For a centralized platform for log management, the first results are dromara/hertzbeat (HertzBeat is a real-time observability platform that includes centralized log aggregation, full-text search capabilities, and robust alerting, making it a suitable tool for managing infrastructure and application logs), signoz/signoz (SigNoz is a comprehensive observability platform that natively integrates log aggregation, full-text search, real-time alerting, and data visualization, making it a complete solution for centralized log management) and apache/skywalking (SkyWalking is a comprehensive observability platform that includes robust log aggregation, processing, and visualization capabilities alongside its core tracing and metrics features, making it a strong candidate for centralized log management). grafana/loki and apache/hertzbeat round out the shortlist. Compare the match explanations and check the project documentation against your requirements.
Centralized platforms and tools for collecting, indexing, searching, and analyzing system and application log data.
HertzBeat is a real-time observability platform that provides agentless monitoring for servers, databases, and networks. It functions as an infrastructure alerting manager, an OpenTelemetry Protocol log aggregator, and a public status page generator. The platform integrates an analysis engine that uses large language models to process monitoring data and generate system insights. It utilizes a cloud-edge collaborative architecture and distributed collector clustering to scale data gathering across large-scale networks. The system covers a broad range of observability capabilities, including
HertzBeat is a real-time observability platform that includes centralized log aggregation, full-text search capabilities, and robust alerting, making it a suitable tool for managing infrastructure and application logs.
SigNoz is a full-stack observability platform designed to collect, store, and visualize metrics, logs, and distributed traces in a unified environment. It leverages OpenTelemetry-based data collection to ingest telemetry from diverse sources using vendor-neutral protocols, ensuring interoperability across complex microservices architectures. The platform utilizes a high-performance columnar storage engine to enable rapid aggregation and filtering, providing a centralized backend for monitoring application health and performance. What distinguishes the platform is its focus on automated instru
SigNoz is a comprehensive observability platform that natively integrates log aggregation, full-text search, real-time alerting, and data visualization, making it a complete solution for centralized log management.
SkyWalking is an application performance monitoring system and observability platform designed to collect and analyze metrics, traces, and logs from distributed microservices. It functions as a distributed tracing platform and a telemetry data pipeline that ingests and aggregates observability data from various language agents. The project features an AI-powered anomaly detector that uses machine learning to calculate metric baselines and identify irregular URI patterns. It includes an eBPF performance profiler for diagnosing CPU and network bottlenecks at the kernel level and generates inter
SkyWalking is a comprehensive observability platform that includes robust log aggregation, processing, and visualization capabilities alongside its core tracing and metrics features, making it a strong candidate for centralized log management.
Loki is a horizontally scalable, highly available log aggregation engine designed to store and query massive volumes of unstructured log data. It functions as a distributed observability platform that correlates logs, metrics, and traces to provide comprehensive visibility into the health and performance of complex infrastructure. The system distinguishes itself through a distributed query execution model that processes large datasets in parallel across cluster nodes. It utilizes label-based stream indexing and a distributed index to map log data to specific chunks, enabling rapid retrieval w
Loki is a purpose-built, horizontally scalable log aggregation and storage engine that provides the full-text search, structured data processing, and visualization capabilities required for centralized log management.
HertzBeat is an agentless monitoring platform designed to collect performance metrics from network devices, databases, and servers without requiring client software. It functions as an infrastructure monitoring dashboard, an alert management system, and a centralized log aggregator using the OpenTelemetry Protocol. The system utilizes a cloud-edge collection hierarchy to scale data gathering across clusters and isolated networks. It distinguishes itself with a flexible extensibility model, allowing users to define new monitoring workflows through configuration-based metric templates and custo
HertzBeat is a comprehensive observability platform that includes centralized log aggregation and alerting capabilities, though its primary focus remains on infrastructure performance metrics rather than deep log analysis.
VictoriaMetrics is a high-performance, scalable time series database and observability platform designed for long-term storage and analysis of metric, log, and trace data. It functions as a unified backend for monitoring ecosystems, offering full compatibility with industry-standard protocols and query languages. The system is built to handle massive data volumes through a distributed architecture that supports horizontal scaling and efficient data lifecycle management. The platform distinguishes itself through a storage engine that utilizes consistent hashing for data sharding and log-struct
VictoriaMetrics is a high-performance observability platform that natively supports log aggregation, structured data, and long-term storage, making it a robust choice for centralized log management despite its primary focus on time-series metrics.
HyperDX is an OpenTelemetry observability platform that provides centralized log management, distributed tracing, and a self-hosted monitoring stack. It functions as a unified system for collecting, indexing, and visualizing logs, metrics, and traces from cloud and container environments. The platform distinguishes itself with specialized tooling for large language model monitoring and session replay, allowing user interactions in the browser to be linked to backend telemetry. It employs schema-less JSON parsing to index structured logs dynamically and uses source maps to resolve minified sta
HyperDX is a comprehensive observability platform that provides centralized log management, full-text search, real-time alerting, and structured data visualization, making it a complete solution for your infrastructure and application logging needs.
Uptrace is an OpenTelemetry-based observability platform designed to collect, store, and analyze distributed traces, metrics, and logs. It functions as a centralized logging backend, a distributed tracing system, and a metrics engine to monitor application performance and system health. The platform is distinguished by AI-powered operational capabilities, allowing users to query telemetry data and manage monitoring dashboards using natural language. It specifically includes specialized monitoring for generative AI pipelines, tracking token usage and response quality for LLM interactions and r
Uptrace is a comprehensive observability platform that natively integrates log aggregation, full-text search, real-time alerting, and data visualization, making it a robust solution for centralized log management.
GreptimeDB is a distributed, open-source time-series database built for unified observability. It stores and queries metrics, logs, and traces together in a single columnar engine, supporting both SQL and PromQL for analysis. The database is designed as a Kubernetes-native operator with a decoupled compute and storage architecture, enabling horizontal scaling and multi-region deployment. What distinguishes GreptimeDB is its role as a multi-protocol ingestion gateway, accepting data through OpenTelemetry, Prometheus Remote Write, InfluxDB, Loki, Elasticsearch, Kafka, and MQTT protocols without
GreptimeDB is a distributed time-series database that natively supports log ingestion, full-text indexing, and structured data analysis, serving as a robust foundation for a centralized log management system.
This project is a Node.js process manager, runtime environment, and production deployment orchestrator. It provides the foundational system components required to run, monitor, and restart applications in the background to ensure continuous service availability. The system distinguishes itself through a built-in load balancer that distributes network traffic across multiple process instances to utilize all available CPU cores. It includes a real-time process monitor with a terminal-based dashboard for tracking server health, CPU and memory usage, and aggregated logs. The tool covers a broad
This is a process manager and runtime monitor for Node.js applications rather than a centralized log management system, though it does provide basic log streaming and local process monitoring.
Dozzle is a web-based dashboard designed for the real-time monitoring and management of Docker container environments. It provides a centralized interface to stream live logs, track resource utilization, and perform administrative tasks across multiple host environments. The platform distinguishes itself by offering an interactive terminal emulator that allows users to execute commands directly within running containers from a browser. It also includes built-in alerting capabilities, enabling users to monitor log streams for specific patterns and receive automated notifications when critical
Dozzle is a real-time container monitoring and management dashboard rather than a centralized log management system, as it focuses on streaming live logs from Docker hosts rather than indexing, storing, and performing long-term analysis on logs from diverse infrastructure sources.
lnav is a terminal-based log viewer and analyzer designed for aggregating, filtering, and analyzing multiple log files in a single chronological view. It functions as a console application that can replace the system pager, providing syntax highlighting and document navigation for system or application logs. The project distinguishes itself by mapping unstructured log data to virtual SQLite tables, enabling the use of SQL and PRQL for structured data analysis, aggregations, and relational queries. It further differentiates its capability set through native integration for retrieving and taili
This is a powerful terminal-based log viewer and analyzer for local or remote files, but it lacks the centralized server-side log aggregation and persistent storage infrastructure required for a full-scale log management system.
| Repository | Stars | Language | License | Last push |
|---|---|---|---|---|
| dromara/hertzbeat | 7.3K | Java | Apache-2.0 | |
| signoz/signoz | 27.4K | TypeScript | NOASSERTION | |
| apache/skywalking |
| 24.8K |
| Java |
| Apache-2.0 |
| grafana/loki | 27.6K | Go | agpl-3.0 |
| apache/hertzbeat | 7.1K | Java | apache-2.0 |
| victoriametrics/victoriametrics | 16.3K | Go | apache-2.0 |
| hyperdxio/hyperdx | 9.3K | TypeScript | mit |
| uptrace/uptrace | 4.1K | Go | agpl-3.0 |
| greptimeteam/greptimedb | 6K | Rust | apache-2.0 |
| unitech/pm2 | 43.2K | JavaScript | NOASSERTION |