security
Wiz
Connect Wiz to Elaichi and hand every teammate a governed MCP endpoint — 18 tools ready to call from Claude, Cursor, or any MCP client, clamped by roles, restrictions, and an audit log.
AI tools
Wiz tools for your AI agents
18 tools are ready to mint as an MCP endpoint the moment you connect Wiz — governed by the same roles, restrictions, and audit log as everything else in Elaichi.
list_all_wiz_users
List users in Wiz. Returns user details including name, email, and last_login.
list_all_wiz_projects
List all projects in Wiz. Returns id, name, isFolder, nestingLevel, archived, businessUnit, and description for each project.
list_all_wiz_audit_logs
Get audit log entries in Wiz. Returns fields id, action, requestId, status, timestamp, actionParameters, userAgent, sourceIP, serviceAccount, and user.
list_all_wiz_configuration_findings
List configuration findings in Wiz. Returns fields such as id, severity, status, remediation, resource details (id, name, type), rule information, and securitySubCategories.
list_all_wiz_resources
List cloud resources in Wiz. Returns key fields including id, name, type, technology, cloudAccount, status, region, tags, and visibility flags. Fields firstSeen and lastSeen may be null.
list_all_wiz_issues
List issues in Wiz. Returns each issue's id, severity, status, createdAt, updatedAt, related entitySnapshot details (id, type, name), sourceRules with descriptions, and linked projects, notes, and serviceTickets.
list_all_wiz_detections
List detections in Wiz. Returns fields such as id, type, severity, origins, actors, resources, primaryResource, and ruleMatch. Each detection is generated by Threat Detection Rules. API limited to one pull every 5 minutes; triggering events capped at 50 per detection.
list_all_wiz_version_control_repositories
List version control repositories in Wiz. Returns repository id, platform, providerID, type, and details including repository name and URL.
list_all_wiz_exposed_resources
List exposed-resources in Wiz. Returns fields such as id, exposedEntity details (id, name, type, properties), accessibleFrom, path, sourceIpRange, destinationIpRange, portRange, protocols, firstSeenAt, and applicationEndpoints.
get_single_wiz_system_activity_by_id
Get details about a specific system activity in Wiz using id. Returns status, statusInfo, result details (dataSources, findings, events, tags, unresolvedAssets), and context with fileUploadId.
list_all_wiz_vulnerability_findings
List vulnerability findings in Wiz. Returns fields such as id, name, severity, score, exploitabilityScore, status, affected assets, remediation, and timestamps. This API supports incremental pulls for recent vulnerabilities only.
list_all_wiz_reports
List reports in Wiz. Returns report fields including id and name.
list_all_wiz_firewall_findings
List firewall findings in Wiz. Returns id, severity, result, status, remediation, associated resource details, rule info, and security categories.
list_all_wiz_backup_findings
List backup findings in Wiz. Returns id, severity, result, status, remediation, resource details, rule information, and related security categories for each configuration finding.
list_all_wiz_code_scan_findings
List code scan findings in Wiz. Returns fields such as id, severity, result, status, remediation details, and related resource, rule, and security category information.
list_all_wiz_application_logging_findings
List application logging findings in Wiz. Returns fields such as id, severity, result, status, and remediation, along with resource, rule, and securitySubCategories details.
list_all_wiz_infrastructure_logging_findings
Get a list of infrastructure logging findings in Wiz. The response includes id, severity, result, status, remediation details, resource metadata, rule details, and security categories.
list_all_wiz_peer_review_enforcement_findings
List peer review enforcement findings in Wiz. Returns fields such as id, targetExternalId, severity, result, status, and resource details including provider, region, and associated projects.
How it works
From Wiz account to governed MCP endpoint
Connect
Link a Wiz account through Elaichi's hosted connect flow. Credentials are vaulted — nobody, including the AI, ever sees them.
Compose
The connection becomes a toolbox instantly. Curate which Wiz tools are exposed, rename them, or freeze arguments.
Mint
Mint a personal MCP endpoint on that toolbox and paste it into Claude, Cursor, or any MCP client — governed by roles, restrictions, and audit logs.
Give every teammate a governed MCP server
Start a 14-day Gold trial — connect a product, curate a toolbox, and paste an endpoint into Claude or Cursor in minutes.