Skip to main content
A data source is a place the agent can read from: your metrics, logs, traces and dashboards. Alerts tell SRE Agent that something broke. Data sources are how it finds out why. This page covers the types you can add, what each one enables, and how to connect AWS without giving SRE Agent write access. The Free plan includes one data source. Pro includes 15. Adding a source past your plan’s limit shows Your plan's data source limit has been reached. Only organization administrators can add, edit or delete data sources.

Add a data source

1

Open Data Sources

In the sidebar, select Settings, then the Data Sources tab, then Add Data Source.
2

Name it and choose a type

Enter a Name and pick the Type from the table below. The rest of the form changes with the type.
3

Tell it where and how to connect

For most types, enter the URL and choose Authentication: None, Basic Auth, Bearer Token, API Key or Datadog Keys. For AWS types, pick the AWS Regions instead of a URL. Select every region that holds resources you want to read. One data source covers all of them.
4

Test, then save

Select Test Connection. A successful test reports Connection successful!. A failure reports Connection failed: followed by the reason. When the test passes, select Save Data Source.
After you save, the source appears as a card with an Enabled badge. The card has a signal button to test the connection again, a pencil button to edit, a duplicate button, Toggle to disable or enable it, and a trash button. A Failing badge and the last error show on a card when queries to the source keep failing.

Data source types

An investigation uses whichever of these exist. With no data source, the agent still receives the alert but has nothing to query, and the alert page warns that results will be shallow.

Fields that depend on the type

Data inside a private network

If SRE Agent cannot reach a source from the internet, set Route through Remote Agent on the source to send its queries through a remote agent that runs in your network. The default is Direct connection (no agent). Remote agents are on the Pro plan and above.

Connect AWS

CloudWatch Metrics, CloudWatch Logs, CloudTrail and X-Ray read from your AWS account through a read-only role that you create. Connect AWS with a read-only role walks through it.

Keep your data on your own AI provider

Investigations run on SRE Agent’s shared AI until you add your own provider under Settings, then AI Providers, then Add Provider. The form asks for a Name, the Provider, the Model and your API Key. Select Save Provider, then press Test on the provider card to check the key. To make sure your alert text and logs only ever reach providers you configured, turn on Use only my own AI providers on the same tab. You need at least one enabled provider first. With it on, an AI call that your providers cannot take fails instead of running on the shared AI.

What you see

A passing test shows Connection successful!. A failing test shows Connection failed: and the reason. If a query returns nothing although the credentials are right, check the regions selected on the data source first. A source with the wrong region reads an empty account.