About this integration
Community extension of CrowdStrike falcon-mcp with near-complete Falcon API coverage
- Transport
- stdio
- Authentication
- client-credentials
- Initial setup
- credentials
- Runtime
- unattended
- Evidence
- documented
- Version
- 0.9.0
- Package
- falcon-mcp-extended
- Last compatibility test
- Not independently tested
Connect your agent
falcon-mcp-extendedPublisher README and manifest reviewed offline; documented configuration only; package and endpoint were not executed or independently security-audited. Mutating capabilities require careful scope and safety-gate review.
Capabilities: EDR telemetry search, Threat intelligence, Incident management, Host response
Connected profiles
Additional details
io.github.rijul170/falcon-mcp
Source ↗ · Checked 2026-09-170.9.0
Source ↗ · Checked 2026-09-17CC0-1.0; package licenses are separate
Source ↗ · Checked 2026-09-17pypi
Source ↗ · Checked 2026-09-17falcon-mcp-extended
Source ↗ · Checked 2026-09-190.9.0
Source ↗ · Checked 2026-09-19The documented transport defaults to stdio and supports explicit read-only and destructive-operation gates.
Source ↗ · Checked 2026-09-19CrowdStrike Falcon Client ID and Client Secret credentials with suitable scopes are required.
Source ↗ · Checked 2026-09-19The stdio client example launches falcon-mcp through uvx and passes the client credentials and regional base URL.
Source ↗ · Checked 2026-09-19Publisher documentation reviewed; package and integration endpoint not executed or independently security-audited.
Source ↗ · Checked 2026-09-19