Open Source Log Management
Logs are quiet until an incident, then they are the only record of what actually happened - and a per-gigabyte pricing model punishes you for keeping the verbose, high-cardinality data that incidents most need, so people throttle logging right where it matters. The open source log management here ingests, stores, and queries that firehose on infrastructure you run, so retention is a disk decision rather than a meter, and the most useful logs are not the first thing you cut.

Grafana Loki
Horizontally scalable log aggregation system that stores labels instead of full-text indexes

Vector
Observability data pipeline that collects, transforms, and routes logs and metrics as an agent or aggregator

OpenObserve
Open source observability platform for logs, metrics, traces, RUM, and pipelines

Wazuh
Open source XDR and SIEM platform for endpoint, cloud, and container security

Logstash
Server-side data processing pipeline for ingesting, transforming, and forwarding logs and events

Fluentd
Open source data collector for unified logging and event routing across many backends

OpenSearch
Open source search and observability suite to ingest, search, visualize, and analyze data at scale

Quickwit
Cloud-native search engine for logs and traces that searches cloud storage with Elasticsearch-compatible APIs

Graylog
Centralized log management and SIEM for collecting, searching, and analyzing log data