Skip to main content
ClaudeWave

MCP (Model Context Protocol) server for RocketCyber Managed SOC platform

MCP ServersOfficial Registry0 stars3 forksTypeScriptApache-2.0Updated today
ClaudeWave Trust Score
87/100
Trusted
Passed
  • Open-source license (Apache-2.0)
  • Actively maintained (<30d)
  • Clear description
  • Topics declared
Last scanned: 6/11/2026
Install in Claude Code / Claude Desktop
Method: Manual
Claude Code CLI
git clone https://github.com/wyre-technology/rocketcyber-mcp
claude_desktop_config.json (Claude Desktop)
{
  "mcpServers": {
    "rocketcyber-mcp": {
      "command": "node",
      "args": ["/path/to/rocketcyber-mcp/dist/index.js"],
      "env": {
        "ROCKETCYBER_API_KEY": "<rocketcyber_api_key>"
      }
    }
  }
}
1. Run the command above in your terminal (Claude Code), or paste the JSON config into claude_desktop_config.json (Claude Desktop).
2. Replace any <placeholder> values with your API keys or paths.
3. Restart Claude. The MCP server and its tools appear automatically.
💡 Clone https://github.com/wyre-technology/rocketcyber-mcp and follow its README for install instructions.
Detected environment variables
ROCKETCYBER_API_KEY
Use cases

MCP Servers overview

# rocketcyber-mcp

MCP (Model Context Protocol) server for the [RocketCyber](https://www.rocketcyber.com/) Managed SOC platform. Provides read-only access to RocketCyber security data through 10 tools and 3 resources.

## Features

- 10 read-only tools covering all RocketCyber API resources
- 3 MCP resources for quick data access
- Dual transport: stdio (default) and HTTP Streamable
- Lazy SDK initialization on first tool call
- Winston logger with all output routed to stderr
- Connection test tool for validating credentials

## One-Click Deployment

> [!IMPORTANT]
> **Before you click:** this server depends on `@wyre-technology/node-rocketcyber`,
> which is hosted on the **GitHub Packages** npm registry. GitHub Packages has no
> anonymous access — even though the package is public, every `npm install` needs a
> token. The cloud builder runs `npm install` for you, so you must give it one, or
> the build fails with `npm error 401 Unauthorized ... npm.pkg.github.com`.
>
> 1. Create a GitHub **Personal Access Token** with the `read:packages` scope
>    ([classic token](https://github.com/settings/tokens/new?scopes=read:packages&description=rocketcyber-mcp%20deploy)).
>    Any GitHub account works — you do **not** need to be a member of the
>    `wyre-technology` org to read its public packages.
> 2. Add it as a build variable when prompted by the deploy flow:
>    - **Cloudflare Workers** → set a build variable named **`NODE_AUTH_TOKEN`** to your PAT
>      (Workers → Settings → Build → Variables and Secrets).
>    - **DigitalOcean App Platform** → set an encrypted env var named **`GITHUB_TOKEN`**
>      with scope **Build Time** to your PAT (the Dockerfile reads it for the install).

[![Deploy to DO](https://www.deploytodo.com/do-btn-blue.svg)](https://cloud.digitalocean.com/apps/new?repo=https://github.com/wyre-technology/rocketcyber-mcp/tree/main)

[![Deploy to Cloudflare Workers](https://deploy.workers.cloudflare.com/button)](https://deploy.workers.cloudflare.com/?url=https://github.com/wyre-technology/rocketcyber-mcp)

## Installation

This project depends on `@wyre-technology/node-rocketcyber`, published to the
**GitHub Packages** npm registry, which requires a token even for public packages.
Authenticate once, then install:

```bash
# Authenticate npm to GitHub Packages (token needs the read:packages scope)
export NODE_AUTH_TOKEN=$(gh auth token)   # or a PAT with read:packages

npm install
npm run build
```

The repo's `.npmrc` already points the `@wyre-technology` scope at GitHub Packages and
reads the token from `NODE_AUTH_TOKEN`, so no further config is needed.

## Configuration

| Environment Variable | Required | Default | Description |
|---|---|---|---|
| `ROCKETCYBER_API_KEY` | Yes | - | RocketCyber API key |
| `ROCKETCYBER_REGION` | No | `us` | API region: `us` or `eu` |
| `MCP_TRANSPORT` | No | `stdio` | Transport type: `stdio` or `http` |
| `MCP_HTTP_PORT` | No | `8080` | HTTP port (when using http transport) |
| `MCP_HTTP_HOST` | No | `0.0.0.0` | HTTP host (when using http transport) |
| `LOG_LEVEL` | No | `info` | Log level: `error`, `warn`, `info`, `debug` |
| `LOG_FORMAT` | No | `simple` | Log format: `json` or `simple` |

## Usage

### Claude Desktop (stdio)

Add to your Claude Desktop configuration (`claude_desktop_config.json`):

```json
{
  "mcpServers": {
    "rocketcyber": {
      "command": "node",
      "args": ["/path/to/rocketcyber-mcp/dist/entry.js"],
      "env": {
        "ROCKETCYBER_API_KEY": "your-api-key"
      }
    }
  }
}
```

### HTTP Transport

```bash
ROCKETCYBER_API_KEY=your-api-key MCP_TRANSPORT=http npm start
```

## Tools

| Tool | Description |
|---|---|
| `rocketcyber_test_connection` | Test the connection to RocketCyber API |
| `rocketcyber_get_account` | Get account information |
| `rocketcyber_list_agents` | List monitored agents/endpoints |
| `rocketcyber_list_incidents` | List security incidents |
| `rocketcyber_list_events` | List security events |
| `rocketcyber_get_event_summary` | Get event summary/statistics |
| `rocketcyber_list_firewalls` | List firewall devices |
| `rocketcyber_list_apps` | List managed apps |
| `rocketcyber_get_defender` | Get Windows Defender status |
| `rocketcyber_get_office` | Get Office 365 status |

## Resources

| URI | Description |
|---|---|
| `rocketcyber://account` | Account information |
| `rocketcyber://incidents` | Security incidents |
| `rocketcyber://agents` | Monitored agents/endpoints |

## Development

```bash
# Install dependencies
npm install

# Run in development mode
npm run dev

# Build
npm run build

# Start production server
npm start
```

## License

[Apache-2.0](LICENSE)
cybersecuritymcpmodel-context-protocolmspmsp-mcprocketcybertypescriptwyre-technology

What people ask about rocketcyber-mcp

What is wyre-technology/rocketcyber-mcp?

+

wyre-technology/rocketcyber-mcp is mcp servers for the Claude AI ecosystem. MCP (Model Context Protocol) server for RocketCyber Managed SOC platform It has 0 GitHub stars and was last updated today.

How do I install rocketcyber-mcp?

+

You can install rocketcyber-mcp by cloning the repository (https://github.com/wyre-technology/rocketcyber-mcp) or following the README instructions on GitHub. ClaudeWave also provides quick install blocks on this page.

Is wyre-technology/rocketcyber-mcp safe to use?

+

Our security agent has analyzed wyre-technology/rocketcyber-mcp and assigned a Trust Score of 87/100 (tier: Trusted). See the full breakdown of passed checks and flags on this page.

Who maintains wyre-technology/rocketcyber-mcp?

+

wyre-technology/rocketcyber-mcp is maintained by wyre-technology. The last recorded GitHub activity is from today, with 6 open issues.

Are there alternatives to rocketcyber-mcp?

+

Yes. On ClaudeWave you can browse similar mcp servers at /categories/mcp, sorted by popularity or recent activity.

Deploy rocketcyber-mcp to your cloud

Ship this repo to production in minutes. Each platform spins up its own environment with editable env vars.

Maintain this repo? Add a badge to your README

Drop the badge into your GitHub README to show it's tracked on ClaudeWave. Each badge links back to this page and reflects the live Trust Score.

Featured on ClaudeWave: wyre-technology/rocketcyber-mcp
[![Featured on ClaudeWave](https://claudewave.com/api/badge/wyre-technology-rocketcyber-mcp)](https://claudewave.com/repo/wyre-technology-rocketcyber-mcp)
<a href="https://claudewave.com/repo/wyre-technology-rocketcyber-mcp"><img src="https://claudewave.com/api/badge/wyre-technology-rocketcyber-mcp" alt="Featured on ClaudeWave: wyre-technology/rocketcyber-mcp" width="320" height="64" /></a>

More MCP Servers

rocketcyber-mcp alternatives