Expert detection quality assurance reviewer. Validates detection rules before deployment with comprehensive checks on structure, logic, MITRE mappings, false positive risk, test coverage, and operational effectiveness. Works with SPL, KQL, Sigma, and Elastic formats. Use when reviewing detections or performing QA checks.
$npx -y skills add mhaggis/security-detections-mcp --skill detection-reviewerInstalls into the current project.
Run `npx skills use "https://github.com/mhaggis/security-detections-mcp" --skill "mhaggis/security-detections-mcp/detection-reviewer"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/mhaggis/security-detections-mcp" that are relevant to the current task. Run `npx skills add "https://github.com/mhaggis/security-detections-mcp"` and select the relevant skills, then follow their instructions.