- Agents
- Cases
- Workflows
Open source security automation platform for teams and AI agents
Tracecat helps AI-native security teams build agents and automate work.
Wiz alert
wiz.finding.created
SOC analyst agent
Wiz MCP · Falcon MCP
Isolate host
falcon.isolate_host
Triage this Wiz finding: privilege escalation on a prod IAM role.
• Pull associated assets and CloudTrail context via Wiz MCP
• Correlate with EDR telemetry from Falcon MCP
I can route this through the SOC analyst agent — it will tune the finding into an actionable case, correlate EDR telemetry, and propose containment.
Yes — open a case and prepare containment.
Found Isolate host in Falcon. It will quarantine the endpoint and revoke active session tokens while you review.
Ready to run Isolate host on i-0a7f…. Approve to proceed.
Trusted by security builders replacing legacy SOAR

Scale your security workforce with agents you own.
Turn analysts into builders and builders into architects, so a team of 3 can do the work of 30.
Replace static workflows with custom agents →Triage user-reported emails and contain credential harvest before more users click.
1. Parse headers and detonate links and attachments.
2. Pull Falcon telemetry for any user that clicked.
3. Quarantine endpoints and force a session revoke when credentials were entered.
Confirmed credential harvest. Two more users in Finance clicked the link in the last 90 minutes. Recommending session revoke and a tenant-wide block on the sender domain.
- Revoke active sessions for the 3 impacted users in Okta
- Block sender domain at the email gateway and Falcon DNS
Everything you need to make security agents work.
Automate work across your security stack with agents you control and customize.
Learn about Tracecat agents →Automate security work with prompts
Draft workflows, cases, tables, agent skills, and tool integrations from Claude, Cursor, or your AI workspace.
Skills built by your team
Reusable agent capabilities your engineers ship to GitHub. Analysts compose them into runbooks.
Hosted MCP servers
Connect agents to over 100 pre-built MCP servers without writing integration code.
Self-host anywhere
Deploy in your own VPC, on-prem, or on Tracecat's cloud. Your prompts and detections stay yours.
Human approvals on sensitive actions
Pause workflows for explicit approval before sensitive actions. Every approval is logged.
Audit every tool call
Open source audit logs of every prompt, tool call, and decision your agents make.
Turn prompts into deterministic workflows.
500+ integrations across SIEM, EDR, MDM, IdP, and more.
Connect your coding assistant to Tracecat. Turn prompts into workflows.
Run loops, if-conditions, parallel subflows, and scripts (Python, Bash, Ansible).
Run agents in workflows with explicit tool approvals.
Trigger
New OAuth consent
Scatter
Split by user
Close alert
Allowlisted app
OAuth analyst agent
AI Agent
Run subflow
Account quarantine
Fully customizable case management with agents.
Reduce time-to-resolve with agents that collect evidence, summarize findings, and prepare the next action.
Explore Tracecat case management →Shai-Hulud npm worm on 3 endpoints
Falcon flagged post-install scripts from @ctrl/tinycolor@4.1.2 on three developer workstations. The package is a transitive dependency in 7 repos.
Summary
- What
- Compromised npm package ran a post-install script and read npm and GitHub tokens.
- Who
- 3 developer workstations, 7 repos in the org.
- When
- Advisory ingested 14:08 UTC. Falcon detection 14:42 UTC.
- Where
- WS-042, WS-118, WS-203.
- Why
- Transitive dependency pinned in package-lock.json.
- How
- Worm-style self-propagation through npm publish with stolen tokens.
Affected hosts
| Host | Detection | Action | Status |
|---|---|---|---|
| WS-042 | Falcon post-install | Isolated | Done |
| WS-118 | Falcon post-install | Isolated | Done |
| WS-203 | Falcon post-install | Isolate | Pending |
Timeline
Drive Tracecat with your favorite coding assistant.
Define playbooks in natural language. Give everyone the power to automate security work through Tracecat MCP.
Read the Tracecat MCP docs →Works with your favorite coding assistant.
Code when it matters. GitOps for everything.
Sync everything to Git
Push and pull prompts, workflows, skills, and integrations between Tracecat and your own Git repo. Your repo stays the source of truth.
Custom Python and dependencies
Write Python actions and pin dependencies, then sync the package directly into Tracecat for agents and workflows.
Prompt versioning
Diff, review, and roll back every change to agent prompts and skills, with full audit history.
Build without limits.
See pricing →Unlimited workflows
No workflow quotas. Build modular, reusable workflows and give them to agents as tools.
Unlimited workspaces
Separate staging from prod. Give each team its own workspace.
Unlimited cases
Open a case for every alert, finding, and investigation.