Datadog
Read and manage Datadog monitors, events, incidents, downtimes, SLOs, service catalogue, hosts, logs and metric queries.
Route observability signals into service desks, status pages and on-call workflows, and keep monitors and downtimes in step with change calendars.
Source actions
21
Destination actions
7
Data types
12
Validation status
Implemented · fixture tested.
Implementation is checked against provider-shaped fixtures for every action, authentication failures, rate limits, pagination and duplicate safety. Provider sandbox and authorised account validation are recorded separately when credential-backed runs are completed.
What you can map
catalog entities
- List catalog entitiesSource
Software Catalog entities (services, datastores, queues, systems, APIs) with owners.
downtimes
- Schedule downtimeDestinationNot retried automatically
Schedules a one-time or recurring downtime for one monitor or monitors with given tags.
- Get downtimeSource
One downtime with its schedule and status.
- List downtimesSource
Scheduled, active and past downtimes with their monitor selection and schedule.
- Update downtimeDestinationDuplicate protected
Changes the scope, monitor selection, schedule or message of a downtime.
events
- Post eventDestinationNot retried automatically
Posts an event (for example a deploy or change record) to the event stream.
- Get eventSource
One event with its full attributes.
- List eventsSource
Events from the Events Explorer matching a search query and time range.
- Search eventsSource
Event search with a request body, for long queries and time zone options.
hosts
- List hostsSource
Infrastructure hosts with aliases, apps, tags by source and agent metadata.
incidents
- Declare incidentDestinationNot retried automatically
Declares an incident with severity, state, customer impact and commander.
- Get incidentSource
One incident with fields, impact and commander.
- List incidentsSource
Incidents with severity, state, impact and timing fields.
- Search incidentsSource
Incident search with Datadog's incident query syntax, for example state:active.
- Update incidentDestinationDuplicate protected
Updates title, severity, state, impact, timings or commander of an incident.
logs
- Search logsSource
Indexed log events matching a query within a bounded time window.
metric metadata
- Get metric metadataSource
Type, unit, description and integration of a metric.
metrics
- Query metricsSource
Timeseries points for a metric query over a bounded time window.
monitors
- Create monitorDestinationNot retried automatically
Creates a monitor with a query, message, tags, priority and options.
- Get monitorSource
One monitor with its options, state and optional matching downtimes.
- List monitorsSource
Monitors with their query, options, tags and overall state.
- Search monitorsSource
Monitor search with Datadog's monitor query syntax, including status filters.
- Update monitorDestinationDuplicate protected
Edits a monitor. Omitted fields are unchanged; options are replaced as a whole.
services
- Get service definitionSource
One service definition by service name.
- List service definitionsSource
Service definitions from the Software Catalog with owner, tier and contacts.
slo history
- Get SLO historySource
SLI value, uptime and remaining error budget for an SLO over a time window.
slos
- Get SLOSource
One SLO with its thresholds and configured alert IDs.
- List SLOsSource
Service level objectives with targets, timeframes and source monitors or queries.
Authentication
API key and application key
Plans and access
All Datadog plans; incidents, the software catalogue and logs require the corresponding products. Application keys inherit the creating user's permissions and can be scoped (monitors_read, monitors_write, monitors_downtime, incident_read, incident_write, events_read, logs_read_data, slos_read, apm_service_catalog_read, metrics_read, hosts_read).
Test environment
A 14-day free trial organisation works for testing.
Rate limits
Per-organisation, per-endpoint limits reported in X-RateLimit-Limit/Remaining/Reset headers; HTTP 429 when exceeded (for example 300 monitor reads per minute, logs search 300 per hour by default).
Provider events
Webhooks integration for monitor, incident and event notifications. Nexra event triggers are not yet available; flows run on demand or on a schedule.
Before you build a flow
- The Incidents v2 API is in preview (unstable) at Datadog; its fields can change.
- Incident notification handles are not exposed, so creating or updating an incident does not page anyone through Nexra; monitor messages can still contain @-handles.
- Deleting monitors, cancelling downtimes and deleting incidents are not implemented.
- Events are posted with the v1 events endpoint on the API host; the v2 event-management intake host is not used.
- Log search is limited to 30-day windows and metric queries to 31-day windows per call.
- Monitor, incident, event and downtime creates have no idempotency key; uncertain writes are not repeated automatically.