Skip to content
Vinkius

Rapid7 InsightVM Connector for AI agents.

10 live capabilities

Manage your vulnerability scans and asset inventory from your favorite workspace.

Live agent request Rapid7 InsightVM / Connector

Waiting for input…

AI Agent

Why people use Rapid7 InsightVM

Rapid7 InsightVM Vulnerability Management for AI Agents

With this Connector, that workflow disappears. You just ask your AI agent what's wrong with a specific server or which sites are missing scans. It pulls the data, summarizes the risks, and gives you the remediation steps in one place. You stop hunting for data and start fixing things.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • Visual Studio Code
  • Windsurf

What Vinkius changes

You get a direct line to your security data without leaving your workspace.

Use it from Claude, ChatGPT, Cursor or another AI client you already have.

One account · 5,900+ Connectors

  1. Real-world use case 01

    Patch Verification

    A DevOps engineer just updated 50 servers.

  2. Real-world use case 02

    Rapid Incident Response

    A SOC analyst sees a threat and uses get_asset_vulnerabilities to see what's wrong with a specific host in seconds.

  3. Real-world use case 03

    Inventory Audit

    A network admin needs a list of all assets with specific OS fingerprints and uses list_assets to export the data.

Complete set · 10capabilities

The complete Rapid7 InsightVM capability set.

These are the exact actions your AI can choose when you ask it to work with Rapid7 InsightVM.

Capability set01 / 03

01—04

4 capabilities in this set.

Part of 10 available through Rapid7 InsightVM.

  1. 01 Capability

    Get site

    Get the configuration details for a specific network site. This helps you review scanning scopes quickly.

  2. 02 Capability

    Get vulnerability

    Pull the full details and advisories for a specific vulnerability ID. Use this to find remediation steps.

  3. 03 Capability

    List assets

    Get a full list of all computing assets currently discovered on your network. This builds a clear inventory.

  4. 04 Capability

    List vulnerabilities

    View the global definitions for vulnerabilities in your environment. This gives you a broad view of risks.

Capability set02 / 03

05—07

3 capabilities in this set.

Part of 10 available through Rapid7 InsightVM.

  1. 05 Capability

    Trigger scan

    Force an immediate vulnerability scan on a specific network site. This validates your recent fixes.

  2. 06 Capability

    Get asset

    Retrieve detailed hardware and OS information for a specific asset. Use this to identify old hardware.

  3. 07 Capability

    Get asset vulnerabilities

    See every vulnerability found on a specific piece of hardware. This helps you prioritize what to fix first.

Capability set03 / 03

08—10

3 capabilities in this set.

Part of 10 available through Rapid7 InsightVM.

  1. 08 Capability

    Get scan

    Check the current execution status and results of a specific scan. This lets you know when data is ready.

  2. 09 Capability

    List scans

    See a chronological list of all assessment scans performed. Use this to track recent activity.

  3. 10 Capability

    List sites

    List all the network scan sites currently configured in your console. This helps you audit your coverage.

Set up in minutes

One URL. Then ask Rapid7 InsightVM to work.

Claude and ChatGPT only need the Connector URL. Copy it once, add it in settings, and use Rapid7 InsightVM from the conversation.

Choose your client

Live preview
Advanced clients IDE · CLI

Claude · Web + desktop

Official guide ↗

Connector URL · ready to paste

Streamable HTTP
https://edge.vinkius.com/vk_preview_nmw1NBAd0c7vaxJkPlmlyGDkr9YvNNJBYZZGurqi/mcp
  1. Step 01

    Open Connectors

    In Claude Web or Claude Desktop, open Settings and choose Connectors.

  2. Step 02

    Add the URL

    Choose Add custom connector, name it Rapid7 InsightVM, and paste the URL above.

  3. Step 03

    Turn it on in chat

    Select +, open Connectors, and enable Rapid7 InsightVM for the conversation.

Where the request belongs

Work Rapid7 InsightVM can move forward.

Built around the request

SOC analysts who need to move fast during an incident, DevOps engineers verifying patches, and network admins ensuring scan coverage.

01

SOC Analyst

Investigating a high-severity alert and pulling CVE details instantly to see if a patch is available.

02

DevOps Engineer

Verifying that a recent OS update actually closed the security holes on a group of production servers.

03

Network Engineer

Checking if a new subnet is correctly included in the scanning scope when provisioning new hardware.

Bring your own AI

Change the model, client or framework. Keep Rapid7 InsightVM connected.

  • Claude
  • ChatGPT
  • Gemini
  • Cursor
  • VS Code
  • Windsurf
  • ZCode
  • Cline
  • Zed
  • Continue
  • Kiro
  • Roo Code
  • Zencoder
  • Goose
  • Void
  • Augment Code
  • Amp
  • Qodo
  • Tabnine
  • Pieces
  • Sourcegraph Cody
  • JetBrains
  • Warp
  • Amazon Q
  • Antigravity
  • BoltAI
  • Raycast
  • Jan
  • LM Studio
  • AnythingLLM
  • Open WebUI
  • Msty
  • Cherry Studio
  • LibreChat
  • TypingMind
  • Chorus
  • 5ire
  • n8n
  • LangChain
  • LlamaIndex
  • CrewAI
  • Vercel AI SDK

Before you connect

Questions about Rapid7 InsightVM.

The practical details behind the request, access and result.

How can the Rapid7 InsightVM MCP help my security team?

It lets your team query vulnerabilities and asset data using natural language. Instead of clicking through a complex dashboard, your team can just ask your AI for specific info like 'what's wrong with this server?'

Can I use the Rapid7 InsightVM MCP to start new scans?

Yes, you can tell your AI agent to trigger a new vulnerability scan on a specific site immediately. This is great for verifying that a patch you just deployed actually worked.

Does the Rapid7 InsightVM MCP work with my existing Nexpose data?

Yes, it connects directly to your Rapid7 InsightVM platform. It can read your existing asset lists, site configs, and scan histories.

Can the AI agent see which assets are on my network?

Yes, it can pull a full inventory of all discovered computing assets. It can even show you specific details like hardware info and operating system fingerprints.

Is it possible to get remediation steps for specific flaws?

Yes, you can ask the agent for details on a specific vulnerability. It will pull the full advisory and remediation guidelines directly from your Rapid7 environment.

How do I connect my Rapid7 InsightVM to my AI client?

You'll need to provide your Security Console URL and your Basic Auth credentials. Once that's set up, your agent can start querying your security data.

How do I configure my credentials for Rapid7?

The integration uses Basic Authentication interacting with the Rapid7 Console API. You must configure the RAPID7_HOST (IP or FQDN), RAPID7_PORT (usually 3780), along with a dedicated RAPID7_USER and RAPID7_PASSWORD. We strongly recommend generating a specific service account in your console with restricted scan permissions.

Is the scanning triggered individually per asset?

By default, the trigger_scan mechanism relies on referencing a defined site_id, scanning the preconfigured scope attached to it rather than blindly scanning one unassociated IP.

Does it report CVSS scores?

Yes, depending on the response data provided by your installed version of the InsightVM console. Using get_vulnerability or checking asset lists brings standard threat metadata and corresponding CVSS vectors directly into your AI interface context.

One connection away

Give your agent a direct line to Rapid7 InsightVM.

Connect Rapid7 InsightVM once. Keep it beside 5,900+ managed Connectors when the next task needs more.

Explore every Connector No credit card required · Free tier available