query_history

MCP tool from Appcontrol MCP Go by AppControlLabs

Query security event history — binary first-seen events, quarantine blocks, alerts, and process starts. Filterable by event type, time range, and binary ID.

How to use it

Project documentation lists query_history for the Appcontrol MCP Go MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), then check which tools your installed version makes available. Tool availability can depend on configuration and credentials. A server handshake does not verify this tool’s behavior. See the full listing for setup details.

Install Appcontrol MCP Go

$claude mcp add appcontrol C:\MCP\appcontrol-mcp.exe
FULL APPCONTROL MCP GO LISTING