Panther Labs
Integrates with Panther Labs' cybersecurity platform to enable security alert triage, data lake querying, detection rule managemen
This MCP server provides direct integration with Panther Labs' cybersecurity platform, enabling AI assistants to interact with security alerts, execute data lake queries, manage detection rules, and analyze log sources through both GraphQL and REST APIs. Built by Panther Labs with comprehensive tooling across alerts (triage, commenting, status updates), data analysis (SQL querying, log sampling, schema management), rules (creation, modification, testing), and metrics (alert patterns, data ingestion), it supports role-based permissions and includes specialized prompts for security workflows like alert triage and detection error analysis. The implementation is designed for security analysts and engineers who want to leverage AI for incident response, threat hunting, rule development, and security operations automation within their existing Panther deployment.
Source
Repository: https://github.com/panther-labs/mcp-panther
Maintain Panther Labs?
Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.
[](https://getagentictools.com/mcp/panther-labs-mcp-panther?ref=badge)