Claude security directory
Automox
High risk
The official Automox MCP server, packaged as a Claude Desktop Extension. Connects Claude to your Automox environment so you can manage devices, check compliance posture, run policies, prepare for Patch Tuesday, browse the worklet catalog, drive Splashtop remote-control sessions, and more — all by asking. Exposes 133 MCP tools across 18 domains (devices, policies, patches, groups, webhooks, worklets, vulnerability sync, audit, reports, Splashtop remote control, and more), 14 MCP resources (including interactive MCP App UIs for compliance triage, patch-approval review, policy blast-radius review, remediation-apply review, and RBAC access certification), and 6 workflow prompts (audit_policy, investigate_device, onboard_group, patch_tuesday, security_posture, triage_failure). Read-only mode and modular tool loading are supported via optional configuration.
Security assessment
Plutonium assessed this desktop extension for permissions, capabilities, and security-relevant behavior.
- Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
- Can run commands or queries on your behalf: This connector can execute scripts, shell commands, or arbitrary database queries. In a worst case, an attacker could install software, read files, or pull or change any data its login can reach.
- Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
- Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
- Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.
Available capabilities
This add-on exposes 133 tools or capabilities.
- advanced_device_search
- apply_policy_changes
- apply_remediation_actions
- assign_policies_to_saved_search
- audit_events_ocsf
- audit_trail_user_activity
- batch_update_devices
- check_group_exclusion_status
- check_window_active
- clone_policy
- create_data_extract
- create_global_api_key
- create_policy_window
- create_saved_search
- create_server_group
- create_user_api_key
- create_webhook
- create_zone
- decide_patch_approval
- delete_action_set
- delete_action_sets_bulk
- delete_device
- delete_global_api_key
- delete_policy
The interactive security report will load automatically.