A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Expand JSON fields using spath
License Usage Prediction
Active Directory Password change attempts
Windows Failed Logons with Average Overlay
check expected splunk version with reality
Find duplicate events
All indexes not explicitly granted to a role
IIS: Indicators of directory traversal, RFI and LFI
Shutdown or Suspend a Service in Windows
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.