EDR / XDR integration
Automate Trend Micro Vision One EDR / XDR with plain language
Read Trend Vision One endpoints and workbench alerts, and isolate an endpoint from the network.
What you can do
Trend Micro Vision One — Endpoint Security API v3
- List protected endpoints
- Read workbench alerts
- Isolate an endpoint
Connection: bearer authentication against https://api.xdr.trendmicro.com. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.
Example
Ask in plain English
Prompt: “Isolate the laptop with the latest critical detection in Trend Micro Vision One”
Result: VernacSecure SuperBot™ reads recent detections, confirms the device and isolates it, with a full audit entry.
Read actions
- Fetch endpoints — Lists managed endpoints.
- Fetch workbench alerts — Lists workbench alerts.
Write actions
- Isolate endpoint — Isolates the named endpoint.