Docs » Data retention in Splunk Observability Cloud

Data retention in Splunk Observability Cloud 🔗

The following sections list the data retention for each product in Splunk Observability Cloud.

Data retention in Infrastructure Monitoring 🔗

The following table shows the retention time period for each data type in Infrastructure Monitoring.

Data type

Retention

One-minute roll-ups

13 months

One-second native resolution data

  • Standard contract: 8 days

  • Enterprise contract: 3 months

Data retention in Real User Monitoring (RUM) 🔗

The following table shows the retention time period for each data type in RUM.

Data type

Retention

Spans

8 days

Metrics

8 days

Monitoring MetricSets

13 months

Data retention in Application Performance Monitoring (APM) 🔗

The following table shows the retention time period for each data type in APM. See Configure extended trace retention to learn how to extend the retention of specific traces of interest.

Data type

Retention

Traces

  • All raw traces: 8 days

  • Specific traces of interest: up to 13 months

Troubleshooting MetricSets

8 days

Monitoring MetricSets

13 months

Profiling data

8 days

Data retention in Log Observer 🔗

The retention period for indexed logs in Splunk Log Observer is 30 days. If you send logs to S3 through the Infinite Logging feature, then the data retention period depends on the policy you purchased for your Amazon S3 bucket. To learn how to set up Infinite Logging rules, see Archive your logs with Infinite Logging rules.

Data retention in Splunk On-Call 🔗

Data collected by Splunk On-Call is retained unless you request that your data be deleted. For more information, see Splunk On-Call Security FAQ.