NetObserv
NetObserv is layering TLS visibility and health alerting on top of its eBPF flow pipeline.
A side-by-side editorial comparison of Cortex and Graphite — release velocity, themes, recent moves, and the top alternatives to consider.
Cortex is betting on Parquet block storage and graduating years of experimental features.
Cortex publishes its release notes as release candidates, and the two majors visible here tell a consistent story. 1.20 introduced Parquet-based block storage, Prometheus Remote Write 2.0, a resource-based limiter for ingesters and store-gateways, and regex tenant resolution, all experimental. 1.21 then made Parquet a Store Gateway query mode, graduated the Ruler API, Alertmanager API and sharding, tenant federation, FIFO/Redis cache and memcached service discovery out of experimental, and enabled the bucket index by default. The 1.21.1 candidate is almost entirely security hardening.
Graphite's answer to its own CVE backlog is a pre-release nobody calls official.
Graphite's release feed shows three entries across four years. The last tagged work is a pair of 1.2.1 pre-releases whose own notes decline to call them official: they exist, in the maintainer's words, as a master-branch milestone for people who want to avoid CVE checks against 1.1.x, with the second adding XSS fixes. Both point at a single open discussion thread about the state of the project.
Cortex publishes its release notes as release candidates, and the two majors visible here tell a consistent story. 1.20 introduced Parquet-based block storage, Prometheus Remote Write 2.0, a resource-based limiter for ingesters and store-gateways, and regex tenant resolution, all experimental. 1.21 then made Parquet a Store Gateway query mode, graduated the Ruler API, Alertmanager API and sharding, tenant federation, FIFO/Redis cache and memcached service discovery out of experimental, and enabled the bucket index by default. The 1.21.1 candidate is almost entirely security hardening.
Two arcs run in parallel. The storage arc is moving Cortex off pure TSDB blocks toward Parquet, first as a converter and format, then as a queryable Store Gateway mode — the same columnar direction the rest of the observability market has taken for long-retention data. The maturity arc is a deliberate clearing of the experimental backlog, with six subsystems graduating in one release and their flags renamed to drop the experimental prefix. Layered on both is a distinct hardening push: the latest candidate bounds gossip connections, caps decompressed request bodies, adds HMAC stream authentication and validates tenant IDs against the authenticated caller.
Expect Parquet to keep progressing from experimental toward default, following the path the bucket index just completed. The security work in 1.21.1 reads like a systematic pass over untrusted input paths rather than a response to a single report, so more of the same in the ingestion and gossip layers is likely.
Graphite's release feed shows three entries across four years. The last tagged work is a pair of 1.2.1 pre-releases whose own notes decline to call them official: they exist, in the maintainer's words, as a master-branch milestone for people who want to avoid CVE checks against 1.1.x, with the second adding XSS fixes. Both point at a single open discussion thread about the state of the project.
This is a project whose maintenance and its release process have come apart. The security fixes are real and are in master, but nothing has been promoted to a release users can adopt through normal channels, which leaves operators choosing between a version that fails CVE scans and an explicitly unofficial tag. The four-year gap since the 1.1.9 preparation commit is the clearest signal available.
Nothing in these entries supports a confident call on a 1.2.1 final; the maintainer has pointed the question at a discussion thread rather than a roadmap.
Other Analytics products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Cortex or Graphite.
NetObserv is layering TLS visibility and health alerting on top of its eBPF flow pipeline.
Storm 3.0 finishes removing the Clojure it was built in, and moves to a Java 21 baseline.
Five release candidates in two years, none of them stable, and none since October 2025.
A monitoring project whose public release feed skips the release that mattered.
Axiom is rebuilding observability so an AI agent, not a human, can be the first user.
The AI assistant is now something the IDE has to clean up after.
See all Cortex alternatives → · See all Graphite alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
Both compete on the same themes — metrics — within Analytics. Cortex and Graphite are shipping at a similar cadence (velocity 0.0 vs 0.0, both within Sparkpulse's "active" band). See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. Cortex and Graphite are shipping at a similar cadence (velocity 0.0 vs 0.0, both within Sparkpulse's "active" band). For your specific use case, the alternatives sections above list other Analytics products to evaluate alongside.
Top Cortex alternatives in Analytics are ranked by recent ship velocity. Browse the "Cortex alternatives" section above for the current picks, or visit /alternatives/cortex-metrics for the full list with editorial commentary on each.
Top Graphite alternatives in Analytics are ranked by recent ship velocity. Browse the "Graphite alternatives" section above for the current picks, or visit /alternatives/graphite for the full list with editorial commentary on each.