Skip to content
Elaichi Elaichi

Security

Wiz

Connect Wiz once and hand every teammate a governed MCP endpoint with 18 tools ready to call from Claude, ChatGPT, Cursor, or any MCP client, inside the same permissions they already have, with every call checked and logged.

Wiz

Automations & dashboards

From answering questions to doing the work

A person no longer has to ask. A trigger starts the work, inside the same permissions and the same audit log as everything else. Automations and live dashboards ship on the Black plan.

Automations

Put Wiz work on a schedule.

A trigger starts a sequence of steps: call a Wiz tool, transform the result, branch, wait, and ask a person when it matters.

Wiz digest

Run 418 · started 2 minutes ago · on behalf of Emma Laurent

  1. Schedule

    Every weekday at 08:00

    0.2s
  2. Fetch userses

    Wiz

    1.4s
  3. Group by owner

    Transform

    0.1s
  4. Draft the digest

    Agent step

    Ran with 4 tools, returned a structured summary

    6.2s
  5. Approve the digest

    Needs approval

    Assigned to Michael Brennan

    Approve
  6. Post the digest

    Wiz

    Queued

Collections and dashboards

Report on Wiz without asking.

Collections hold your own data, written by an automation and read by a dashboard that refreshes on a schedule.

Wiz health

Refreshed 4 minutes ago · every 15 minutes · from the userses collection

Live

Userses

1,284 ↓ 12%

Projectses

96 ↓ 8%

Needs attention

3 ↑ 2

Updated this week

412 ↑ 9%

Userses created

Last 14 days

By workspace

Share of activity

Engineering 34%

Product 27%

Support 21%

Sales 18%

AI tools

Wiz tools for your AI agents

18 tools are ready to call through Elaichi's MCP endpoint the moment you connect Wiz, governed by the same roles, restrictions, and audit log as everything else in Elaichi.

list_all_wiz_users

List users in Wiz. Returns user details including name, email, and last_login.

list_all_wiz_projects

List all projects in Wiz. Returns id, name, isFolder, nestingLevel, archived, businessUnit, and description for each project.

list_all_wiz_audit_logs

Get audit log entries in Wiz. Returns fields id, action, requestId, status, timestamp, actionParameters, userAgent, sourceIP, serviceAccount, and user.

list_all_wiz_configuration_findings

List configuration findings in Wiz. Returns fields such as id, severity, status, remediation, resource details (id, name, type), rule information, and securitySubCategories.

list_all_wiz_resources

List cloud resources in Wiz. Returns key fields including id, name, type, technology, cloudAccount, status, region, tags, and visibility flags. Fields firstSeen and lastSeen may be null.

list_all_wiz_issues

List issues in Wiz. Returns each issue's id, severity, status, createdAt, updatedAt, related entitySnapshot details (id, type, name), sourceRules with descriptions, and linked projects, notes, and serviceTickets.

list_all_wiz_detections

List detections in Wiz. Returns fields such as id, type, severity, origins, actors, resources, primaryResource, and ruleMatch. Each detection is generated by Threat Detection Rules. API limited to one pull every 5 minutes; triggering events capped at 50 per detection.

list_all_wiz_version_control_repositories

List version control repositories in Wiz. Returns repository id, platform, providerID, type, and details including repository name and URL.

list_all_wiz_exposed_resources

List exposed-resources in Wiz. Returns fields such as id, exposedEntity details (id, name, type, properties), accessibleFrom, path, sourceIpRange, destinationIpRange, portRange, protocols, firstSeenAt, and applicationEndpoints.

get_single_wiz_system_activity_by_id

Get details about a specific system activity in Wiz using id. Returns status, statusInfo, result details (dataSources, findings, events, tags, unresolvedAssets), and context with fileUploadId.

list_all_wiz_vulnerability_findings

List vulnerability findings in Wiz. Returns fields such as id, name, severity, score, exploitabilityScore, status, affected assets, remediation, and timestamps. This API supports incremental pulls for recent vulnerabilities only.

list_all_wiz_reports

List reports in Wiz. Returns report fields including id and name.

list_all_wiz_firewall_findings

List firewall findings in Wiz. Returns id, severity, result, status, remediation, associated resource details, rule info, and security categories.

list_all_wiz_backup_findings

List backup findings in Wiz. Returns id, severity, result, status, remediation, resource details, rule information, and related security categories for each configuration finding.

list_all_wiz_code_scan_findings

List code scan findings in Wiz. Returns fields such as id, severity, result, status, remediation details, and related resource, rule, and security category information.

list_all_wiz_application_logging_findings

List application logging findings in Wiz. Returns fields such as id, severity, result, status, and remediation, along with resource, rule, and securitySubCategories details.

list_all_wiz_infrastructure_logging_findings

Get a list of infrastructure logging findings in Wiz. The response includes id, severity, result, status, remediation details, resource metadata, rule details, and security categories.

list_all_wiz_peer_review_enforcement_findings

List peer review enforcement findings in Wiz. Returns fields such as id, targetExternalId, severity, result, status, and resource details including provider, region, and associated projects.

How it works

From Wiz account to governed MCP endpoint

Connect

Link a Wiz account through Elaichi's hosted connect flow. Credentials are vaulted, so nobody, including the AI, ever sees them.

Compose

The connection becomes a toolbox instantly. Curate which Wiz tools are exposed, rename them, or freeze arguments.

Authorize

Point Claude, ChatGPT, Cursor, or any MCP client at the one Elaichi endpoint and sign in with OAuth, governed by roles, restrictions, and audit logs.

Put your agents to work in the tools you already use

Start a 14-day Gold trial. Connect a product, curate a toolbox, and paste a governed MCP endpoint into Claude, ChatGPT, or Cursor in minutes.