Security
Wiz
Connect Wiz once and hand every teammate a governed MCP endpoint with 18 tools ready to call from Claude, ChatGPT, Cursor, or any MCP client, inside the same permissions they already have, with every call checked and logged.
Automations & dashboards
From answering questions to doing the work
A person no longer has to ask. A trigger starts the work, inside the same permissions and the same audit log as everything else. Automations and live dashboards ship on the Black plan.
Automations
Put Wiz work on a schedule.
A trigger starts a sequence of steps: call a Wiz tool, transform the result, branch, wait, and ask a person when it matters.
Wiz digest
Run 418 · started 2 minutes ago · on behalf of Emma Laurent
-
✓
Schedule
Every weekday at 08:00
0.2s -
✓
Fetch userses
Wiz
1.4s -
✓
Group by owner
Transform
0.1s -
✓
Draft the digest
Agent step
Ran with 4 tools, returned a structured summary
6.2s -
Approve the digest
Needs approval
Assigned to Michael Brennan
Approve Deny -
Post the digest
Wiz
Queued
Collections and dashboards
Report on Wiz without asking.
Collections hold your own data, written by an automation and read by a dashboard that refreshes on a schedule.
Wiz health
Refreshed 4 minutes ago · every 15 minutes · from the userses collection
Userses
1,284 ↓ 12%
Projectses
96 ↓ 8%
Needs attention
3 ↑ 2
Updated this week
412 ↑ 9%
Userses created
Last 14 days
By workspace
Share of activity
Engineering 34%
Product 27%
Support 21%
Sales 18%
AI tools
Wiz tools for your AI agents
18 tools are ready to call through Elaichi's MCP endpoint the moment you connect Wiz, governed by the same roles, restrictions, and audit log as everything else in Elaichi.
list_all_wiz_users
List users in Wiz. Returns user details including name, email, and last_login.
list_all_wiz_projects
List all projects in Wiz. Returns id, name, isFolder, nestingLevel, archived, businessUnit, and description for each project.
list_all_wiz_audit_logs
Get audit log entries in Wiz. Returns fields id, action, requestId, status, timestamp, actionParameters, userAgent, sourceIP, serviceAccount, and user.
list_all_wiz_configuration_findings
List configuration findings in Wiz. Returns fields such as id, severity, status, remediation, resource details (id, name, type), rule information, and securitySubCategories.
list_all_wiz_resources
List cloud resources in Wiz. Returns key fields including id, name, type, technology, cloudAccount, status, region, tags, and visibility flags. Fields firstSeen and lastSeen may be null.
list_all_wiz_issues
List issues in Wiz. Returns each issue's id, severity, status, createdAt, updatedAt, related entitySnapshot details (id, type, name), sourceRules with descriptions, and linked projects, notes, and serviceTickets.
list_all_wiz_detections
List detections in Wiz. Returns fields such as id, type, severity, origins, actors, resources, primaryResource, and ruleMatch. Each detection is generated by Threat Detection Rules. API limited to one pull every 5 minutes; triggering events capped at 50 per detection.
list_all_wiz_version_control_repositories
List version control repositories in Wiz. Returns repository id, platform, providerID, type, and details including repository name and URL.
list_all_wiz_exposed_resources
List exposed-resources in Wiz. Returns fields such as id, exposedEntity details (id, name, type, properties), accessibleFrom, path, sourceIpRange, destinationIpRange, portRange, protocols, firstSeenAt, and applicationEndpoints.
get_single_wiz_system_activity_by_id
Get details about a specific system activity in Wiz using id. Returns status, statusInfo, result details (dataSources, findings, events, tags, unresolvedAssets), and context with fileUploadId.
list_all_wiz_vulnerability_findings
List vulnerability findings in Wiz. Returns fields such as id, name, severity, score, exploitabilityScore, status, affected assets, remediation, and timestamps. This API supports incremental pulls for recent vulnerabilities only.
list_all_wiz_reports
List reports in Wiz. Returns report fields including id and name.
list_all_wiz_firewall_findings
List firewall findings in Wiz. Returns id, severity, result, status, remediation, associated resource details, rule info, and security categories.
list_all_wiz_backup_findings
List backup findings in Wiz. Returns id, severity, result, status, remediation, resource details, rule information, and related security categories for each configuration finding.
list_all_wiz_code_scan_findings
List code scan findings in Wiz. Returns fields such as id, severity, result, status, remediation details, and related resource, rule, and security category information.
list_all_wiz_application_logging_findings
List application logging findings in Wiz. Returns fields such as id, severity, result, status, and remediation, along with resource, rule, and securitySubCategories details.
list_all_wiz_infrastructure_logging_findings
Get a list of infrastructure logging findings in Wiz. The response includes id, severity, result, status, remediation details, resource metadata, rule details, and security categories.
list_all_wiz_peer_review_enforcement_findings
List peer review enforcement findings in Wiz. Returns fields such as id, targetExternalId, severity, result, status, and resource details including provider, region, and associated projects.
No tools match your search.
How it works
From Wiz account to governed MCP endpoint
Connect
Link a Wiz account through Elaichi's hosted connect flow. Credentials are vaulted, so nobody, including the AI, ever sees them.
Compose
The connection becomes a toolbox instantly. Curate which Wiz tools are exposed, rename them, or freeze arguments.
Authorize
Point Claude, ChatGPT, Cursor, or any MCP client at the one Elaichi endpoint and sign in with OAuth, governed by roles, restrictions, and audit logs.
Put your agents to work in the tools you already use
Start a 14-day Gold trial. Connect a product, curate a toolbox, and paste a governed MCP endpoint into Claude, ChatGPT, or Cursor in minutes.