Query Wazuh SIEM in plain English for faster detection and triage.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "Wazuh-MCP-Server" yet — see the docs or source repo.
Check hosts with unusually high failed login counts in the last 24 hours, rank them by risk, and explain possible causes and recommended response steps.
A ranked list of anomalous hosts, suspicious indicators, and recommended investigation and remediation actions.
Summarize all high-severity security alerts from today, group them by attack type, and list affected assets, timelines, and response priorities.
A grouped alert summary with impacted assets, key timeline events, and prioritized response guidance.
Review compliance risks related to baseline security configurations, identify failed checks, affected hosts, and suggested remediation steps.
A compliance summary with failed checks, affected hosts, and recommended remediation actions.
Investigate SIEM alerts, hunt threats, and tune rules using natural language.
Access Wazuh security alerts, vulnerabilities, and network docs using natural language.
Connect OSSEC security monitoring to AI for alerts, host status, and event analysis.
Monitor threat intel, analyze IOCs, and investigate security incidents in real time.
Analyze AWS security posture with natural language and get remediation guidance.
Search workplace incident data, analyze trends, and draft corrective actions.