Aap get activation optionsCheck whether Datadog App and API Protection (AAP) can be enabled for a service via Remote Configuration (RC), with no code changes.
Aap onboardingStep-by-step instructions for enabling Datadog App and API Protection (AAP) to monitor and secure your application.
Add llmobs dataset recordsCreate records in a dataset.
Aggregate datadog ci pipeline eventsAggregate and analyze CI pipeline events to produce statistics, metrics, and grouped analytics.
Aggregate datadog test eventsAggregate Datadog Test events.
Aggregate dora eventsAggregate DORA events into scalar values or timeseries using composable 'queries' + 'formulas', like get_datadog_metric — delivery-performance analytics across deployments, commits, and pull requests.
Aggregate eventsAggregate Datadog events to compute counts, sums, averages, min, max, cardinality, and percentiles (P50, P75, P90, P95, P99), with optional grouping by fields or time intervals.
Aggregate rum eventsAggregate Datadog RUM events to compute counts, sums, averages, min, max, cardinality, and percentiles (P50, P75, P90, P95, P99), with optional grouping by fields or time intervals.
Aggregate spansAggregate Datadog APM spans to compute counts, sums, averages, min, max, cardinality, and percentiles (P50, P75, P90, P95, P99), with optional grouping by fields or time intervals.
Analyze cloud network monitoringQueries Cloud Network Monitoring (CNM) data to view network/transport level information.
Analyze datadog error tracking errorsAnalyze Datadog Error Tracking error samples with SQL — aggregations, breakdowns by tag/service/version, or raw sample inspection.
Analyze datadog logsAnalyze Datadog logs using SQL.
Analyze datadog security findingsPrimary tool for analyzing security findings.
Analyze datadog security signalsCount, group, or trend security signals using DDSQL — for any aggregate question: 'how many', 'top N', 'by severity', 'over time', or breakdown.
Analyze security findingsPrimary tool for analyzing security findings.
Append new rum retention filterCreate a new RUM retention filter, appended at the end of the evaluation order.
Append reference table rowsAppend (add) new rows to an existing reference table.
Archive-feature-flagArchive a single feature flag by ID or key; pair with list-stale-feature-flags to discover candidates.
Archive-saved-filterArchive a saved filter (reversible via unarchive-saved-filter).
Ask widget expertGet targeted instructions for building a Datadog widget.
Assign datadog security findingsAssign or unassign security findings to a user.
Batch update llmobs dataset recordsInsert, update, and delete dataset records in one versioned operation.
Browser onboardingStep-by-step instructions for adding initial Datadog setup to a frontend browser-based project environment.
Build audit trail queryTranslates a natural-language description into a correct Audit Trail query string.
Cancel datadog workflow instanceCancel a running Datadog Workflow Automation execution instance.
Check-flag-implementationPRIMARY TOOL FOR EXISTING FLAGS!
Clean-up-flagClean up a stale feature flag by key — auto-archives if no code references are known, otherwise returns the repos and files where the flag is still referenced plus a Datadog UI link and instructs the user to use Bits dev in the UI to remove those references (archiving stays blocked until they are gone).
Clone datadog formClone an existing Datadog form.
Clone llmobs datasetCopy a dataset's current records into a new dataset in the same project.
Code coverage onboardingConfigure Datadog Code Coverage for a project by adding coverage report uploads to the CI pipeline.
Cost recommendationsLists an organization's Cloud Cost Management (CCM) cost-saving recommendations.
Create datadog formCreate a new Datadog form with a name.
Create datadog monitorCreates a Datadog monitor in DRAFT mode (no notifications sent, priority 5).
Create datadog notebookCreates a new Datadog notebook.
Create datadog published analysisCreates a published analysis (also called a published dataset) from a notebook cell.
Create datadog security detection ruleCreate a new Cloud SIEM detection rule by POSTing the supplied payload to POST /api/v2/security_monitoring/rules.
Create datadog security findings automation ruleCreate a security findings automation rule.
Create datadog security findings ticketCreate a case, Jira issue, ServiceNow ticket, or Linear issue for security findings.
Create datadog security suppressionCreate a new security monitoring suppression rule in Datadog.
Create datadog workflowCreate an unpublished Datadog Workflow Automation workflow from a complete spec.
Create-environmentCreate a new Feature Management environment.
Create-experiment-feature-flagCreate a new feature flag with a FEATURE_GATE allocation linked to a standard experiment.
Create-feature-flagPRIMARY TOOL FOR NEW FLAGS in a project that already has Datadog feature flags wired up!
Create global variablesCreate a Synthetics global variable.
Create llmobs datasetCreate an empty dataset inside a project.
Create llmobs experimentCreate a new LLM Observability experiment object in a project.
Create llmobs projectCreate an LLM Observability **experiments project** — the container that owns datasets and experiments.
Create-onboarding-flagCreate the onboarding proof flag: a predictable boolean flag (disabled=false, enabled=true; default disabled) with a catch-all FEATURE_GATE allocation serving enabled=true in the selected NON-PRODUCTION environment, tagged source:agentic-onboarding.
Create or update llmobs evaluatorCreate or update an LLM-judge evaluator configuration.
Create reference tableCreate a new reference table.
Create-saved-filterCreate a saved filter: a reusable, named set of targeting rules that feature flags can reference.
Cws agent events schemaGet the schema (available fields) for Workload Protection (CWS) agent events.
Ddsql create linkGenerate a Datadog UI link to the DDSQL editor with the given query pre-populated.
Ddsql get specGet a compact DDSQL capability spec with supported SQL functions, SQL keywords, and DDSQL-specific deltas from vanilla PostgreSQL.
Ddsql read saved queryRead a single saved DDSQL query by its query_id.
Ddsql run queryRun a DDSQL query and return results.
Ddsql schema get table columnsGet static SQL columns for a DDSQL table from schema metadata.
Ddsql schema search tablesSearch DDSQL datasets across four providers: public tables, reference tables, metrics, and published analyses.
Ddsql schema search unstructured fieldsSearch and rank fields for an unstructured DDSQL source.
Ddsql search saved queriesSearch and list saved DDSQL queries.
Ddsql upsert saved queryCreate or update a saved DDSQL query.
Delete datadog dashboardPermanently deletes a Datadog dashboard by ID.
Delete datadog published analysisUnpublishes a published analysis by ID.
Delete datadog security aap custom ruleDelete an AAP (App & API Protection) WAF custom rule by id.
Delete datadog security detection rulesDelete one or more Cloud SIEM detection rules by ID.
Delete datadog security findings automation ruleDelete a security findings automation rule.
Delete datadog security suppressionDelete a security monitoring suppression rule in Datadog.
Delete datadog security trace passlistDelete an AAP (App & API Protection) passlist/allowlist entry — also known as a WAF exclusion filter — by exclusion_filter_id.
Delete datadog spreadsheetPermanently delete a Datadog spreadsheet by ID.
Delete datadog workflowDelete a Datadog Workflow Automation workflow by ID.
Delete data observability monitor annotationsDelete Data Quality monitor annotations by id.
Delete llmobs evaluatorDelete an LLM-judge evaluator configuration by name.
Delete llmobs experimentsDelete experiment runs by ID.
Delete rum metricDelete a RUM custom metric by ID.
Delete rum retention filterPermanently delete a RUM retention filter by ID.
Describe datadog k8s resourceGet detailed information about a specific Kubernetes resource.
Detach datadog security findings ticketDetach security findings from their linked case (and any downstream Jira issue, ServiceNow ticket, or Linear issue).
Devices onboardingStep-by-step instructions for adding initial Datadog RUM SDK to a project environment.
Diff network device configurationsCompare two ndm network device configuration snapshots and return a unified diff.
Docker onboardingInstalls and configures the Datadog Agent container to collect infrastructure metrics, container telemetry, APM traces, and logs.
Do not call refresh widgetdo-not-call
Ecs onboardingStep-by-step instructions for adding initial Datadog Observability setup to ECS applications and configurations.
Edit datadog notebookEdits an existing notebook.
Edit global variablesPartially edit a Synthetics global variable by id.
Edit synthetics testsEdit the configuration of a Synthetics test.
Execute datadog workflowStart a new execution instance for a Datadog Workflow Automation workflow by ID.
Expand llmobs spansLoad the children of specific spans in a trace, enabling progressive tree exploration.
Explore profiling call graphExplore a call graph to identify hot call relationships for the provided profile type.
Explore profiling flame graphObtain a list of top stacktraces based on their value contribution for the provided profile type.
Explore profiling timelineAnalyze timeline activity showing lane groups (threads, GC, etc.
Find datadog database instancesDiscover and rank database instances for DBM investigation.
Find llmobs error spansFind all error spans in a trace with propagation context.
Generate monitor messageGenerates a monitor message with What's Happening, Impact, and Links sections from a monitor query.
Get active feature flagsdo-not-call
Get autonomous system statusGet the health status of an autonomous system (AS) using Network Path data.
Get-canary-resultsGet results from completed or in-progress canary experiments for a feature flag.
Get change storiesRetrieve change events for an APM service over a time range.
Get data catalog schemaReturn the entity type schema for every platform this org has data in.
Get datadog code coverage branch summaryFetch aggregated code coverage summary metrics for a repository branch.
Get datadog code coverage commit summaryFetch aggregated code coverage summary metrics for a repository commit.
Get datadog code coverage filesFetch per-file code coverage line data for a repository commit, branch, or pull request.
Get datadog code coverage pr summaryFetch aggregated code coverage summary metrics for a pull request.
Get datadog dashboardRetrieves a custom or integration Datadog dashboard by ID, returning its title, description, tags, widgets, and template variables.
Get datadog database calling servicesIdentify upstream APM services and resources that call database queries.
Get datadog database explain plansRetrieve explain plans for a query signature within a timeframe.
Get datadog database health signalsRun database health checks to identify potential issues.
Get datadog database query performanceAnalyze a specific SQL query's performance — use when investigating slow queries, high database load, or resource-intensive queries.
Get datadog database query statementRetrieve the SQL statement text for a given query signature.
Get datadog database recommendationsRetrieve live database recommendations for a database, query, table, host, or index.
Get datadog database schemasFetch schema definitions (columns, indexes, foreign keys, partitions) for one or more database objects.
Get datadog error tracking issueGet detailed information about a specific Error Tracking Issue from Datadog.
Get datadog flaky testsSearch for flaky tests from Datadog's Test Optimization API.
Get datadog flaky tests management policiesReturns the Flaky Tests Management (FTM) policies configured for a repository.
Get datadog formGet a specific Datadog form by its ID, including full metadata and datastore configuration.
Get datadog incidentGet detailed information about a specific Datadog incident by ID, including status, severity, timeline, associated users, and attachments.
Get datadog k8s manifestGet the YAML manifest for a specific Kubernetes resource.
Get datadog metricQuery metrics data from Datadog.
Get datadog metric contextGet metadata (description, type, unit, integration), available tags/dimensions, and optionally related assets for a metric.
Get datadog notebookRetrieve information about a specific Datadog notebook by ID.
Get datadog security aap blocking configGet the org-wide AAP (App & API Protection, formerly ASM / Application Security Monitoring) blocking configuration.
Get datadog security aap custom rulesGet AAP (App & API Protection, formerly ASM / Application Security Monitoring) WAF custom rules — user-authored in-app WAF rules that match request traffic and either monitor it or block it.
Get datadog security aap denylistList AAP (App & API Protection) denylist entries — IPs, users, user-agents AAP currently BLOCKS or monitors via automated security response.
Get datadog security detection rulesGet security detection rules.
Get datadog security detection rules schemaReturn the schema / authoring reference for Datadog Cloud SIEM detection rules.
Get datadog security findings schemaCall this first before using analyze_datadog_security_findings.
Get datadog security findings ticket suggestionsGet ranked project and integration suggestions for creating Jira issues, ServiceNow tickets, or Linear issues.
Get datadog security ioc indicatorRetrieve full detail for one IoC indicator by value (score, category, AS info, GeoIP, log sources, services, signal counts, OCSF fields).
Get datadog security ioc schemaDiscover filterable fields and their values for IoC Explorer.
Get datadog security signalGet the full details of a single Datadog security signal by ID.
Get datadog security signals schemaGet the schema (available fields) for security signals.
Get datadog security suppressionsRetrieve security monitoring suppressions from Datadog.
Get datadog security trace passlistList all AAP (App & API Protection) allowlist / passlist entries that exempt specific traces from AAP security analysis and WAF blocking.
Get datadog spreadsheetRetrieve a Datadog spreadsheet by ID.
Get datadog spreadsheet referenceReturns the field reference guides for building inputs to upsert_datadog_spreadsheet.
Get datadog spreadsheet tab dataRetrieve paginated data from a table, sheet, or legacy pivot in a Datadog spreadsheet.
Get datadog spreadsheet table dataDEPRECATED: use get_datadog_spreadsheet_tab_data instead, which provides a unified interface for table tabs.
Get datadog test optimization settingsReturns which Test Optimization features are enabled or disabled for a specific service.
Get datadog traceRetrieve a trace by trace ID from Datadog APM.
Get datadog workflowRetrieve a single Datadog Workflow Automation workflow by ID.
Get datadog workflow actionGet the full definition of a Datadog Workflow Automation action by actionId.
Get datadog workflow instanceRetrieve a Datadog Workflow Automation execution instance.
Get datadog workflow spec schemaGet the JSON schema for a Datadog Workflow Automation spec.
Get datadog workflow step dataRetrieve the execution data for a single step of a Datadog Workflow Automation instance: its inputs, evaluated inputs/outputs, and the execution context the step's expressions were evaluated against.
Get data entity detailsFetch full details and attributes for one or more data entities by their entity IDs.
Get data entity hierarchyFetch the containment hierarchy (ancestors and descendants) for one or more entities.
Get data entity lineageFetch the live reachable lineage subgraph from one or more anchor entities.
Get data observability monitorRetrieves data observability metrics for a given monitor ID.
Get data observability monitor coverageFetch all Data Quality monitors for this org and resolve each monitor's entity filter to return the full set of entities it is configured to cover.
Get data observability monitor group statusesQuery the current alert and warn state of DQ monitor groups from the alerting service.
Get data observability recommendationGets the full details of a single Data Observability recommendation by id, including its structured body (body_sections) describing the problem, evidence, and proposed change.
Get dora fieldsList the valid measures, facets, aggregations, and cardinality_fields for aggregate_dora_events, per DORA index (deployment, commit, pull_request, failure).
Get entity descriptionsGet custom user-defined descriptions for data entities by their IDs.
Get entity tagsGet custom user-defined tags for data entities.
Get-feature-flagGets variants and status in environment for a specific feature flag by ID or key.
Get form definition schemaGet the JSON Schema used to validate a Datadog form's data_definition and ui_definition.
Get form responsesGet submitted responses for a Datadog form.
Get global variablesRead this org's Synthetics global variables.
Get-guardrail-metricGet details for a specific guardrail metric by ID.
Get kafka client configsReturn producer- and/or consumer-side Kafka client configuration for one or more services, as collected by Data Streams Monitoring (DSM).
Get llmobs agent loopGet a chronological view of an agent's execution loop, showing each step (LLM calls, tool invocations, decisions) in order.
Get llmobs all dataset recordsWalk a dataset's records page by page server-side and return them as shaped previews, with a cursor that always resumes exactly where the walk stopped.
Get llmobs dataset recordsRead dataset records with structured previews + a schema summary.
Get llmobs eval aggregate statsGet aggregate statistics for a specific evaluator over a time window, optionally filtered by ML application.
Get llmobs evaluatorRetrieve an LLM-judge evaluator configuration by name.
Get llmobs experiment dimension valuesGet the unique values for a dimension, with counts.
Get llmobs experiment eventGet full details for a single experiment event, including its input, output, expected_output, all metrics, and dimensions.
Get llmobs experiment metric valuesGet statistical analysis for a specific evaluation metric, optionally segmented by a dimension.
Get llmobs experiment summaryGet a high-level summary of an experiment with pre-computed statistics for all evaluation metrics.
Get llmobs full dataset recordsFetch up to 3 specific records with **untrimmed** input / expected_output / metadata.
Get llmobs pattern configGet the most-recently-modified **Topics Discovery (Patterns)** configuration for the caller's org.
Get llmobs pattern pointsGet a **cursor-paginated page of clustering points** (individual spans) assigned to a single topic.
Get llmobs pattern run statusGet the status and per-activity progress of the **most recent** Topics Discovery run for a config.
Get llmobs patternsGet the **topic hierarchy** discovered by a Topics Discovery run.
Get llmobs patterns with pointsGet the topic hierarchy for a run **with the clustering point span IDs inlined** on each leaf (hierarchy-0) topic.
Get llmobs projectLook up an LLM Observability **experiments project** by ID or name.
Get llmobs span contentRetrieve the actual content of a specific field from a span.
Get llmobs span detailsGet detailed metadata for one or more spans within a trace.
Get llmobs traceGet the full structure of a trace as a span hierarchy tree.
Get monitor coverageFinds monitoring gaps and coverage for services or hosts.
Get monitor templatesRetrieves official Datadog monitor templates as starting points for creating monitors.
Get ndm deviceGet detailed information about a network device by its device_id.
Get network device configurationRetrieve the full text of an NDM network device configuration snapshot (running config or startup config) for review, compliance auditing, or troubleshooting.
Get network path test runsSearch and retrieve Network Path test runs using a query.
Get-onboarding-stepUse this FIRST — before create-feature-flag — whenever a user asks to set up, add, or onboard Datadog feature flags in a project that doesn't have them yet: e.
Get popular warehouse tables by query frequencyRank database tables by query activity, broken out by who is querying them.
Get profiling fieldsDiscover available fields and facets that can be used for filtering and grouping profiling data.
Get profiling field valuesGet the values for a specific profiling field/facet discovered via get_profiling_fields.
Get profiling profile typesReturns profile types and families that can be used by other profiling tools given a query context.
Get profiling runtime idsReturns individual profiled runtime IDs (processes/containers).
Get profiling service insightsReturns insights over the provided time window.
Get profiling servicesReturns profiled services along with their profiling families that can be queried for profiling data in the given query context.
Get profiling tag namesDiscover available tag names (e.
Get profiling tag valuesGet the values for a specific tag (e.
Get profiling timeseriesQuery profiling data as timeseries, aggregated into time buckets.
Get prs by head branchRetrieves all pull requests for a repository that have a specific head branch.
Get reference table rowsRetrieve specific rows from a reference table by their primary key values.
Get replay summaryGet an AI-generated play-by-play of what a user did during a session replay — what pages they visited, what actions they took, and what happened step by step.
Get rum insightGet a pre-computed performance insight for a specific RUM view.
Get rum summaryReturns a performance summary for a RUM application with period-over-period diffs and anomaly windows.
Get rum view waterfallReconstruct the chronological load timeline for ONE specific RUM view occurrence, web or mobile.
Get-saved-filterGet a saved filter by id, including its targeting rules.
Get spark job healthRetrieves detailed health metrics for a single Spark or Databricks job run.
Get spark sql planRetrieves the Spark SQL physical execution plan from a spark.
Get subject kafka schemasReturn all Kafka Schema Registry versions for a single subject on a given Kafka cluster.
Get synthetics testsSearch and retrieve details about Synthetics tests configured in Datadog.
Get user configdo-not-call
Get warehouse query historyFetch recent queries that touched one or more specific entities, in reverse chronological order (most recent first).
Get widget referenceGet TypeScript schemas and building instructions for widget types.
Inspect data observability monitor annotationsInspect Data Quality monitor data, anomaly bounds, and existing annotations before proposing a change.
Kubernetes onboardingStep-by-step instructions for adding initial Datadog Observability setup to Kubernetes applications and configurations.
Linux onboardingInstalls and configures the Datadog Agent on a Linux host to collect infrastructure metrics, APM traces, and logs.
List all kafka schemasList every Kafka Schema Registry schema known to Data Streams Monitoring (DSM) for the current org within a time window.
List-allocations-for-feature-flagList allocations for a specific feature flag.
List audit eventsList Datadog Audit Trail events over a time window.
List autonomous system statusesGet an overview of autonomous system (AS) health from Network Path data, without needing a specific ASN.
List datadog database optimizationsList a database's ready-to-apply, benchmark-validated query optimizations — the same set shown on the Datadog DBM Optimizations page.
List datadog security findings automation rulesList automation rules for security findings.
List datadog skillsList available Datadog skill guides.
List datadog workflow instancesList the execution instances of a Datadog Workflow Automation workflow.
List datadog workflowsFind Datadog Workflow Automation workflows and inspect their metadata.
List data observability recommendationsLists Data Observability cost- and performance-optimization recommendations for data jobs and queries (Spark, Databricks, Snowflake, BigQuery), each with estimated cost and duration savings.
List-environmentsList all flagging environments for the organization.
List-feature-flagsList all feature flags for the organization.
List-guardrail-metricsList all available guardrail metrics for the organization.
List kafka broker configsList configuration versions for a Kafka broker on a given cluster, as collected by Data Streams Monitoring (DSM).
List kafka topic configsList configuration versions for a Kafka topic on a given cluster, as collected by Data Streams Monitoring (DSM).
List llmobs datasetsList **experiments datasets** within a project, with optional id or name filter.
List llmobs evalsList every evaluator configured for the caller's organization, across all ML applications.
List llmobs evals by ml appList all evaluators configured for an ML application.
List llmobs experiment eventsList experiment events with minimal summaries, supporting filtering by dimension or metric and sorting by metric value.
List llmobs experimentsList experiment runs in a project or against a dataset, newest first.
List llmobs pattern configsList all **Topics Discovery (Patterns)** configurations for the caller's org.
List llmobs pattern runsList the **completed** Topics Discovery runs for a config, newest first.
List llmobs projectsList all LLM Observability **experiments projects** for the org.
List-onboarding-flagsCheck for existing flags tagged source:agentic-onboarding that qualify for reuse: a non-production environment, currently ENABLED, whose queries already cover the given dd_env under the runtime matcher — the same guarantee create-onboarding-flag itself enforces before writing.
List reference table rowsFetch a page of rows from a reference table in primary-key order.
List reference tablesList and search reference tables in the organization.
List-saved-filtersList saved filters for the organization.
List-stale-feature-flagsList stale feature flags in the organization, each enriched with the reason it is stale and a tool_hints array of suggested next-step tools to clean it up.
List synthetics locationsReturns all Synthetics locations available to this org — managed (aws:, gcp:, azure: prefixes) and private (pl: prefix).
Llm observability onboardingStep-by-step instructions for adding initial Datadog LLM Observability (AKA, 'LLMObs') setup to applications with an LLM or AI agent.
Load datadog skillLoad a Datadog skill guide before using related Datadog tools.
Manage datadog error tracking issue commentsAdd, update, or delete a comment on a Datadog Error Tracking issue.
Monitor groups searchSearches monitor groups to find which specific groups (e.
Mute datadog security findingsMute or unmute security findings.
Optimize datadog database queryAnalyze a SQL query for optimization opportunities using deterministic rules plus LLM-assisted analysis.
Publish datadog formPublish a specific draft version of a Datadog form, making it the active published version.
Publish datadog workflowPublish a Datadog Workflow Automation workflow.
Rank data entities by lineage degreeRank entities by their transitive lineage connectivity using a pre-built snapshot.
Rank data observability monitor candidatesRank tables by their importance for monitoring, combining lineage impact and query activity into a single composite score.
Read kafka messagesRead messages from a given Kafka cluster/topic via the Datadog Agent.
Recommend monitor thresholdRecommends a threshold value for a metric monitor query based on peer-group statistics.
Reorder datadog security findings automation rulesMove a security findings automation rule up or down in the evaluation order.
Reorder rum retention filtersSet the full evaluation order of a RUM application's retention filters.
Restore llmobs dataset versionRoll a dataset's records back to a previous version.
Retry datadog ci job⚠️ WRITE OPERATION — queues a retry for a failed CI job via Datadog's CI Action backend.
Run synthetics testsTrigger on-demand runs for one or more existing Synthetics tests by public_id; optionally apply shared locations, headers, body, variables, or start URL overrides.
Search audit eventsSearch Datadog Audit Trail events using a query string.
Search cws agent eventsSearch and retrieve Workload Protection (CWS) agent events from the secruntime event track.
Search datadog ci pipeline eventsSearch and retrieve CI pipeline events from Datadog with full metadata including timing, failure reasons, error messages, and retry history.
Search datadog dashboardsList and retrieve information about Datadog dashboards.
Search datadog database plansSearch and retrieve Database Monitoring (DBM) query execution plans from Datadog.
Search datadog database samplesSearch and retrieve Database Monitoring (DBM) query samples from Datadog.
Search datadog error tracking issuesSearch Error Tracking Issues from Datadog.
Search datadog eventsSearch and retrieve raw Datadog events (deployments, alerts, system activities, infrastructure changes, etc.
Search datadog formsSearch Datadog forms for the authenticated organization.
Search datadog hostsExplore Datadog hosts inventory with SQL.
Search datadog incidentsSearch Datadog incidents.
Search datadog k8s resourcesSearch for Kubernetes resources.
Search datadog logsSearch and retrieve raw log entries or log patterns.
Search datadog metricsList available metrics in Datadog with optional filtering by name and tags.
Search datadog monitorsList and retrieve information about Datadog monitors.
Search datadog notebooksSearch Datadog notebooks.
Search datadog rum eventsSearch and retrieve raw Datadog RUM events using advanced query syntax.
Search datadog security findingsFallback tool for retrieving full security finding details.
Search datadog security ioc indicatorsList IoC Explorer indicators (IPs, domains, URLs, file hashes) matched against threat intel feeds.
Search datadog security signalsFilter and list security signals from Datadog Security Monitoring matching criteria (status, time range, rule type, severity, service).
Search datadog service dependenciesRetrieve information about Datadog service dependencies.
Search datadog servicesList and retrieve information about Datadog services.
Search datadog slosSearches Datadog SLOs by name, tags, or type.
Search datadog spansRetrieve raw Datadog APM spans matching a query.
Search datadog spreadsheetsSearch Datadog spreadsheets by name or owner.
Search datadog test eventsSearch and retrieve individual test events from Datadog with full metadata including error messages, stack traces, retry history, and flaky status.
Search datadog workflow actionsSearch the Datadog Workflow Automation action catalog.
Search data entitiesSearch for data entities in the data catalog.
Search dora eventsSearch DORA events, or fetch a single deployment or pull request by ID.
Search llmobs spansSearch for LLM Observability spans.
Search ndm devicesSearch SNMP-monitored network devices (routers, switches, firewalls) in Datadog NDM.
Search ndm interfacesGet all network interfaces (e.
Search network device configurationsSearch NDM network device configuration snapshots (running config, startup config) for change tracking, config drift detection, or compliance auditing.
Search pr insightsRetrieves issues blocking a pull request to help resolve and fix problems.
Search replaysSearch Datadog Session Replay recordings and return a list of sessions with replay links.
Search rum applicationsSearch RUM applications in the organization.
Search rum metricsSearch the organization's RUM metrics.
Search rum retention filtersSearch RUM retention filters for an application.
Serverless onboardingStep-by-step instructions for instrumenting serverless workloads with Datadog.
Source map uploadsStep-by-step instructions for configuring source map uploads for a project to Datadog.
Studio onboardingStep-by-step instructions for adding Datadog Studio to a project.
Submit llmobs experiment eventsSubmit evaluation-metric events to an existing experiment.
Submit mcp feedbackSubmit feedback about capabilities provided by this Datadog MCP server only.
Suggest data observability monitor filtersAnalyze a set of entities to find common attributes and naming patterns, then suggest monitor filter expressions that group subsets of those entities for use in monitor definitions.
Summarize data entity lineageGet aggregate statistics about the lineage graph reachable from anchor entities.
Sync-allocations-for-feature-flag-environmentSynchronize allocations for a feature flag in a specific environment.
Sync-experiment-allocations-for-feature-flag-environmentSynchronize allocations that include a FEATURE_GATE allocation linked to a standard experiment.
Synthetics test wizardUse this tool to validate (preview) or create (create) a Synthetics API http test.
Test optimization onboardingStep-by-step instructions for adding Datadog Test Optimization setup this project.
Unarchive-feature-flagUnarchive a previously archived feature flag, making it visible in the main list again.
Unarchive-saved-filterUnarchive a previously archived saved filter.
Unblock datadog security aap denylistRemove AAP (App & API Protection) denylist entry — stop blocking IP/user/user-agent.
Unpublish datadog workflowStop a Datadog Workflow Automation workflow from starting new automatic executions by unpublishing it, while preserving its base spec and any saved draft.
Update datadog error tracking issueUpdate an Error Tracking Issue in Datadog.
Update datadog flaky test states⚠️ WRITE OPERATION — modifies flaky test states in Datadog Test Optimization.
Update datadog formCreate a new draft version of a Datadog form, updating its schema and/or UI layout.
Update datadog monitorUpdates a SINGLE existing Datadog monitor identified by its numeric ID.
Update datadog published analysisUpdates a published analysis (also called a published dataset) by re-syncing it with the current notebook cell definitions.
Update datadog security detection ruleUpdate an existing Cloud SIEM detection rule by PUTing the supplied payload to PUT /api/v2/security_monitoring/rules/{rule_id}.
Update datadog security findings automation ruleUpdate an existing security findings automation rule.
Update datadog security ioc indicator triageSet the triage state of an IoC indicator.
Update datadog security signals triageUpdate the triage state and/or assignee of security signals.
Update datadog security suppressionUpdate an existing security monitoring suppression rule in Datadog.
Update datadog workflowUpdate an existing Datadog Workflow Automation workflow by ID.
Update data observability recommendation statusSets the lifecycle status of a Data Observability recommendation, e.
Update entity descriptionSet or update the custom user-defined description for a data entity.
Update entity tagsAdd or remove custom user-defined tags on data entities.
Update-environmentReplace the attributes of an existing Feature Management environment.
Update-feature-flag-environmentUpdate a feature flag in a specific environment by enabling/disabling it, changing the default variant, setting an override variant, or clearing an override variant.
Update llmobs experimentUpdate the mutable properties of an existing experiment.
Update rum retention filterUpdate an existing RUM retention filter's attributes in place.
Update-saved-filterUpdate a saved filter's name, description, and/or targeting rules.
Upsert datadog dashboardCreates or updates a Datadog ordered-grid dashboard.
Upsert datadog security aap custom ruleCreate or update an AAP (App & API Protection) WAF custom rule — a user-authored in-app WAF rule that matches request traffic and monitors or blocks it.
Upsert datadog security aap denylistAdd/refresh AAP (App & API Protection) denylist entry — block IP/user/user-agent via auto security response.
Upsert datadog security trace passlistCreate or update an AAP (App & API Protection) passlist/allowlist entry — also known as a WAF exclusion filter — that exempts traces from WAF analysis/blocking.
Upsert datadog spreadsheetCreate or update a Datadog spreadsheet's tables, sheets, and pivots in a single call.
Upsert data observability monitor annotationsCreate, update, or extend Data Quality monitor annotations.
Upsert reference table rowsInsert new rows or update existing rows in a reference table.
Upsert rum metricCreate or update a RUM custom metric.
Validate dashboard widgetValidate a widget definition against the dashboard schema.
Validate datadog workflowA read-only check of a complete candidate workflow spec.
Validate monitor definitionValidates a monitor JSON definition.
Verify-onboarding-flagVerify a client-side onboarding flag through the public Datadog CDN using the user's own client token — the same path browser/mobile client SDKs use.