Developer Tools47 toolsPaste one API key
Kibana integration for AI agents
Search and visualize Elasticsearch data
Use it from your agent
One ClawLink account serves every agent you run. Pick the guide for yours, or connect Kibana once and call the same tools from all of them.
Setup
Connect kibana through ClawLink's hosted setup.
- Auth: Paste one API key. The credential stays on the ClawLink server; your agent holds only a ClawLink key you can revoke.
- Where: the ClawLink dashboard, or ask your agent to connect it.
What your agent can do
Kibana exposes 47 tools through ClawLink. The 30 most used are listed here; your agent sees all of them.
| Tool | What it does | Kind |
|---|---|---|
kibana_find_alerts | Tool to find and/or aggregate detection alerts in Kibana. Use this to retrieve a list of alerts, optionally filtering them with a query and performing aggregations. | Read |
kibana_get_action_types | Retrieves all available connector types (actions) in Kibana. Connector types (also called action types) are integrations like Slack, Email, Webhook, ServiceNow, etc. | Read |
kibana_get_alert_types | Retrieves available rule types (alert types) in Kibana. | Read |
kibana_get_alerting_rules | Tool to retrieve a list of alerting rules in Kibana. Use when you need to get a paginated set of rules based on specified conditions. | Read |
kibana_get_cases | Tool to retrieve a list of cases in Kibana. Use when you need to find or list existing security or operational cases, potentially filtering by various attributes like status, assignee, or severity. | Read |
kibana_get_connectors | Retrieve a list of all connectors in Kibana | Read |
kibana_get_data_views | Retrieves all data views (formerly known as index patterns) available in Kibana | Read |
kibana_get_detection_engine_rules_find | Retrieves a paginated list of Kibana detection engine rules with flexible filtering and sorting | Read |
kibana_get_endpoint_list_items | Retrieves Elastic Endpoint exception list items with filtering, pagination, and sorting | Read |
kibana_get_entity_store_engines | Retrieves all entity store engines configured in Kibana | Read |
kibana_get_entity_store_entities_list | List entity records in the entity store with support for paging, sorting, and filtering | Read |
kibana_get_entity_store_status | Retrieves the current status of the Kibana Entity Store and its configured engines | Read |
kibana_get_fleet_agent_policies | Retrieves a paginated list of Fleet agent policies with filtering, sorting, and optional | Read |
kibana_get_fleet_agents_available_versions | Retrieve the available versions for Fleet agents | Read |
kibana_get_fleet_agents_setup_status | Check Fleet setup readiness and identify missing requirements | Read |
kibana_get_fleet_check_permissions | Check the permissions for the Fleet API | Read |
kibana_get_fleet_enrollment_api_key | Retrieve details of a specific enrollment API key by its ID | Read |
kibana_get_fleet_enrollment_api_keys | Fetch a list of enrollment API keys | Read |
kibana_get_fleet_epm_categories | Get all available package categories in the Elastic Package Manager (EPM) with package counts | Read |
kibana_get_fleet_epm_data_streams | Retrieve the list of data streams in the Elastic Package Manager | Read |
kibana_get_fleet_epm_package_details | Retrieves comprehensive details for a specific Fleet integration package version from the | Read |
kibana_get_fleet_epm_package_file | Retrieves a specific file from an Elastic Package Manager (EPM) package | Read |
kibana_get_fleet_epm_package_stats | Retrieves usage statistics for a specific Fleet package in Kibana, including the number of | Read |
kibana_get_fleet_epm_packages | Fetch the list of available packages in the Elastic Package Manager | Read |
kibana_get_fleet_epm_packages_installed | Retrieve the list of installed packages in the Elastic Package Manager | Read |
kibana_get_fleet_epm_packages_limited | Retrieves a limited list of package names from the Elastic Package Manager (EPM) registry | Read |
kibana_get_fleet_package_policies | Retrieves a list of Fleet package policies (integration policies) in Kibana | Read |
kibana_get_fleet_server_host | Fetch details of a specific Fleet server host by its item ID | Read |
kibana_get_fleet_server_hosts | Retrieve the list of Fleet Server hosts | Read |
kibana_get_index_management_indices | Fetch information about indices managed by Kibana's Index Management feature | Read |