Overview
Cloudots is the cloud telemetry knowledge base. Cloudots MCP server let an AI agent get the knowledge of Cloudots, empowering SecOps teams to utilize AI + Cloudots to react to security incidents faster.
Highlights
- Integrate your AI agents with the power of Cloudots knowledge base! Make you AI speak the security telemetry language.
Details
Unlock automation with AI agent solutions

Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/month |
---|---|---|
API Token | One API Token to authenticate with the MCP server. | $0.00 |
Vendor refund policy
Your satisfaction is important to us. If you encounter any issues with our product, please reach out so we can address your concerns. Refunds are not guaranteed but may be issued at our sole discretion, evaluated on a case-by-case basis.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
- Amazon Bedrock AgentCore - Preview
API-Based Agents & Tools
API-Based Agents and Tools integrate through standard web protocols. Your applications can make API calls to access agent capabilities and receive responses.
Additional details
Usage instructions
Cloudots MCP Server - Usage Instructions
Overview
The Cloudots MCP server provides comprehensive documentation, log-to-attack mappings, and AI-powered analysis tools for cloud security events. This server enables AI agents and other MCP-enabled systems to access detailed documentation about cloud security events, helping with security analysis, compliance, and incident response.
Features
- Public Cloud Management Events: Access documentation for public cloud management events (AWS CloudTrail for example)
- Log-to-Attack Mappings: Understand how cloud events relate to potential security threats
Prerequisites
- An MCP-enabled client or system
- API Token for authentication
- Network access to the Cloudots MCP server endpoint
Getting Started
1. Connect to the Server
Configure your MCP client to connect to the Cloudots server using your provided API token and server URL. The exact configuration steps will depend on your specific MCP client.
2. Verify Connection
Once connected, you can verify the server is working by requesting a list of available cloud events:
Can you show me all available AWS CloudTrail management events? What is the documentation for the CreateUser CloudTrail event? Show me all CloudTrail events related to IAM user management and their associated MITRE ATT&CK techniquesAvailable Tools
Once connected, you'll have access to these tools:
Public Cloud Management Events
Get Specific Event Documentation
Request documentation about a specific cloud management event:
What is the documentation for the CreateBucket CloudTrail event?This will return detailed information about the event, including:
- Event description
- Required parameters
- Security implications
- Related attack techniques
- Mitigation strategies
List All Available Events
Get a complete list of all available cloud events:
Show me all available AWS CloudTrail management eventsThis returns an organized list of all events, grouped by service (EC2, IAM, S3, etc.).
Usage Examples
Security Analysis
Example 1: Analyzing a suspicious cloud event
I found a CreateUser event in my CloudTrail logs. Can you tell me about this event and what security implications it might have?Example 2: Getting event details for compliance
I need to document the RunInstances CloudTrail event for my compliance report. Can you provide the complete documentation?Example 3: Understanding event relationships
What are the related events I should monitor alongside CreateBucket?Incident Response
Example 4: Quick event lookup during incidents
I'm investigating a security incident and need to understand what the DeleteUser CloudTrail event means.Best Practices
- Use Specific Event Names: When asking about events, use the exact event name for best results
- Combine with Context: Provide context about your environment when asking questions
- Follow Up Questions: Ask follow-up questions to get deeper insights
Troubleshooting
Common Issues
-
"Server not found"
- Verify the server URL is correct
- Check your network connection
- Contact us
-
"Authentication failed"
- Verify your API token is correct
- Contact us for a new token
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.