datadog-mcp

devops-infra MCP Server

117 read-only Datadog tools for your AI. Every observability pillar. Zero writes. Zero regrets. Your pager is safe from the robots.

VerifiedFreshInstall Ready
devops-infradevops-infra
4 views2 stars2 forksv1.11.0MIT

Why This Matters

Discovered via github-topic:mcp-server and last synced 3d ago.

VerifiedFreshInstall Ready
Source
github-topic:mcp-server
Stars
2
Last synced
3d ago
Install
Instructions detected

Install

1. Install the package

npx datadog-mcp

2. Add to claude_desktop_config.json

{
  "mcpServers": {
    "datadog-mcp": {
      "command": "npx",
      "args": [
        "datadog-mcp"
      ]
    }
  }
}

Config file location: ~/Library/Application Support/Claude/claude_desktop_config.json (macOS) / %APPDATA%\Claude\claude_desktop_config.json (Windows)

217
Tools
0
Resources
0
Prompts
Standard I/O
Transport

Available Tools (217)

get-logs-archive-order

Get log archive priority order

Feature

**Us (117 tools)**

Notebooks

**3 tools**

aggregate-logs

Compute counts, averages, group-bys on log data

get-slos

List Service Level Objectives

get-slo

Get SLO details by ID

list-synthetics-private-locations

List Synthetics private locations

list-host-totals

Get total active and up host counts

search-slos

Search SLOs with query filters

list-rum-applications

List registered RUM applications

get-synthetic-results

Get results for a specific test

get-hosts

List infrastructure hosts

list-synthetics-locations

List available Synthetics testing locations

get-active-hosts-count

Get total active/up host count

get-host-tags

Get tags for all hosts

search-ci-test-events

Search CI test events with filters

list-aws-accounts

List integrated AWS accounts

list-workflows

List workflow automations

Capability

**Us**

Today

Recent

list-confluent-accounts

List Confluent Cloud accounts

list-cost-budgets

List cloud cost budgets

list-dora-deployments

List DORA deployment events

events_read

`get-events`

monitors_downtime

`get-downtimes`, `list-downtime-schedules`

auth_n_mappings_read

`list-authn-mappings`

dora_deployment_read

`list-dora-deployments`

update

Infrastructure

services

APM

results

Synthetics

findings

Security

Mode

Description

15m

Alert storm consolidation

Site

App URL

mute

Infrastructure

logs

Logs Explorer with query and time range

history

SLOs

applications

RUM

indexed_spans

Billing

spread

Evenly distributed across time range

query

Metrics

events

Event Explorer with query and time range

ingested_spans

Billing

diverse

Deduplicated by message pattern

top

Events

metrics

Metrics Explorer with query and time range

add

Infrastructure

validate

Auth

Interval

Use Case

list

Infrastructure

cancel

Downtimes

performance

RUM

1h

Incident grouping

traces

APM Traces with query and time range

metadata

Metrics

listByMonitor

Downtimes

waterfall

RUM

Logs

200

4h

Daily patterns

timeseries

Events

rules

Security

summary

Billing

1000

`pointLimit`

1d

Weekly trends

aggregate

RUM

incidents

Events

trigger

Synthetics

totals

Infrastructure

signals

Security

hosts

Billing

50

`limit`

5m

Flapping detection (default)

rum

RUM Explorer or Session Replay

members

Admin

custom_metrics

Billing

Unknown

Unknown

get-log-indexes

List log indexes and retention settings

search-apm-events

Search raw APM events

get-services

List APM-instrumented services

list-synthetics-global-variables

List Synthetics global variables

list-ci-pipelines

List CI pipeline events

search-error-tracking-issues

Search error tracking issues

Variable

Values

LOG_FORMAT

`json`, `pretty`

hosts_read

`get-hosts`, `get-host-tags`, `get-active-hosts-count`, `list-host-totals`

containers_read

`list-containers`, `get-containers`

apm_service_catalog_read

`get-services`, `get-service-dependencies`, `list-service-definitions`, `get-service-definition`

ci_visibility_read

`list-ci-tests`, `search-ci-test-events`

incident_read

`search-incidents`, `get-incident-todos`, `get-incident-timeline`, `get-incident-services`

fleet_read

`list-fleet-agents`

Downtimes

**2 tools**

Cursor

`~/.cursor/mcp.json` or `.cursor/mcp.json` (project)

search-logs

Search logs with Datadog query syntax

search-spans

Search APM spans with query syntax

get-logs-pipeline-order

Get log pipeline processing order

Windsurf

`~/.codeium/windsurf/mcp_config.json`

Webhooks

**1 tool**

aggregate-spans

Compute APM statistics (p99, error rates)

list-downtime-schedules

List scheduled downtimes (v2)

get-estimated-cost

Get estimated usage cost data

get-dbm-samples

Get Database Monitoring query samples

get-notebook

Get a specific notebook by ID

monitors_read

`get-monitors`, `get-monitor`, `search-monitors`, `get-monitor-config-policies`, `list-monitor-notification-rules`

slos_read

`get-slos`, `get-slo`, `get-slo-history`, `get-slo-corrections`, `search-slos`

teams_read

`list-teams`, `list-team-members`

dashboards_read

`get-dashboards`, `get-dashboard`, `list-dashboard-lists`

apm_read

`search-spans`, `aggregate-spans`, `get-trace`, `search-apm-events`, `list-active-apm-events`, `list-spans-metrics`

user_access_read

`list-users`

ndm_read

`list-network-devices`, `aggregate-network-connections`

aws_configuration_read

`list-aws-accounts`

Script

Description

get-log-pipelines

List log pipeline configurations

list-posture-findings

List compliance/posture findings

get-downtimes

List scheduled maintenance

list-metric-tag-configs

List metric tag configurations

get-dashboard

Get dashboard details and widgets

list-users

List Datadog users

Region

Site Value

get-monitors

List monitors (filter by state, tags)

Credential

Where to Find

list-dashboard-lists

List dashboard collections

get-synthetic-tests

List synthetic tests

get-containers

List running containers

list-security-monitoring-rules

List security monitoring detection rules

get-events

Fetch events in a time range

list-restriction-policies

Get restriction policy for a resource

AP1

`ap1.datadoghq.com`

rum_read

`search-rum-events`, `list-rum-applications`, `aggregate-rum-events`

ci_visibility_pipelines_read

`list-ci-pipelines`, `get-ci-pipeline-events`

api_keys_read

`list-api-keys`, `list-app-keys`

list-cloudflare-accounts

List Cloudflare accounts

Yes

No

Scope

Tools Unlocked

csm_agents_read

`get-csm-coverage`, `list-csm-threats-agent-rules`

dbm_read

`get-dbm-samples`, `get-dbm-query-metrics`

search

Incidents

delete

Infrastructure

first

Chronological order (default)

create

Notebooks

get

Infrastructure

unmute

Infrastructure

Description

Required Scopes

monitors

Monitor detail page (get) or Manage Monitors (list/search)

total_count

includes renotifies/re-evaluations (Datadog emits a renotify event every `renotify_interval` minutes while Alert). For real fires use `action=history`. | `monitors_read` |

list-monitor-notification-rules

List monitor notification routing

security_monitoring_findings_read

`search-security-findings`, `get-security-finding`, `list-posture-findings`, `search-security-signals`, `list-vulnerabilities`

get-hourly-usage

Get hourly usage metering by product

list-logs-metrics

List log-based custom metrics

get-trace

Get a full distributed trace by ID

list-active-apm-events

List currently active APM events

list-spans-metrics

List span-based APM metrics

query-metrics

Query timeseries metric data

get-metrics

List available metrics

get-metric-metadata

Get metric metadata and descriptions

search-metric-volumes

Search metrics by name with volume data

get-metric-tag-config

Get tag configuration for a specific metric

get-monitor

Get monitor details by ID

search-monitors

Search monitors by query

get-monitor-config-policies

Get monitor configuration policies

get-dashboards

List all dashboards

get-slo-history

Get historical SLO performance

get-slo-corrections

List SLO correction periods

search-rum-events

Search RUM events with filters

aggregate-rum-events

Analytics on RUM data (counts, averages, group-by)

list-service-definitions

List all service definitions

get-service-definition

Get a single service definition

get-service-dependencies

Get service dependency map

get-ci-pipeline-events

Aggregate CI pipeline analytics

list-ci-tests

List CI test events

search-security-findings

Search Cloud Security findings

get-security-finding

Get a specific security finding

search-security-signals

Search security monitoring signals

get-sensitive-data-scanner-config

Get Sensitive Data Scanner configuration

get-organization

Get Datadog organization info

list-teams

List Datadog teams

list-team-members

List members of a Datadog team

get-dbm-query-metrics

Get Database Monitoring query metrics

get-ip-ranges

Get Datadog IP ranges for firewall config

search-audit-logs

Search audit trail with filters

get-top-avg-metrics

Get top custom metrics by hourly average

list-network-devices

List NDM network devices

No

**Yes**

US5

`us5.datadoghq.com`

synthetics_read

`get-synthetic-tests`, `get-synthetic-results`, `list-synthetics-global-variables`, `list-synthetics-locations`, `list-synthetics-private-locations`

list-notebooks

List Datadog notebooks with filtering

list-security-rules

List security monitoring rules

get-incident-timeline

Get timeline events for an incident

list-api-keys

List Datadog API keys

LOG_LEVEL

`debug`, `info`, `warn`, `error`

list-containers

List containers with tag filtering

get-csm-coverage

Get CSM coverage across cloud accounts

list-processes

List processes across hosts

list-vulnerabilities

List vulnerability findings (SAST, SCA, IAST, Infra)

list-gcp-integration

List GCP integration accounts

list-workflow-executions

List execution instances for a workflow

Tool

What It Does

list-csm-threats-agent-rules

List CSM Threats agent rules

list-azure-integration

List Azure integration accounts

list-fleet-agents

List Datadog agents across fleet

EU

`datadoghq.eu`

metrics_read

`get-metrics`, `get-metric-metadata`, `query-metrics`, `search-metric-volumes`, `get-metric-tag-config`, `list-metric-tag-configs`

notebooks_read

`list-notebooks`, `get-notebook`

cost_management_read

`list-cost-budgets`

aggregate-network-connections

Aggregate network flow analytics

search-incidents

Search incidents with advanced filters

logs_read_data

`search-logs`, `aggregate-logs`, `get-log-pipelines`, `get-log-indexes`, `get-logs-pipeline-order`, `get-logs-archive-order`, `list-logs-metrics`

security_monitoring_rules_read

`list-security-rules`, `list-security-monitoring-rules`

error_tracking_read

`search-error-tracking-issues`, `get-error-tracking-issue`

get-error-tracking-issue

Get error tracking issue details by ID

list-authn-mappings

List authentication mappings

get-incident-todos

Get action items for an incident

list-webhooks

List webhook integrations

audit_trail_read

`search-audit-logs`

list-app-keys

List application keys for the current user

get-incident-services

List incident services

usage_read

`get-hourly-usage`, `get-top-avg-metrics`, `get-estimated-cost`

workflows_read

`list-workflows`, `list-workflow-executions`