{"repo":"Sentinel-One/purple-mcp","free":true,"listed":false,"github":"https://github.com/Sentinel-One/purple-mcp","clone":"git clone https://github.com/Sentinel-One/purple-mcp.git","description":"Access SentinelOne's Purple AI and security services through the Model Context Protocol (MCP) - query alerts, vulnerabilities, misconfigurations, and inventory","language":"Python","stars":93,"topics":[],"license":"MIT","category":"mcp-servers","readme_excerpt":"Purple AI MCP Server Purple AI MCP Server allows you to access SentinelOne Services with any MCP client. Features This server exposes SentinelOne's platform through the Model Context Protocol: - Purple AI : Ask security questions, investigate threats - Events : Run PowerQueries on events in your SentinelOne data lake - Alerts : Query, search, and investigate alerts - Vulnerabilities : Track CVEs and security findings - Misconfigurations : Analyze security posture issues - Inventory : Ask questions about endpoints, cloud resources, identities, and network devices - CVE Search : Query public CVE databases for vulnerability details - Threat Intelligence : Get file, URL, domain, and IP analysis from VirusTotal Purple AI MCP is a read-only service - you cannot make changes to your account or any objects within your account from this MCP. Quick Start Using uv (Recommended for Local Development or Deployment) ⚠️ Security note ⚠️ For production or security-sensitive environments, pin to a specific commit hash instead of using the default branch to reduce supply chain risk from the our releases or our verified commits in main branch. Using Docker Follow instructions for Docker Deployment here Using Amazon Bedrock AgentCore Follow instructions for Amazon Bedrock AgentCore Deployment here Using Amazon Elastic Container Service (ECS) Follow instructions for Amazon Elastic Container Service Deployment here Using a Cloud Provider For cloud deployments, see Deployment Guide. Note: Purple AI","default_branch":null,"files":null,"tree":[],"storefront":"/r/Sentinel-One","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Sentinel-One/purple-mcp/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}