Grafana Cloud for AI agents
Grafana Cloud is the hosted version of Grafana's observability stack, letting agents query metrics, logs, traces, dashboards, and incidents across a monitored environment. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Grafana Cloud.
Query recent error logs
Run a Loki query for error-level logs in a service over the last hour to help debug an incident.
Check active alerts
List currently firing alert rules to see what is contributing to a reported outage.
Create an incident with approval
Open a new incident record only after an on-call engineer confirms the issue is real.
118 Grafana Cloud actions, graded by risk.
Every Grafana Cloud action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
80Look things up. Allowed by default.
- grafana_cloud.get_pluginGet plugin
- grafana_cloud.list_teamsList teams
- grafana_cloud.get_incidentGet incident
- grafana_cloud.get_snapshotGet snapshot
- grafana_cloud.query_athenaQuery athena
- grafana_cloud.get_assertionsGet assertions
- grafana_cloud.get_datasourceGet datasource
- grafana_cloud.list_all_rolesList all roles
- grafana_cloud.list_incidentsList incidents
- grafana_cloud.list_snapshotsList snapshots
- grafana_cloud.query_graphiteQuery graphite
- grafana_cloud.query_influxdbQuery influxdb
- grafana_cloud.query_quickwitQuery quickwit
- grafana_cloud.search_foldersSearch folders
- grafana_cloud.get_alert_groupGet alert group
- grafana_cloud.get_annotationsGet annotations
write
37Create and change things. Allow, or ask the user first.
- grafana_cloud.create_folderCreate folder
- grafana_cloud.create_incidentCreate incident
- grafana_cloud.create_snapshotCreate snapshot
- grafana_cloud.update_incidentUpdate incident
- grafana_cloud.update_dashboardUpdate dashboard
- grafana_cloud.create_annotationCreate annotation
- grafana_cloud.create_datasourceCreate datasource
- grafana_cloud.update_annotationUpdate annotation
- grafana_cloud.update_datasourceUpdate datasource
- grafana_cloud.update_alert_groupUpdate alert group
- grafana_cloud.create_investigationCreate investigation
- grafana_cloud.add_activity_to_incidentAdd activity to incident
- grafana_cloud.ask_assistantAsk assistant
- grafana_cloud.install_pluginInstall plugin
- grafana_cloud.run_panel_queryRun panel query
- grafana_cloud.tempo_get_traceTempo get-trace
destructive
1Delete, cancel or archive. Ask first, or deny outright.
- grafana_cloud.delete_snapshotDelete snapshot
Grafana Cloud in three steps.
- 01Your users connect Grafana CloudThey sign in to Grafana Cloud on Arc0 Connect, under your brand, and approve the access you ask for.
- 02You set the rulesReads run, writes like “create folder” can wait for the user, and “delete snapshot” can be denied outright.
- 03Any agent can actYour agent calls Grafana Cloud through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('grafana_cloud', { read: 'allow', write: 'ask', // create_folder destructive: 'deny', // delete_snapshot }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Grafana Cloud connects.
Grafana Cloud runs its own MCP server behind OAuth. Arc0 registers the client, users approve access on Arc0 Connect, and your agent reaches Grafana Cloud through the same endpoint, policies and audit log as every other app.
The same Grafana Cloud connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0 (MCP)
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Grafana Cloud from any agent.
Grafana Cloud and Arc0, answered.
Can I use Grafana Cloud with Claude, ChatGPT or Cursor?
Yes. Connect Grafana Cloud to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Grafana Cloud actions you allow.
How do users connect Grafana Cloud?
Grafana Cloud runs its own MCP server behind OAuth. Arc0 registers the client, users approve access on Arc0 Connect, and your agent reaches Grafana Cloud through the same endpoint, policies and audit log as every other app.
Which Grafana Cloud actions can my agent take?
118 in total: 80 read, 37 write and 1 destructive, such as “create folder”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Grafana Cloud?
Yes. Actions like “delete snapshot” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Grafana Cloud too?
Yes. The same Grafana Cloud connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Grafana Cloud into your agent.
Your users connect Grafana Cloud once, under your brand. Your agent gets 118 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan