query
01Command Claude Code
Run a saved Splunk SIEM query, analyze results for suspicious patterns, map to ATT&CK, and write an Obsidian-compatible investigation note.
Command Claude Code
Run a saved Splunk SIEM query, analyze results for suspicious patterns, map to ATT&CK, and write an Obsidian-compatible investigation note.
Settings file Claude Code
MCP configuration declaring 1 server: hayabusa.
Skill Claude CodeCodex
Use when writing or creating Sigma rules, reviewing detection rules, discussing detection coverage, or working with YAML detection files in this repo. Enforces this project's Sigma rule standards (ATT&CK mapping, severity justification, false positives, test cases, naming).
Instructions file
Claude Code instructions for sarahsl-prog/mcp-hayabusa, covering claude.md, project, goals, structure and stack.
MCP server Claude CodeCodexCursor +2
MCP server "mcp-hayabusa" as configured in sarahsl-prog/mcp-hayabusa. Runs locally from the mcp-hayabusa Python package.