Put splunk to work with AI and enterprise-grade automation
Automate smarter with splunk and scale with confidence. Zapier is built for enterprise-grade security, compliance, and performance.
- No-code AI automation
- Full audit trails and controls
- SOC 2 and GDPR compliant
- Easy visual workflow builder
- 9,000+ apps, 450+ AI tools
- Free tier available
Join millions worldwide who automate their work using Zapier
Supported triggers and actions
Zapier helps you create workflows that connect your apps to automate repetitive tasks. A trigger is an event that starts a workflow, and an action is an event a Zap performs.
- Saved search
Try ItTriggerPolling- Search Job Completed
Fires when a search job completes in Splunk. Uses the search job ID to detect new completed jobs.
Try ItTriggerPolling - Copy
- Search QueryRequired
- Earliest Time
- Latest Time
- Max Results
- Execution Mode
- Status Buckets
- Required Fields
ActionWrite- Event DataRequired
- Index
- Source
- Source Type
- Host
- Time
ActionWrite
- New Saved Search
Fires when a new saved search is created in Splunk. Uses the saved search name to detect new items.
Try ItTriggerPolling - NameRequired
- Search QueryRequired
- Description
- Scheduled
- Earliest Time
- Latest Time
- Alert Type
- Disabled
ActionWrite- Copy
- Saved searchRequired
- Earliest time
- Latest time
- Dispatch now
- Force dispatch
- Trigger actions
ActionWrite- Raw Event DataRequired
- Index
- Source
- Source Type
- Host
ActionWrite
For builders
Let your AI safely access splunk
Go beyond Zap workflows. Install Zapier in your AI to call splunk actions directly from your agents—with governance built in. Authenticate once. Revoke access anytime.
Call actions in natural language with Zapier MCP
Act in splunk from your AI—no exposed credentials, and you control which actions your AI can touch. One install covers 9,000+ other apps.
Example actions on this page
Works with
Claude · ChatGPT · Cursor · Any MCP-compatible AI
Work in code with the Zapier SDK
Expose splunk actions from backend services, scripts, or agent code. Zapier handles the OAuth and scoped permissions. Access 9,000+ apps, plus thousands more with .fetch().
Install
npm install @zapier/zapier-sdk npm install -D @zapier/zapier-sdk-cli zapier-sdk login # create a splunk connection @ https://zapier.com/app/assets/connections
Run an action
// Typescript
import { createZapierSdk } from "@zapier/zapier-sdk";
const zapier = createZapierSdk();
const { data: connection } = await zapier.findFirstConnection({ app: "splunk", owner: "me" });
await zapier.runAction({
app: 'splunk',
action: 'create_saved_search',
connection: connection.id,
input: {
{inputKeyValuePairs}
},
});Direct API calls to raw endpoints through fetch are not yet subject to org-level app and action restrictions.







