# Splunk

> Use this tool when you need to execute searches, manage indexes, and perform other Splunk operations through a natural language interface. It solves problems for security analysts and system administrators by providing a conversational interface to Splunk resources, accepting natural language inputs and returning relevant outputs. It is particularly useful in contexts where automation and efficient querying of Splunk data are required, such as security monitoring and system administration.

Canonical page: https://skillsregistry.net/skills/livehybrid-splunk  
JSON: https://api.skillsregistry.net/v1/skills/livehybrid-splunk

## Description

The Splunk MCP tool provides a natural language interface to Splunk Enterprise/Cloud operations, enabling AI assistants to execute searches, manage indexes, handle users, and perform KV store operations. Built with Python using FastMCP and the Splunk SDK, it features async support for better performance, detailed logging with emoji indicators, and flexible SSL configuration options. The implementation can run in both STDIO mode for command-line integration and SSE mode for web server integration, making it particularly valuable for security analysts and system administrators who need to query and manage Splunk resources through conversational interfaces.

## Trust

- **Trust score (0–1):** 0.95
- **Verification tier:** verified
- **Last scanned:** 2026-09-19

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** monitoring
- **Updated:** 2026-09-19

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/livehybrid-splunk)
- **Repository:** <https://github.com/livehybrid/splunk-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "livehybrid-splunk"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/livehybrid-splunk` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/livehybrid-splunk/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
