Skip to main content

Configuration

Each setting comes from a flag, then the environment, then the file signoz mcp config saved, then the default.

VariableWhat for
SIGNOZ_BASE_URLThe instance URL
SIGNOZ_API_KEYA service account API key
SIGNOZ_AUTH_TOKENWith SIGNOZ_REFRESH_AUTH_TOKEN: the browser session, instead of an API key
SIGNOZ_REFRESH_AUTH_TOKENThe session's refresh token
SIGNOZ_ENVThe deployment.environment the telemetry tools filter on by default
PORTThe HTTP port (default 3767)
SIGNOZ_CONFIGWhere the saved configuration lives (also --config)

When both an API key and a token pair are set, the API key wins. See Authentication for where each comes from.

Where it is saved​

  • ~/.config/signoz/.env on Linux;
  • ~/Library/Application Support/signoz/.env on macOS;
  • %APPDATA%\signoz\.env on Windows;
  • or wherever SIGNOZ_CONFIG/--config points.

The file is written with mode 0600 (on Windows the folder's ACL protects it). With the browser tokens, the rotated pair goes to session.json beside the .env, shared by stdio, the daemon and the CLI.

Secrets never show up in errors, logs, --help or the configuration form.