The app seems to only use the tag "alert" whereas the model uses "dip" and "incident" (http://docs.splunk.com/Documentation/CIM/latest/User/DataLossPrevention).
Obviously I can add the tag, but it seems to be missing other items to conform with the model. Any plans to update this as it hasn't been updated in quite awhile?
Great question. Clearly not a priority, as on 11/2016 I created case 420682 requesting this enhancement.