Back to Blog
July 15th, 2026

LimaCharlie is now available in Claude's connector directory

Picture of Chris Luft
Chris Luft

Co-founder and CCO

blog post header image

LimaCharlie is now listed in Claude's official connector directory. Anyone with a LimaCharlie organization can add the connector from inside Claude and begin operating the platform conversationally, with no custom integration work and no code to write.

The listing exposes more than 300 tools spanning telemetry search, detection and response rule management, sensor and fleet operations, and organization administration. It is authored and maintained by LimaCharlie, and it is available on the Claude Directory.

What you can do with the connector

  • Query telemetry in plain language. Describe what you are looking for and Claude writes the LCQL, runs it against your data, and returns the result set.

  • Work on detection and response rules conversationally. Draft a rule, validate it, and deploy it to the organization without leaving the conversation.

  • Triage a detection with full context. Pull process trees, network connections, and live sensor state while the investigation is still open.

  • Operate the fleet. Apply tags, isolate a host from the network, and collect artifacts on demand.

Every one of those actions runs against the same API that the LimaCharlie web application and CLI use. There is no reduced feature set reserved for the agent.

Why the API surface determines what an agent can actually do

Most security platforms that ship an MCP server expose a narrow slice of their functionality, usually enough for an assistant to answer questions and summarize alerts. Extending past that means engineering work against internal interfaces that were never built for programmatic use, so the agent stays advisory whether the vendor intended that or not.

LimaCharlie was built API-first, and full API coverage is a property of the architecture rather than a roadmap item. An agent connected through the directory can take the same actions a human operator can take, which is the difference between an assistant that describes an investigation and one that carries it out.

How to connect it

  1. Open the connector directory in Claude and search for LimaCharlie.

  2. Select the connector and authorize it against your LimaCharlie organization.

  3. Scope what the agent can reach using LimaCharlie API key permissions, the same way you would scope any other automation.

Permissions apply exactly as they do everywhere else in the platform. An agent operating through the connector is bound by the fine-grained permissions that were used to create the key it was given, and every action it takes is recorded in the audit trail.

Where this sits alongside the CLI

The connector is the fastest way to reach LimaCharlie from inside the Claude apps. For engineers running longer agentic workflows in Claude Code, the LimaCharlie plugin is the better fit, because it drives the limacharlie CLI directly and ships with pre-built skills and workflows. Both paths respect the same permission model, so the choice comes down to where you are working.

Availability

The LimaCharlie connector is available now in Claude's connector directory. Connect it with your free LimaCharlie account to try it. 

Add the connector

Read the documentation