This is a personal project.
This is an MCP (Model Context Protocol) server for interacting with Google's Chronicle Security Operations suite. MCP Info
To use this MCP server with Claude Desktop:
Install Claude Desktop
Open Claude Desktop and select "Settings" from the Claude menu
Click on "Developer" in the lefthand bar, then click "Edit Config"
Update your claude_desktop_config.json
with the following configuration (replace paths with your actual paths):
{
"mcpServers": {
"secops-mcp": {
"command": "/path/to/your/uv",
"args": [
"--directory",
"/path/to/your/mcp-secops-v3",
"run",
"secops_mcp.py"
],
"env": {
"CHRONICLE_PROJECT_ID": "your-google-cloud-project-id",
"CHRONICLE_CUSTOMER_ID": "your-chronicle-customer-id",
"CHRONICLE_REGION": "us"
}
}
}
}
Make sure to update:
uv
(use which uv
to find it)Save the file and restart Claude Desktop
You should now see the hammer icon in the Claude Desktop interface, indicating the MCP server is active
search_security_events
: Search for security events in Chronicle with customizable queriesget_security_alerts
: Get security alerts from Chroniclelookup_entity
: Look up information about an entity (IP, domain, hash)list_security_rules
: List security detection rules from Chronicleget_ioc_matches
: Get Indicators of Compromise (IoCs) matches from ChronicleTo install mcp-secops-v3 for Claude Desktop automatically via Smithery:
npx -y @smithery/cli install @emeryray2002/mcp-secops-v3 --client claude
pip install -e .
export CHRONICLE_PROJECT_ID="your-google-cloud-project-id"
export CHRONICLE_CUSTOMER_ID="your-chronicle-customer-id"
export CHRONICLE_REGION="us" # or your region
python main.py
The MCP server provides the following capabilities:
See example.py
for a complete example of using the MCP server.
The server uses Google's authentication. Make sure you have either:
gcloud auth application-default login
Apache 2.0
The project is structured as follows:
secops_mcp.py
: Main MCP server implementationexample.py
: Example usage of the MCP serverSeamless access to top MCP servers powering the future of AI integration.