← all repositories

MHaggis/Security-Detections-MCP

An MCP server that lets LLMs query a unified database of security detection rules from Sigma, Splunk, Elastic, KQL, Sublime, and CrowdStrike.

442 stars TypeScript Coding AssistantsLLMOps · Eval
Security-Detections-MCP
Velocity · 7d
+3.0
★ / day
Trend
steady
star history

This Model Context Protocol server exposes 81 tools enabling AI agents to search, retrieve, and query security detection rules across multiple security platforms. It indexes rule repositories locally or provides access via a hosted HTTP endpoint, allowing LLMs to leverage structured detection logic for cybersecurity tasks.

heatdrop uses Google Analytics to see which pages get read — nothing else. Your call. How we handle data.