{"repo":"CrowdStrike/falcon-mcp","free":true,"listed":false,"github":"https://github.com/CrowdStrike/falcon-mcp","clone":"git clone https://github.com/CrowdStrike/falcon-mcp.git","description":"Connect AI agents to CrowdStrike Falcon for automated security analysis and threat hunting","language":"Python","stars":236,"topics":["ai","crowdstrike","falcon","mcp","mcp-server"],"license":"MIT","category":"mcp-servers","readme_excerpt":"falcon-mcp falcon-mcp is a Model Context Protocol (MCP) server that connects AI agents with the CrowdStrike Falcon platform, powering intelligent security analysis in your agentic workflows. It delivers programmatic access to essential security capabilities—including detections, threat intelligence, and host management—establishing the foundation for advanced security operations and automation. [!IMPORTANT] 🚧 Public Preview : This project is currently in public preview and under active development. Features and functionality may change before the stable 1.0 release. While we encourage exploration and testing, please avoid production deployments. We welcome your feedback through GitHub Issues to help shape the final release. Documentation Full docs are available at developer.crowdstrike.com/falcon-mcp . Modules Module Description ------ ----------- Core Basic connectivity and system information Case Management Case lifecycle management, evidence attachment, tagging, and templates Cloud Security Kubernetes containers, image vulnerabilities, CSPM asset inventory, IOM findings, suppression rules, cloud risks, and cloud groups Correlation Rules Search, create, update, and manage NG-SIEM correlation rules Custom IOA Create and manage Custom IOA behavioral detection rules and rule groups Data Protection Search Data Protection classifications, policies, and content patterns Detections Find, aggregate, and analyze detections to understand malicious activity Discover Search applicatio","default_branch":null,"files":null,"tree":[],"storefront":"/r/CrowdStrike","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/CrowdStrike/falcon-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}