sync: auto-sync from GURU-5070 at 2026-07-01 15:06:42
Author: Mike Swanson Machine: GURU-5070 Timestamp: 2026-07-01 15:06:42
This commit is contained in:
@@ -1,15 +1,6 @@
|
||||
---
|
||||
name: datto-edr
|
||||
description: >-
|
||||
Control the ACG Datto EDR / Datto AV tenant (azcomp4587 — Datto EDR is rebranded
|
||||
Infocyte HUNT; per-tenant LoopBack REST API). Read the whole MSP fleet from ONE
|
||||
token: per-client organizations, sites, agents (online/AV/isolation/version),
|
||||
detections (MITRE-tagged alerts), and a per-client security-posture sweep. Gated
|
||||
actions: trigger scans, invoke response extensions (host isolation), and emit the
|
||||
agent install one-liner for RMM-pushed deployment. Read-only by default; mutating
|
||||
ops require --confirm. Triggers: datto edr, datto av, infocyte, EDR detections,
|
||||
isolate endpoint, run a scan, deploy edr agent, edr security sweep, endpoint
|
||||
detection response, azcomp4587.
|
||||
description: "Control the ACG Datto EDR / Datto AV tenant (azcomp4587): fleet orgs/sites/agents, MITRE-tagged detections, per-client security sweeps; gated scans, host isolation, agent deploy. Read-only default. Triggers: datto edr, datto av, infocyte, EDR detections, isolate endpoint."
|
||||
---
|
||||
|
||||
# Datto EDR (Infocyte HUNT) Skill
|
||||
|
||||
Reference in New Issue
Block a user