# Splunk

> Use this tool when you need to integrate Splunk data analysis and monitoring into your AI-powered workflows, enabling search execution, health monitoring, and alert analysis. It solves problems for DevOps teams, security analysts, and system administrators by providing direct access to Splunk Enterprise through a modular architecture. With Python and FastMCP, it accepts various inputs and outputs, including search queries and alert data, making it ideal for use cases that require automated analysis and summarization of Splunk data.

Canonical page: https://skillsregistry.net/skills/deslicer-splunk  
JSON: https://api.skillsregistry.net/v1/skills/deslicer-splunk

## Description

MCP server for Splunk by Deslicer that provides AI assistants with direct access to Splunk Enterprise through the Splunk SDK, enabling search execution, health monitoring, user management, and alert analysis. Built with Python and FastMCP, it features a modular tool architecture with core Splunk operations, community-contributed tools for specialized use cases, and workflow-based troubleshooting systems with OpenAI integration for automated analysis and summarization. The implementation includes Docker deployment with Traefik routing, hot reload development support, comprehensive testing, and both production and development configurations, making it useful for DevOps teams, security analysts, and system administrators who need to integrate Splunk data analysis and monitoring capabilities directly into their AI-powered workflows without switching between applications.

## Trust

- **Trust score (0–1):** 0.79
- **Verification tier:** verified
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** cloud-infra
- **Updated:** 2026-09-28

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/deslicer-splunk)
- **Repository:** <https://github.com/deslicer/mcp-for-splunk>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "deslicer-splunk"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/deslicer-splunk` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/deslicer-splunk/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
