Skip to main content
Glama
vectra-ai-research

Vectra AI MCP Server

list_detections_with_basic_info

Retrieve filtered lists of security detections from Vectra AI to quickly identify and prioritize potential threats for investigation.

Instructions

List detections with basic information and filtering options. Use this to get a quick overview of detections without detailed information. Returns: str: JSON string with list of detections ids.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
stateNoFilter by detection state (active, inactive, fixed, filteredbyai, filteredbyrule). Default is 'active'.active
orderingNoOrder by last_timestamp, created_datetime, or id. Defaults to 'last_timestamp'last_timestamp
detection_categoryNoFilter by detection category. Detections are grouped into one of the following categories: Command & Control, Botnet, Exfiltration, Lateral Movement, Reconnaissance, Info. Can also perform partial word match
detection_nameNoFilter by detection name. Can also perform partial word match
src_ipNoFilter by source IP address of the host that generated the detection
start_dateNoFilter by start date (YYYY-MM-DDTHH:MM:SS)
end_dateNoFilter by end date (YYYY-MM-DDTHH:MM:SS)
is_targeting_key_assetNoFilter for detections targeting a key asset. Defaults to 'False'. Set to 'True' to filter for detections that are targeting key assets. To get all detections regardless of key asset targeting, search for both True and False values.
limitNoMaximum number of detections to return in the batch.

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/vectra-ai-research/vectra-ai-mcp-server'

If you have feedback or need assistance with the MCP directory API, please join our Discord server