studio Blog

Hacker News: Show HN

PurrrrrFocus: Pomodoro Timer App - App Store Workflow Engine — Multi-Step Orchestration for Bun RapidPhoto: Pro Photo Editor App - App Store GitHub - DheerG/swarms: Achieve extraordinary results with claude code across a variety of tasks SPICE simulation → oscilloscope → verification with Claude Code — Lucas Gerads Show HN: VCoding – A 5 MB native Windows IDE with no dynamic dependencies Show HN: LLMs don't hallucinate because they're bad at math, it's the format GitHub - Agent-FM/agentfm-core: AgentFM is a peer-to-peer network that turns everyday computers into a decentralized AI supercomputer. AgentFM lets you run massive AI workloads directly across a global mesh of idle CPUs and GPUs. Show HN: Tracking Top US Science Olympiad Alumni over Last 25 Years GitHub - Potarix/agent-hub: One place to talk to all your agents Show HN: Runtime security for AI agents(injection,tool abuse, data exfiltration) GitHub - dubeyKartikay/lazyspotify: Terminal Spotify client for macOS and Linux GitHub - the-banana-tool/king-louie: Easy to use GUI Personal AI Assistant. Win/Linux/Mac. Show HN I made my vacation rental bookable by AI agents–no Airbnb, 0% commission GitHub - basteez/jsf-autoreload: maven plugin to enable hot reload on jsf projects uvm32/hosts/host-gdbstub at main · ringtailsoftware/uvm32 GitHub - labsai/EDDI: Config-driven engine that turns JSON into production-grade AI agents. Multi-agent orchestration, 12+ LLM providers, MCP/A2A protocols, RAG, persistent memory, and enterprise compliance (EU AI Act, GDPR, HIPAA). Built on Quarkus. GitHub - glitchnsec/fortyone-oss: AI Executive Assistant Platform Quickstart | Alien GitHub - muxshed/shed: One stream in, or many. Every destination, simultaneously. No cloud middleman, no per-channel fees, no limits. GitHub - ocrbase-hq/ocrbase: 📄 PDF/IMG ->.MD/JSON Document OCR API for PaddleOCR and GLMOCR. Self-hostable. GitHub - impactjo/home-memory: MCP server that lets your AI assistant remember everything about your home. GitHub - Sets88/dbcls: DbCls is a powerful terminal database client that supports various databases GitHub - neptun2000/heor-agent-mcp GitHub - SeanFDZ/macmind: Single-layer transformer in HyperTalk for the classic Macintosh RollQuation: Math Puzzles - Apps on Google Play GitHub - dropbox/witchcraft Show HN: Agent-cache – Multi-tier LLM/tool/session caching for Valkey and Redis GitHub - opentalon/opentalon: OpenTalon is an open-source platform built from the ground up in Go as a robust alternative to OpenClaw LinkedIn™ 职位抓取工具 - Chrome 应用商店
GitHub - Rocketgraph/rocketgraph: Agent layer for observa...
kvaranasi_ · 2026-06-18 · via Hacker News: Show HN

Rocketgraph

Self-hosted log clustering and streaming anomaly detection that drops in next to the observability stack you already run.

What's in here  •  Quick start  •  Examples  •  Website  •  Community

Apache 2.0 Python Docker OpenTelemetry


Rocketgraph ML — 2M logs clustered into 58 templates in 90 seconds

Why?

Your monitoring tool tells you what you searched for. It rarely tells you what's unusual right now.

Rocketgraph sits next to whatever you already pay for — Datadog, New Relic, Loki, CloudWatch, Sentry, ClickHouse — pulls a window of logs, mines structural templates, and flags the anomalous ones. It runs entirely inside your network. Your logs never leave your VPC. There's no SaaS tier to pay for.

What's in here

Component What it does
🧠 ML engine Clusters logs into structural templates and detects anomalies. Pulls directly from your existing log source — no parallel ingest pipeline.
@rgraph/otel-node AI agent that auto-instruments any Node.js service with OpenTelemetry in ~90 seconds.

Try it in 90 seconds

git clone https://github.com/Rocketgraph/rocketgraph
cd rocketgraph/ml
cp .env.example .env             # fill in whichever sources you have
docker compose up --build        # → http://localhost:9020

Point it at any source you already use:

curl 'http://localhost:9020/clusters?source=loki&window=1h'

Or skip the credentials entirely — download a log file and run it. Export from Datadog (CSV/JSON), kubectl logs > app.log, or any raw log, drop it in, and analyse it locally:

curl -XPOST 'http://localhost:9020/clusters/train?source=file'   # FILE_PATH=/data/app.log

See the one-command log-file quickstart.

That's the whole install. No schemas to provision, no accounts to create, no agents on hosts.

👉 Deep dive: ml/README.md for the ML engine · packages/otel-node for the OTel agent

How it works (30-second version)

Three deterministic algorithms in sequence — no LLM, no hallucination, fully reproducible:

  1. Drain3 mines structural templates from raw log lines.
  2. Isolation Forest scores templates per service to surface the unusual ones.
  3. Half-Space-Trees scores brand-new logs against the trained model in real time.

On a real production burst we test against: 2M logs → 58 templates → 9 anomalies, 90 seconds wall-clock, single container. Full details in ml/README.md.

Rocketgraph — find the anomaly hiding in your logs

Examples

Analyse a log file locally — analyze.py

The fastest way to see Rocketgraph work: drop a log file in ./logs/, run one command, and get a cluster table with the anomalies flagged. No accounts, no API keys, nothing leaves your machine. Add --ai for an optional Claude triage on top — the engine itself stays deliberately LLM-free and reproducible; the model only explains the deterministic clusters.

cd example-setups/logfile-quickstart

docker compose up --build -d            # ML engine on http://localhost:9020
python gen_sample_log.py                # or: cp ~/Downloads/whatever.log ./logs/file.log
pip install requests                    # anthropic too, if you'll use --ai

python analyze.py                       # table of all clusters
python analyze.py --anomalies-only      # just the flagged ones
python analyze.py --ai                  # table + AI triage
python analyze.py mylogs.log --ai       # a specific file

analyze.py auto-detects the file, points the engine at it, pulls the clusters, and prints them. ~15,000 raw lines collapse to ~11 structural templates; the brand-new "database failover" template — 8 lines, never seen before, error level — comes back flagged as an anomaly. No rules written, no labels:

15188 logs → 11 clusters (3 anomalous)

  ANOM SERVICE        LOGS DEPTH  TEMPLATE
  ----------------------------------------
   *   payment-svc       8     3  Database failover: replica <*> promoted to primary after ...
   *   auth-svc       1573     2  Token refreshed for session <NUM>
       payment-svc    1686        Charge <NUM> authorized for $<FLOAT>
       ...

Reading the table: ANOM marks the clusters Isolation Forest flagged; LOGS is how many raw lines collapsed into that template; DEPTH is the isolation depth on anomalous clusters (lower = more anomalous); TEMPLATE is the structural pattern Drain3 mined. The flagged failover cluster is rare and new, which is exactly what surfaces it.

With --ai, the same clusters are handed to Claude for an SRE-style triage — likely incident, ranked root-cause hypotheses, and concrete next steps — grounded only in the clusters above. Full walkthrough in the log-file quickstart.

End-to-end reference apps

example-setups/ also contains reference apps you can point otel-node at to see the whole pipeline working — instrument the service, ship OTLP into your sink, then watch Rocketgraph cluster and flag the logs.

Example What it shows
bookstore-app Express + TypeScript service auto-instrumented by @rgraph/otel-node — the easiest way to see traces, metrics, and logs flowing into Rocketgraph end-to-end.

More examples (Fastify, NestJS, Next.js) are on the roadmap — PRs welcome.

Compatibility

Status Platforms
✅ Supported Log file (.log/.json/.csv) · OpenTelemetry · Loki · New Relic · Datadog · CloudWatch · Sentry · ClickHouse
🛣️ Roadmap Splunk · Elastic / OpenSearch · Azure Monitor · GCP Cloud Logging

Community

Contributing

PRs welcome. The most impactful contributions right now:

  • New ML connectors (Splunk, OpenSearch, Azure Monitor, GCP Cloud Logging)
  • Additional framework support in @rgraph/otel-node (Fastify, NestJS, Remix, Bun-native services)
  • More end-to-end reference apps under example-setups/

See ml/README.md and packages/otel-node for the deep-dive docs.

License

Apache 2.0. See LICENSE.


Self-hosted. Open source. Drops in next to what you already run.
rocketgraph.app