Resources · Claude connector

Claude Automox connectorWhat Claude can do in your Automox account.

The Claude Automox connector exposes 133 tools: 85 read your fleet, 48 change it, 0 are undocumented. It is a Claude Desktop extension. Below: what Claude reports on, what it can patch, reboot or delete, and the safety switches Automox built in.

Verified Trustpilot reviews · AI, automation & growth agency

Overview

What changes when Claude can talk to your Automox console

With this extension, you no longer dig through the console yourself: you ask Claude whether you are ready for Patch Tuesday, which devices need attention or what a colleague changed yesterday, and it pulls the answer from your Automox console with your own API key.

Know where you stand before Patch Tuesday. get_patch_tuesday_readiness folds the pre-patch report, pending approvals and patch schedules into one answer, and get_compliance_snapshot does the same for compliance.

Investigate a device or a failure. get_device_full_profile gathers a machine's detail, inventory, packages and policies, while policy_run_results returns the output and exit codes of a failed run.

Act on the fleet. With write mode on, Claude can approve a patch through decide_patch_approval, reboot a device through execute_device_command, or set up a policy with apply_policy_changes.

Know the limits too. Automox marks every write tool for a confirmation in the host, and keeps the riskiest four behind settings that are off by default. A read-only mode removes all 48 write tools. Remote-control tools need a separate subscription. And nothing runs on its own: no tool reacts to a new vulnerability or a failed run. Event-driven work belongs to automation platforms, covered from the Integrations hub.

Vocabulary

Five words before you connect

The vocabulary around this extension, in one minute.

Connector
The link you set up once between Claude and an account you already have, so Claude can work in it while it answers you.
Tool
One named action the connector opens to Claude. Claude picks which tools to call on its own, and the directory lists all of them by name.
Authorization
The access you grant once so Claude can work on a service. For this extension it rests on the Automox API key you paste at setup.
Approval
The confirmation Claude waits for before an action that changes your account, shown in the conversation at the moment it applies.
MCP
The common standard connectors are built on: it is what lets an assistant like Claude talk to an outside service such as Automox.
Connect

Set up Automox in Claude in three steps

  1. 01

    Find Automox in Claude Desktop

    Open the settings of Claude Desktop, go to Customize, then Connectors, and search for Automox. It is a desktop extension, installed on Claude Desktop. On Team or Enterprise, an Owner or Primary Owner enables it before members use it.

  2. 02

    Start the connection

    Click Connect on its row and give the extension what it asks for. Automox says it prompts for your API key, account UUID and optionally your organization ID, stored in Claude Desktop's secure configuration. If it breaks, Disconnect and connect again.

  3. 03

    Decide what the access covers

    The service, not Claude, sets the reach of the access. Automox says the connector acts as you, with exactly your console and API permissions, so the key you choose and its owner's role decide what Claude can touch.

Tools

The 133 tools, split between reading and changing

Automox gives Claude 133 tools: 85 that read your account, 48 that change something in it.

Automox documents every tool, so each one sits in a group. Names stay exactly as Claude shows them.

  • 85 read
  • 48 write

What Claude reads (85)

85 tools

Eighty-five tools that report on devices, policies, patches, users and settings without changing anything.

audit_events_ocsf

Queries audit events from Automox's Audit Service v2, returned in the OCSF format that many security tools already understand. A date is required, and an event type name can narrow the result further.

When it helps
your security team wants Automox activity in the same schema as the rest of its logs.

Sourcegithub.com · October 1, 2026 ↗

audit_trail_user_activity

Pulls the audit trail of one person on a given day, identified by email or by identifier, with paging when the day was busy. The raw event payloads, sanitized, come back only when you explicitly ask for them.

When it helps
you need to know what a colleague changed in the console last Tuesday, and in what order.

Sourcegithub.com · October 1, 2026 ↗

check_group_exclusion_status

Answers, for one or several server groups, whether each sits inside an active exclusion window at this exact moment. The reply is a plain yes or no per group, with nothing to interpret.

When it helps
before running a policy by hand on two groups, you confirm neither is in a freeze period.

Sourcegithub.com · October 1, 2026 ↗

check_window_active

Tells whether one maintenance window is live right now. Automox counts it as active when its status says so, at least one group is attached, and the current time falls inside an exclusion period.

When it helps
a job was blocked this morning and you suspect a freeze window someone forgot about.

Sourcegithub.com · October 1, 2026 ↗

device_detail

Gives a curated picture of one device: recent policy status, assignments, queued commands and key facts. Status codes come back as readable labels, plus a compliance summary naming the policies that need remediation.

When it helps
a help desk ticket names a laptop and you want its whole state in a single answer.

Sourcegithub.com · October 1, 2026 ↗

device_health_metrics

Aggregates health figures for the whole organization. Compliance follows Automox's own rule: a device counts as non-compliant only when a policy needs remediation, while pending work is tracked in a separate bucket.

When it helps
a weekly report needs one compliance figure and a capped list of stale machines.
Watch out
sampling defaults to 500 devices unless you set another limit.

Sourcegithub.com · October 1, 2026 ↗

device_search_typeahead

Suggests valid values for device search fields while a query is being built, so Claude stops guessing at the spelling of a tag, an OS name or a status. It discovers values, it does not search devices.

When it helps
you half remember a tag and want its exact form before filtering the fleet on it.
Watch out
it belongs to the search family where global keys tend to fail.

Sourcegithub.com · October 1, 2026 ↗

devices_needing_attention

Surfaces the machines Automox has flagged for immediate action. Every flagged device comes with its failing policies, each carrying a severity, the reason it failed and the date the policy was created.

When it helps
Monday triage, when you want the short list of urgent machines before anything else.

Sourcegithub.com · October 1, 2026 ↗

discover_capabilities

Returns the server's own inventory of its tools, grouped by domain, with live availability. Automox keeps it loaded whatever module selection is configured.

When it helps
Claude says it cannot do something and you want to know whether the tool is even loaded.

Sourcegithub.com · October 1, 2026 ↗

get_account

Fetches the basic record of your Automox account: its identifier, name, type and timestamps. It says nothing about users, devices or policies, only about the account object itself.

When it helps
a colleague managing several clients wants to confirm which account a key is bound to.

Sourcegithub.com · October 1, 2026 ↗

get_account_user

Reads one account-level user record by identifier: status, account role, verification state and the type of two-factor authentication in place. It is the record behind access questions at account scope.

When it helps
an access review asks whether a given administrator has two-factor authentication turned on.
Watch out
the literal value disabled means 2FA is off, not that a type is configured.

Sourcegithub.com · October 1, 2026 ↗

get_action_set_detail

Opens one vulnerability remediation action set and shows its details, including a lifecycle status observed as active, ready or building. Automox notes the final value of that lifecycle is not confirmed.

When it helps
a scanner import finished an hour ago and you want to check it has been processed.

Sourcegithub.com · October 1, 2026 ↗

get_action_set_issues

Lists the vulnerabilities, identified by CVE, that are attached to one remediation action set. It is the bridge between a scanner import and the concrete issues Automox will help you fix.

When it helps
the security lead asks which CVEs a given import actually covers before approving work on it.

Sourcegithub.com · October 1, 2026 ↗

get_action_set_solutions

Shows the solutions proposed for an action set: recommended patches or configuration fixes, with a severity per vulnerability and a status per device. Automox points out those values are coded strings without a published list.

When it helps
after a Qualys or Tenable scan, you weigh which fixes to push first and on which machines.

Sourcegithub.com · October 1, 2026 ↗

get_cached_search_results

Retrieves the results Automox stored on its side for a device search that already ran, using that search's execution identifier. Nothing is executed again, which keeps follow-up questions cheap.

When it helps
a long search finished earlier in the conversation and you want its results back for a second question.

Sourcegithub.com · October 1, 2026 ↗

get_compliance_snapshot

Combines non-compliant devices, fleet health metrics and policy statistics in one call, which answers the question of where your compliance stands. Inner lists are capped, ten entries by default.

When it helps
a board slide needs your security posture in two lines by this afternoon.
Watch out
call the full report afterwards if you need every device behind the counts.

Sourcegithub.com · October 1, 2026 ↗

get_data_extract

Checks one bulk data extract job: its status, from queued through complete to expired, a readiness flag, and whether a download link exists along with the time it expires.

When it helps
you requested a large export this morning and want to know whether it is ready to collect.

Sourcegithub.com · October 1, 2026 ↗

get_device_assignments

Shows the mapping between devices and the policies and groups they belong to. Most questions about why a machine received something start from this mapping.

When it helps
a machine got a patch it should not have had and you trace which policy reached it.

Sourcegithub.com · October 1, 2026 ↗

get_device_by_uuid

Returns the near-raw record of a device from its unique identifier. Integer policy codes get a readable label next to them, uptime is given in minutes, and a compliance rollup names whatever needs remediation.

When it helps
a webhook payload handed you a device identifier and nothing else to go on.

Sourcegithub.com · October 1, 2026 ↗

get_device_full_profile

Merges device detail, an inventory summary, installed packages and policy assignments into one profile. Claude answers about a machine without chaining four separate lookups.

When it helps
a server misbehaves and you want everything known about it in one reply.

Sourcegithub.com · October 1, 2026 ↗

get_device_inventory

Retrieves detailed inventory for one device across hardware, network, security, services, system and users, through the Console's device-details endpoint. A single category can be requested on its own.

When it helps
you need the exact disk and memory figures of a workstation before approving an upgrade.

Sourcegithub.com · October 1, 2026 ↗

get_device_inventory_categories

Lists which inventory categories exist for a given device. They differ from one machine to the next, which is why Automox exposes them separately before you request the inventory itself.

When it helps
you are unsure what kind of inventory a Linux server reports compared with a Mac.

Sourcegithub.com · October 1, 2026 ↗

get_device_metadata_fields

Returns the field names and types the advanced search accepts, as a flat list. Claude reads it to build device queries that the search will not reject for an unknown field.

When it helps
a query keeps failing because a field name is wrong and you want the right spelling.

Sourcegithub.com · October 1, 2026 ↗

get_device_scheduled_windows

Shows the upcoming maintenance periods for one device, with start and end times computed from each window's rule and duration, and the type of each window. An optional end date limits how far ahead it looks.

When it helps
a user asks whether their laptop might reboot during tomorrow's client demo.

Sourcegithub.com · October 1, 2026 ↗

get_group_scheduled_windows

Lists the upcoming maintenance periods of a server group, with start and end times worked out from the stored rule, start and duration. You can cap the look-ahead with a future date.

When it helps
you plan a release and want the group's freeze periods over the next few weeks.

Sourcegithub.com · October 1, 2026 ↗

get_patch_tuesday_readiness

Combines the pre-patch report, pending approvals and patch policy schedules into one view of how ready the fleet is for Patch Tuesday. Automox frames it as the answer to that readiness question in a single call.

When it helps
the monthly patch cycle starts tomorrow and you want a clear go or no-go.

Sourcegithub.com · October 1, 2026 ↗

get_policy_window

Opens one maintenance window by its identifier and shows its recurrence rule, duration, the groups it applies to and its current status, everything needed to understand what it blocks.

When it helps
a colleague set up a freeze last week and you want to read exactly what it covers.

Sourcegithub.com · October 1, 2026 ↗

get_saved_search_results

Runs a saved search and returns the devices it currently matches, page by page. The answer reflects the fleet as it is now, not the last time someone looked.

When it helps
your recurring search for servers missing critical patches needs a fresh answer before a meeting.

Sourcegithub.com · October 1, 2026 ↗

get_search_scopes

Lists the scope options available for device searches. This metadata does not depend on any organization, and Claude uses it to pick the right scope before searching on tags or other fields.

When it helps
Claude needs to know which scope covers tags before running a tag-based search.

Sourcegithub.com · October 1, 2026 ↗

get_searchable_fields

Lists the searchable device fields grouped by scope, with the type of each one. Automox presents it as richer than the flat field list and meant for building typed queries.

When it helps
you build a precise query on dates or numbers and want the field types settled first.

Sourcegithub.com · October 1, 2026 ↗

get_server_group

Gets the full information Automox holds on one server group. The tool reference does not list the fields returned. The tool only reads that group's record.

When it helps
you want to read a group's current settings before planning any adjustment.

Sourcegithub.com · October 1, 2026 ↗

get_upload_formats

Lists the CSV formats Automox accepts when you import a vulnerability remediation action set from a scanner export. It is a reference call, nothing is imported.

When it helps
before importing a fresh scanner export, you check which format it has to follow.

Sourcegithub.com · October 1, 2026 ↗

get_user

Reads one user by numeric identifier, including organization and server-group membership and the RBAC roles held. Automox states secrets never appear in what comes back.

When it helps
an offboarding checklist needs a user's current memberships and roles in one place.
Watch out
a numeric identifier is expected, not an email address.

Sourcegithub.com · October 1, 2026 ↗

get_user_api_key

Fetches the metadata of one API key belonging to a user, from the user and key identifiers. The key's secret is never part of the answer.

When it helps
you check whether a departing employee's key is still enabled before their last day.

Sourcegithub.com · October 1, 2026 ↗

get_webhook

Brings back the configuration of one webhook subscription, the settings Automox uses to push events to an outside system.

When it helps
an integration stopped receiving events and you start by looking at how it was configured.
Watch out
delivery history lives in a separate tool, not in this one.

Sourcegithub.com · October 1, 2026 ↗

get_worklet_detail

Shows one community worklet in depth: its evaluation code, its remediation code, its requirements, and the same trust and availability signals the catalog search returns.

When it helps
you found a promising worklet and want to read its code before relying on it.

Sourcegithub.com · October 1, 2026 ↗

get_zone

Opens a single zone, which is what Automox calls an organization, by its identifier. The zone's access key stays out of the reply.

When it helps
a provider managing several clients needs the settings of one client's zone.
Watch out
it covers one zone; another tool lists them all.

Sourcegithub.com · October 1, 2026 ↗

list_account_rbac_roles

Lists the role-based access roles defined in the account. It gives the vocabulary of permissions that user records refer to.

When it helps
you prepare an access review and want the role names to compare each user against.
Watch out
it lists roles, not who holds them.

Sourcegithub.com · October 1, 2026 ↗

list_data_extracts

Returns every bulk export job of the organization with its type, its status, a readiness flag and whether a download link is available yet.

When it helps
you lost track of which exports finished last week and which are still running.
Watch out
a job listed as complete may still lack a download link.

Sourcegithub.com · October 1, 2026 ↗

list_device_packages

Lists the software installed on one device, with version, install state, severity, repository and whether Automox manages the package.

When it helps
you check which version of a browser a specific machine runs after a security bulletin.
Watch out
no patch status is returned in this list.

Sourcegithub.com · October 1, 2026 ↗

list_devices

Summarizes device inventory and policy status across the organization, unmanaged machines included by default. Filters on policy status or managed state isolate, for example, non-compliant managed endpoints.

When it helps
you want a quick headcount of machines and their state before a planning meeting.

Sourcegithub.com · October 1, 2026 ↗

list_devices_for_policies

Returns the machines one or more policies currently target, by policy identifier. Automox describes it as a read-only way to size the blast radius before a policy runs or is edited.

When it helps
you are about to push a policy and want to see exactly which machines it will hit.

Sourcegithub.com · October 1, 2026 ↗

list_events

Lists events in your organization, with filters on policy, device, user, event name or date range. For policy and patch events, the status field holds the raw exit code.

When it helps
you reconstruct what happened on a server between two dates during an incident review.

Sourcegithub.com · October 1, 2026 ↗

list_global_api_keys

Lists the account-wide API keys with their name, enabled state and expiry date. Automox never exposes the secrets themselves through this call.

When it helps
a quarterly security review asks for every key that never expires.
Watch out
it covers account-scope keys; per-user keys are listed elsewhere.

Sourcegithub.com · October 1, 2026 ↗

list_org_api_keys

Returns the organization's API keys, metadata only: name, whether each is enabled, and when it expires. Secrets stay hidden.

When it helps
you hunt for keys that should have been disabled after a project ended.
Watch out
this call only lists; key state is managed elsewhere.

Sourcegithub.com · October 1, 2026 ↗

list_organizations

Lists the organizations your key can see, with device count, device limit, parent organization and trial end date. Automox suggests it for navigating several organizations and watching capacity.

When it helps
a provider checks which client zones are getting close to their device limit.

Sourcegithub.com · October 1, 2026 ↗

list_remediation_action_sets

Lists the vulnerability remediation action sets in your organization, the imports from scanners that Automox turns into remediation work.

When it helps
you want an overview of every scanner import still sitting in Automox.
Watch out
details, issues and solutions each have their own tool.

Sourcegithub.com · October 1, 2026 ↗

list_saved_searches

Shows every saved device search of the organization with their names, queries and metadata, so you can see what already exists.

When it helps
you look for an existing search before building a new one from scratch.
Watch out
listing does not run them; results come from other tools.

Sourcegithub.com · October 1, 2026 ↗

list_searches_for_device

Lists the saved searches whose current results include a given device, with an optional filter on search type. It works backwards from a machine to the searches that catch it.

When it helps
a machine keeps receiving a policy and you trace which saved search pulls it in.

Sourcegithub.com · October 1, 2026 ↗

list_server_groups

Lists all server groups with device counts, assigned policies and identifiers, plus each group's refresh interval, the agent check-in cadence in minutes.

When it helps
you map how your fleet is organized before revising a policy that spans several groups.
Watch out
Automox gives that interval a range of 240 to 1440 minutes.

Sourcegithub.com · October 1, 2026 ↗

list_user_api_keys

Shows which API keys one user holds, metadata only: name, enabled state and expiry. The secret behind each key is not shown.

When it helps
an employee is leaving and you check which keys they still hold.
Watch out
you need the user's identifier, not their name.

Sourcegithub.com · October 1, 2026 ↗

list_users

Lists the users of the organization with name, email and RBAC roles in a lean format. Automox keeps internal secrets out of the result.

When it helps
a compliance audit asks who currently has administrator rights.
Watch out
an access-certification view exists on top of this list in compatible hosts.

Sourcegithub.com · October 1, 2026 ↗

list_webhook_deliveries

Shows recent delivery attempts for one webhook, newest first, with status, latency and error, optionally between two dates. Automox frames it as a troubleshooting tool.

When it helps
your security platform missed events and you check whether Automox actually sent them.

Sourcegithub.com · October 1, 2026 ↗

list_webhook_event_types

Lists every event type a webhook can subscribe to, each with a short description, so you can choose what an integration should receive.

When it helps
you design a new integration and decide which events are worth receiving.
Watch out
a webhook only receives the types you subscribe it to.

Sourcegithub.com · October 1, 2026 ↗

list_webhooks

Lists all webhook subscriptions of the organization, page by page, giving a view of every outside system Automox currently notifies. Automox paginates the list with a cursor, so a long one arrives in several pages.

When it helps
you inventory which external tools receive Automox events before a security review.

Sourcegithub.com · October 1, 2026 ↗

list_zone_users

Names everyone assigned to one zone, identified by the zone's unique identifier, so you see at a glance who works inside that organization.

When it helps
a client asks who on your side can see their zone.
Watch out
it answers per zone; checking one person across zones takes another tool.

Sourcegithub.com · October 1, 2026 ↗

list_zones

Lists the zones of your account, meaning its organizations, page by page. It is the top-level map for anyone managing several organizations.

When it helps
a provider wants the full client list as Automox sees it.
Watch out
zone details and users each come from their own tool.

Sourcegithub.com · October 1, 2026 ↗

list_zones_for_user

Lists every zone a given user belongs to, the reverse view of the per-zone user list.

When it helps
during offboarding, you check each organization a person can still reach.
Watch out
it reports memberships, and leaves account access exactly as it was.

Sourcegithub.com · October 1, 2026 ↗

noncompliant_report

Retrieves the report of non-compliant devices, those needing attention because of policy failures or missing patches. Each failing policy now carries the upstream failure reason, shortened when long.

When it helps
an auditor wants the list of failing machines and the reason each one fails.

Sourcegithub.com · October 1, 2026 ↗

patch_approvals_summary

Summarizes patch approvals awaiting a decision. Each approval covers one software package, with its version, OS and CVE identifiers, for a specific policy.

When it helps
you review what is waiting for your sign-off ahead of Patch Tuesday.
Watch out
a review screen built on this list can drive the approval tool in compatible hosts.

Sourcegithub.com · October 1, 2026 ↗

policy_catalog

Lists your Automox policies with summaries of type and status, page by page. Schedule days are decoded into readable form next to the raw bitmask.

When it helps
a new administrator wants to understand which policies exist before touching any.
Watch out
schedule times carry no time zone marker.

Sourcegithub.com · October 1, 2026 ↗

policy_compliance_stats

Computes compliance per policy over the devices actually evaluated. Pending devices are reported on their own rather than counted against the rate.

When it helps
you need to find the single policy that drags the overall compliance rate down.
Watch out
the rate is empty when no device has been evaluated yet.

Sourcegithub.com · October 1, 2026 ↗

policy_detail

Retrieves the configuration of one policy along with its recent history, so Claude can explain what it does and how it has been behaving.

When it helps
you want to read a policy closely before deciding whether to clone it.
Watch out
per-device output of a run lives in other tools.

Sourcegithub.com · October 1, 2026 ↗

policy_execution_counts

Lists execution counts across the fleet over a time window, one row per policy with its run count, in a single round trip instead of one call per policy.

When it helps
you want to know which policies ran most often last quarter.

Sourcegithub.com · October 1, 2026 ↗

policy_execution_timeline

Reviews the recent executions of one policy. For each run it gives device counts per outcome, and Automox notes a run with only pending or not-applicable devices is a benign no-op.

When it helps
a policy looks stuck and you check whether it ran at all this week.

Sourcegithub.com · October 1, 2026 ↗

policy_health_overview

Summarizes recent policy activity across the organization, counting runs by outcome so failures stand out. A bucket marks runs where every device was pending or not applicable.

When it helps
the morning check, to see whether last night's runs went through cleanly.

Sourcegithub.com · October 1, 2026 ↗

policy_history_detail

Gets the history of a policy by its identifier, including runs and status. Each run lists how many devices landed in each outcome, which Automox distinguishes from a run status.

When it helps
you compare how a policy behaved this month with how it behaved last month.

Sourcegithub.com · October 1, 2026 ↗

policy_run_count

Returns aggregate policy execution counts, with an optional number of past days to look back over. It gives a single figure rather than a breakdown.

When it helps
a quick answer to how many policy runs happened this week.
Watch out
for a per-policy breakdown, use the execution counts tool.

Sourcegithub.com · October 1, 2026 ↗

policy_run_detail_v2

Gets per-device results for one policy run, filterable by device name and paginated. Exit codes are raw: zero means success, and negative values on Windows are system status codes.

When it helps
one run failed on a handful of machines and you want to see which ones and why.

Sourcegithub.com · October 1, 2026 ↗

policy_run_results

Fetches per-device output for a specific execution token taken from the execution timeline: standard output, error output and exit codes.

When it helps
a worklet failed overnight and you want the exact error text it printed on each machine.
Watch out
you need the execution token from the timeline first.

Sourcegithub.com · October 1, 2026 ↗

policy_runs_by_policy

Gets policy runs grouped by policy so that several policies can be compared side by side over the same period.

When it helps
you compare the reliability of two patch policies that target similar machines.
Watch out
it compares; a single policy's run list comes from another tool.

Sourcegithub.com · October 1, 2026 ↗

policy_runs_for_policy

Gets the execution runs of one policy by identifier, with an optional range of days and sort order. A summary-only mode trims each run to its essentials.

When it helps
you want the last ten runs of a policy without the weight of every detail.

Sourcegithub.com · October 1, 2026 ↗

policy_runs_v2

Lists policy runs with filters on time range, policy name or type, and result status. Automox applies those filters after fetching, on its own side.

When it helps
you need every failed run of the past week across all policies at once.

Sourcegithub.com · October 1, 2026 ↗

prepatch_report

Shows devices with patches pending before the next scheduled patch window. Each device carries its highest severity, and Automox separates packages with no known CVE from those whose severity is unknown.

When it helps
you want to warn the teams whose machines will patch tonight.

Sourcegithub.com · October 1, 2026 ↗

preview_policy_device_filters

Dry-runs a policy's targeting to show which devices it would resolve to, before the policy is created or updated. Automox stresses nothing is created or changed by this call.

When it helps
you draft a new policy and want to check its scope before it exists.

Sourcegithub.com · October 1, 2026 ↗

search_devices

Searches devices by hostname, IP address, tag, status or severity of missing patches, with several severities accepted at once.

When it helps
you need every machine tagged for production that still shows critical gaps.
Watch out
Automox warns a returned device may already have been remediated since the index was built.

Sourcegithub.com · October 1, 2026 ↗

search_org_packages

Searches software packages across the organization, with filters on managed status or on packages awaiting installation. Results give name, version, severity and whether Automox manages them.

When it helps
a vulnerable library makes the news and you want every place it is installed.

Sourcegithub.com · October 1, 2026 ↗

search_policy_windows

Searches maintenance and exclusion windows, filtered by group identifiers, by active or inactive status, and by one-time versus recurring. The recurrence filter ignores case. Results arrive page by page.

When it helps
you list every recurring freeze before planning the next quarter's releases.

Sourcegithub.com · October 1, 2026 ↗

search_worklet_catalog

Searches Automox's community worklet catalog and returns names, descriptions, categories, OS compatibility and trust signals such as whether a worklet is verified.

When it helps
you look for an existing script before building your own remediation from scratch.
Watch out
some worklets require a licence, which the trust signals show.

Sourcegithub.com · October 1, 2026 ↗

splashtop_device_status

Shows whether the Splashtop remote-control client is installed and registered on a device, with install time and any install error. Automox notes both states are independent.

When it helps
a technician cannot reach a machine remotely and you check the client before anything else.

Sourcegithub.com · October 1, 2026 ↗

splashtop_get_attended_access

Tells whether end-user consent is required before a remote session can start on a device. It reads the setting only, nothing more.

When it helps
you need to warn a user that a technician will ask permission before connecting.
Watch out
remote control needs an active Remote Control subscription.

Sourcegithub.com · October 1, 2026 ↗

splashtop_session_status

Shows the number of active remote sessions, the maximum allowed, and whether capacity permits a new one. That last flag reflects capacity only.

When it helps
a remote session refuses to open and you check whether all slots are taken.
Watch out
end-user consent is a separate condition from capacity.

Sourcegithub.com · October 1, 2026 ↗

What Claude can change (48)

48 tools

Forty-eight tools that create, update, run or delete. Automox flags each one for a host confirmation, and four sit behind settings that are off by default.

apply_policy_changes

Approval: see the rule

Previews or submits policy creations and updates. Automox normalizes friendly schedule blocks and filter names into the payload its API expects, and fills required fields.

What Claude asks for
Automox ties its write tools to a confirmation dialog in the host; nothing more specific is documented for this one.
When it helps
you describe a weekly browser patch policy and want it set up correctly.
Watch out
a preview mode exists, so ask for it before submitting.

Sourcegithub.com · October 1, 2026 ↗

apply_remediation_actions

Approval: see the rule

Executes remediation immediately, patch now or patch with a worklet, on named devices for an action set. Endpoint state changes at once, and the job runs in the background.

What Claude asks for
beyond the host confirmation, Automox only registers this tool once an off-by-default setting is switched on.
When it helps
a critical CVE must be fixed today on a known list of servers.
Watch out
fleet-level impact is the reason Automox gates it.

Sourcegithub.com · October 1, 2026 ↗

batch_update_devices

Approval: see the rule

Applies attribute actions to up to 500 devices at once. Today that means applying or removing tags, such as marking a batch of machines as production.

What Claude asks for
the general approval rule, plus the host confirmation Automox sets on writes.
When it helps
you tag every production server after a migration in one request.

Sourcegithub.com · October 1, 2026 ↗

clone_policy

Approval: see the rule

Copies an existing policy, either inside the same organization with a new name or groups, or, for patch policies, into several other zones in a single call.

What Claude asks for
Automox documents no prompt beyond its write-tool confirmation.
When it helps
a provider rolls a proven patch policy out to several client zones.

Sourcegithub.com · October 1, 2026 ↗

create_data_extract

Approval: see the rule

Starts a new bulk data export for reporting and returns its identifier and initial status. The file itself is collected later, once the job is ready.

What Claude asks for
creating a job counts as a write for Automox, so the host confirmation applies.
When it helps
a quarterly report needs more data than a list call returns.

Sourcegithub.com · October 1, 2026 ↗

create_global_api_key

Approval: see the rule

Creates an account-wide API key. Only its metadata comes back: Automox never returns the secret through this tool, and it cannot be retrieved later through the connector.

What Claude asks for
account-level changes fall under the approvals rule described below.
When it helps
an integration needs its own key with an expiry date.
Watch out
you will collect the secret outside the chat.

Sourcegithub.com · October 1, 2026 ↗

create_policy_window

Approval: see the rule

Creates a maintenance or exclusion window using Automox's constrained recurrence rules: a one-time window, or a yearly one by month and weekday position.

What Claude asks for
as a write tool it is flagged for host confirmation, per Automox.
When it helps
you freeze changes on finance servers during closing week.
Watch out
a weekly recurrence is rejected by the validator.

Sourcegithub.com · October 1, 2026 ↗

create_server_group

Approval: see the rule

Creates a server group with a name and a check-in interval, plus an optional parent group, policies and notes.

What Claude asks for
the host confirmation Automox attaches to write tools is the documented safeguard.
When it helps
onboarding a new office that needs its own group and policies.
Watch out
the interval sets how often agents check in and scan.

Sourcegithub.com · October 1, 2026 ↗

create_user_api_key

Approval: see the rule

Creates an API key for a given user and returns its metadata. Automox states the secret is never surfaced and cannot be retrieved through the connector.

What Claude asks for
see the approvals section; no extra check is documented.
When it helps
a service account needs a key tied to one person.

Sourcegithub.com · October 1, 2026 ↗

create_webhook

Approval: see the rule

Creates a webhook subscription to an HTTPS address. The signing secret appears once, in the response, and has to be saved right away.

What Claude asks for
Automox's confirmation rule for writes covers it; nothing else is described.
When it helps
your security platform should receive policy failure events.
Watch out
the limit is 5 webhooks per organization.

Sourcegithub.com · October 1, 2026 ↗

create_zone

Approval: see the rule

Creates a new zone, meaning a new organization, inside the account. Automox keeps the new zone's access key out of the reply.

What Claude asks for
account-wide creation is subject to the approvals rule below.
When it helps
a provider signs a new client and opens a zone for them.

Sourcegithub.com · October 1, 2026 ↗

decide_patch_approval

Approval: see the rule

Approves or rejects a pending patch approval request, the decision step that follows the summary of what is waiting.

What Claude asks for
the patch-approval review screen drives this tool and leaves the host's confirmation dialog as the gate.
When it helps
you approve this month's browser patches after reading the CVE list.

Sourcegithub.com · October 1, 2026 ↗

delete_action_set

Approval: see the rule

Deletes a single remediation action set by identifier. Automox notes it is console metadata that you can rebuild by uploading the scanner file again.

What Claude asks for
deletion goes through the documented host confirmation for write tools.
When it helps
a duplicate scanner import clutters the list.

Sourcegithub.com · October 1, 2026 ↗

delete_action_sets_bulk

Approval: see the rule

Deletes up to 100 remediation action sets by identifier in a single, all-or-nothing call. Like the single version, the data can be rebuilt by re-uploading.

What Claude asks for
a bulk delete still sits under the ask-first rule Automox describes.
When it helps
you clean out last year's scanner imports in one pass.

Sourcegithub.com · October 1, 2026 ↗

delete_device

Approval: see the rule

Removes a device record and its whole history for good. Automox calls it irreversible: devices register themselves, and nothing in the connector can recreate one.

What Claude asks for
on top of any confirmation, Automox registers this tool only when an off-by-default flag is set.
When it helps
a decommissioned machine still pollutes your reports.

Sourcegithub.com · October 1, 2026 ↗

delete_global_api_key

Approval: see the rule

Permanently deletes an account-wide API key by identifier. Automox's server never handles key secrets, so nothing sensitive travels through the reply.

What Claude asks for
removing a key is a write that the approvals rule below covers.
When it helps
a key leaked and must disappear now.

Sourcegithub.com · October 1, 2026 ↗

delete_policy

Approval: see the rule

Erases a policy by identifier, permanently. Devices it targeted no longer receive its actions afterwards.

What Claude asks for
Automox lists it among write tools, so the host confirmation applies.
When it helps
an obsolete pilot policy should no longer exist.

Sourcegithub.com · October 1, 2026 ↗

delete_policy_window

Approval: see the rule

Deletes a maintenance or exclusion window for good, which lifts the freeze it imposed on its groups.

What Claude asks for
as with every Automox write, a confirmation dialog in the host is the documented check.
When it helps
a freeze created for a past event still lingers in the schedule.

Sourcegithub.com · October 1, 2026 ↗

delete_server_group

Approval: see the rule

Deletes a server group permanently, along with the grouping it provided for policies and maintenance windows.

What Claude asks for
group deletion falls under Automox's ask-first handling of write tools.
When it helps
an office closed and its group is now empty.

Sourcegithub.com · October 1, 2026 ↗

delete_user_api_key

Approval: see the rule

Permanently deletes one API key belonging to a user, identified by the user and the key.

What Claude asks for
see approvals; nothing tool-specific is documented.
When it helps
an employee left and their key must go.
Watch out
a disable call exists if you only want a pause.

Sourcegithub.com · October 1, 2026 ↗

delete_webhook

Approval: see the rule

Deletes a webhook subscription permanently; Automox stops sending events to that address from then on.

What Claude asks for
the host confirmation for write tools is the only documented safeguard.
When it helps
an old integration was retired and its endpoint no longer exists.

Sourcegithub.com · October 1, 2026 ↗

execute_device_command

Approval: see the rule

Issues an immediate command to a device: scan, patch all, patch specific packages or reboot.

What Claude asks for
Automox documents its write tools as ask-first in the host; this one is no exception.
When it helps
a user's laptop needs a reboot to finish patching.

Sourcegithub.com · October 1, 2026 ↗

execute_policy_now

Approval: see the rule

Executes a policy immediately for remediation, either on all the devices it targets or on a single one you name.

What Claude asks for
per Automox, a host confirmation precedes write actions like this one.
When it helps
you fixed a broken policy and want to rerun it on one server.
Watch out
check exclusion windows first if a freeze might apply.

Sourcegithub.com · October 1, 2026 ↗

invite_user_to_account

Approval: see the rule

Invites someone to the Automox account, optionally assigning them to zones at the same time.

What Claude asks for
account membership changes go through the approvals rule.
When it helps
a new team member needs console access to two zones.

Sourcegithub.com · October 1, 2026 ↗

refresh_saved_search_cache

Approval: see the rule

Forces Automox to rebuild the cached results of a saved search when they may be stale, so the next read reflects the current fleet.

What Claude asks for
Automox classes it as a write, so its host confirmation applies.
When it helps
results look outdated after a large tagging change.

Sourcegithub.com · October 1, 2026 ↗

remove_user_from_account

Approval: see the rule

Removes a user from the Automox account by identifier, cutting their access to every zone of the account.

What Claude asks for
the approvals section applies; no extra step is documented for removals.
When it helps
offboarding someone who left the company.

Sourcegithub.com · October 1, 2026 ↗

rotate_webhook_secret

Approval: see the rule

Rotates a webhook's signing secret. The old one stops working immediately, and the new one is shown only once.

What Claude asks for
a secret change counts as a write under Automox's confirmation rule.
When it helps
a secret may have leaked in a log file.

Sourcegithub.com · October 1, 2026 ↗

splashtop_bulk_install_uninstall

Approval: see the rule

Installs or uninstalls the Splashtop client across a whole server group. A success reply means the job is queued, not finished.

What Claude asks for
fleet scale is why Automox registers it only behind an off-by-default flag, besides any confirmation.
When it helps
rolling remote control out to a new department at once.

Sourcegithub.com · October 1, 2026 ↗

splashtop_force_disconnect

Approval: see the rule

Forces every active Splashtop session on a device to disconnect, interrupting any technician's work in progress.

What Claude asks for
covered by the host confirmation Automox sets on write tools.
When it helps
a session was left open on a sensitive server overnight.

Sourcegithub.com · October 1, 2026 ↗

splashtop_initiate_connection

Approval: see the rule

Generates a link a technician opens in their local Splashtop app. The session itself does not start from Automox, and end-user consent still applies when it is required.

What Claude asks for
link generation counts as a write; the approvals rule below covers it.
When it helps
a technician needs quick access to a user's machine.

Sourcegithub.com · October 1, 2026 ↗

splashtop_install

Approval: see the rule

Installs the Splashtop remote-control client on one device, in the background, with an option for consent at install time that is separate from per-session consent.

What Claude asks for
Automox's ask-first rule for writes is the documented check.
When it helps
a remote worker needs support and has no client yet.
Watch out
it needs an active Remote Control subscription.

Sourcegithub.com · October 1, 2026 ↗

splashtop_set_attended_access

Approval: see the rule

Turns the end-user consent requirement on or off for one device. Off means a technician can open a session with nobody approving it.

What Claude asks for
the host confirmation applies, and Automox adds a reminder to review your organization's policy first.
When it helps
a kiosk machine with nobody ever in front of it.

Sourcegithub.com · October 1, 2026 ↗

splashtop_set_bulk_attended_access

Approval: see the rule

Sets the consent requirement across many devices in one call, instead of device by device.

What Claude asks for
bulk changes still go through the approvals rule.
When it helps
aligning every lab machine on the same remote-access policy.
Watch out
tenants without an active Remote Control subscription get errors back from Automox.

Sourcegithub.com · October 1, 2026 ↗

splashtop_uninstall

Approval: see the rule

Uninstalls the Splashtop client and deletes the device's registration and consent setting, a step Automox calls permanent.

What Claude asks for
the write-tool confirmation is what Automox documents.
When it helps
a device moves to a team that must not allow remote control.

Sourcegithub.com · October 1, 2026 ↗

test_webhook

Approval: see the rule

Sends a test delivery to a webhook endpoint and reports whether it succeeded, the HTTP status and the response time.

What Claude asks for
Automox counts it as a write, so its confirmation rule applies.
When it helps
you just set up a webhook and want proof the other side receives events.

Sourcegithub.com · October 1, 2026 ↗

update_device

Approval: see the rule

Changes the editable attributes of a single device: custom name, server group, exception flag, tags or IP addresses. At least one has to be supplied.

What Claude asks for
a single-device change, under the host confirmation described for writes.
When it helps
a laptop moves to another team's group and needs a clearer name.

Sourcegithub.com · October 1, 2026 ↗

update_global_api_key

Approval: see the rule

Turns an account-wide API key on or off without deleting it, so the integration behind it can resume later.

What Claude asks for
the approvals rule below covers key state changes.
When it helps
you pause an integration during an incident.

Sourcegithub.com · October 1, 2026 ↗

update_policy_window

Approval: see the rule

Edits an existing maintenance window. Only its start is required; every other field changes only if you send a new value.

What Claude asks for
documented safeguard: the host confirmation on Automox write tools.
When it helps
a freeze needs to start two days later than planned.

Sourcegithub.com · October 1, 2026 ↗

update_server_group

Approval: see the rule

Updates an existing server group. Automox's reference gives no detail on which fields change.

What Claude asks for
as a write tool it falls under Automox's confirmation dialog.
When it helps
a group's check-in interval or its policies need adjusting.

Sourcegithub.com · October 1, 2026 ↗

update_user

Approval: see the rule

Updates a user's first name, last name, email or two-factor type. Passwords cannot be set this way, a guard Automox added against account takeover.

What Claude asks for
profile changes go through the approvals section rule.
When it helps
an employee changed their email address.

Sourcegithub.com · October 1, 2026 ↗

update_user_api_key

Approval: see the rule

Switches one user's API key on or off, identified by the user and the key, without deleting it.

What Claude asks for
see approvals; no extra step is documented for this change.
When it helps
suspending a contractor's access over a long weekend.

Sourcegithub.com · October 1, 2026 ↗

update_webhook

Approval: see the rule

Changes a webhook's name, address, enabled state or subscribed event types. Automox treats it as a partial update: only what you send is rewritten.

What Claude asks for
the host confirmation tied to writes is the documented check.
When it helps
your security platform moved to a new address.

Sourcegithub.com · October 1, 2026 ↗

upload_action_set

Approval: see the rule

Imports a vulnerability remediation action set from CSV text, in a generic format or one of the scanner formats Automox lists, such as Qualys, Tenable or Rapid7.

What Claude asks for
imports are writes, so Automox's ask-first handling applies.
When it helps
turning a fresh scanner export into remediation work.

Sourcegithub.com · October 1, 2026 ↗

upload_policy_file

Approval: see the rule

Uploads an installer from your computer to a Required Software policy, and only from folders you explicitly allowed.

What Claude asks for
besides any confirmation, Automox registers it only with an off-by-default flag and an allowed-folder list.
When it helps
deploying an in-house application to the fleet.
Watch out
it works only in the local setup.

Sourcegithub.com · October 1, 2026 ↗

Approvals

What Claude asks before it acts

By default, Claude stops and asks for confirmation before each action it takes on an account for someone, right in the conversation.

On Team and Enterprise, owners decide whether members may let some actions through without a prompt each time, and they can limit what a connector may do for the whole organization, keeping reads and closing writes for instance. Claude works with the rights of the person connected and nothing more. Automox adds its own layers: every write tool is tagged as destructive, which the host can surface as a confirmation dialog, the riskiest operations are gated behind settings, and a read-only mode removes all writes.

Plans

Which plans include it

None of the 819 sheets in the official directory states plan availability. That answer is published nowhere, connector by connector.

The general rule is public: remote connectors are open to all users on Claude, Cowork, Claude Desktop and mobile, while desktop extensions like this one install on Claude Desktop. On Team and Enterprise, an Owner or Primary Owner enables a connector before members use it. For the live state, check the Automox sheet in the official directory.

Limits

Where this extension stops

A connector is not an automation. Claude calls these tools while it answers you, so nothing fires when a new CVE lands or a policy run fails overnight.

The partner badge in the directory is not a security audit, and Anthropic states on every sheet that it neither picks a publisher's tools nor guarantees their behavior. Automox adds its own caution: AI assistants make mistakes, and responses may be incorrect or incomplete. Only Automox documents this extension; no Claude help page covers it. Automox also runs a hosted server with the same tools, not yet usable from Claude Desktop. The same directory rules apply on the Claude adobe-workfront connector page.

Need help

Need help connecting Automox to Claude?

A person reads every message.

FAQ

Questions about the Claude Automox connector

01What can Claude do with the Automox connector?
Claude can report on and manage your Automox environment from a conversation in Claude Desktop. Its 133 tools cover devices and inventory, advanced device search, policies and their run history, patches and approvals, server groups, maintenance windows, webhooks, worklets, data extracts, vulnerability imports, users, zones and API keys, audit trails and Splashtop remote control. Three combined tools answer broad questions such as Patch Tuesday readiness or compliance posture in a single call.
02Can Claude reboot devices or delete things in Automox?
Yes, 48 of the tools change something. Claude can reboot or patch a device, run a policy now, approve or reject a patch, create, clone or delete policies, edit groups and maintenance windows, manage webhooks, users and API keys, and control Splashtop. Four high-impact tools, including device deletion and fleet-wide remediation, only appear once a setting that is off by default is turned on. A read-only mode removes all 48 write tools.
03Does Claude ask before it changes anything in Automox?
Claude's general rule is to ask before an action it takes on an account for someone. Automox adds that every write tool is tagged destructive, so single-target actions are surfaced as a confirmation dialog in the host, while operations where a per-call check cannot protect you stay gated behind settings. No source describes a prompt specific to any single tool beyond that. On Team and Enterprise, owners can also restrict the connector for everyone.
04Which plans is Automox available on?
No official source publishes plan availability connector by connector, and the directory sheets do not show it. The published rule is that remote connectors are open to all users on Claude, Cowork, Claude Desktop and mobile, while desktop extensions like this one install on Claude Desktop. On Team and Enterprise, an Owner or Primary Owner enables a connector first. The Automox sheet in the official directory shows the current state for your account.
05Does Claude see every device in our Automox account?
Claude sees what your API key sees. Automox says the connector acts as you, with exactly your console and API permissions. Automox recommends an org-scoped key, created inside one zone, rather than a global account key, and gives its location: Settings, Secrets and Keys. Secrets such as key values and zone access keys are never returned. On Team and Enterprise, an owner can further narrow what the connector may do for the whole organization.
06Why do device searches fail with a 403 error?
Usually because of the key, not your permissions. Automox explains that global account keys are unreliable on the advanced device search family, returning 403 in most organizations even for full administrators, while other reads keep working. The fix it gives is to create an org-scoped key in the zone's Secrets and Keys settings and use that one instead. When reads work everywhere else and only the search tools fail, Automox says the key is the thing to change.
07Claude or an automation tool for Automox?
They do different jobs, so the choice depends on the need. Claude with this extension suits questions and decisions in the moment: check readiness, investigate a failure, approve patches, reboot one machine. Nothing continues after the conversation, and no tool reacts on its own to a new vulnerability or a failed run. For work that must start automatically on an event, webhooks and an automation platform fit better than a chat.