While looking through the new client error dashboard for Wikidata, we noticed that we have a lot of errors that stem from the common.js of individual or a very low number of users. These are not what we are primarily looking for in this dashboard, and they might make it harder to find more important issues.
One way to cut down on that noise would be if we could filter/order the normalized messages by how many users they affect over the selected amount of time.
Would such a two-stage metric be possible inside Kibana/logstash?