Microsoft Defender · Capability
Microsoft Defender for Endpoint API — Machines
Microsoft Defender for Endpoint API — Machines. 5 operations. Lead operation: Microsoft Defender List machines. Self-contained Naftiko capability covering one Microsoft Defender business surface.
What You Can Do
GET
Listmachines
— Microsoft Defender List machines
/v1/machines
GET
Getmachine
— Microsoft Defender Get machine by ID
/v1/machines/{machineid}
GET
Listmachinealerts
— Microsoft Defender List alerts for a machine
/v1/machines/{machineid}/alerts
GET
Listmachinevulnerabilities
— Microsoft Defender List vulnerabilities for a machine
/v1/machines/{machineid}/vulnerabilities
GET
Listvulnerabilitymachinereferences
— Microsoft Defender List machines affected by a vulnerability
/v1/vulnerabilities/{vulnerabilityid}/machinereferences
MCP Tools
microsoft-defender-list-machines
Microsoft Defender List machines
read-only
idempotent
microsoft-defender-get-machine-id
Microsoft Defender Get machine by ID
read-only
idempotent
microsoft-defender-list-alerts-machine
Microsoft Defender List alerts for a machine
read-only
idempotent
microsoft-defender-list-vulnerabilities-machine
Microsoft Defender List vulnerabilities for a machine
read-only
idempotent
microsoft-defender-list-machines-affected
Microsoft Defender List machines affected by a vulnerability
read-only
idempotent