SentinelOne MCP Server
Related Servers
Alternatives to SentinelOne MCP Server
No user-submitted related servers found.
Related Servers
- AlicenseAqualityCmaintenanceRead-only MCP server for the Action1 RMM REST API, enabling access to endpoints, missing updates, vulnerabilities, installed software, policies, automations, and reports.21Apache 2.0
- FlicenseBqualityBmaintenanceRead-only MCP server wrapping the Redash REST API, enabling query listing, execution, data source inspection, and dashboard retrieval with optional per-user API key support.7-
- FlicenseBqualityDmaintenanceMCP server for Signal Sciences (Fastly NGWAF) API, providing progressive disclosure and 40+ read-only tools for managing corporations and sites.481-
- FlicenseNot gradedqualityBmaintenanceMCP server that exposes Acronis Cyber Protect Cloud APIs as 14 read-only tools for managing alerts, tasks, agents, resources, policies, and tenants.-
- AlicenseBqualityBmaintenanceA read-only MCP server for Microsoft Intune and Entra ID that enables list, get, search, and reporting operations for tenant visibility, audits, troubleshooting, and health reporting without write actions. It includes authentication helpers, report exports, and metadata discovery tools.361MIT
- AlicenseBqualityBmaintenanceRead-only MCP server for Snipe-IT v7 REST API, providing search and retrieval of assets, users, models, categories, and locations without modification.16MIT
TDQS
Scored across 6 tools
Each tool has a distinct purpose: site discovery, estate health, agent detail, threat detail, threat aggregation, and activity logging. There is no overlap in functionality; even the overview/summary tools are clearly differentiated by granularity and use case.
All tools share the 's1_' prefix and snake_case, but the second part mixes verb+noun (s1_list_sites), noun+noun (s1_estate_overview, s1_threat_summary), and bare plural nouns (s1_agents, s1_threats, s1_activities). This is inconsistent but still readable and predictable enough to navigate.
With 6 tools, the server is well-scoped for its apparent purpose of read-only SentinelOne monitoring and reporting. Each tool covers a necessary facet of the domain without redundancy or bloat.
The read-only surface is fairly complete, covering sites, estate health, agents, threats, threat summaries, and activity logs. Minor gaps exist, such as lack of per-site detail beyond the list view and no direct single-threat lookup, but these can be worked around with existing filters and drill-downs.