BASIC
kibana_basic_auth
Developer setup
No fields declared in this snapshot.
User connection
- Kibana Base URLfull · stringRequired
- Usernameusername · stringRequired
- Passwordpassword · stringRequired
KIBANA
Kibana is a visualization and analytics platform for Elasticsearch, offering dashboards, data exploration, and monitoring capabilities for gaining insights from data
Description is untrusted, display-only upstream metadata. It never becomes policy, OAuth scope authority, or an agent instruction.
Pakkawork boundary
Research catalogue metadata only. No Pakkawork OAuth, credential, host, quota, executor, or verifier is enabled.
47
Action summaries
Display-only definitions
0
Trigger types
Not installed instances
2
Auth modes
Field names, never values
No
Execution
No runtime adapter
Authentication map
BASIC
No fields declared in this snapshot.
API_KEY
No fields declared in this snapshot.
Capability index
Showing 31–47 of 47 actions
KIBANA_GET_FLEET_EPM_PACKAGES_INSTALLED
Tool to retrieve the list of installed packages in the Elastic Package Manager. Use this when you need to check which packages are currently installed in Fleet.
Untrusted display-only summary
KIBANA_GET_FLEET_EPM_PACKAGES_LIMITED
Retrieves a limited list of package names from the Elastic Package Manager (EPM) registry. Returns only package names (strings) without additional metadata, making it faster than the full packages endpoint. Useful for quickly getting a list of available integration packages (maximum 10,000 items). Use this when you on…
Untrusted display-only summary
KIBANA_GET_FLEET_EPM_PACKAGE_STATS
Retrieves usage statistics for a specific Fleet package in Kibana, including the number of package policies and agent policies using the package. Use this to understand package adoption and usage across your Fleet-managed agents.
Untrusted display-only summary
KIBANA_GET_FLEET_PACKAGE_POLICIES
Retrieves a list of Fleet package policies (integration policies) in Kibana. Package policies define how integrations are configured and which agent policies they're associated with. Use this to list all package policies, filter them by criteria, or get their IDs and configurations. Supports pagination, sorting, and K…
Untrusted display-only summary
KIBANA_GET_FLEET_SERVER_HOST
Tool to fetch details of a specific Fleet server host by its item ID. Use when you need to get information about a particular Fleet Server host.
Untrusted display-only summary
KIBANA_GET_FLEET_SERVER_HOSTS
Tool to retrieve the list of Fleet Server hosts. Use when you need to get information about the available Fleet Server hosts.
Untrusted display-only summary
KIBANA_GET_INDEX_MANAGEMENT_INDICES
Tool to fetch information about indices managed by Kibana's Index Management feature. It queries the underlying Elasticsearch /_cat/indices API to retrieve index details. Use when you need to list or get details about one or more indices in the cluster.
Untrusted display-only summary
KIBANA_GET_METRICS
Tool to retrieve statistics for nodes in an Elasticsearch cluster, often visualized in Kibana. Use when you need to monitor node health, performance, or resource usage. This action calls the Elasticsearch Nodes Stats API.
Untrusted display-only summary
KIBANA_GET_REPORTING_JOBS
Tool to retrieve a list of reporting jobs in Kibana. Use when you need to see pending or completed reports. This uses an internal API endpoint, which might be subject to change without notice.
Untrusted display-only summary
KIBANA_GET_SAVED_OBJECTS
Tool to retrieve a list of saved objects in Kibana based on specified criteria. Use when you need to find dashboards, visualizations, index patterns, or other saved entities.
Untrusted display-only summary
KIBANA_GET_STATUS
Tool to get the current status of Kibana. Use when you need to check if Kibana is healthy, monitor its state, or get information about the Kibana instance including version, UUID, and metrics.
Untrusted display-only summary
KIBANA_POST_ALERTING_RULES
Tool to create a new alerting rule in Kibana. Use when you need to define a new condition that, when met, triggers an alert and potentially executes predefined actions.
Untrusted display-only summary
KIBANA_POST_CASES
Tool to create a new case in Kibana. Use when you need to open and track issues, incidents, or investigations. You can assign users, set severity levels, add tags, and configure external connectors for integration with ITSM systems.
Untrusted display-only summary
KIBANA_POST_CONNECTORS
Tool to create a new connector in Kibana. Use when you need to integrate Kibana with an external service.
Untrusted display-only summary
KIBANA_POST_DASHBOARDS
Tool to create a new dashboard in Kibana. Use when you need to create a dashboard to visualize data. Dashboards can contain visualizations, saved searches, and other embeddable objects. Note: When using serverless Kibana, you must provide a dashboard_id. The action will automatically fallback to the import API for ser…
Untrusted display-only summary
KIBANA_POST_DATA_VIEWS
Tool to create a new data view (index pattern) in Kibana. Use when you need to define which Elasticsearch indices to query and analyze in Kibana. Data views determine which fields are available in Discover, Visualize, and other Kibana apps.
Untrusted display-only summary
KIBANA_POST_SAVED_OBJECTS
Tool to create or update a saved object in Kibana. Use when you need to programmatically manage Kibana dashboards, visualizations, index patterns, etc.
Untrusted display-only summary
Provenance
The detail snapshot comes from an attributed MIT-licensed repository revision. Safe local icons use exact-match CC0 Simple Icons symbols; unmatched brands use monograms.
Remote text is plain display metadata only. It must never become an agent prompt, execution policy, OAuth grant, or executable instruction.