BXTI Add-on for Global Relay collects audit and activity events from the Global Relay Event Log API and indexes them in Splunk using the globalrelay:eventlog sourcetype. It provides secure credential management, configurable collection intervals, continuation checkpointing, JSON field extraction, and initial CIM mappings for authentication, data access, and change activity.