tracecat
Open-source security automation platform for teams and AI agents
Tracecat MCP server enables AI agents to build and execute security automations through natural language prompts. This open-source platform combines agents, workflows, case management, and over 100 integrations for security operations teams. The MCP server allows tools like Claude Code, Codex, and Copilot to generate end-to-end security automations, while also functioning as an MCP client to connect custom agents to other MCP servers. Built with Python, FastAPI, and Temporal for durable execution, it runs sandboxed workloads using nsjail.
Key Features
Use Cases
- 01Building automated security incident response workflows through AI prompts
- 02Creating custom security agents that orchestrate multiple tools and integrations
- 03Automating threat investigation and enrichment across security platforms
- 04Managing security cases with automated triage and escalation workflows
- 05Connecting AI assistants to security tools for interactive threat hunting
- 06Executing untrusted automation scripts in sandboxed environments
Related MCP Servers
View moremarkitdown
Python tool for converting files and office documents to Markdown.
firecrawl
The context API to search, scrape, and interact with the web at scale. 🔥
prompts.chat
f.k.a. Awesome ChatGPT Prompts. Share, discover, and collect prompts from the community. Free and open source — self-host for your organization with complete privacy.
langflow
Langflow is a powerful tool for building and deploying AI-powered agents and workflows.
tracecat — FAQ
What is Tracecat MCP server?+
Tracecat MCP server is an open-source security automation platform that enables AI agents to build and execute security workflows from natural language prompts. It provides both an MCP server for prompt-to-automation capabilities and an MCP client to connect agents to other MCP servers.
How do I install Tracecat MCP server?+
Tracecat can be self-hosted using Docker, AWS Fargate, or Kubernetes Helm, or accessed through their managed Cloud offering. The platform requires PostgreSQL for the database and an S3-compatible object store.
Which AI clients work with Tracecat MCP?+
Tracecat MCP works with Claude Code, Codex, Copilot, and other AI coding assistants that support MCP protocols. It can also function as an MCP client to connect custom agents to any MCP server.
Do I need API keys to use Tracecat?+
You'll need API credentials for the specific security tools and integrations you want to connect, as Tracecat supports over 100 enterprise connectors via HTTP, SMTP, gRPC, and OAuth.
Is Tracecat free to use?+
The core Tracecat platform is open source under AGPL-3.0 license. An Enterprise Edition with additional features like pre-built MCP servers, fine-grained access control, and human-in-the-loop approvals is available as paid Cloud or self-hosted deployment.
What are the system requirements for running Tracecat?+
Tracecat requires Python, PostgreSQL database, S3-compatible object storage, and Temporal for workflow orchestration. For sandboxed execution, nsjail is used to isolate untrusted code.
How do I install tracecat?+
Open the source repository on GitHub and follow its README. tracecat is a mcp server — MCP Agents Market links you directly to the official repo.
Is tracecat free?+
tracecat is an open-source project hosted on GitHub. Check the repository for its license and any usage requirements.