# Splunk

**Canonical:** https://apis.io/providers/splunk/  
**Website:** https://dev.splunk.com/  
**APIs profiled:** 14

Splunk is a platform for searching, monitoring, and analyzing machine-generated big data via a web-style interface.

## Kin Score — 46.3 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 46.3).

| Facet | Score |
|---|---|
| Discoverability | 55.6 |
| Contract Quality | 36.2 |
| Governance | 9.8 |
| Contract Governance | 9.8 |
| Operational Transparency | 34.2 |
| Developer Ergonomics | 61.9 |
| Commercial Clarity | 68.4 |
| Access Clarity | 68.4 |

## Agent readiness — 46.0 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | verified |
| OpenAPI Examples | verified |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Free · Self-serve signup — onboarding: self-serve, pricing: free, trial: no (confidence: high).

## APIs (14)

- **Splunk** — API monitoring checks to see if API-connected resources are available, working properly and responding to calls.
- **Splunk Cloud Platform REST API** — The Splunk Cloud Platform REST API provides a subset of the Splunk Enterprise REST API endpoints for managing and interacting with your Splunk Cloud Platform deployment. Access ...
- **Splunk Cloud Admin Config Service (ACS) API** — The Admin Config Service (ACS) is a cloud-native API that provides programmatic self-service administration capabilities for Splunk Cloud Platform. Administrators can use the AC...
- **Splunk Observability Cloud API** — The Splunk Observability Cloud API provides REST endpoints for sending and managing metrics, traces, and events. It supports infrastructure monitoring, application performance m...
- **Splunk SOAR REST API** — The Splunk SOAR REST API enables programmatic creation, updating, and management of security automation objects including containers, assets, playbooks, indicators, lists, and a...
- **Splunk Enterprise Security API** — The Splunk Enterprise Security API provides REST endpoints for accessing and modifying findings, investigations, risk scores, assets, and identities in Splunk Enterprise Securit...
- **Splunk IT Service Intelligence (ITSI) REST API** — The Splunk IT Service Intelligence (ITSI) REST API allows bulk creation and updating of ITOA interface objects such as entities, services, and KPI base searches. ITSI is a monit...
- **Splunk HTTP Event Collector (HEC) API** — The Splunk HTTP Event Collector (HEC) is a high-performance REST API data input that accepts JSON or raw text data sent over HTTP or HTTPS. It uses token-based authentication an...
- **Splunk Intelligence Management API** — The Splunk Intelligence Management (formerly ThreatStream) API provides REST v2.0 endpoints for managing threat intelligence data including indicators, observables, and intellig...
- **Splunk SOAR Playbook Automation API** — The Splunk SOAR Playbook Automation API provides Python APIs for developing playbooks and automation within Splunk SOAR. It includes container, playbook, data access, vault, net...
- **Splunk AppInspect API** — The Splunk AppInspect API validates Splunk apps and add-ons against Splunk best practices and requirements for publishing to Splunkbase or installing on Splunk Cloud Platform. I...
- **Splunk Data Inputs API** — Endpoints for configuring and managing data inputs including monitors, TCP/UDP inputs, scripted inputs, and HTTP Event Collector (HEC) tokens. Data inputs define how Splunk inge...
- **Splunk Index API** — Endpoints for managing Splunk indexes, which store and organize ingested data. Indexes can be created, modified, listed, and configured for retention and storage policies.
- **Splunk Search API** — Endpoints for creating, managing, and retrieving search jobs and their results. Splunk search processing language (SPL) queries are submitted as search jobs that run asynchronou...

## MCP servers (1)

- **MCP Server**

## Agentic access (1)

- **Splunk Agentic Access** — 26 operations · 13 acting · 1 human-in-the-loop

## Security (4)

- **Splunk Authentication** — apiKey/http · 3 schemes
- **Splunk Domain Security** — TLSv1.3 · HSTS · DMARC
- **Splunk Vulnerability Disclosure** — security.txt · contact published
- **Splunk Trust Center** — SOC 2, ISO 27001, ISO 27017, ISO 27018, PCI DSS, HIPAA, FedRAMP, GDPR, CSA STAR

## Plans (1)

- **Splunk Plans Pricing**

## Use cases (6)

- **Security Information and Event Management** — Centralize security event data for real-time threat detection, investigation, and compliance reporting.
- **IT Operations Monitoring** — Monitor infrastructure health, application performance, and service availability across hybrid environments.
- **Log Management** — Collect, index, and analyze log data from servers, applications, and network devices for troubleshooting.
- **Incident Response Automation** — Automate security incident triage, enrichment, and response using SOAR playbooks and integrations.
- **Application Performance Monitoring** — Trace application requests end-to-end to identify bottlenecks and optimize performance.
- **Compliance and Audit** — Generate compliance reports and audit trails from indexed data to meet regulatory requirements.

## Tags

Analytics, Data Analysis, Logging, Machine Data, Monitoring, Observability, Platform, Security, SIEM

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/splunk/). Scores are computed from the provider's own public artifacts under a published rubric.
