Official MCP RegistryHosted serversentinel.microsoft.com
Microsoft Sentinel
Query and analyze security data, incidents, and threat intelligence from Microsoft Sentinel's data lake using natural language.
Connect to Claude Code
Copyclaude mcp add --transport sse microsoft-sentinel https://sentinel.microsoft.com/mcp/data-explorationVendor-hosted remote server: nothing to install locally. If it uses OAuth, Claude opens the vendor login on first use.
Endpoints
- https://sentinel.microsoft.com/mcp/data-explorationsse
Published in the official MCP registry as “Microsoft Sentinel”. Verified through the vendor namespace.