EDR / XDR integration

Automate Microsoft Defender for Endpoint EDR / XDR with plain language

Read Defender for Endpoint machines, alerts and vulnerabilities, and isolate a device that VernacSecure SuperBot™ finds non-compliant.

What you can do

Microsoft Defender for Endpoint — Security Center API

  • List onboarded machines with risk and health state
  • Read alerts and recommendations
  • Isolate a machine from the network

Connection: bearer authentication against https://api.securitycenter.microsoft.com. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.

Example

Ask in plain English

Prompt: “Isolate the laptop with the latest critical detection in Microsoft Defender for Endpoint”

Result: VernacSecure SuperBot™ reads recent detections, confirms the device and isolates it, with a full audit entry.

Get started free

Read actions
  • Fetch machines — Lists onboarded machines.
  • Fetch alerts — Lists Defender alerts.
  • Fetch vulnerabilities — Lists discovered vulnerabilities.
Write actions
  • Isolate machine — Isolates the named machine ID.