Connect Kibana with AI agents using Model Context Protocol (MCP). Seamlessly integrate Kibana tools and actions into Claude, Cursor, Windsurf, and other AI applications for enhanced workflow automation.
Analytics & Data tools for AI automation
Install Kibana MCP server in minutes. Choose your AI platform: Cursor, Claude Desktop, Windsurf, or use HTTP endpoint for custom integrations. Follow our step-by-step guide to connect Kibana with your AI agent.
Explore other MCP integrations: Gmail MCP, Notion MCP, GitHub MCP, Linear MCP, Slack MCP, Google Sheets MCP, and 100+ more AI agent tools.
Kibana is a visualization and analytics platform for Elasticsearch, offering dashboards, data exploration, and monitoring capabilities for gaining insights from data
246
8
Analytics & Data
Paste and run this command in your terminal to set up Cursor with MCP
After running the command, restart Cursor to start using the MCP Server.
Tool to delete an action in kibana. use when you need to remove a specific action by its id, optionally within a specific space.
Tool to delete an alerting rule in kibana. use when you need to remove a specific alerting rule by its id.
Tool to delete a connector in kibana. use when you need to remove an existing connector.
Tool to delete a specific output configuration in kibana fleet. use when you need to remove an existing output by its id.
Tool to delete a specific fleet proxy configuration by its id. use when you need to remove an existing proxy setup.
Deletes a list. use when you want to delete a list by its id.
Tool to delete a saved osquery query by its id. use when you need to remove a specific osquery saved query.
Tool to delete a saved object in kibana. use when you need to remove a specific saved object like a visualization or dashboard.
Tool to find and/or aggregate detection alerts in kibana. use this to retrieve a list of alerts, optionally filtering them with a query and performing aggregations.
Tool to fetch the list of available action types (e.g., '.slack', '.email', '.webhook') in kibana. use this to discover the 'actiontypeid' needed when creating a new action.
Tool to retrieve a list of alerting rules in kibana. use when you need to get a paginated set of rules based on specified conditions.
Tool to retrieve available alert types in kibana. use when you need to get a list of all possible alert types and their metadata.
Tool to retrieve a list of cases in kibana. use when you need to find or list existing security or operational cases, potentially filtering by various attributes like status, assignee, or severity.
Tool to retrieve a list of all connectors in kibana. use this tool when you need to get information about available connectors.
Tool to retrieve a list of data views available in kibana. use when you need to get a list of available data views, optionally filtering by a name pattern.
Retrieves a list of detection engine rules based on specified criteria. use this tool to find detection rules.
Tool to retrieve all items from an endpoint exception list. use when you need to get a list of endpoint exceptions, for example, to check existing exceptions before adding a new one.
Retrieves the list of engines from the entity store.
Tool to list entity records in the entity store with support for paging, sorting, and filtering. use when you need to retrieve a list of entities such as users, hosts, or services.
Tool to retrieve the status of the entity store in kibana. use this to check if the entity store is operational.
20 actions available