ClawLink
Developer Tools47 toolsPaste one API key

Kibana integration for AI agents

Search and visualize Elasticsearch data

Use it from your agent

One ClawLink account serves every agent you run. Pick the guide for yours, or connect Kibana once and call the same tools from all of them.

Setup

Connect kibana through ClawLink's hosted setup.

  • Auth: Paste one API key. The credential stays on the ClawLink server; your agent holds only a ClawLink key you can revoke.
  • Where: the ClawLink dashboard, or ask your agent to connect it.

What your agent can do

Kibana exposes 47 tools through ClawLink. The 30 most used are listed here; your agent sees all of them.

ToolWhat it doesKind
kibana_find_alertsTool to find and/or aggregate detection alerts in Kibana. Use this to retrieve a list of alerts, optionally filtering them with a query and performing aggregations.Read
kibana_get_action_typesRetrieves all available connector types (actions) in Kibana. Connector types (also called action types) are integrations like Slack, Email, Webhook, ServiceNow, etc.Read
kibana_get_alert_typesRetrieves available rule types (alert types) in Kibana.Read
kibana_get_alerting_rulesTool to retrieve a list of alerting rules in Kibana. Use when you need to get a paginated set of rules based on specified conditions.Read
kibana_get_casesTool to retrieve a list of cases in Kibana. Use when you need to find or list existing security or operational cases, potentially filtering by various attributes like status, assignee, or severity.Read
kibana_get_connectorsRetrieve a list of all connectors in KibanaRead
kibana_get_data_viewsRetrieves all data views (formerly known as index patterns) available in KibanaRead
kibana_get_detection_engine_rules_findRetrieves a paginated list of Kibana detection engine rules with flexible filtering and sortingRead
kibana_get_endpoint_list_itemsRetrieves Elastic Endpoint exception list items with filtering, pagination, and sortingRead
kibana_get_entity_store_enginesRetrieves all entity store engines configured in KibanaRead
kibana_get_entity_store_entities_listList entity records in the entity store with support for paging, sorting, and filteringRead
kibana_get_entity_store_statusRetrieves the current status of the Kibana Entity Store and its configured enginesRead
kibana_get_fleet_agent_policiesRetrieves a paginated list of Fleet agent policies with filtering, sorting, and optionalRead
kibana_get_fleet_agents_available_versionsRetrieve the available versions for Fleet agentsRead
kibana_get_fleet_agents_setup_statusCheck Fleet setup readiness and identify missing requirementsRead
kibana_get_fleet_check_permissionsCheck the permissions for the Fleet APIRead
kibana_get_fleet_enrollment_api_keyRetrieve details of a specific enrollment API key by its IDRead
kibana_get_fleet_enrollment_api_keysFetch a list of enrollment API keysRead
kibana_get_fleet_epm_categoriesGet all available package categories in the Elastic Package Manager (EPM) with package countsRead
kibana_get_fleet_epm_data_streamsRetrieve the list of data streams in the Elastic Package ManagerRead
kibana_get_fleet_epm_package_detailsRetrieves comprehensive details for a specific Fleet integration package version from theRead
kibana_get_fleet_epm_package_fileRetrieves a specific file from an Elastic Package Manager (EPM) packageRead
kibana_get_fleet_epm_package_statsRetrieves usage statistics for a specific Fleet package in Kibana, including the number ofRead
kibana_get_fleet_epm_packagesFetch the list of available packages in the Elastic Package ManagerRead
kibana_get_fleet_epm_packages_installedRetrieve the list of installed packages in the Elastic Package ManagerRead
kibana_get_fleet_epm_packages_limitedRetrieves a limited list of package names from the Elastic Package Manager (EPM) registryRead
kibana_get_fleet_package_policiesRetrieves a list of Fleet package policies (integration policies) in KibanaRead
kibana_get_fleet_server_hostFetch details of a specific Fleet server host by its item IDRead
kibana_get_fleet_server_hostsRetrieve the list of Fleet Server hostsRead
kibana_get_index_management_indicesFetch information about indices managed by Kibana's Index Management featureRead