Grafana Cloud MCP サーバー(クラウドベースの監視・分析ツール連携機能)に接続し、効果的に活用するためのスキルです。自然な言葉での Grafana アシスタント(AI搭載の質問機能)への質問や、システムの健全性調査に対応しています。 セットアップ、OAuth 認証(ユーザー認証の仕組み)、各ツールの種類、読み書きアクセス権限、コンテキストウィンドウ(会話履歴の保存範囲)の管理に関するベストプラクティス(実用的な手法)を網羅しています。 次のような場合に使用: - Grafana Cloud MCP のセットアップを行いたい - Grafana アシスタントに質問したい - メトリクス(数値データ)、ログ(記録)、トレース(処理の流れ)、プロファイル(詳細な性能データ)、ダッシュボード(監視画面)、アラート、またはインシデント(障害)を調査したい - どのツールを使うべきか迷っている - アクセス権限の範囲について理解したい
Connect to and use the Grafana Cloud MCP server effectively, including natural-language Grafana Assistant questions and observability investigations. Covers setup, OAuth authorization, tool categories, read/write access scopes, and best practices for context window management. Use when the user wants to set up Grafana Cloud MCP, ask Grafana Assistant a question, investigate metrics, logs, traces, profiles, dashboards, alerts, or incidents, needs guidance on which tool to use, or wants to understand access scopes.
Grafana Cloud 用のホスト型 MCP サーバーであり、60 個以上の Grafana Cloud ツールを Streamable HTTP トランスポート(通信方式)と OAuth 2.1 認可を通じて提供します。
grafana-assistant-app.cloud-mcp:access 権限(Editor ロール以上は初期状態で保有)Cloud MCP サーバーは https://mcp.grafana.com/mcp を通じて Streamable HTTP トランスポートで接続します。ローカルへのインストールや環境変数の設定は不要です。
認可時に、許可する権限を選択できます:
Organization Admin は既定で書き込みアクセスを付与できます。同意画面で書き込みアクセスが無効な場合、ユーザーは Assistant Admin ロールが必要です。
search_dashboards — クエリ文字列でダッシュボードを検索search_folders — クエリ文字列でフォルダを検索generate_deeplink — ダッシュボード、パネル、Explore クエリ用の直リンク URL を生成get_dashboard_by_uid — UID で完全なダッシュボード JSON を取得get_dashboard_summary — 完全な JSON なしのコンパクトな要約(推奨)get_dashboard_property — JSONPath で特定部分を抽出get_dashboard_panel_queries — テンプレート変数置換後のパネルクエリを取得update_dashboard — ダッシュボードを作成または更新(書き込み)create_folder — Grafana フォルダを作成(書き込み)list_datasources — 設定済みのすべてのデータソースをリスト化(タイプでフィルタ可)get_datasource — UID または名前で詳細情報を取得list_prometheus_metric_names — 正規表現でフィルタ可能なメトリクスを発見list_prometheus_metric_metadata — 現在スクレイプ中のメトリクスについてメタデータをリスト化list_prometheus_label_names — ラベル名をリスト化(系列セレクタでフィルタ可)list_prometheus_label_values — 特定ラベルの値を取得query_prometheus — PromQL(Prometheus クエリ言語)の瞬間値またはレンジクエリを実行query_prometheus_histogram — ヒストグラムのパーセンタイル値をクエリlist_loki_label_names — ログで利用可能なラベル名をリスト化list_loki_label_values — 特定ラベルの一意の値を取得query_loki_logs — LogQL(Loki クエリ言語)でログエントリまたはメトリクス値を取得query_loki_stats — ログストリームの統計情報を取得query_loki_patterns — 共通のログパターンを検出・分析Tempo データソースがある場合、Cloud MCP サーバーは Tempo データソースのツール(TraceQL クエリと属性発見を含む)をプロキシします。
list_pyroscope_label_names — プロファイル内で利用可能なラベル名をリスト化list_pyroscope_label_values — 特定ラベルの値をリスト化list_pyroscope_profile_types — 利用可能なプロファイルタイプをリスト化query_pyroscope — Pyroscope からプロファイルまたはメトリクスをクエリlist_clickhouse_tables — メタデータ付きで利用可能なテーブルをリスト化describe_clickhouse_table — テーブルのカラムスキーマを取得query_clickhouse — ClickHouse データソースに対して SQL クエリを実行list_cloudwatch_namespaces — AWS の利用可能な名前空間をリスト化list_cloudwatch_metrics — 名前空間内のメトリクスをリスト化list_cloudwatch_dimensions — メトリクスの次元キーをリスト化query_cloudwatch — AWS CloudWatch メトリクスをクエリquery_elasticsearch — Lucene または Query DSL 検索を実行alerting_manage_rules — アラートルールをリスト化、フィルタ、作成、更新(読み取り / 書き込み)alerting_manage_routing — ルーティング設定、通知ポリシー、連絡先を表示(読み取り)get_annotations — ダッシュボード UID、時間範囲、またはタグでフィルタしたアノテーションを取得get_annotation_tags — アノテーションタグを取得(フィルタ可)create_annotation — 新しいアノテーションを作成(書き込み)update_annotation — 既存のアノテーションを更新(書き込み)list_incidents — インシデントをリスト化(ステータスでフィルタ可)get_incident — ID で完全なインシデント詳細を取得create_incident — 新しいインシデントを作成(書き込み)add_activity_to_incident — インシデントのタイムラインにメモを追加(書き込み)list_oncall_schedules — OnCall スケジュールをリスト化(チームでフィルタ可)get_oncall_shift — 詳細なシフト情報を取得get_current_oncall_users — スケジュール内で現在オンコール中のユーザーを取得list_oncall_teams — OnCall チームをリスト化list_oncall_users — OnCall ユーザーをリスト化(フィルタ可)list_alert_groups — アラートグループをリスト化(フィルタ可)get_alert_group — ID で特定のアラートグループを取得list_sift_investigations — Sift 調査をリスト化get_sift_investigation — UUID で Sift 調査を取得get_sift_analysis — 調査から特定の分析結果を取得find_error_pattern_logs — エラーパターンが増加している Loki ログを検索(書き込み)find_slow_requests — 低速なリクエストを Tempo データソースで検索(書き込み)ask_assistant — Grafana Assistant にプロンプトを送信して完全な回答を取得(書き込み)get_assertions — エンティティの Assertion(状態確認)サマリーを取得get_panel_image — ダッシュボードパネルを PNG 画像としてレンダリングdescribe_infrastructure — サービスグループの事前構築サマリーを取得get_query_examples — データソースタイプのクエリ例を取得ask_assistant を使用して Grafana Assistant に調査を計画させ、根拠のある回答を得てください。ask_assistant は書き込み権限が必要で、grafana:write が必要です。ask_assistant は利用できません。対応する読み取り専用ツール(例: describe_infrastructure、get_assertions、query_prometheus、query_loki_logs、list_incidents)を使用し、ユーザーに自然言語 Assistant ツールは書き込み権限が必要であることを伝えてください。再認可で書き込み権限を付与するには、ユーザーが Assistant Admin ロールまたは grafana-assistant-app.cloud-mcp.scope:write 権限を持つか、Grafana Organization 管理者が先に付与する必要があります。ask_assistant を経由せず、対応するツールを直接呼び出してください。get_dashboard_by_uid の代わりに get_dashboard_summary を使用してください。get_dashboard_property に JSONPath を指定してください。search_dashboards でダッシュボードを発見してください。generate_deeplink でクリック可能な URL を提供してください。list_datasources、list_prometheus_metric_names)を使用してください。update_dashboard、create_incident、alerting_manage_rules)は避けてください。grafana-assistant-app.cloud-mcp:access 権限が必要です。Editor 以上は既定で保有し、それ以外のロールは明示的に付与できます。grafana:write OAuth スコープが必要で、OAuth 同意時に付与されます。そのスコープの付与そのものは Grafana RBAC で制限されており、ユーザーが Assistant Admin ロールまたは grafana-assistant-app.cloud-mcp.scope:write 権限を持つか、書き込み権限付きの接続を認可する必要があります。読み取り専用アクセスには不要です。Hosted MCP server providing 60+ Grafana Cloud tools via Streamable HTTP transport with OAuth 2.1 authorization.
grafana-assistant-app.cloud-mcp:access permission (Editor role or higher has this by default)The Cloud MCP server connects via https://mcp.grafana.com/mcp using Streamable HTTP transport. No local installation or environment variables are required.
When authorizing, you choose which permissions to grant:
Organization Admins can grant write access by default. If write access is disabled on the consent page, the user needs the Assistant Admin role.
search_dashboards — search for dashboards by query stringsearch_folders — search for folders by query stringgenerate_deeplink — generate deeplink URLs for dashboards, panels, and Explore queriesget_dashboard_by_uid — retrieve the complete dashboard JSON by UIDget_dashboard_summary — compact summary without full JSON (preferred)get_dashboard_property — extract specific parts via JSONPathget_dashboard_panel_queries — retrieve panel queries with template variable substitutionupdate_dashboard — create or update a dashboard (Write)create_folder — create a Grafana folder (Write)list_datasources — list all configured data sources with optional type filteringget_datasource — get detailed information by UID or namelist_prometheus_metric_names — discover available metrics with regex filteringlist_prometheus_metric_metadata — list metadata about currently scraped metricslist_prometheus_label_names — list label names with optional series selectorlist_prometheus_label_values — get values for a specific labelquery_prometheus — execute PromQL instant or range queriesquery_prometheus_histogram — query histogram percentileslist_loki_label_names — list available label names in logslist_loki_label_values — get unique values for a specific labelquery_loki_logs — execute LogQL queries for log entries or metric valuesquery_loki_stats — get statistics about log streamsquery_loki_patterns — detect and analyze common log patternsIf you have Tempo data sources, the Cloud MCP server proxies tools from the Tempo data source, including TraceQL queries and attribute discovery.
list_pyroscope_label_names — list available label names in profileslist_pyroscope_label_values — list values for a specific labellist_pyroscope_profile_types — list available profile typesquery_pyroscope — query profiles or metrics from Pyroscopelist_clickhouse_tables — list available tables with metadatadescribe_clickhouse_table — get column schema for a tablequery_clickhouse — execute SQL queries against ClickHouse datasourceslist_cloudwatch_namespaces — list available AWS namespaceslist_cloudwatch_metrics — list metrics for a namespacelist_cloudwatch_dimensions — list dimension keys for a metricquery_cloudwatch — query AWS CloudWatch metricsquery_elasticsearch — execute Lucene or Query DSL searchesalerting_manage_rules — list, filter, create, and update alert rules (Read / Write)alerting_manage_routing — view routing configuration, notification policies, contact points (Read)get_annotations — fetch annotations filtered by dashboard UID, time range, or tagsget_annotation_tags — get annotation tags with optional filteringcreate_annotation — create a new annotation (Write)update_annotation — update an existing annotation (Write)list_incidents — list incidents with optional status filteringget_incident — get full incident details by IDcreate_incident — create a new incident (Write)add_activity_to_incident — add a note to an incident's timeline (Write)list_oncall_schedules — list OnCall schedules with optional team filteringget_oncall_shift — get detailed shift informationget_current_oncall_users — get users currently on-call for a schedulelist_oncall_teams — list OnCall teamslist_oncall_users — list OnCall users with optional filteringlist_alert_groups — list alert groups with filteringget_alert_group — get a specific alert group by IDlist_sift_investigations — list Sift investigationsget_sift_investigation — retrieve a Sift investigation by UUIDget_sift_analysis — retrieve a specific analysis from an investigationfind_error_pattern_logs — search Loki logs for elevated error patterns (Write)find_slow_requests — search Tempo datasources for slow requests (Write)ask_assistant — send a prompt to Grafana Assistant and get the full reply (Write)get_assertions — get assertion summary for an entityget_panel_image — render a dashboard panel as a PNG imagedescribe_infrastructure — retrieve pre-built summaries of service groupsget_query_examples — get example queries for datasource typesask_assistant to let Grafana Assistant plan the investigation and return a grounded reply. ask_assistant is write-scoped and requires grafana:write.ask_assistant is unavailable. Fall back to the appropriate read-only tools (for example describe_infrastructure, get_assertions, query_prometheus, query_loki_logs, list_incidents) and tell the user that the natural-language Assistant tool needs write scope. Re-authorizing only grants write if the user has the Assistant Admin role or the grafana-assistant-app.cloud-mcp.scope:write permission; otherwise a Grafana organization administrator must grant it first.ask_assistant.get_dashboard_summary instead of get_dashboard_by_uid to avoid consuming context with full dashboard JSON.get_dashboard_property with JSONPath to extract only the specific parts you need.search_dashboards to discover dashboards before retrieving by UID.generate_deeplink to provide clickable URLs rather than describing navigation steps.list_datasources, list_prometheus_metric_names) before writing queries.update_dashboard, create_incident, alerting_manage_rules) unless explicitly asked by the user.grafana-assistant-app.cloud-mcp:access permission. Editor and higher have this by default; other roles can be granted it explicitly.grafana:write OAuth scope, granted during OAuth consent. Granting that scope is itself gated by Grafana RBAC: the user needs the Assistant Admin role or the grafana-assistant-app.cloud-mcp.scope:write permission to authorize a write-scoped connection. Read-only access does not require it.原文・著作権は Anthropic および各プラグイン作者に帰属します。日本語訳は Claude API による自動翻訳です。