sync: auto-sync from GURU-5070 at 2026-07-01 15:06:42

Author: Mike Swanson
Machine: GURU-5070
Timestamp: 2026-07-01 15:06:42
This commit is contained in:
2026-07-01 15:07:34 -07:00
parent 875048f9ad
commit c3aeef60fb
24 changed files with 200 additions and 191 deletions

View File

@@ -1,15 +1,6 @@
---
name: datto-edr
description: >-
Control the ACG Datto EDR / Datto AV tenant (azcomp4587 — Datto EDR is rebranded
Infocyte HUNT; per-tenant LoopBack REST API). Read the whole MSP fleet from ONE
token: per-client organizations, sites, agents (online/AV/isolation/version),
detections (MITRE-tagged alerts), and a per-client security-posture sweep. Gated
actions: trigger scans, invoke response extensions (host isolation), and emit the
agent install one-liner for RMM-pushed deployment. Read-only by default; mutating
ops require --confirm. Triggers: datto edr, datto av, infocyte, EDR detections,
isolate endpoint, run a scan, deploy edr agent, edr security sweep, endpoint
detection response, azcomp4587.
description: "Control the ACG Datto EDR / Datto AV tenant (azcomp4587): fleet orgs/sites/agents, MITRE-tagged detections, per-client security sweeps; gated scans, host isolation, agent deploy. Read-only default. Triggers: datto edr, datto av, infocyte, EDR detections, isolate endpoint."
---
# Datto EDR (Infocyte HUNT) Skill