Skip to main content

Expanso example library

Find the shortest path from data to outcome.

Inspect a verified pattern, see its boundary, then adapt the pipeline.

Find a pattern

All examples

Choose by constraint

Portfolio view

Switch between focused recipes and complete scenarios.
Filters
Goal
Boundary
Execution
More filters
Inspect time
Industry
Source
Destination
Difficulty
Operational evidence
Interaction

26 examples

  • Calculate counts and summary statistics across event-time windows.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Operate reliably

    Circuit Breaker Patterns

    Route around a failing downstream system without cascading the failure.

    On premisesEdge to cloud
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Architecture
    Open example
  • Route records by severity, region, event type, and priority.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Split compound messages into independently processable records.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Protect data

    Cross-Border GDPR

    Minimize and pseudonymize synthetic records before an analytics transfer.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Migrate data

    DB2 to BigQuery

    Map a representative DB2 export into a BigQuery-oriented schema.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Transform data

    Deduplicate Events

    Drop repeated events using exact, fingerprint, and identifier-based matching.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Encrypt selected fields while retaining explicitly non-sensitive fields for analysis.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Compare field-level encryption patterns across common synthetic record shapes.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Protect data

    Enforce Schema

    Validate JSON records and route rejected data to a dead-letter path.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Process logs

    Enrich and Export

    Add lineage metadata, batch logs, and export the result to object storage.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Architecture
    Open example
  • Route data

    Fan-Out Pattern

    Send each record to multiple destinations with independent delivery paths.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Process logs

    Filter Severity

    Keep higher-severity log events and route them to local outputs.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Batch synthetic field reports locally and send a bounded summary to fleet systems.

    Remote siteCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Prepare synthetic point-of-sale events as partitioned Parquet for cloud analytics.

    Remote siteCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Migrate data

    Nightly Backup

    Extract database records, add recovery metadata, and route backup objects to storage.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Transform data

    Normalize Timestamps

    Parse multiple timestamp representations into a consistent UTC form.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Analyze edge data

    O-RAN Telemetry

    Normalize synthetic radio telemetry and route selected metrics to example destinations.

    Remote siteCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Transform data

    Parse Structured Logs

    Turn JSON, CSV, syslog, and access logs into structured records.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Route data

    Priority Queues

    Classify and route messages into priority-specific queues.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Parse, enrich, reduce, redact, and fan out synthetic logs in one pipeline.

    On premisesCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Protect data

    Remove PII

    Delete, hash, pseudonymize, and generalize selected fields in synthetic records.

    On premises
    Execution
    Runs offline
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example
  • Analyze edge data

    SCADA Energy Edge

    Transform adapter-decoded synthetic SCADA telemetry and route selected events.

    Remote siteCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Transformation
    Open example
  • Operate reliably

    Smart Buffering

    Deliver higher-priority messages first while a backlog drains.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Architecture
    Open example
  • Prepare, filter, and route synthetic edge events to a Splunk HEC boundary.

    Remote siteCloud account
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Advanced
    Interaction
    Architecture
    Open example
  • Transform data

    Transform Formats

    Convert records between JSON, Avro, and Parquet representations.

    On premises
    Execution
    Architecture only
    Evidence
    Ops not assessed
    Difficulty
    Intermediate
    Interaction
    Transformation
    Open example