splunk.com
Splunk provides software for collecting, searching, monitoring, and analyzing machine data across security, IT operations, and observability use cases. Its products include Splunk Enterprise, Splunk Cloud Platform, and Splunk Observability Cloud.
Splunk exposes documented HTTP APIs for Splunk Enterprise, Splunk Observability Cloud, and AppInspect, plus public CLIs for AppInspect and the Packaging Toolkit; Splunk also publishes an MCP server app for Splunk Platform.
- Splunk MCP Server for Splunk Platformdiscovered
- Splunk Observability Cloud REST APIsdiscovered
- Splunk AppInspect APIdiscovered
- Splunk Enterprise REST APIdiscovered
- Splunk AppInspect CLIdiscovered
- Splunk Packaging Toolkit CLIdiscovered
Request a JWT from the Splunk login endpoint using your Splunk account username/password via HTTP Basic auth, as described in Splunk AppInspect API endpoint reference. The response JSON contains the token in data.token; send it as Authorization: Bearer <token> to AppInspect.
Create or obtain either an organization access token with API permission or a session token in Splunk Observability Cloud. The API reference repeatedly states these are required, for example on Charts and Client Inventory. Use the product UI/docs linked from the Observability developer reference to manage org tokens and session tokens.
conventions · 0/8 published
- integrations.json✗
/.well-known/integrations.json - llms.txt✗
/llms.txt - API catalog✗
/.well-known/api-catalog - OpenAPI document✗
/api/schema/, /openapi.json, /swagger.json, /api/openapi.json, or /v1/openapi.json - MCP server card✗
/.well-known/mcp/server-card.json - OAuth protected resource✗
/.well-known/oauth-protected-resource - Agent card✗
/.well-known/agent-card.json - Agent skills✗
/.well-known/agent-skills/index.json
Publish these signals → /publishing