Logz.io Connector for AI agents.
31 live capabilities
Query infrastructure logs and manage security alerts using natural language.
Waiting for input…
Why people use Logz.io
Logz.io Observability and SIEM Management
This Connector puts that power into your agent. You just describe the problem in plain English. Your agent runs the queries, pulls the relevant logs, and tells you what's wrong in seconds. You get the answer without the click-fatigue.
What Vinkius changes
You get a conversational interface for your entire Logz.io observability stack.
Use it from Claude, ChatGPT, Cursor or another AI client you already have.
One account · 5,900+ Connectors
- Real-world use case 01
Rapid Incident Response
An SRE gets a page at 2 AM and asks the agent to list all high severity alerts from the last hour, then pulls the specific logs for the top result.
- Real-world use case 02
Security Threat Hunting
A security analyst identifies a suspicious rule trigger and asks the agent to find the raw log entries that caused the event.
- Real-world use case 03
Alert Tuning and Maintenance
A DevOps engineer wants to silence a noisy alert and then update its threshold to reduce false positives during a maintenance window.
Complete set · 31capabilities
The complete Logz.io capability set.
These are the exact actions your AI can choose when you ask it to work with Logz.io.
01—04
4 capabilities in this set.
Part of 31 available through Logz.io.
- 01 Capability
Create user
Create a new user in your account. Use this to manage team access and permissions easily.
- 02 Capability
Disable alert
Disable an alert immediately. This is perfect for silencing noisy notifications during maintenance windows.
- 03 Capability
Enable alert
Enable an alert to start receiving notifications. Use this to turn on monitoring for new infrastructure.
- 04 Capability
List insights
Retrieve LOGCEPTION and PUBLIC_CI insights from your logs. This highlights specific issues detected by the platform.
05—08
4 capabilities in this set.
Part of 31 available through Logz.io.
- 05 Capability
Create metrics account
Create a new Metrics account in your platform. This allows you to track specific performance data points in one place.
- 06 Capability
Create security rule
Create a new SIEM security rule to catch specific threats. This helps you automate the detection of malicious activity.
- 07 Capability
Create siem account
Create a new SIEM account linked to your main logs. This organizes your security monitoring data.
- 08 Capability
Create snapshot
Create a Kibana snapshot for your data. This ensures you have reliable backups for long-term retention.
09—12
4 capabilities in this set.
Part of 31 available through Logz.io.
- 09 Capability
Delete alert
Delete an alert from your configuration. This helps you clean up noisy or obsolete notifications.
- 10 Capability
Delete security rule
Delete a SIEM security rule. Use this to remove rules that are no longer relevant to your security posture.
- 11 Capability
Delete user
Delete a user from your account. This is useful for offboarding team members or cleaning up old accounts.
- 12 Capability
Get lookup list
Get a lookup list by its ID. This helps you retrieve specific reference data used in your rules.
13—16
4 capabilities in this set.
Part of 31 available through Logz.io.
- 13 Capability
Get snapshot
Get a specific Kibana snapshot. Use this to verify that your data backups are available.
- 14 Capability
List alerts
List all configured alerts in your account. This gives you a full overview of your current monitoring setup.
- 15 Capability
List triggered alerts
List a paged set of triggered alert events. This helps you quickly see what's currently failing.
- 16 Capability
List users recursive
List all users in the main account and sub-accounts. Use this to audit permissions across your entire organization.
17—20
4 capabilities in this set.
Part of 31 available through Logz.io.
- 17 Capability
List users
List users for a single account. This is useful for checking permissions on a per-environment basis.
- 18 Capability
Scroll logs
Paginate through large result sets from your searches. This allows you to see more data without hitting limits.
- 19 Capability
Search logs
Search account data using Elasticsearch Search API DSL. This lets you run complex queries to find specific log entries.
- 20 Capability
Search lookup lists
Search through your lookup lists. Use this to find specific reference data like blacklisted IPs.
21—24
4 capabilities in this set.
Part of 31 available through Logz.io.
- 21 Capability
Search security event logs
Retrieve the specific logs that caused a security event to trigger. This helps you find the root cause of a threat.
- 22 Capability
Search security events
Fetch events triggered by your security rules. Use this to see a history of security incidents.
- 23 Capability
Search security rules
Search through your SIEM security rules. This helps you find and manage your security logic.
- 24 Capability
Suspend user
Suspend a user account. This is a quick way to revoke access during a security incident.
25—28
4 capabilities in this set.
Part of 31 available through Logz.io.
- 25 Capability
Unsuspend user
Unsuspend a user account. Use this to restore access once a security concern is resolved.
- 26 Capability
Update alert
Update an existing alert configuration. Use this to tune thresholds or change notification targets.
- 27 Capability
Update security rule
Update a SIEM security rule. This allows you to refine your security logic as your environment changes.
- 28 Capability
Update user
Update the details of an existing user. Use this to manage permissions and account info.
29—31
3 capabilities in this set.
Part of 31 available through Logz.io.
- 29 Capability
Create alert
Create a new alert for your monitoring system. Use this to set up new notifications for your infrastructure.
- 30 Capability
Create deployment markers
Add deployment markers to your Kibana exception graphs. This helps you correlate deployments with errors.
- 31 Capability
Create lookup list
Create a new lookup list for use in SIEM rules. This is great for managing blacklists or allowed IPs.
Set up in minutes
One URL. Then ask Logz.io to work.
Claude and ChatGPT only need the Connector URL. Copy it once, add it in settings, and use Logz.io from the conversation.
Choose your client
Live previewAdvanced clients IDE · CLI
Claude · Web + desktop
Connector URL · ready to paste
Streamable HTTPhttps://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp - Step 01
Open Connectors
In Claude Web or Claude Desktop, open Settings and choose Connectors.
- Step 02
Add the URL
Choose Add custom connector, name it Logz.io, and paste the URL above.
- Step 03
Turn it on in chat
Select +, open Connectors, and enable Logz.io for the conversation.
ChatGPT · Web + desktop
Connector URL · ready to paste
Streamable HTTPhttps://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp - Step 01
Open MCP settings
On desktop, open Settings and MCP servers. On web, open your workspace app or connector settings.
- Step 02
Add the URL
Choose Add server with Streamable HTTP, or create a custom MCP app, then paste the Logz.io URL.
- Step 03
Save and start
Save the connection and enable Logz.io in your conversation. Desktop may ask you to restart once.
Cursor · IDE configuration
Advanced setup
{
"mcpServers": {
"logzio": {
"url": "https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp"
}
}
} - Step 01
Open MCP Settings
Press Cmd+Shift+P (macOS) or Ctrl+Shift+P (Windows/Linux) → search "MCP Settings"
- Step 02
Add the server config
Paste the JSON configuration above into the mcp.json file that opens
- Step 03
Save the file
Cursor will automatically detect the new Connector
- Step 04
Start using Logz.io
Open Agent mode in chat and ask: "Using Logz.io, help me...". 31 tools available
VS Code Copilot · IDE configuration
Advanced setup
{
"mcpServers": {
"logzio": {
"url": "https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp"
}
}
} - Step 01
Create MCP config
Create a .vscode/mcp.json file in your project root
- Step 02
Add the server config
Paste the JSON configuration above
- Step 03
Enable Agent mode
Open GitHub Copilot Chat and switch to Agent mode using the dropdown
- Step 04
Start using Logz.io
Ask Copilot: "Using Logz.io, help me...". 31 tools available
Windsurf · IDE configuration
Advanced setup
{
"mcpServers": {
"logzio": {
"url": "https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp"
}
}
} - Step 01
Open MCP Settings
Go to Settings → MCP Configuration or press Cmd+Shift+P and search "MCP"
- Step 02
Add the server
Paste the JSON configuration above into mcp_config.json
- Step 03
Save and reload
Windsurf will detect the new server automatically
- Step 04
Start using Logz.io
Open Cascade and ask: "Using Logz.io, help me...". 31 tools available
Cline · IDE configuration
Advanced setup
{
"mcpServers": {
"logzio": {
"url": "https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp"
}
}
} - Step 01
Open Cline MCP Settings
Click the Connectors icon in the Cline sidebar panel
- Step 02
Add remote server
Click "Add Connector" and paste the configuration above
- Step 03
Enable the server
Toggle the server switch to ON
- Step 04
Start using Logz.io
Ask Cline: "Using Logz.io, help me...". 31 tools available
Claude Code · Terminal command
Advanced setup
claude mcp add logzio --transport http "https://edge.vinkius.com/vk_preview_AyHNLvDaCmsIfrOJPVFCkVxu65F4CtNzZtKWGH3a/mcp" - Step 01
Install Claude Code
Run npm install -g @anthropic-ai/claude-code if not already installed
- Step 02
Add the Connector
Run the command above in your terminal
- Step 03
Verify the connection
Run claude mcp to list connected servers, or type /mcp inside a session
- Step 04
Start using Logz.io
Ask Claude: "Using Logz.io, show me...". 31 tools are ready
Where the request belongs
Work Logz.io can move forward.
This is for the on-call engineer who needs to find an error at 2 AM, the security analyst hunting for a threat, or the DevOps lead managing complex alert configurations.
DevOps Engineer
Uses the agent to quickly find error patterns in production logs without leaving the chat window.
SRE
Monitors triggered alerts and adjusts alert configurations during high-pressure incident responses.
Security Analyst
Audits security rules and investigates specific log entries that caused a SIEM trigger.
Build the capability set
Add more capabilities.
Each Connector adds new actions and data without changing how you work.
Browse ConnectorsLoggly (Cloud Log Management API)
Manage cloud logs via Loggly. send events, execute Lucene searches, and analyze infrastructure metrics directly from your AI agent.
Sumo Logic
Manage logs, metrics, and collectors via Sumo Logic. run search jobs, monitor infrastructure, and manage collectors directly from any AI agent.
Papertrail (Real-time Cloud Log Manager)
Manage and analyze cloud logs in real-time via Papertrail. search events, list systems, and organize log groups directly from your AI agent.
Logflare (Log Management Analytics)
Streamline log management and analytics via Logflare. ingest events, execute ad-hoc SQL queries, and trigger pre-configured endpoints directly from your AI agent.
HyperDX (Open Source Observability)
Monitor logs, events, and alerts via HyperDX. search logs, manage alert rules, and inspect dashboards directly from your AI agent.
Logstash (Server-side Log Pipeline API)
Monitor and manage Logstash instances. check node health, inspect pipeline statistics, and troubleshoot hot threads directly from any AI agent.
Bring your own AI
Change the model, client or framework. Keep Logz.io connected.
-
Claude -
ChatGPT -
Gemini -
Cursor -
VS Code -
Windsurf -
ZCode -
Cline -
Zed -
Continue -
Kiro -
Roo Code -
Zencoder -
Goose -
Void -
Augment Code -
Amp -
Qodo -
Tabnine -
Pieces -
Sourcegraph Cody -
JetBrains -
Warp -
Amazon Q -
Antigravity -
BoltAI -
Raycast -
Jan -
LM Studio -
AnythingLLM -
Open WebUI -
Msty -
Cherry Studio -
LibreChat -
TypingMind -
Chorus -
5ire -
n8n -
LangChain -
LlamaIndex -
CrewAI -
Vercel AI SDK
Before you connect
Questions about Logz.io.
The practical details behind the request, access and result.
Can the Logz.io MCP search logs using plain English?
Yes, it interprets your natural language into complex queries. You can ask for specific errors, timeframes, or infrastructure components, and it handles the technical syntax for you.
Can I use this to manage my alerts?
Yes, you can create new alerts, update existing ones, or toggle them on and off. It's a great way to manage your monitoring state during an active incident.
Does this work for security events?
Yes, it can search security rules and find the specific log entries that triggered them. This makes it much faster to investigate security incidents.
Can I manage users with this?
Yes, you can list users across your main account and sub-accounts, create new users, and suspend or unsuspend them as needed for access control.
How do I handle large log results?
The agent handles large result sets by paginating through the data. This ensures you can see all relevant logs without hitting any system limits.
Is this for any log provider?
No, this Connector is specifically designed for the Logz.io platform. It connects directly to your Logz.io account to manage logs and alerts.
Can I perform complex log searches using Elasticsearch DSL?
Yes. The search_logs capability accepts a full Elasticsearch DSL query object, allowing you to filter, aggregate, and sort your log data with high precision.
How do I check which alerts have been triggered recently?
Use the list_triggered_alerts capability. You can filter the results by severity, tags, or search for specific alert names to identify active incidents.
Is it possible to temporarily stop an alert without deleting it?
Absolutely. You can use the disable_alert capability with the specific Alert ID to pause it, and enable_alert to turn it back on whenever you're ready.
One connection away
Give your agent a direct line to Logz.io.
Connect Logz.io once. Keep it beside 5,900+ managed Connectors when the next task needs more.
Explore every Connector No credit card required · Free tier available