57 integrations. Every one read-only.
Triagic investigates tickets against the systems you already run. Each connector is an MCP server started on a member's machine with a credential you configure; each page below says exactly which tools are exposed and what makes them read-only. Your own model key, a 14-day trial, no card.
Databases
- MongoDBQuery collections and inspect documents behind a ticket.
- PostgreSQLBrowse schemas and run read-only SQL against a Postgres database.
- MySQLBrowse every database, table and schema the credentials can reach. Read-only: there is no tool that runs a statement you write.
- RedisInspect keys and cached values. Read-only: the server's write tools are not exposed.
- ClickHouseRun read-only SQL against a ClickHouse cluster.
- SnowflakeBrowse databases and run read-only SQL against a Snowflake warehouse. Connect as a role that only has SELECT.
- BigQueryQuery datasets and inspect table schemas. Writes are not blocked. Use a service account limited to read-only roles.
- DynamoDBList tables and read items with query, scan, and describe. Runs the AWS API server locked to read-only operations.
- SupabaseQuery one Supabase project's tables, read its logs and security advisors. Runs the official server with --read-only, so SQL executes in a read-only transaction and the migration, branching and deploy tools are absent.
- NeonQuery a Neon Postgres project's branches, tables and slow queries. Connects to Neon's hosted server with ?readonly=true, so the SQL and migration tools run read operations only.
Observability
- SentryPull issues, events, and stack traces. Works with Sentry-compatible backends (GlitchTip).
- PrometheusQuery metrics and alerting rules.
- OpenSearchSearch application logs and indices.
- ElasticsearchSearch application logs and documents, inspect mappings and shards. The bundled tools are read-only.
- DatadogRead monitors, logs, metrics, and incidents. Write tools stay disabled.
- GrafanaSearch dashboards, datasources, incidents, and alert rules. Write tools stay disabled. Runs the official image via Docker.
- PagerDutyRead incidents, on-call schedules, and escalation policies. Write tools stay disabled.
- SplunkRun SPL searches and read index and knowledge-object metadata. Needs the MCP Server app (Splunkbase 7931) installed on the instance.
- New RelicRun NRQL queries and read entities, alerts, and open incidents. Writes are not blocked. Use a key from a read-only user.
- DynatraceRun DQL against Grail and read problems, vulnerabilities, exceptions, Kubernetes events and Davis analyzers. Needs a Dynatrace platform environment (…apps.dynatrace.com). DQL is billed by data scanned, so each server gets a Grail budget.
- HoneycombRun Honeycomb queries and BubbleUp, look up traces and spans, and read boards, triggers and SLOs. Connects to Honeycomb's hosted server with a Management API key.
Infrastructure
- KubernetesRead pods, deployments, events, and logs. Only the server's read-only tools are enabled.
- DockerInspect containers, their logs, images, networks and volumes on a Docker engine. Read-only: the server's create, start, stop, remove, pull, push and build tools are not exposed.
- TerraformRead HCP Terraform workspaces, runs, plans, and state versions to see what infrastructure changed. Runs HashiCorp's official image via Docker.
- Confluent / KafkaInspect topics, consumer-group lag, schemas, and connectors, and read messages to trace one that never arrived. Only read tools are enabled.
Cloud
- AWS CloudWatchRead CloudWatch logs, metrics, and alarms.
- AWS SQS / SNSInspect queues, topics, and message attributes.
- Azure MonitorQuery Log Analytics and Application Insights with KQL, and read metrics and the activity log.
- AzureAsk about any Azure service the service principal can read: compute, storage, SQL, Cosmos, AKS, App Service, Monitor and more. Runs the Azure MCP server read-only; Key Vault values are never exposed.
- Google Cloud LoggingSearch Cloud Logging entries and read Cloud Monitoring metrics, alert policies, and traces.
- CloudflareQuery Workers Observability logs and analytics at the edge, read-only. Connects to Cloudflare's hosted server.
- OktaLook up users, their groups and app assignments, and the system log, including recent failed sign-ins. Useful for “can't log in” tickets. Nothing can be changed.
- AWSAsk about any AWS service the IAM policy allows: EC2, S3, Lambda, RDS, ECS, CloudTrail, IAM and the rest. Runs the AWS API server locked to read-only operations.
- VercelRead deployments, build and runtime logs, projects and Web Analytics. Connects to Vercel's hosted server. Writes are not blocked. Use a token scoped to what you want reachable.
Code & Repos
- GitHubBrowse repositories, issues, and pull requests, read-only. Runs GitHub's official MCP server, which requires Docker.
- GitLabBrowse projects, issues, and merge requests, read-only. Works with gitlab.com and self-hosted.
- Azure DevOpsRead work items, repos, pull requests, builds and wikis in an Azure DevOps Services organization. Nothing is created, updated or queued.
- BitbucketRead repositories, pull requests, commits, pipelines and issues in Bitbucket Cloud. The server can only send GET requests.
- CircleCIRead failed build logs, pipeline status, test results, flaky tests and artifacts, to tie a ticket to a CI failure. Triggering, rerunning and rolling back pipelines stay out.
Business systems
- AtlassianConfluence pages and Jira issues, read-only. Fill in at least one product.
- StripeLook up customers, invoices, subscriptions, and disputes, read-only.
- SlackSearch channels and threads for context on an incident. Posting is off unless you turn it on.
- NotionSearch the workspace and read runbook and wiki pages behind an alert.
- ZendeskLook up tickets, users, and organizations. Writes are not blocked. Use a token from a read-only agent role.
- ServiceNowRead incidents, changes, CMDB records, and knowledge articles. Create, update, and delete are refused.
- LinearRead issues, projects, cycles, comments and teams. Connects to Linear's hosted read-only endpoint, which only exposes read tools.
- IntercomSearch conversations, contacts, companies and Help Center articles. Connects to Intercom's hosted server; article edits and internal notes are left out.
- HubSpotLook up contacts, companies, deals, tickets and their associations in HubSpot CRM. Create and update tools are left out. Use a key with read scopes.
- SalesforceQuery accounts, contacts, cases and any other object with SOQL, search across records, and describe object schemas. Record, metadata and Apex writes aren't exposed.
- FreshdeskLook up tickets, conversations, contacts, companies and knowledge base articles. Writes aren't exposed. Use an API key from an agent with a view-only role.
- PostHogQuery product analytics behind a ticket: errors, events, insights, feature flags, experiments, and session data. Connects to PostHog's hosted server; only its read-only tools are exposed.
Knowledge & memory
- Neo4jRun read-only Cypher against a Neo4j database and inspect its schema. The server is started with NEO4J_READ_ONLY=true, so the write tool is never registered.
- Neo4j knowledge graph memoryRead an agent memory graph stored in Neo4j by the mcp-neo4j-memory server: search entities, look them up by name, or read the whole graph. Create, add and delete tools are never exposed.
- MemgraphRun read-only Cypher against a Memgraph instance and inspect its node, relationship and enum schema. The server is started with MCP_READ_ONLY=true, which refuses CREATE, MERGE, SET, DELETE, REMOVE and DROP.
- GraphitiSearch a Graphiti temporal knowledge graph (Zep's open-source memory engine) for entities, facts and episodes. Connects to your own Graphiti MCP server over HTTP; the add, delete and clear tools are never exposed.
- Mem0Search and read the memories a Mem0 workspace holds for its users, agents and apps. Connects to Mem0's hosted MCP server with an API key; the add, update and delete tools are never exposed.
- CogneeRecall from a Cognee memory (its graph and vector layers) and list its datasets. Connects over HTTP to a cognee-mcp server you run in http mode; remember, forget and cognify are never exposed.
Connect one and ask it something
Install the desktop app, add a read-only credential for one system, and run a real investigation against it.