drio
  • App Tracker
  • Contact
Sign inStart Free
drio© 2026 drio All rights reserved.

Get the Builder Brief

Weekly notes from Yash on MCP, ChatGPT apps, and getting business workflows into production.

Product
HomeTemplatesHow it worksPricing
Solutions
Use casesOperations teamsEcommerce teamsFinance teamsRecruiting teamsReal estate teams
Resources
DocsMCP RegistryGlossaryBlogChangelog
Company
Contact usWhy driodrio agency↗Privacy PolicyTerms of Service
All systems normal
Follow us on:
MCP Registry/CrowdStrike Falcon MCP Server
C

CrowdStrike Falcon MCP Server

Connects AI agents with CrowdStrike Falcon for security analysis and automation.

Use with clientMarkdown

Install and compare this MCP server

Use this profile to copy client config, check auth requirements, review tools and resources, and compare related MCP servers before adding it to an AI client.

Install
uvx falcon-mcp
Clients
Claude, Cursor, VS Code, Codex
Transport
STDIO
Auth
Auth required by registry metadata
Capabilities
0 tools, 0 resources, 0 prompts
Related
onsense, Bowmark, nable

Want MCP integration examples?

Get practical integration notes and launch examples for MCP servers like CrowdStrike Falcon MCP Server.

InstallAuthTools & ResourcesOverview

Install

Connection

Transport
STDIO
Command
uvx falcon-mcp
Environment
{ "FALCON_CLIENT_ID": "YOUR_SECRET_VALUE", "FALCON_CLIENT_SECRET": "YOUR_SECRET_VALUE", "FALCON_BASE_URL": "https://api.crowdstrike.com", "FALCON_MEMBER_CID": "YOUR_VALUE_HERE", "FALCON_MCP_MODULES": "YOUR_VALUE_HERE", "FALCON_MCP_TRANSPORT": "stdio", "FALCON_MCP_DEBUG": "false", "FALCON_MCP_HOST": "127.0.0.1", "FALCON_MCP_PORT": "8000", "FALCON_MCP_USER_AGENT_COMMENT": "YOUR_VALUE_HERE", "FALCON_MCP_STATELESS_HTTP": "false", "FALCON_MCP_API_KEY": "YOUR_SECRET_VALUE" }

Claude Desktop

Add this server entry to the mcpServers object in your Claude Desktop config, then restart the app.

{
  "mcpServers": {
    "io-github-crowdstrike-falcon-mcp": {
      "command": "uvx",
      "args": [
        "falcon-mcp"
      ],
      "env": {
        "FALCON_CLIENT_ID": "YOUR_SECRET_VALUE",
        "FALCON_CLIENT_SECRET": "YOUR_SECRET_VALUE",
        "FALCON_BASE_URL": "https://api.crowdstrike.com",
        "FALCON_MEMBER_CID": "YOUR_VALUE_HERE",
        "FALCON_MCP_MODULES": "YOUR_VALUE_HERE",
        "FALCON_MCP_TRANSPORT": "stdio",
        "FALCON_MCP_DEBUG": "false",
        "FALCON_MCP_HOST": "127.0.0.1",
        "FALCON_MCP_PORT": "8000",
        "FALCON_MCP_USER_AGENT_COMMENT": "YOUR_VALUE_HERE",
        "FALCON_MCP_STATELESS_HTTP": "false",
        "FALCON_MCP_API_KEY": "YOUR_SECRET_VALUE"
      }
    }
  }
}

Config location

macOS
~/Library/Application Support/Claude/claude_desktop_config.json
Windows
%APPDATA%\Claude\claude_desktop_config.json

Auth

Package transport

No remote HTTP endpoint is advertised. Use the package or stdio setup shown in Install.

Tools & Resources

Tools
0
Resources
0
Prompts
0
No public tools, resources, or prompts captured yet. Use Auth when this server requires credentials.

Tools

No tools captured yet.

Resources

No resources captured yet.

Prompts

No prompts captured yet.

Questions

What is CrowdStrike Falcon MCP Server?+

CrowdStrike Falcon MCP Server is an MCP server for Connects AI agents with CrowdStrike Falcon for security analysis and automation.. It supports STDIO transport.

How do I install CrowdStrike Falcon MCP Server?+

Use the generated config in Install. This server runs with uvx falcon-mcp; add any required environment variables before starting your client.

How do I add CrowdStrike Falcon MCP Server to Claude Desktop?+

Choose the Claude Desktop tab in Install and copy the config for uvx falcon-mcp. Add required environment variables before starting Claude Desktop.

How do I add CrowdStrike Falcon MCP Server to Claude Code?+

Choose the Claude Code tab in Install and copy the config for uvx falcon-mcp. Add required environment variables before starting Claude Code.

How do I use CrowdStrike Falcon MCP Server with Codex?+

Choose the Codex tab in Install and copy the config for uvx falcon-mcp. Add required environment variables before starting Codex.

How do I add CrowdStrike Falcon MCP Server to Cursor or VS Code?+

Choose the Cursor or VS Code tab in Install and copy the config for uvx falcon-mcp. Add required environment variables before starting Cursor or VS Code.

What endpoint and transport does CrowdStrike Falcon MCP Server use?+

CrowdStrike Falcon MCP Server uses STDIO transport. Use the package or command config in Install.

What tools and resources does CrowdStrike Falcon MCP Server expose?+

CrowdStrike Falcon MCP Server inventory is listed when the MCP endpoint exposes tools, resources, or prompts. Some servers require auth first.

Does CrowdStrike Falcon MCP Server require authentication?+

CrowdStrike Falcon MCP Server is marked with Auth required by registry metadata auth. You may need provider login, an API key, a bearer token, or a session header.

Related MCPs

onsenseAndroid phone camera, sensors & files for any MCP client — local, no cloud, no ADB.BowmarkDo things on live websites: prices, availability, quotes, bookings, anything behind a form or login.nableSee where your cloud and AI bills go, and spend less. Local-first, in your terminal or editor.HPSILab Quant FinanceQuant finance tools: stock analysis, options IV, Monte Carlo, AI prediction, risk scan, backtests.DataCharterLocal-first, contract-governed data explorer with read-only, PII-masked query tools for AI agents.InferraAuditable rule-based decisions with RAG explanations: a Rete engine decides, an LLM explains why.

Profile notes

  • Package: Pypi falcon-mcp v0.15.0
  • Environment variable: FALCON_CLIENT_ID (required; secret)
  • Environment variable: FALCON_CLIENT_SECRET (required; secret)
  • Environment variable: FALCON_BASE_URL (default https://api.crowdstrike.com)
  • Environment variable: FALCON_MEMBER_CID
  • Environment variable: FALCON_MCP_MODULES
  • Environment variable: FALCON_MCP_TRANSPORT (default stdio; choices stdio, sse, streamable-http)
  • Environment variable: FALCON_MCP_DEBUG (default false)
  • Environment variable: FALCON_MCP_HOST (default 127.0.0.1)
  • Environment variable: FALCON_MCP_PORT (default 8000)
  • Environment variable: FALCON_MCP_USER_AGENT_COMMENT
  • Environment variable: FALCON_MCP_STATELESS_HTTP (default false)
  • Environment variable: FALCON_MCP_API_KEY (secret)
  • The upstream registry signals required auth or secrets.

Packages

PackageRegistryVersionInputs
falcon-mcp

stdio

pypi0.15.0

Env: FALCON_CLIENT_ID required secret

Env: FALCON_CLIENT_SECRET required secret

Env: FALCON_BASE_URL

Env: FALCON_MEMBER_CID

Env: FALCON_MCP_MODULES

Env: FALCON_MCP_TRANSPORT

Env: FALCON_MCP_DEBUG

Env: FALCON_MCP_HOST

Env: FALCON_MCP_PORT

Env: FALCON_MCP_USER_AGENT_COMMENT

Env: FALCON_MCP_STATELESS_HTTP

Env: FALCON_MCP_API_KEY secret

Details

Version
0.15.0
Auth
Auth required by registry metadata
Repository
https://github.com/CrowdStrike/falcon-mcp
Updated
Jul 22, 2026