{"generated_at":"2026-08-17T10:36:11+00:00","item":{"added_at":"2026-07-05","analysis_method":"capability_triage","category":"Web Connector","description":"Bring Coralogix into your AI workflow. Enable Claude to work with your logs, metrics, and traces so you can explore and debug issues through natural language - run queries, inspect incidents and alert","did":"ant-dir-coralogix","homepage_url":"https://coralogix.com/","icon":"https://coralogix.com/favicon.ico","id":"ant.dir.coralogix","installs":0,"last_scanned":"2026-07-05","license":"","long_description":"Bring Coralogix into your AI workflow. Enable Claude to work with your logs, metrics, and traces so you can explore and debug issues through natural language - run queries, inspect incidents and alert details, and ground answers in the data your team already relies on. Spend less time jumping between tools and more time understanding what your telemetry is telling you.","name":"Coralogix","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=ant-dir-coralogix&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"Coralogix","publisher_url":"https://coralogix.com/","repository_url":"","risk":"high","risk_severity":"high","security_risks":[{"description":"This connector can access potentially sensitive observability data (logs, traces, metrics), which may include customer data, credentials, tokens, internal URLs, or incident details.","risk_type":"reads_private_data","severity":"medium","title":"Reads your private information"},{"description":"Management tools imply the ability to create or update Coralogix configuration such as alerts and parsing rules, which can change monitoring behavior and data processing.","risk_type":"modifies_data","severity":"medium","title":"Can change or update your information"},{"description":"Query tools (logs/traces/metrics range queries) can execute powerful searches over telemetry data, enabling broad retrieval that could expose sensitive information if misused.","risk_type":"runs_code","severity":"high","title":"Can run commands or queries on your behalf"},{"description":"Using the Coralogix API typically requires stored credentials/tokens to repeatedly access telemetry and management endpoints, increasing impact if those credentials are compromised.","risk_type":"requires_persistent_credentials","severity":"medium","title":"Stores long-lived access tokens"}],"signature_status":"unknown","source_code_reviewed":false,"tags":["modifies_data","reads_private_data","requires_persistent_credentials","runs_code"],"tools":[{"description":"Retrieves detailed information about a specific alert event in Coralogix.","name":"get_alert_event_details_v1"},{"description":"Reads introductory documentation for Coralogix Dataprime.","name":"read_dataprime_intro_docs_v1"},{"description":"Runs a logs query to retrieve log records from Coralogix.","name":"get_logs_v1","risk":{"category":"code_execution","level":"high","why":"Executing log queries can retrieve large volumes of sensitive telemetry data and is a powerful operation that can be abused for broad access."}},{"description":"Runs a traces query to retrieve distributed tracing data from Coralogix.","name":"get_traces_v1","risk":{"category":"code_execution","level":"high","why":"Executing trace queries can expose sensitive request payloads/metadata and enables broad retrieval across services."}},{"description":"Fetches available schemas/fields definitions for telemetry data in Coralogix.","name":"get_schemas_v1"},{"description":"Lists incidents recorded in Coralogix.","name":"list_incidents_v1"},{"description":"Retrieves detailed information for a specific incident in Coralogix.","name":"get_incident_details_v1"},{"description":"Lists available metrics in Coralogix.","name":"metrics__list_v1"},{"description":"Retrieves details and metadata for a specific metric.","name":"metrics__metric_details_v1"},{"description":"Executes a time-range query over metrics data in Coralogix.","name":"metrics__range_query_v1","risk":{"category":"code_execution","level":"high","why":"Running metric range queries can be used to pull extensive operational data at scale, increasing the impact of misuse."}},{"description":"Reads documentation or guidelines related to Coralogix metrics usage.","name":"read_metrics_guidelines_v1"},{"description":"Reads introductory documentation for Coralogix RUM logging.","name":"read_rum_log_intro_docs_v1"},{"description":"Reads documentation for Coralogix RUM SDK integration.","name":"read_rum_sdk_docs_v1"},{"description":"Returns the current date and time for use in queries or correlation.","name":"get_datetime"},{"description":"Creates, updates, enables/disables, or otherwise manages alert definitions in Coralogix.","name":"manage_alerts","risk":{"category":"state_change","level":"medium","why":"Changing alert configurations can alter detection/notification behavior and affect operational response."}},{"description":"Creates, updates, or manages log parsing rules and pipelines in Coralogix.","name":"manage_parsing_rules","risk":{"category":"state_change","level":"medium","why":"Modifying parsing rules can change how logs are interpreted, potentially impacting data quality, routing, and downstream alerting."}}],"tools_count":16,"type":"web_connector","url":"https://claude.ai/directory/a1d8f399-3c9f-44ca-aa70-8959be5c9f9c","uuid":"a1d8f399-3c9f-44ca-aa70-8959be5c9f9c","version":""},"query_key":"coralogix coralogix","schema_version":1,"status":"match"}
