Microsoft Sentinel
Cloud and workloads

Sentinel Mcp Use Tool Visual Studio Code

In brief

The verification step now specifies that administrators should confirm the tools appear under the MCP server they added. The document date and authoring metadata were also updated.

What Defender admins need to know

The revised instruction makes it clearer where to verify the MCP tools; no configuration change is stated.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

  1. Open Visual Studio Code's chat. Select View > Chat, select the Toggle Chat icon :::image type="icon" source="media/sentinel-mcp/mcp-chat-icon.png"::: beside the search bar, or press Ctrl + Alt + I.

  2. Verify connection. Set the chat to Agent mode then confirm by selecting the Configure Tools icon :::image type="icon" source="media/sentinel-mcp/mcp-tools-icon.png"::: that you see added under the MCP server.server you added.

    :::image type="content" source="media/sentinel-mcp/mcp-get-started-04.png" alt-text="Screenshot of a Visual Studio Code Agent menu with the Agent mode and tool icon highlighted." lightbox="media/sentinel-mcp/mcp-get-started-04.png":::