Based on the Windows Security Operations Center app page on Splunkbase, the last supported version is Splunk 5.0. There is an email address listed there to which you can report bugs.
If you restarted after installing and configuring the app, you shouldn't have to restart after editing macros. Try performing a debug refresh.
Chances are, give the age of the app, that some things may not be compatible with more recent versions of Splunk. Be sure to review your _internal index for WARN/ERROR log messages from the app.
... View more