Skip to content
Vinkius

Logz.io Connector for AI agents.

31 live capabilities

Query infrastructure logs and manage security alerts using natural language.

Live agent request Logz.io / Connector

Waiting for input…

AI Agent

Why people use Logz.io

Logz.io Observability and SIEM Management

This Connector puts that power into your agent. You just describe the problem in plain English. Your agent runs the queries, pulls the relevant logs, and tells you what's wrong in seconds. You get the answer without the click-fatigue.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • Visual Studio Code
  • Windsurf

What Vinkius changes

You get a conversational interface for your entire Logz.io observability stack.

Use it from Claude, ChatGPT, Cursor or another AI client you already have.

One account · 5,900+ Connectors

  1. Real-world use case 01

    Rapid Incident Response

    An SRE gets a page at 2 AM and asks the agent to list all high severity alerts from the last hour, then pulls the specific logs for the top result.

  2. Real-world use case 02

    Security Threat Hunting

    A security analyst identifies a suspicious rule trigger and asks the agent to find the raw log entries that caused the event.

  3. Real-world use case 03

    Alert Tuning and Maintenance

    A DevOps engineer wants to silence a noisy alert and then update its threshold to reduce false positives during a maintenance window.

Complete set · 31capabilities

The complete Logz.io capability set.

These are the exact actions your AI can choose when you ask it to work with Logz.io.

Capability set01 / 08

01—04

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 01 Capability

    Create user

    Create a new user in your account. Use this to manage team access and permissions easily.

  2. 02 Capability

    Disable alert

    Disable an alert immediately. This is perfect for silencing noisy notifications during maintenance windows.

  3. 03 Capability

    Enable alert

    Enable an alert to start receiving notifications. Use this to turn on monitoring for new infrastructure.

  4. 04 Capability

    List insights

    Retrieve LOGCEPTION and PUBLIC_CI insights from your logs. This highlights specific issues detected by the platform.

Capability set02 / 08

05—08

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 05 Capability

    Create metrics account

    Create a new Metrics account in your platform. This allows you to track specific performance data points in one place.

  2. 06 Capability

    Create security rule

    Create a new SIEM security rule to catch specific threats. This helps you automate the detection of malicious activity.

  3. 07 Capability

    Create siem account

    Create a new SIEM account linked to your main logs. This organizes your security monitoring data.

  4. 08 Capability

    Create snapshot

    Create a Kibana snapshot for your data. This ensures you have reliable backups for long-term retention.

Capability set03 / 08

09—12

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 09 Capability

    Delete alert

    Delete an alert from your configuration. This helps you clean up noisy or obsolete notifications.

  2. 10 Capability

    Delete security rule

    Delete a SIEM security rule. Use this to remove rules that are no longer relevant to your security posture.

  3. 11 Capability

    Delete user

    Delete a user from your account. This is useful for offboarding team members or cleaning up old accounts.

  4. 12 Capability

    Get lookup list

    Get a lookup list by its ID. This helps you retrieve specific reference data used in your rules.

Capability set04 / 08

13—16

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 13 Capability

    Get snapshot

    Get a specific Kibana snapshot. Use this to verify that your data backups are available.

  2. 14 Capability

    List alerts

    List all configured alerts in your account. This gives you a full overview of your current monitoring setup.

  3. 15 Capability

    List triggered alerts

    List a paged set of triggered alert events. This helps you quickly see what's currently failing.

  4. 16 Capability

    List users recursive

    List all users in the main account and sub-accounts. Use this to audit permissions across your entire organization.

Capability set05 / 08

17—20

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 17 Capability

    List users

    List users for a single account. This is useful for checking permissions on a per-environment basis.

  2. 18 Capability

    Scroll logs

    Paginate through large result sets from your searches. This allows you to see more data without hitting limits.

  3. 19 Capability

    Search logs

    Search account data using Elasticsearch Search API DSL. This lets you run complex queries to find specific log entries.

  4. 20 Capability

    Search lookup lists

    Search through your lookup lists. Use this to find specific reference data like blacklisted IPs.

Capability set06 / 08

21—24

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 21 Capability

    Search security event logs

    Retrieve the specific logs that caused a security event to trigger. This helps you find the root cause of a threat.

  2. 22 Capability

    Search security events

    Fetch events triggered by your security rules. Use this to see a history of security incidents.

  3. 23 Capability

    Search security rules

    Search through your SIEM security rules. This helps you find and manage your security logic.

  4. 24 Capability

    Suspend user

    Suspend a user account. This is a quick way to revoke access during a security incident.

Capability set07 / 08

25—28

4 capabilities in this set.

Part of 31 available through Logz.io.

  1. 25 Capability

    Unsuspend user

    Unsuspend a user account. Use this to restore access once a security concern is resolved.

  2. 26 Capability

    Update alert

    Update an existing alert configuration. Use this to tune thresholds or change notification targets.

  3. 27 Capability

    Update security rule

    Update a SIEM security rule. This allows you to refine your security logic as your environment changes.

  4. 28 Capability

    Update user

    Update the details of an existing user. Use this to manage permissions and account info.

Capability set08 / 08

29—31

3 capabilities in this set.

Part of 31 available through Logz.io.

  1. 29 Capability

    Create alert

    Create a new alert for your monitoring system. Use this to set up new notifications for your infrastructure.

  2. 30 Capability

    Create deployment markers

    Add deployment markers to your Kibana exception graphs. This helps you correlate deployments with errors.

  3. 31 Capability

    Create lookup list

    Create a new lookup list for use in SIEM rules. This is great for managing blacklists or allowed IPs.

Set up in minutes

One URL. Then ask Logz.io to work.

Claude and ChatGPT only need the Connector URL. Copy it once, add it in settings, and use Logz.io from the conversation.

Choose your client

Live preview
Advanced clients IDE · CLI

Claude · Web + desktop

Official guide ↗

Connector URL · ready to paste

Streamable HTTP
https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp
  1. Step 01

    Open Connectors

    In Claude Web or Claude Desktop, open Settings and choose Connectors.

  2. Step 02

    Add the URL

    Choose Add custom connector, name it Logz.io, and paste the URL above.

  3. Step 03

    Turn it on in chat

    Select +, open Connectors, and enable Logz.io for the conversation.

Where the request belongs

Work Logz.io can move forward.

Built around the request

This is for the on-call engineer who needs to find an error at 2 AM, the security analyst hunting for a threat, or the DevOps lead managing complex alert configurations.

01

DevOps Engineer

Uses the agent to quickly find error patterns in production logs without leaving the chat window.

02

SRE

Monitors triggered alerts and adjusts alert configurations during high-pressure incident responses.

03

Security Analyst

Audits security rules and investigates specific log entries that caused a SIEM trigger.

Bring your own AI

Change the model, client or framework. Keep Logz.io connected.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • VS Code
  • Windsurf
  • ZCode
  • Cline
  • Zed
  • Continue
  • Kiro
  • Roo Code
  • Zencoder
  • Goose
  • Void
  • Augment Code
  • Amp
  • Qodo
  • Tabnine
  • Pieces
  • Sourcegraph Cody
  • JetBrains
  • Warp
  • Amazon Q
  • Antigravity
  • BoltAI
  • Raycast
  • Jan
  • LM Studio
  • AnythingLLM
  • Open WebUI
  • Msty
  • Cherry Studio
  • LibreChat
  • TypingMind
  • Chorus
  • 5ire
  • n8n
  • LangChain
  • LlamaIndex
  • CrewAI
  • Vercel AI SDK

Before you connect

Questions about Logz.io.

The practical details behind the request, access and result.

Can the Logz.io MCP search logs using plain English?

Yes, it interprets your natural language into complex queries. You can ask for specific errors, timeframes, or infrastructure components, and it handles the technical syntax for you.

Can I use this to manage my alerts?

Yes, you can create new alerts, update existing ones, or toggle them on and off. It's a great way to manage your monitoring state during an active incident.

Does this work for security events?

Yes, it can search security rules and find the specific log entries that triggered them. This makes it much faster to investigate security incidents.

Can I manage users with this?

Yes, you can list users across your main account and sub-accounts, create new users, and suspend or unsuspend them as needed for access control.

How do I handle large log results?

The agent handles large result sets by paginating through the data. This ensures you can see all relevant logs without hitting any system limits.

Is this for any log provider?

No, this Connector is specifically designed for the Logz.io platform. It connects directly to your Logz.io account to manage logs and alerts.

Can I perform complex log searches using Elasticsearch DSL?

Yes. The search_logs capability accepts a full Elasticsearch DSL query object, allowing you to filter, aggregate, and sort your log data with high precision.

How do I check which alerts have been triggered recently?

Use the list_triggered_alerts capability. You can filter the results by severity, tags, or search for specific alert names to identify active incidents.

Is it possible to temporarily stop an alert without deleting it?

Absolutely. You can use the disable_alert capability with the specific Alert ID to pause it, and enable_alert to turn it back on whenever you're ready.

One connection away

Give your agent a direct line to Logz.io.

Connect Logz.io once. Keep it beside 5,900+ managed Connectors when the next task needs more.

Explore every Connector No credit card required · Free tier available