Best Kibana MCP Servers
Kibana is a data visualization dashboard software for Elasticsearch. It provides visualization capabilities on top of the content indexed on Elasticsearch, allowing users to search, view, and interact with data stored in Elasticsearch indices.
Why this server?
Converts Sigma rules to Kibana query strings for use in Kibana dashboards.
AlicenseAqualityBmaintenanceSigma detection rule writing, validation, and pySigma-based multi-backend conversion (Splunk, Elastic, Wazuh, Kibana) via 3 MCP tools and 3 Claude Code skills, backed by a 61-rule production corpus across 11 MITRE ATT\&CK tactic categories.Last updated3MITWhy this server?
Mentions that Kibana is accessible as part of the Elasticsearch cluster setup, though interaction is primarily through the Elasticsearch API
AlicenseAqualityBmaintenanceFacilitates interaction with Elasticsearch clusters by allowing users to perform index operations, document searches, and cluster management via a Model Context Protocol server and natural language commands.Last updated20280Apache 2.0Why this server?
Offers access to Kibana as part of the OpenSearch integration, allowing users to visualize and explore data stored in OpenSearch through the Kibana interface.
AlicenseBqualityCmaintenanceA Model Context Protocol server implementation that enables natural language interactions with OpenSearch clusters, allowing users to search documents, analyze indices, and manage clusters through simple conversational commands.Last updated1411Apache 2.0Why this server?
Enables AI assistants to interact with Kibana dashboards, visualizations, data views, and saved searches, with tools for executing searches, exporting dashboards, and querying Elasticsearch data through Kibana's REST API.
AlicenseBqualityCmaintenanceEnables AI assistants to interact with Kibana dashboards, visualizations, and Elasticsearch data through read-only resources and executable tools for searching logs, exporting dashboards, and querying data.Last updated751MITWhy this server?
Allows searching logs, performing aggregations, discovering indices, and browsing dashboards in Kibana/Elasticsearch via REST API.
AlicenseAqualityBmaintenanceMCP server for Kibana / Elasticsearch — log search, aggregations, index discovery, and dashboard browsing. Hits Elasticsearch REST API directly for log queries; falls back to Kibana Console proxy when no direct ES URL is configured. Supports ApiKey auth (best for agents), Basic auth, and anonymous access. All 5 tools are read-only (readOnlyHint: true). Returns structured JSON (outputSchema).Last updated5MITWhy this server?
Provides access to Kibana instances through API endpoints, allowing users to search, view, and execute Kibana APIs. Supports operations like checking server status, managing saved objects, creating dashboards, handling cases, and accessing endpoint events through Kibana's API.
Apache 2.0Why this server?
Supports connection to Kibana as part of an Elasticsearch deployment through the Docker Compose setup, providing visualization and management capabilities for Elasticsearch data.
AlicenseCqualityDmaintenanceProvides an MCP protocol interface for interacting with Elasticsearch 7.x databases, supporting comprehensive search functionality including aggregations, highlighting, and sorting.Last updated310Apache 2.0Why this server?
Provides access to Kibana logs through KQL-based querying, supporting multi-index searches across 1.3+ billion logs, time-based filtering with timezone support, and AI-powered log analysis and summarization.
Flicense-qualityCmaintenanceProvides seamless access to Kibana and Periscope logs through a unified API with KQL and SQL querying, AI-powered log analysis, and support for searching across 1.3+ billion logs in 9 indexes.Last updated1Why this server?
Provides Kibana status and plugin information via read-only API.
Flicense-quality-maintenanceA production-oriented, read-only MCP server for secure ELK stack analysis, compatible with OpenClaw.Last updated