Integrates Wazuh security data with Large Language Models, providing real-time security context.
Wazuh is an open-source service designed to bridge the gap between Wazuh security data and Large Language Models (LLMs) like the Claude Desktop App. It authenticates with the Wazuh RESTful API, retrieves alerts from Elasticsearch indices, transforms these events into a standardized MCP-compliant JSON format, and then exposes an HTTP endpoint. This allows Claude Desktop, or other compatible LLMs, to fetch and utilize real-time security context from Wazuh for enhanced analysis and response capabilities.