mcp-secops-v3

mcp-secops-v3

3.3

If you are the rightful owner of mcp-secops-v3 and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.

This project is deprecated in favor of: https://github.com/google/mcp-security

The Chronicle SecOps MCP Server is a Model Context Protocol server designed to interact with Google's Chronicle Security Operations suite. It provides a set of tools and features to facilitate security operations by allowing users to search for security events, retrieve alerts, and manage security rules within the Chronicle platform. The server is compatible with Claude Desktop and can be installed via Smithery or manually. It requires Python 3.11+, a Google Cloud account with Chronicle Security Operations enabled, and proper authentication setup.

Features

  • search_security_events: Search for security events in Chronicle with customizable queries
  • get_security_alerts: Get security alerts from Chronicle
  • lookup_entity: Look up information about an entity (IP, domain, hash)
  • list_security_rules: List security detection rules from Chronicle
  • get_ioc_matches: Get Indicators of Compromise (IoCs) matches from Chronicle