Security ๐Ÿงช Community โœ“ Claude Code โœ“ Claude Desktop โ€ข Blumira

Blumira

Blumira - SIEM findings management, device inventory, MSP multi-tenant operations, and security posture analysis

Installation

Install this plugin individually:

/plugin marketplace add wyre-technology/msp-claude-plugins --plugin blumira

Or install all MSP plugins at once:

/plugin marketplace add wyre-technology/msp-claude-plugins

Features

  • Agent Monitoring
  • Findings
  • Msp
  • Resolutions
  • User Management

Skills

This plugin provides 6 skills that teach Claude about Blumira:

Skill Description
agents Use this skill when working with Blumira agents, devices, and agent keys, including listing devices, checking agent health, and managing agent deployment keys.
findings Use this skill when working with Blumira findings (security alerts/detections), including listing, filtering, investigating, resolving, assigning, and commenting on findings.
msp Use this skill when working with Blumira MSP (Managed Service Provider) multi-tenant operations, including managing multiple client accounts, cross-account finding queries, and per-account device/user management.
resolutions Use this skill when resolving Blumira findings, choosing the correct resolution type, or understanding resolution workflows and their impact on security metrics.
users Use this skill when listing or looking up Blumira users, finding user IDs for finding assignment, or auditing user access.
api-patterns Use this skill when working with Blumira API authentication, understanding the dual path structure (org vs MSP), constructing filtered queries, handling pagination, or troubleshooting API errors.

Agents

This plugin provides 2 agents for autonomous task execution:

Agent Description
compliance-reporter Use this agent when generating compliance-oriented security reports from Blumira SIEM data โ€” not for live incident investigation, but for producing evidence packages, coverage gap assessments, and log source health summaries for frameworks like SOC 2, HIPAA, and CIS.
siem-investigator Use this agent when investigating Blumira SIEM alerts and findings, tracing attack chains across data sources, resolving detections, auditing security posture across MSP client accounts, or producing threat investigation reports.

Commands

Available slash commands:

Command Description
/agent-inventory List all devices and agents across the organization with status and health information
/finding-triage Triage open Blumira findings by severity, presenting a prioritized list for review
/investigate-finding Deep investigation of a specific Blumira finding with details, context, and comment history
/msp-overview MSP dashboard showing all managed accounts with open finding counts and severity breakdown
/resolve-finding Resolve a Blumira finding with the appropriate resolution type and notes
/security-posture Overall security posture review including open findings by severity, agent coverage, and trends

API Reference

Base URL
Authentication
Rate Limit
Documentation

Example Usage

List all devices and agents across the organization with status and health information

/agent-inventory

Triage open Blumira findings by severity, presenting a prioritized list for review

/finding-triage

Deep investigation of a specific Blumira finding with details, context, and comment history

/investigate-finding

MSP dashboard showing all managed accounts with open finding counts and severity breakdown

/msp-overview

Resolve a Blumira finding with the appropriate resolution type and notes

/resolve-finding

Overall security posture review including open findings by severity, agent coverage, and trends

/security-posture

Using Skills

/skill blumira:agents

Use this skill when working with Blumira agents, devices, and agent keys, including listing devices, checking agent health, and managing agent deployment keys.