PluginBench
MCP Server

Proofpoint MCP Server

io.github.WYRE-AI/proofpoint-mcp

What is the Proofpoint MCP server?

MCP server for Proofpoint TAP — threat intelligence, forensics, quarantine, and email security.

How to install Proofpoint

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • PROOFPOINT_SERVICE_PRINCIPAL
    required

    Proofpoint TAP service principal (API user identifier)

  • PROOFPOINT_SERVICE_SECRET
    required
    secret

    Proofpoint TAP service secret

  • PROOFPOINT_BASE_URL

    Proofpoint TAP API base URL (defaults to https://tap-api-v2.proofpoint.com)

  • MCP_TRANSPORT

    Transport mode for the server. Set to 'stdio' for local CLI use; the image defaults to 'http' for gateway hosting.

  • AUTH_MODE

    Credential source: 'env' reads vars locally, 'gateway' expects header injection from the WYRE MCP Gateway.

  • LOG_LEVEL

    Log verbosity: debug, info, warn, error

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "proofpoint-mcp": {
      "command": "docker",
      "args": [
        "run",
        "-i",
        "--rm",
        "ghcr.io/wyre-ai/proofpoint-mcp:v1.1.5"
      ],
      "env": {
        "PROOFPOINT_SERVICE_PRINCIPAL": "<YOUR_PROOFPOINT_SERVICE_PRINCIPAL>",
        "PROOFPOINT_SERVICE_SECRET": "<YOUR_PROOFPOINT_SERVICE_SECRET>",
        "PROOFPOINT_BASE_URL": "<YOUR_PROOFPOINT_BASE_URL>",
        "MCP_TRANSPORT": "<YOUR_MCP_TRANSPORT>",
        "AUTH_MODE": "<YOUR_AUTH_MODE>",
        "LOG_LEVEL": "<YOUR_LOG_LEVEL>"
      }
    }
  }
}

Related MCP servers

PRPRTG logo

PRTG

Active

MCP server for Paessler PRTG's REST API v2 - network/infrastructure monitoring for MSPs.

0
TypeScript
View repository →

MCP server for QuickBooks Online — accounts, customers, invoices, bills, and reports.

2
TypeScript
Apache-2.0
View repository →

MCP server for RoboShadow's Rubicon Platform Data API.

View repository →
RORocketCyber logo

MCP server for RocketCyber Managed SOC — incidents, alerts, agents, and customer telemetry.

0
TypeScript
Apache-2.0
View repository →
RORootly logo

Rootly

Active

MCP server for Rootly — incidents, alerts, escalations, and post-incident reports.

0
TypeScript
View repository →

MCP server for Kaseya SaaS Alerts — SaaS security monitoring for M365 & Google Workspace.

View repository →