Resources · Claude connector

Claude Rapid7 Bulk Export connectorWhat Claude can analyse from your Rapid7 exports.

The Claude Rapid7 Bulk Export connector exposes 8 tools: 7 read, 1 write, 0 undocumented. Published by Rapid7, this desktop extension has Claude request an export from Rapid7, load it into a local database on your machine, then answer security questions from it.

Verified Trustpilot reviews · AI, automation & growth agency

Overview

What the Rapid7 Bulk Export connector changes

Rapid7's Bulk Export API hands over vulnerability, asset, policy and software data in files built for analysts, not for a quick question. This extension closes that gap: Claude starts the export, follows it, loads the result into a database on your own machine and runs the queries, so a question asked in plain English comes back with figures.

Rank what to patch first. Once the data is loaded, query_rapid7 runs SQL on it, for instance to list the most severe vulnerabilities, and Claude explains the result.

Get the big picture in one answer. get_rapid7_stats returns row counts, severity distribution, CVSS ranges, exploit counts and the split by cloud provider.

Track remediation over months. start_rapid7_export requests remediation data over a date range, check_rapid7_export_status follows the job, and download_rapid7_export loads it so trends can be read across the whole period.

What it will not do: it does not patch, close or reassign anything in Rapid7, and nothing runs on its own when a new scan lands; Claude acts only while it answers you, inside the desktop app where the extension lives. We have no n8n, Make or Zapier page for Rapid7; our Integrations hub lists the platforms we cover, and the Claude connectors page gathers the others.

Vocabulary

Five words before you install

The Claude vocabulary this page relies on, in one minute.

Connector
The link you set up once between Claude and an account you already own, so Claude can work with it while it answers you.
Tool
One named thing a connector lets Claude do on that account. Claude picks the tools it needs itself; the directory sheet lists them by name.
Authorization
The access you hand Claude on the service, granted once per person on the service's own terms, and taken back the same way.
Approval
The confirmation Claude waits for before it goes ahead with something that changes an account, shown in the chat when it matters.
MCP
The shared standard connectors are built on: it is what lets an assistant like Claude talk to an outside service such as Rapid7.
Connect

Install the Claude Rapid7 Bulk Export connector in three steps

  1. 01

    Find the extension in the settings

    In Claude Desktop, open the settings, go to Customize then Connectors, and search for Rapid7 Bulk Export. On a Team or Enterprise workspace, an Owner or Primary Owner has to enable it for the organization before members can install it.

  2. 02

    Launch the install from its row

    Start it from the Rapid7 Bulk Export line with Connect and complete the steps the service asks for. If the extension misbehaves later, Disconnect it and install it again: that is the documented repair for a broken link.

  3. 03

    Read the access you grant

    Before you confirm, read any permission or access screen carefully: it comes from the service, not from Claude, and it decides what the access covers. Claude then works with exactly that access and nothing beyond it.

Tools

The 8 tools of the Rapid7 Bulk Export connector

Rapid7 Bulk Export gives Claude 8 tools: 7 that read your account, 1 that change something in it.

One tool starts a job on Rapid7's side; the seven others follow it, load the files locally and read them. Names stay exactly as Claude shows them.

  • 7 read
  • 1 write

What Claude reads (7)

7 tools

Seven tools that track exports, bring their files onto your machine and query the local copy.

check_rapid7_export_status

Reports once, without waiting, where an export stands: Rapid7's own status, the local download and load progress, or for a long remediation job, which time window is loading and which are done.

When it helps
an export is under way and you want to know whether it is ready to query.

Sourcegithub.com · October 1, 2026 ↗

download_rapid7_export

Fetches a finished export's Parquet files and loads them into the DuckDB database on your computer, in the background, returning straight away. The data becomes queryable once the status check says the load is complete.

When it helps
the export is ready and you want Claude to work on it.
Watch out
large exports take longer than one reply, so ask for the status again.

Sourcegithub.com · October 1, 2026 ↗

load_rapid7_parquet

Reads Parquet files you already have straight from disk, skipping the call to Rapid7 entirely. The files must sit in the extension's imports folder in your home directory.

When it helps
you already have exported Parquet files and want to skip the call to Rapid7's API.

Sourcegithub.com · October 1, 2026 ↗

query_rapid7

Runs SQL against the data that has been loaded. Rapid7 locks the connection after loading, blocking file and network access at the database level.

When it helps
the data is loaded and your question needs a count, a filter or a ranking across it.

Sourcegithub.com · October 1, 2026 ↗

get_rapid7_schema

Returns the column names and data types of every loaded table, so Claude knows which fields exist before it builds a query.

When it helps
Claude needs to know which fields a table offers before it builds a query, rather than guessing field names.

Sourcegithub.com · October 1, 2026 ↗

get_rapid7_stats

Produces an overview of the loaded data: row counts, severity distribution, CVSS score ranges, exploit counts and the breakdown by cloud provider, all in one call.

When it helps
you want an overview of the loaded data before asking about individual assets or findings.

Sourcegithub.com · October 1, 2026 ↗

list_rapid7_exports

Shows the recent export history with IDs, dates, statuses and row counts, which makes it easy to find a previous export and reload it.

When it helps
you are looking for a previous export to reload and need its ID.

Sourcegithub.com · October 1, 2026 ↗

What Claude starts on Rapid7 (1)

1 tool

One tool that asks Rapid7's servers to prepare a new export.

start_rapid7_export

Approval: see the rule

Asks Rapid7's servers to begin a new export job of one of four types: vulnerability, policy, remediation or installed asset software. It returns immediately with an ID to follow.

What Claude asks for
no source describes a confirmation for this tool; the general approval rule below applies.
When it helps
you need a new export of vulnerability, policy, remediation or asset software data.

Sourcegithub.com · October 1, 2026 ↗

Approvals

What Claude asks before it acts

By default, Claude stops and asks before each action it carries out on an account for someone. The only tool that starts something on Rapid7's side is start_rapid7_export, and no source describes a confirmation specific to it.

On Team and Enterprise workspaces, owners decide whether a member may let certain actions through without being asked every time. They can also restrict what a connector may do for the entire organization, for example allow reading and close writing, and nobody overrides that from their own account. Claude works with the rights of the person who connected it and no more: what that person cannot reach in Rapid7, Claude cannot reach either.

Plans

Which Claude plans include it

Anthropic's general rule: remote connectors are open to all users on Claude, Cowork, Claude Desktop and mobile, while desktop extensions like this one install in Claude Desktop.

On Team and Enterprise, an Owner or Primary Owner enables a connector for the organization before members can use it. For this extension's current status, go to its sheet in the official directory, linked from the button at the top of this page. No official source publishes plan availability connector by connector, so that sheet is the one place to check.

Limits

What the Rapid7 Bulk Export connector does not do

Only Rapid7 documents this extension, in the README of its public repository: neither the Claude help center nor Anthropic's developer docs have a page on it.

A connector is not an automation: Claude calls its tools during a reply, and nothing fires when a scan finishes or a new vulnerability appears. The verification badge in the directory is not a security audit, and Anthropic says on every sheet that it does not control the tools a publisher exposes, so install only what you know the publisher of. A list of tools is an observed floor, never a ceiling.

Need help

Need help connecting Rapid7 Bulk Export to Claude?

A person reads every message.

FAQ

Questions about the Claude Rapid7 Bulk Export connector

01What can Claude do with the Rapid7 Bulk Export connector?
Claude can request an export from Rapid7, follow its progress, load the files into a database on your computer and answer questions from them. It runs SQL on the vulnerability, policy, remediation and asset software data it loaded, shows the structure of each table and produces summary statistics such as severity distribution or exploit counts. You ask in plain words in the conversation, and Claude writes the queries and explains the results back to you.
02Can Claude write, send or delete anything through it?
One tool starts something on Rapid7's side: start_rapid7_export asks Rapid7's servers to prepare a new export. The other seven read status, history or the local copy of the data. None of the tools on the sheet is described as patching, closing or reassigning anything in Rapid7. The download and load tools fill a database on your own machine, not your Rapid7 account, and the query connection is locked after loading.
03Does Claude ask before starting an export?
By default, Claude stops and asks before each action it carries out on an account for someone. No source describes a confirmation tied to start_rapid7_export or any other Rapid7 tool specifically, so that general rule applies, including for the one tool that starts a job on Rapid7's servers. On Team and Enterprise workspaces, owners decide whether members may let certain actions through without a new prompt, and they can restrict what the connector may do for everyone in the organization.
04Which Claude plans is it available on?
No official source states, plan by plan, which connectors are included. Anthropic's general rule is that desktop extensions install in Claude Desktop for all users, and that on Team and Enterprise an Owner or Primary Owner enables the connector before members can use it. The connector's sheet in the official directory is the only place showing its current status, so check it from your own account. This is a desktop extension, used from the Claude Desktop app.
05Does Claude see my whole Rapid7 account?
Claude works with the rights of the person who set up the connection and nothing more: what that person cannot reach in Rapid7, Claude cannot reach either. In practice it sees what the exports contain, meaning the vulnerability, policy, remediation or software data you asked for, once loaded locally. Rapid7 adds that the query connection is locked after loading, with file and network access blocked at the database level. It does not browse beyond those exports.
06Why does a long remediation export take several steps?
Rapid7 limits each remediation export to 31 days and allows only one at a time. When you ask for a longer range, the extension splits it into windows of up to 31 days and processes them one after another in the background as a single job. The status tool shows which window is loading and which are finished. The download tool loads in the background, so the status tool is how you follow it. Ask for the status again until it says done.
07Claude or an automation tool for Rapid7 exports?
They do different jobs. This connector serves a conversation: you ask a security question and Claude exports, loads and queries the data to answer it then. An automation tool runs a fixed scenario by itself when an event occurs. Nothing in this extension starts on its own, so producing a report on a schedule without anyone asking is a task for an automation tool, while Claude helps you explore what the data says.