AI AGENT ADDONS

Security Detection Rule Management

elastic/agent-skills
Security
1,799installs

Security teams can manage detection rules for Elastic Security. This skill helps create new rules to find emerging threats. It also tunes existing rules to reduce false positives. You can add exceptions for noisy rules and improve coverage. Everything works through the Kibana API.

This is useful for anyone handling SIEM or Endpoint alerts. You can investigate alerts and adjust rules without manual work. The skill includes tools to fetch rule definitions and run queries.

Make sure you have Node.js 22+ and network access to Kibana and Elasticsearch. Set the required environment variables before using the tools.

Add Security Detection Rule Management skill to your workflow

Global

mkdir -p ~/.claude/skills/security-detection-rule-management

Project

mkdir -p .claude/skills/security-detection-rule-management

Source Repository

Stars
516
Forks
39
Watchers
516
License
Apache-2.0
Last Push
1 month ago
Created
5 months ago