EDR / XDR integration

Automate Trellix Endpoint Security (HX) EDR / XDR with plain language

Read Trellix HX hosts and alerts, and contain a host that VernacSecure SuperBot™ finds compromised.

What you can do

Trellix (FireEye/McAfee) Endpoint Security HX — REST API v3

  • List HX hosts with agent status
  • Read alerts and triage detail
  • Request host containment

Connection: basic authentication against https://hx.example.com:3000. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.

Example

Ask in plain English

Prompt: “Isolate the laptop with the latest critical detection in Trellix Endpoint Security (HX)”

Result: VernacSecure SuperBot™ reads recent detections, confirms the device and isolates it, with a full audit entry.

Get started free

Read actions
  • Fetch hosts — Lists HX agents.
  • Fetch alerts — Lists HX alerts.
Write actions
  • Contain host — Requests containment for the named agent ID.