Grafana connects to a Nagent workspace with a bearer token. Once it is connected, agents can call 11 Grafana actions, such as "Create OTLP v1 Logs", "Get Distributor HA Tracker" and "Get Grafana Health Status". Nothing is enabled on connect: each action is allowed one at a time, and an action with side effects runs or waits for a person according to the agent's level.
Every operation an agent can call against Grafana, with input parameters and output schema.
GRAFANA_CREATE_OTLP_V1_LOGSTool to create OTLP v1 logs in Grafana Loki. Use when you need to send OpenTelemetry Protocol logs to Grafana for ingestion and storage.
Input parameters
List of resource logs to send to Grafana Loki.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_DISTRIBUTOR_HA_TRACKERTool to retrieve distributor HA tracker status. Use when you need to check which replica has been elected as leader for each Prometheus HA cluster.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_HEALTHCheck Grafana server health and database connectivity. Returns 'ok' if Grafana's web server is running and can access the database. Use when you need to verify Grafana instance availability before performing operations.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_INDEX_GATEWAY_RINGTool to retrieve the index gateway hash ring status from Grafana Loki. Returns information about the state, health, and last heartbeat time of each index gateway in the ring.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_OVERRIDES_EXPORTER_RINGTool to retrieve the overrides-exporter hash ring status as an HTML page. Use when you need to check the state, health, and heartbeat information of overrides-exporter instances. Only accessible when -overrides-exporter.ring.enabled flag is true.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_RULER_RINGTool to retrieve the ruler ring status from Grafana Mimir. Use when you need to check the distributed hash ring topology and operational status of ruler instances.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_STATUSTool to check if a valid Grafana Enterprise license is available. Use when you need to verify license status or availability.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_GET_STORE_GATEWAY_TENANTSRetrieves store gateway tenants. Returns a list of tenants that have blocks stored in the store-gateway's configured storage. Use when you need to view which tenants have data stored on a store-gateway node.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_POST_ACSTool to perform SAML Assertion Consumer Service (ACS) operation. Use when processing SAML authentication responses from an identity provider. This endpoint typically handles the SAML assertion and returns a redirect response (HTTP 302).
Input parameters
Optional relay state parameter for SAML authentication flow. This is typically used to maintain state between the identity provider and service provider during SAML authentication.
Base64-encoded SAML Response from the Identity Provider. This contains the SAML assertion with authentication information.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_QUERY_PUBLIC_DASHBOARDQuery a panel on a public Grafana dashboard to retrieve time-series data and metrics. Use when you need to fetch visualization data from a publicly shared dashboard without authentication. Returns data frames with query results for the specified time range.
Input parameters
End time for the query. Can be absolute timestamp (epoch ms) or relative time expression (e.g., 'now', 'now-1h'). Typically 'now' for current time.
Start time for the query. Can be absolute timestamp (epoch ms) or relative time expression (e.g., 'now-6h', 'now-1d', 'now-7d'). Use 'now' for current time.
Panel ID to query (numeric identifier of the panel within the dashboard)
Time interval between data points in milliseconds. Controls data aggregation granularity.
Public dashboard access token (unique identifier for the shared dashboard)
Maximum number of data points to return. Helps control query resolution and response size.
Optional base URL override for the Grafana instance hosting the public dashboard. If not provided, uses the authenticated instance URL. Useful for querying public dashboards from other Grafana instances (e.g., 'https://play.grafana.org').
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
GRAFANA_RETRIEVE_JWKSTool to retrieve JSON Web Key Set (JWKS) with all public keys for token verification. Use when you need to get the keys that can verify JWT tokens.
Output
Data from the action execution
Error if any occurred during the execution of the action
Whether or not the action execution was successful or not
Agents can call 11 Grafana actions on Nagent, including "Create OTLP v1 Logs", "Get Distributor HA Tracker" and "Get Grafana Health Status". Create OTLP v1 Logs: Create OTLP v1 logs in Grafana Loki. Each action is listed on this page with its input parameters and its output.
Grafana connects with a bearer token, under your workspace's own connection. Nothing is enabled on connect: each action is allowed one at a time and can be scoped to the agents that need it.
Create OTLP v1 Logs takes 1 required input: resourceLogs. It returns data, error and successful.