ai-detection-engineering-platform

Simoon896/ai-detection-engineering-platform
★ 0 stars Python AI/LLM Updated today
MCP server exposing Wazuh SIEM (manager + indexer) operations to AI clients, with false-positive rule-tuning tooling and an Atomic Red Team integration layer.
View on GitHub → Try with Claude — $10 free →

Quick Install

Copy the config for your editor. Some servers may need additional setup — check the README.

Add to claude_desktop_config.json:

{
  "mcpServers": {
    "ai-detection-enginee": {
      "command": "uvx",
      "args": [
        "ai-detection-engineering-platform"
      ]
    }
  }
}

Or install with pip: pip install ai-detection-engineering-platform

README Excerpt

**An AI-driven detection-engineering platform for Wazuh.** Investigate alerts, hunt threats, tune false positives, edit and validate detection rules, and run Atomic Red Team validations across your Wazuh deployment — by talking to any AI assistant. Built as a Model Context Protocol (MCP) server. > **v4.2.1** | 48 security tools | Wazuh 4.8.0–4.14.4 | [Changelog](CHANGELOG.md)

Tools (15)

ALLOWED_ORIGINSAUTHLESS_ALLOW_WRITEAUTH_MODEAUTH_SECRET_KEYMCP_HOSTMCP_PORTREDIS_URLWAZUH_HOSTWAZUH_INDEXER_HOSTWAZUH_INDEXER_PASSWAZUH_INDEXER_PORTWAZUH_INDEXER_USERWAZUH_PASSWAZUH_PORTWAZUH_USER