Skip to main content

kibana-agent

Read-only Kibana/ES CLI for AI agents. Queries Elasticsearch through Kibana's console proxy API.

Install

uv tool install kibana-agent

# or just run:
# uvx kibana-agent

Setup

kibana-agent profile create prd --url https://kibana.example.com --auth 1password \
  --op-username "op://vault/item/username" --op-password "op://vault/item/password" --use

Auth: 1password (Touch ID, cached 24h per profile), keychain (OS keyring — macOS Keychain / Linux Secret Service / Windows Credential Locker via the keyring library; on Linux requires a running Secret Service provider such as gnome-keyring, KWallet, or KeePassXC), plain.

Usage

kibana-agent context                                            # index overview
kibana-agent search 'my-index-*' --last 1h -n 10                 # search logs
kibana-agent count 'my-index-*' -q '{"match":{"level":"ERROR"}}'   # count docs
kibana-agent tail 'my-index-*' -f @timestamp,level,message        # live stream
kibana-agent histogram 'my-index-*' --last 6h --interval 10m     # date histogram
kibana-agent discover 'my-index-*' --kql "level:ERROR"            # Kibana URL

Agent setup

Install the skill (recommended)

This repo ships an agent skill that teaches an agent how to drive the CLI: which query matches which field type, how to read the hints on stderr, and why an empty result is usually a wrong query rather than missing data.

npx skills add hyzyla/kibana-agent -g     # all projects
npx skills add hyzyla/kibana-agent        # this project only
npx skills update                         # pull later changes

This works with any agent the skills CLI supports — Claude Code, Cursor, Codex, and others. For Claude Code it installs to ~/.claude/skills/ (global) or .claude/skills/ (project), and loads automatically when you ask about Kibana, Elasticsearch, or logs.

To install by hand instead, copy or symlink skills/kibana-agent/ into your agent's skills directory.

Without a skill

Add to your CLAUDE.md (or equivalent system prompt):

Use `kibana-agent` to query Elasticsearch. Start with `kibana-agent context` to
discover indices and fields, then use `kibana-agent search`, `kibana-agent count`,
`kibana-agent histogram` to investigate. Read stderr: the CLI warns when a query
cannot match and explains empty results. Run `kibana-agent agent-help` for the
full reference.

Output is JSON. All operations are read-only.

MCP server

The same operations are also available as an MCP server (kibana-agent mcp) for use with Claude Code, Claude Desktop, Cursor, etc. Profiles and credentials are shared with the CLI.

License

MIT

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

kibana_agent-0.7.1.tar.gz (30.9 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

kibana_agent-0.7.1-py3-none-any.whl (33.6 kB view details)

Uploaded Python 3

File details

Details for the file kibana_agent-0.7.1.tar.gz.

File metadata

  • Download URL: kibana_agent-0.7.1.tar.gz
  • Upload date:
  • Size: 30.9 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: uv/0.12.2 {"installer":{"name":"uv","version":"0.12.2","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

File hashes

Hashes for kibana_agent-0.7.1.tar.gz
Algorithm Hash digest
SHA256 38f1da12c08a68067b3df1df3e2f10136cdc3b7ba60d4fb8ff8019da74001b5d
MD5 6e36ead398a257b346ecac4d9810899b
BLAKE2b-256 4ab19f2b182fc103efe103d26e789212bd8b8a6cbdfafa199d4bda50e74316cd

See more details on using hashes here.

File details

Details for the file kibana_agent-0.7.1-py3-none-any.whl.

File metadata

  • Download URL: kibana_agent-0.7.1-py3-none-any.whl
  • Upload date:
  • Size: 33.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: uv/0.12.2 {"installer":{"name":"uv","version":"0.12.2","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Ubuntu","version":"24.04","id":"noble","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":true}

File hashes

Hashes for kibana_agent-0.7.1-py3-none-any.whl
Algorithm Hash digest
SHA256 d6878b836e43fea531cad1795168cca91cdcf65b8a351aa02fbcdd7ed75ac6b4
MD5 95f1f236a42f67c8d3cd2b1d2cfc8410
BLAKE2b-256 0ca50083420847413ee6c76b9b33634bb797e9694919f6f34c6396e55bc15513

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page