How to Contribute
Join our community of contributors and help improve EDR telemetry understanding
About Contributions
We welcome all kinds of contributions to the EDR_telem.json file. Use our tools to make contributing easier:
- âConvert between JSON and CSV formats
- âEdit in your preferred format
- âAutomatic validation checks
Validation Process
All contributions require validation through either:
Private documentation can be shared confidentially with Kostas
Evidence Requirements
Status changes need evidence that can be rechecked. A screenshot or documentation link is useful, but disputed direct-test conclusions should also show what was executed, what was searched, and why the final status follows the methodology.
Accepted evidence
- Official vendor documentation
- Screenshots of telemetry exposed by the product
- Log extracts or raw event records
- Direct hands-on testing results
- Private documentation shared confidentially for validation
Direct-test checklist
- Test/action executed and UTC execution timestamp
- Endpoint, OS build, sensor version, and policy/configuration
- Expected telemetry target and status being requested
- Query/search used, time window, raw event source, table, or index
- Observed fields, missing expected fields, screenshot or raw export
- Rationale for Yes, Partially, Via EventLogs, Via EnablingTelemetry, No, or Pending Response
For No or absence findings
Document the search window, sources searched, queries or search terms, covered time range, endpoint identifiers examined, and any relevant vendor table or index guidance. Vague claims are not enough to upgrade or downgrade a status.
Contribution Steps
Fork Repository
Create your own copy of the project:
- Visit main repository
- Click "Fork" button
- Select your account
Create Branch
Make a new branch for your changes
Make Changes
Use these values in your changes:
Submit PR
Create a pull request:
- Push your changes
- Open pull request
- Add documentation
- Wait for review
Additional Guidelines
Reporting Issues
- Check existing issues
- Use latest version
- Clear descriptions
- Reproduction steps
Feature Requests
- Check existing proposals
- Clear title
- Detailed description
- Use case examples
Ready to Contribute?
We welcome contributions of all sizes. Every bit helps improve the project!
