Loading connector details…
Loading connector details…
Choose a unique username to continue using AgentHotspot
by dstreefkerk • Uncategorized
A read-only MCP server providing advanced querying and resource exploration for Microsoft Sentinel environments.
Run and validate KQL queries against Microsoft Sentinel data.
View and analyze security incidents and analytics rules in Sentinel.
Explore Azure Sentinel resources such as watchlists, data connectors, and threat intelligence.
This MCP server enables secure, read-only access to Microsoft Sentinel instances, allowing users to run KQL queries, view incidents, analyze analytics rules, and explore various Sentinel resources. It is designed for test environments to support observation-only security operations and analysis, providing a modular and extensible platform. The server supports multiple authentication methods and integrates with Azure services to facilitate security monitoring and investigation workflows.