CrowdStrike Falcon MCP Server
io.github.CrowdStrike/falcon-mcp · Status: active
If you find your own account name here: write informally to German.saas@web.de, stating the identifier concerned. No reason has to be given. How to object
- Registry name
io.github.CrowdStrike/falcon-mcp- Package coordinate
pypi:falcon-mcp- Version
0.17.0- Listed in the registry
- 2026-08-22
- Changed in the registry
- 2026-08-22
- First seen by tracevero
- 2026-08-06
- Vendor's website
- https://github.com/CrowdStrike/falcon-mcp
Connects AI agents with CrowdStrike Falcon for security analysis and automation.
Vendor's own description, untranslated and unverified
Evidence for this page: The values on this page come from several collections. Each row therefore states its own origin. What the confidence levels mean
Measured values
| Credentials required | yes Raw declaration – Required secret variables (raw): FALCON_CLIENT_ID, FALCON_CLIENT_SECRET Raw declaration – Required secret headers (raw): confirmed absent Source: MCP-Register · collected on 2026-08-06 · derived |
|---|---|
| Execution location | local Raw declaration – Transports (raw): stdio Source: MCP-Register · collected on 2026-08-06 · derived |
| Path argument present | no Raw declaration – Path arguments (raw): confirmed absent Raw declaration – Path environment variables (raw): confirmed absent Source: MCP-Register · collected on 2026-08-06 · derived |
| Repository URL listed | yes Raw declaration – Repository (raw): https://github.com/CrowdStrike/falcon-mcp Source: MCP-Register · collected on 2026-08-06 · derived |
| Field of use | sicherheit Raw declaration – Description (raw): Connects AI agents with CrowdStrike Falcon for security analysis and automation. Source: MCP-Register · collected on 2026-08-26 · derived |
| Version | 0.17.0 Source: MCP-Register · collected on 2026-08-23 · self-declared |
Position within the holdings
How many of the 25,100 published entries carry the same measured value. A reference figure, not an assessment.
- Credentials requiredyes4,365 of 25,100 carry this value (17 %)View these entries
- Execution locationlocal12,344 of 25,100 carry this value (49 %)View these entries
- Path argument presentno24,857 of 25,100 carry this value (99 %)View these entries
- Repository URL listedyes19,482 of 25,100 carry this value (78 %)View these entries
- Field of usesicherheit499 of 25,100 carry this value (2.0 %)View these entries
All 5 values together are carried by 66 of 25,100 entries.
This entry appears in these selections
- MCP servers requiring credentials4,365
- Locally executed MCP servers12,344
- MCP servers with a repository URL19,482
- Local MCP servers with a repository URL11,717
- MCP servers over stdio only10,041
- MCP servers as a PyPI package only3,120
- Local MCP servers requiring credentials2,979
- MCP servers with credentials and a repository URL3,612
- Local MCP servers as a PyPI package only3,101
- MCP servers available as a package only10,841
- MCP servers with uvx as their only runtime hint1,015
The source's raw values24
Evidence for this page: The values on this page come from several collections. Each row therefore states its own origin.
| Description (raw) | Connects AI agents with CrowdStrike Falcon for security analysis and automation. Source: MCP-Register · collected on 2026-08-26 · self-declared |
|---|---|
| Environment variables (raw) | FALCON_CLIENT_ID, FALCON_CLIENT_SECRET, FALCON_BASE_URL, FALCON_MEMBER_CID, FALCON_MCP_MODULES, FALCON_MCP_TRANSPORT, FALCON_MCP_DEBUG, FALCON_MCP_HOST, FALCON_MCP_PORT, FALCON_MCP_USER_AGENT_COMMENT, FALCON_MCP_STATELESS_HTTP, FALCON_MCP_API_KEY Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Required secret variables (raw) | FALCON_CLIENT_ID, FALCON_CLIENT_SECRET Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Transports (raw) | stdio Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Path arguments (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Repository (raw) | https://github.com/CrowdStrike/falcon-mcp Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Package registries (raw) | pypi Source: MCP-Register · collected on 2026-08-06 · self-declared |
| Required secret headers (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Path environment variables (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Remote URLs (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Remote hosts (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Registry status message (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| First listed in the registry (raw) | 2026-08-22 Source: MCP-Register · collected on 2026-08-23 · self-declared |
| Last changed in the registry (raw) | 2026-08-22 Source: MCP-Register · collected on 2026-08-23 · self-declared |
| Schema version of the raw record (raw) | https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Delivery form (raw) | paket Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Repository platform (raw) | github Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Repository subfolder (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Package identifiers (raw) | falcon-mcp Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Package versions (raw) | 0.17.0 Source: MCP-Register · collected on 2026-08-23 · self-declared |
| Runtime hints (raw) | uvx Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Environment variable formats (raw) | boolean, number, string Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Environment variable descriptions (raw) | FALCON_BASE_URL=CrowdStrike API region URL · FALCON_CLIENT_ID=CrowdStrike API client ID · FALCON_CLIENT_SECRET=CrowdStrike API client secret · FALCON_MCP_API_KEY=API key for HTTP transport authentication (x-api-key header) · FALCON_MCP_DEBUG=Enable debug logging · FALCON_MCP_HOST=Host to bind to for HTTP transports · FALCON_MCP_MODULES=Comma-separated list of modules to enable · FALCON_MCP_PORT=Port to listen on for HTTP transports · FALCON_MCP_STATELESS_HTTP=Enable stateless HTTP mode for scalable deployments · FALCON_MCP_TRANSPORT=Transport protocol to use · FALCON_MCP_USER_AGENT_COMMENT=Additional information to include in the User-Agent comment section · FALCON_MEMBER_CID=Child CID for Flight Control (MSSP) support Source: MCP-Register · collected on 2026-08-16 · self-declared |
| Icon formats (raw) | confirmed absent Source: MCP-Register · collected on 2026-08-16 · self-declared |
Changes
| 2026-08-26 | Field of use: – → sicherheit |
|---|---|
| 2026-08-26 | Description (raw): – → Connects AI agents with CrowdStrike Falcon for security analysis and automation. |
| 2026-08-23 | Version: 0.16.1 → 0.17.0 |
| 2026-08-23 | Last changed in the registry (raw): 2026-08-10 → 2026-08-22 |
| 2026-08-23 | First listed in the registry (raw): 2026-08-10 → 2026-08-22 |
| 2026-08-23 | Package versions (raw): 0.16.1 → 0.17.0 |
| 2026-08-16 | Last changed in the registry (raw): – → 2026-08-10 |
| 2026-08-16 | First listed in the registry (raw): – → 2026-08-10 |
| 2026-08-16 | Registry status message (raw): – → – |
| 2026-08-16 | Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json |
These are the 10 most recent changes to this entry. Full history
tracevero · https://tracevero.com/mcp/io-github-crowdstrike-falcon-mcp