TheHive
TheHive MCP server provides AI assistants with direct access to TheHive incident response platform for security case management operations. Developed by Gianluca Brigandi in Rust, it exposes tools for retrieving alerts and cases, promoting alerts to cases, and creating new cases through TheHive's API using bearer token authentication. The implementation leverages the thehive-client-rs library and includes comprehensive error handling, SSL verification controls, and structured data formatting, making it valuable for security teams wanting to automate incident response workflows or integrate TheHive operations into AI-assisted security analysis and case management processes.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-19.
Scan details: Circle-IR · 2026-09-19 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- security
- Source
- PulseMCP
- Repository
- github.com/gbrigandi/mcp-server-thehive
- Author type
- human
- Last scanned
- 2026-09-19
- Updated
- 2026-09-19
Use via MCP
Resolve TheHive from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.