MCP & AI Agent Integration

Defastra
automation.

13 automated actions available through Cerebral OS. Connect Defastra to any workflow, Cerebral, or Map — with full governance, audit trail, and dry-run safety on every execution.

No credit card required · 1,000 free runs · 13 actions available

Execution trace
live
13
actions
100%
governed
<200ms
latency
13
Automated actions
6
Read operations
7
Write operations
2,800+
Compatible Maps
Actions

What you can do
with Defastra.

Every action below is available as an MCP tool and a verb in Cerebral OS — callable from any AI agent, Claude, Cursor, Windsurf, or your own runtime via the BYOA API. All executions are governed, audited, and dry-run safe.

Create Indicator
defastra:create_indicator
Create a new threat indicator in the Defastra platform.
Write Medium risk
Create Threat
defastra:create_threat
Create a new threat entry in the Defastra platform.
Write Medium risk
Delete Threat
defastra:delete_threat
Delete a threat entry from the Defastra platform. This action cannot be undone.
Write High risk
Get Alert
defastra:get_alert
Fetch a single security alert by ID with full details.
Read Low risk
Get Scan Result
defastra:get_scan_result
Retrieve the results of a previously initiated scan.
Read Low risk
Get Threat
defastra:get_threat
Fetch a single threat by ID with full details including indicators and risk score.
Read Low risk
List Alerts
defastra:list_alerts
List security alerts with optional filtering.
Read Low risk
List Indicators
defastra:list_indicators
List threat indicators with optional filtering.
Read Low risk
List Threats
defastra:list_threats
List threats with optional filtering by severity, type, status, and date range.
Read Low risk
Scan Domain
defastra:scan_domain
Scan a domain for threat intelligence, reputation, and security data.
Write Medium risk
Scan Ip
defastra:scan_ip
Scan an IP address for threat intelligence and reputation data.
Write Medium risk
Update Alert Status
defastra:update_alert_status
Update the status of a security alert and optionally assign it to a user.
Write Medium risk
Update Threat
defastra:update_threat
Update an existing threat entry in the Defastra platform.
Write Medium risk
How it works

Every Defastra action
governed end-to-end.

Cerebral OS isn't a connector. It's the execution layer that sits in front of Defastra — adding governance, dry-run safety, and a full audit trail to every operation.

Governance first
Every verb carries a risk classification. High-risk writes require explicit approval gates before they execute in production.
Dry-run safe
Simulate any Defastra action before it touches production. See exactly what would happen before a single real call is made.
Immutable audit trail
Every Defastra action is logged — what ran, what changed, who approved it, when it happened. Full history on every verb, forever.
Defastra integration

Start free.
No credit card required.

Start free with 1,000 runs — no credit card required. Connect Defastra in minutes, dry-run every action before it touches production, full audit trail on everything.

Start free — 1,000 runs Browse all integrations →