VirtualMetric
VirtualMetric helps SOC teams cut SIEM ingestion costs by up to 90%, close visibility gaps, and give every tool detection-ready data.
https://www.virtualmetric.com/Opens ChatGPT on the web or desktop and asks it to use the WebMCP tools available here.
Connect straight to this server’s public endpoint.
https://mcp.virtualmetric.com/mcpWe add this server to your workspace, then open Studio — saved access, one connection to many servers, with a history of what ran.
Last probed Sep 14, 2026 · mcp.virtualmetric.com
11tools discovered
Test Pipeline
Run a sample log through a pipeline config and return the normalized output as JSON. For a multi-file pack (an entry pipeline that calls others via `pipeline`/IngestPipeline), put every pipeline in `pipeline` as a YAML list or `---`-separated docs and set `name` to the entry.
Validate Pipeline
Run a sample log through a pipeline config and report true/false against an expected output. For a multi-file pack, put every pipeline in `pipeline` (YAML list or `---`-separated docs) and set `name` to the entry.
Diff Pipeline
Show expected vs actual output and a unified diff. For a multi-file pack, put every pipeline in `pipeline` (YAML list or `---`-separated docs) and set `name` to the entry.
Validate Schema
Normalize a sample log with a pipeline config, then check the output against a target schema (ASIM table, ocsf:<class>, udm:<...>, or custom) using the check_schema processor. Reports missing/extra/type-mismatch fields.
Convert Cribl Pipeline
Convert a Cribl Stream pipeline into an equivalent VirtualMetric DataStream pipeline (YAML). Input is a Cribl pipeline export (its on-disk shape: top-level `description`/`groups`/`functions`, each function an id/conf/filter). This is the FIRST step when migrating a Cribl pipeline — then run test_pipeline/validate_pipeline on the returned YAML to verify behavior. Disabled Cribl functions (and functions in disabled groups) are converted as disabled processors, not dropped, so the result is a faith
Convert Kql Query
Convert a KQL query (an ASIM parser function, or a raw KQL query) into an equivalent VirtualMetric DataStream pipeline (YAML). Input may be a raw KQL query or a full ASIM parser YAML export (ParserQuery/ParserName are extracted automatically). This is the FIRST step when migrating an ASIM parser — then run test_pipeline/validate_pipeline on the returned YAML to verify behavior.
Convert Logstash Pipeline
Convert a Logstash pipeline configuration (.conf with input/filter/output sections) into an equivalent VirtualMetric DataStream pipeline (YAML). Filter plugins become native processors, Logstash conditionals become native `if:` gates / groups, and input/output sections are summarized as comments (devices and targets are configured separately in DataStream). Unsupported plugins/options degrade to comment processors plus Warning lines in the pipeline description — review those before trusting the
List Processors
List available pipeline processors (188), optionally filtered by a search term. Returns each processor's key and one-line description.
Get Processor
Get a processor's full option schema (field, type, required) and a link to its documentation.
List Skills
List the embedded authoring guides (how to build a pack, build/edit a pipeline, taxonomy and tooling overview) with their descriptions.
Get Skill
Return the full guidance document for an authoring guide. Read the relevant guide before creating or editing a pack/pipeline to follow the conventions and avoid the known gotchas.
Get your MCP into directories
A working endpoint is step one. Directory coverage is the coordinated launch across ChatGPT, Claude, Cursor, the MCP Registry, and community indexes.
Directory coverage for brandsVirtualMetric helps SOC teams cut SIEM ingestion costs by up to 90%, close visibility gaps, and give every tool detection-ready data.
Use the MCP endpoint listed on this page in your MCP client configuration. One-click install pills support Claude, Cursor, VS Code, and other hosts. Copy the remote MCP URL if your client needs a manual entry.
Operate VirtualMetric? Verify ownership to take over this directory entry.
This server appears in the MCPBundles directory. Verify you operate it to take over the listing — name, description, logo, contact email, and skill content. We email a 6-digit code to a maintainer address your server publishes in /.well-known/security.txt or /.well-known/mcpbundles.json. Free, takes about a minute.
MCPBundles probed 11 tools on the live server. The tool list on this page reflects what was discovered at the last refresh — connect your client to see the full set available to your session.
No provider sign-in was required during MCPBundles' probe. Your client may still need MCPBundles credentials depending on how you connect.
MCPBundles is an independent platform built on the open Model Context Protocol standard. Not affiliated with Anthropic PBC or Claude.