elasticsearch-logs
Installation
SKILL.md
Elasticsearch Logs
Read-only log search over an Elasticsearch cluster you already run. NetClaw installs no cluster and indexes nothing — this queries what is already there.
Server: elasticsearch-mcp (adopted, docker.elastic.co/mcp/elasticsearch, Apache-2.0,
digest-pinned) · 5 tools · 1,094 tokens
The rule that matters most
A bare
searchtotal is capped at 10,000 and reads as if it were exact.
Elasticsearch stops counting at 10,000 and marks the total relation: "gte" — meaning at
least. This server discards that qualifier and prints Total results: 10000. There is
nothing in the response to tell you the number is a floor.
Measured against 10,075 real documents: