cloud_posture_custom_rule_create
(Beta) Creates a custom rule for your company. Requires Master Administrator role.
How to use it
cloud_posture_custom_rule_create is exposed by the Vision One MCP Server MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), and the cloud_posture_custom_rule_create tool becomes available to the model automatically. See the full listing for setup details and every tool this server provides.
FULL VISION ONE MCP SERVER LISTINGOther tools in Vision One MCP Server (39)
Get the details of an Alibaba account managed by Cloud Account Manangement.
Displays all Alibaba Cloud accounts connected to Trend Vision One in a paginated list.
Get the details of an AWS account managed by Cloud Account Management.
List AWS accounts managed by Cloud Account Management.
(Beta) List the checks of an account.
(Beta) Start scanning Cloud Posture account.
(Beta) Get the scan settings for an account.
(Beta) Update an account's scan settings.
(Beta) List CSPM Accounts.
(Beta) Deletes the specified custom rule permanently. Requires Master Administrator role.
(Beta) Returns the configuration of the specified custom rule.
(Beta) Tests the provided custom rule configuration against an account or mock resource data. Requires Master Administrator role.
(Beta) Updates the specified custom rule. Requires Master Administrator role.
(Beta) Displays the custom rules of your company in a paginated list.
(Beta) Scan an infrastructure as code template using the cloud posture template scanner.
Get a cloud asset's profile.
List a cloud asset's risk indicators.
List discovered cloud assets.
List tag definitions.
List discovered attack surface devices.
List discovered attack surface domain accounts.
List discovered internet facing domains (Fully Qualified Domain Names).
List high risk users.
Displays the devices with the specified local application installed.
Displays the local applications installed executable files.
Get a local app's profile.
List a local app's risk indicators.
List discovered local applications.
List discovered public IP addresses.
List discovered service accounts.
Deletes the specified account.
Sends an invitation to the specified email address to be added as an account.
Updates the specified account.
Displays users, groups, and invitations in the account.
Delete Vision One API Keys.
List Vision One API Keys.
Displays information about the specified alert.
List Trend Vision One Workbench Alerts.
List observed attack techniques.