Description
The "related alerts" section on the episode details page is being separated into two distinct subsections:
- Same alert group — Shows alerts from the same group. More specifically, it shows other episodes that share the same
rule_id and group_hash as the current episode. This helps highlight recurrences of the exact same alert condition, for example, the same rule firing on the same grouped entity (e.g., the same host or service).
- Other groups for this rule — Shows alerts from the same rule but with a different
group_hash (or all other rule episodes if there is no group). This helps surface broader rule activity, such as other entities or conditions that the same rule is also triggering on, giving context about the rule's overall health and blast radius.
These subsections give users more precise context about why and how episodes are related. They can show if related episodes are the same issue repeating or a different entity being affected.
Key distinctions:
- same group = same problem recurring
- same rule = other problems the same rule caught
Resources
Which deployment methods does this change impact?
Elastic Cloud Serverless only
Feature differences
N/A
What Elastic Stack release is this request related to?
N/A
Serverless release
June 2, 2026
Collaboration model
Unknown
Point of contact.
Main contact: @adcoelho
Stakeholders: @tiamliu @jasonrhodes
Description
The "related alerts" section on the episode details page is being separated into two distinct subsections:
rule_idandgroup_hashas the current episode. This helps highlight recurrences of the exact same alert condition, for example, the same rule firing on the same grouped entity (e.g., the same host or service).group_hash(or all other rule episodes if there is no group). This helps surface broader rule activity, such as other entities or conditions that the same rule is also triggering on, giving context about the rule's overall health and blast radius.These subsections give users more precise context about why and how episodes are related. They can show if related episodes are the same issue repeating or a different entity being affected.
Key distinctions:
Resources
Which deployment methods does this change impact?
Elastic Cloud Serverless only
Feature differences
N/A
What Elastic Stack release is this request related to?
N/A
Serverless release
June 2, 2026
Collaboration model
Unknown
Point of contact.
Main contact: @adcoelho
Stakeholders: @tiamliu @jasonrhodes