Sasquatch vs Splunk

One product vs four.

40 TB / month of K8s logs (~1.3 TB/day) · annual list. Two invoices, two architectures, one obvious choice.

Sasquatch
Sasquatch
Lossless edge compression · BYO cloud
$210,000
per year · est. · your cloud
Compression18×
Storageyour S3
Query langsSPL adapter included
−70%
Splunk
Splunk
Enterprise SIEM + observability
$700,000
per year · list
Ingest modelWorkload + Ingest
Annual hike+9% per renewal
Query langSPL
18×
Compression
~70%
Less bill
+9%/yr
Splunk renewal
0
SPL training cost
The annual bill

Stack the meters.

Sasquatch
Sasquatch
Bytes in · edge compress · your bucket
Splunk
Splunk
Splunk list — published rates only
$210,000
Sasquatch platform
$700,000
Cloud ingest (~1.3 TB/d)
Enterprise Security (SIEM)
+9% annual renewal uplift
$210,000−70%$700,000
The product surface

One SKU. Four pricing models.

Sasquatch
Sasquatch
One product. One rate.
Splunk
Splunk
Pick your model — and renegotiate next renewal.
Sasquatch
1
Bytes-in
Logs · Traces · Metrics
Workload Pricing (SVCs)
Ingest Pricing (GB/day)
Entity Pricing (hosts)
Activity Pricing (MTS/traces/sessions)
4separate meters
Where the bytes go

Compress at the edge — or after the bill?

Sasquatch
Sasquatch
Pods → 18× compress → your bucket → SPL adapter
Splunk
Splunk
Forwarder → Splunk Cloud index → SPL only
Your K8s pods
OTLP gRPC / HTTP
Edge compress 18×
40 TB → 2.2 TB
Your S3 / GCS / Azure
your KMS key
LogQL · SPL · PromQL
TraceQL — pick yours
Your K8s pods
HEC / forwarder agent
Splunk Cloud ingest
~1.3 TB/day · volume megadeal
Splunk indexer
proprietary tsidx
SPL
one query language
The compression

40 TB in. 2.2 TB out.

Sasquatch
Sasquatch
Schema-aware Zstd · per-event · SHA-256 verified
Splunk
Splunk
tsidx + LZ-family compression — proprietary, not portable.
18×95%
ratiosaved
40 TB → 2.2 TB
Lossless · SHA-256(decompress(compress(x))) == SHA-256(x)
~3×67%
ratiosaved
40 TB → ~13 TB
Format compression — bytes still billed pre-compression.
The meters

One rate. Four contradictory models.

Sasquatch
Sasquatch
Bytes in at the edge — one rate
Splunk
Splunk
5 separately metered axes
Bytes in at the edge
Logs · Traces · Metrics — one rate
0YOUR BYTES
Cloud ingest (GB/day)
~$1.2k-1.6k/GB/day/yr
Workload (SVCs)
~$55-75k/SVC/yr
Enterprise Security
+$25-45/GB/day
Entity / Activity
hosts · MTS · sessions
Annual renewal hike
+9% per renewal
Capability matrix

Where each tool wins.

Last three rows: places the competitor out-ships us today.

Sasquatch
Sasquatch
Splunk
Splunk
Lossless guarantee
BYO cloud storage + KMS
Compression ratio (K8s)
18×~3×
Bytes-in pricing
No host meter
No event indexing tax
High-cardinality metrics free
Egress on compressed bytes
Multi-language query
Portable archive format
Air-gap deploy
Voice — talk to your telemetry
AI root-cause investigation
Agent files your ITSM ticket
Hot-path forwarder
n/a
AIOps / Watchdog-class
700+ pre-built integrations
Built-in CSPM / Cloud SIEM

Show us your Splunk renewal letter.

We back-compute the equivalent Sasquatch + your-bucket spend — and ship an SPL adapter so your team keeps SPL muscle memory.