MCP server Claude CodeCodexCursor +2
One of 4 in claude_desktop_config.json
MCP server "dfir-threatintel" as configured in samaritan0/dfir-agentic-suite. Runs dfir_threatintel_mcp with python3. Needs 5 environment variables to run.
An autonomous Digital Forensics & Incident Response toolkit built on Claude's skill and MCP ecosystem
MCP server Claude CodeCodexCursor +2
One of 4 in claude_desktop_config.json
MCP server "dfir-threatintel" as configured in samaritan0/dfir-agentic-suite. Runs dfir_threatintel_mcp with python3. Needs 5 environment variables to run.
MCP server Claude CodeCodexCursor +2
One of 4 in claude_desktop_config.json
MCP server "dfir-siem" as configured in samaritan0/dfir-agentic-suite. Runs dfir_siem_mcp with python3. Needs 8 environment variables to run.
MCP server Claude CodeCodexCursor +2
One of 4 in claude_desktop_config.json
MCP server "dfir-case-mgmt" as configured in samaritan0/dfir-agentic-suite. Runs dfir_case_mgmt_mcp with python3. Needs 5 environment variables to run.
MCP server Claude CodeCodexCursor +2
One of 4 in claude_desktop_config.json
MCP server "dfir-edr-response" as configured in samaritan0/dfir-agentic-suite. Runs dfir_edr_response_mcp with python3. Needs 7 environment variables to run.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: