MCPServers
Microsoft Security Copilot - MCP server logo

Microsoft Security Copilot

14
0

Summary

A Python-based MCP server that provides integration between Microsoft Security Copilot and Microsoft Sentinel using Azure Identity Authentication. Developed by Jaime Guimera Coll, this implementation enables running KQL queries against Sentinel workspaces, managing Security Copilot skillsets/plugins, and executing prompts within Security Copilot. The server uses FastMCP for the transport layer and supports multiple authentication methods including interactive browser, client secret, and managed identity. It's particularly useful for security professionals developing, testing, and deploying Security Copilot KQL skills, allowing for seamless workflow from development to production environments.

Available Actions(4)

run_sentinel_query

Execute KQL queries in Sentinel.

get_skillsets

List skillsets in Security Copilot.

upload_plugin

Upload or update a skillset/plugin.

run_prompt

Run a prompt or skill in Security Copilot.

Last Updated: April 25, 2025

社区评论

0.0
0 条评论
5
0
4
0
3
0
2
0
1
0

暂无评论. 成为第一个评论的人!

登录以参与讨论

Coming soon to
HighlightHighlight AI

语言

TypeScript

分类

标签