winlog-mcp

XD3an/winlog-mcp

3.3

If you are the rightful owner of winlog-mcp and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.

WinLog-mcp is a Model Context Protocol tool for retrieving and analyzing Windows event logs, ideal for security monitoring and log analysis automation.

Tools

Functions exposed to the LLM to take actions

ingest_syslog

Ingests recent Sysmon logs and writes them to a file

query_syslog

Queries ingested logs by timestamp and returns recent events

Prompts

Interactive templates invoked by user choice

No prompts

Resources

Contextual data attached and managed by the client

No resources