# falcon-mcp

> Use this tool when you need to integrate AI assistants with CrowdStrike Falcon for streamlined SOC operations, enabling natural-language triage and response to detections and threats. It bridges AI capabilities with Falcon's security features, allowing for automated investigation and response across endpoints and threat intelligence. Ideal for use cases requiring efficient and intuitive security incident management.

Canonical page: https://skillsregistry.net/skills/rijul170-falcon-mcp  
JSON: https://api.skillsregistry.net/v1/skills/rijul170-falcon-mcp

## Description

MCP server bridging AI assistants with CrowdStrike Falcon for SOC operations, enabling natural-language triage, investigation, and response across detections, endpoints, threat intelligence, and more.

## Trust

- **Trust score (0–1):** 0.65
- **Verification tier:** scanned
- **Last scanned:** 2026-08-30

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** other
- **Updated:** 2026-08-30

## Source

- **Source listing:** [Glama](https://glama.ai/mcp/servers/un9kityffu)
- **Repository:** <https://github.com/rijul170/falcon-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "rijul170-falcon-mcp"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/rijul170-falcon-mcp` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/rijul170-falcon-mcp/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
