An MCP server that connects Claude to Hayabusa for EVTX threat detection, severity filtering, rule discovery, and structured security analysis.
9 files for Claude Code: investigate-evtx, triage, SessionStart, PreToolUse and 5 more — 302 tokens loaded in every session.
CLAUDE.md A 302 tok .claude/settings.json A — .claude/settings.json A — .claude/settings.json A — .claude/settings.json A — .claude/settings.json A — .claude/skills/detection-engineering/SKILL.md A 81 tok .claude/commands/investigate-evtx.md A 36 tok .claude/commands/triage.md A 52 tok These files are Pirate-Kitty/hayabusa-mcp-security-scanner's own configuration — they tell Claude Code how to work on this repository, so they are not mods to install elsewhere. Copy one as a starting point and replace the parts that are about this project.