AiSOC MCP Server
beenuar/AiSOC
[](https://agentrank-ai.com/tool/beenuar--AiSOC/?utm_source=badge&utm_medium=readme&utm_campaign=agentrank_badge) Open-source AI Security Operations Center: alert fusion, LLM-agent triage, MITRE ATT&CK investigation, and a replayable decision ledger for every agent step. Self-hostable, runs with no API keys, MIT licensed. Ships an MCP server for Claude, Cursor and Continue.
claude mcp add agentrank -- npx -y agentrank-mcp-server Overview
beenuar/AiSOC is a Python MCP server licensed under MIT. Open-source AI Security Operations Center: alert fusion, LLM-agent triage, MITRE ATT&CK investigation, and a replayable decision ledger for every agent step. Self-hostable, runs with no API keys, MIT licensed. Ships an MCP server for Claude, Cursor and Continue. Topics: ai-security, alert-triage, cybersecurity, detection-engineering, incident-response, mitre-attack, purple-team, security-operations, self-hosted, siem, soar, soc, threat-detection, threat-intelligence, agentic-ai, langgraph, blue-team, llm-agents, mcp, model-context-protocol.
Ranked #1450 out of 24844 indexed tools.
In the top 6% of all indexed tools.
Has 2,368 GitHub stars.
Has 20 contributors.
Actively maintained with commits in the last week.
Ecosystem
Score Breakdown
2,368 stars → well-known project
Last commit today → actively maintained
41/49 issues closed → responsive maintainer
20 contributors → active community
No dependents → no downstream usage
4 weekly installs → early adoption
Weights: Freshness 20% · Issue Health 20% · Dependents 22% · Stars 10% · Contributors 8% · How we score →
How to Improve
Matched Queries
From the README
<div align="center"> # AiSOC **An open-source, self-hostable AI Security Operations Center.** It ingests your security telemetry, detects and correlates threats, investigates them with AI agents whose reasoning is fully auditable, and proposes responses a human approves. [Docs](https://beenuar.github.io/AiSOC/) · [Architecture](docs/architecture/README.md) · [What actually works](docs/audit/REPOSITORY_REALITY.md) · [Discussions](https://github.com/beenuar/AiSOC/discussions) </div> --- ## What AiSOC does Telemetry arrives from your security tools. AiSOC normalizes it, runs 833 executable detection rules over it, groups what fires into incidents, investigates each one with an AI agent whose every prompt and tool call is recorded, and proposes an action. A human approves before anything executes. ## What it looks like running <a href="apps/web/public/demo/demo.mp4"></a> **[Watch the full three minutes](apps/web/public/demo/demo.mp4)** — install to AI verdict on one server, againRead full README on GitHub →
Get the weekly AgentRank digest
Top movers, new tools, ecosystem insights — straight to your inbox.