1. [Home](https://www.g2.com/)
2. ...
3. [System Security Software](https://www.g2.com/categories/system-security)
4. [Security Information and Event Management (SIEM) Software](https://www.g2.com/categories/security-information-and-event-management-siem)
5. [Panther](https://www.g2.com/products/panther/reviews)
6. [Panther Claims vs Evidence](https://www.g2.com/products/panther/claims-vs-evidence)

# Panther Claims vs Evidence

## Claim: “Panther assigns every alert a confirmed verdict — benign, suspicious, or critical — with the specific evidence that supports it.”

##### Disputed by reviews.

A relevant reviewer reports that alerts lack even a basic summary unless AI triage is run, which materially contradicts the claim that every alert receives a confirmed verdict with supporting evidence.

- 

“Raw log view without a basic summary of each alert unless AI triage is run”

[Read Full Review](https://www.g2.com/survey_responses/12240588)

Last updated Oct 5, 2026

Source: [https://panther.com/product/alert-triage-and-automation](https://panther.com/product/alert-triage-and-automation)

## Claim: “Panther's AI SOC Agent does the investigation itself: querying your data lake for surrounding activity, reviewing the detection logic that triggered the alert, pulling enrichment from connected tools via MCP, and delivering a complete risk classification with transparent reasoning.”

##### Mixed support from reviews.

Reviewers report AI-assisted investigation, log querying, automated threat hunting, and MCP-related enrichment, but others note limitations on third-party enrichment and enrichment applying only when a matching detection fires. The reviews do not establish every part of a complete risk classification with transparent reasoning.

- 

“With AI Auto Triage, the triage process is quick, and the Panther AI integration enables automated threat hunting.”

[Read Full Review](https://www.g2.com/survey_responses/12919421)
- 

“The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries and also queries for creating the dashboard”

[Read Full Review](https://www.g2.com/survey_responses/12711206)
- 

“As far as investigation goes there is an AI investigation functionality that is quite good.”

[Read Full Review](https://www.g2.com/survey_responses/11284058)
- 

“Right now, there isn’t a native way to bring in your own third-party enrichment, and incoming logs can only be enriched if a detection fires that matches its logic, which then applies the enrichment to that triggering event.”

[Read Full Review](https://www.g2.com/survey_responses/11444130)

Last updated Oct 5, 2026

Source: [https://panther.com/product/ai-soc-agent](https://panther.com/product/ai-soc-agent)

## Claim: “Ask questions in natural language across alerts, detections, and log data and get a complete investigation back.”

##### Supported by reviews.

Relevant reviewers consistently report AI-assisted alert triage, natural-language-style log querying, and fast or effective investigations, supporting the core workflow described in the claim.

- 

“With AI Auto Triage, the triage process is quick”

[Read Full Review](https://www.g2.com/survey_responses/12919421)
- 

“The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries and also queries for creating the dashboard”

[Read Full Review](https://www.g2.com/survey_responses/12711206)
- 

“the mcp allows me to work through investigations super quickly.”

[Read Full Review](https://www.g2.com/survey_responses/12706032)
- 

“As far as investigation goes there is an AI investigation functionality that is quite good.”

[Read Full Review](https://www.g2.com/survey_responses/11284058)

Last updated Oct 5, 2026

Source: [https://panther.com/product/ai-soc-agent](https://panther.com/product/ai-soc-agent)

## Claim: “Panther responds to natural language queries across alerts, detections, and log data, pulling live context from your connected tools via MCP so every analyst gets a complete answer regardless of experience level or time of day.”

##### Supported by reviews.

Relevant reviewers report that Panther AI can query and summarize log data, while MCP capabilities provide useful context and speed investigations. These reviews support the core functionality, though they do not independently establish the claim’s complete-answer guarantee across every data type or experience level.

- 

“The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries and also queries for creating the dashboard”

[Read Full Review](https://www.g2.com/survey_responses/12711206)
- 

“the mcp allows me to work through investigations super quickly.”

[Read Full Review](https://www.g2.com/survey_responses/12706032)
- 

“Having threat intel pushed into the MCPs has also been helpful.”

[Read Full Review](https://www.g2.com/survey_responses/12919421)

Last updated Oct 5, 2026

Source: [https://panther.com/product/ai-soc-agent](https://panther.com/product/ai-soc-agent)

## Claim: “When an alert fires, Panther automatically gathers evidence across your data lake, detection logic, alert history, and connected tools, delivering a complete investigation with a definitive risk classification before an analyst has to pull a single thread.”

##### Mixed support from reviews.

Reviewers report AI-assisted triage, enrichment, automated threat hunting, and faster investigations, supporting parts of the claim. However, another reviewer notes that basic alert summaries are unavailable unless AI triage is run, and the reviews do not establish that every alert automatically receives a complete investigation with a definitive risk classification.

- 

“With AI Auto Triage, the triage process is quick, and the Panther AI integration enables automated threat hunting.”

[Read Full Review](https://www.g2.com/survey_responses/12919421)
- 

“Features like enrichment and AI-assisted analysis make SOC investigations much faster and simpler”

[Read Full Review](https://www.g2.com/survey_responses/12890548)
- 

“PantherAI has been a significant help, taking the guesswork out of security incidents and enabling quicker issue identification.”

[Read Full Review](https://www.g2.com/survey_responses/11788063)
- 

“Raw log view without a basic summary of each alert unless AI triage is run”

[Read Full Review](https://www.g2.com/survey_responses/12240588)

Last updated Oct 5, 2026

Source: [https://panther.com/product/ai-soc-agent](https://panther.com/product/ai-soc-agent)

## Claim: “Panther AI queries your data lake, reviews detection logic, and pulls enrichment from connected tools, delivering a definitive risk classification with transparent reasoning before an analyst pulls a single thread.”

##### Mixed support from reviews.

Reviewers report that Panther AI can query and summarize logs, assist with investigations, and use enrichment to speed analysis. However, another reviewer describes meaningful limits on third-party enrichment, noting that incoming logs are enriched only when a matching detection fires; the reviews do not directly establish definitive risk classifications or transparent reasoning in every case.

- 

“The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries and also queries for creating the dashboard”

[Read Full Review](https://www.g2.com/survey_responses/12711206)
- 

“Features like enrichment and AI-assisted analysis make SOC investigations much faster and simpler”

[Read Full Review](https://www.g2.com/survey_responses/12890548)
- 

“Right now, there isn’t a native way to bring in your own third-party enrichment, and incoming logs can only be enriched if a detection fires that matches its logic, which then applies the enrichment to that triggering event.”

[Read Full Review](https://www.g2.com/survey_responses/11444130)

Last updated Oct 5, 2026

Source: [https://panther.com/product/ai-soc-agent](https://panther.com/product/ai-soc-agent)

## Claim: “Panther queries your data lake for surrounding activity, checks the detection logic that triggered the alert, pulls enrichment from connected tools, and delivers a complete investigation with a definitive risk classification and the evidence behind it.”

##### Mixed support from reviews.

Reviewers report faster investigations, AI-assisted log querying, broad searches, and enrichment, supporting much of the investigation workflow. However, another reviewer notes that third-party enrichment is not natively supported, so the reviews are split and do not consistently support the claim of a complete investigation with definitive classification and evidence.

- 

“Features like enrichment and AI-assisted analysis make SOC investigations much faster and simpler”

[Read Full Review](https://www.g2.com/survey_responses/12890548)
- 

“The most useful feature is the Panther AI which helps to quickly skim through your logs, create search queries”

[Read Full Review](https://www.g2.com/survey_responses/12711206)
- 

“Being able to throw an indicator such as an IP address or username into Panther and having it search everywhere is convenient.”

[Read Full Review](https://www.g2.com/survey_responses/11146515)
- 

“Right now, there isn’t a native way to bring in your own third-party enrichment”

[Read Full Review](https://www.g2.com/survey_responses/11444130)

Last updated Oct 5, 2026

Source: [https://panther.com/product/alert-triage-and-automation](https://panther.com/product/alert-triage-and-automation)