Prerequisites
- A Silmaril customer account.
- Access to your tenant’s Silmaril organization.
- At least one authorized Firewall deployment.
- An MCP client that supports hosted OAuth discovery.
Connect from Codex
Recommended workflow
Start broad, then narrow to the evidence a review actually needs.1
Discover
Map deployments and capabilities with
list_firewalls, get_firewall, and get_schema.2
Review
Summarize posture with
get_metrics, get_finding_totals, group_findings, and list_findings.3
Investigate
Rank repeated abuse with
list_suspicious_users and build compact context with get_investigation_packet.4
Escalate
Use restricted
get_finding or get_finding_trace only when compact evidence is insufficient and your account has detail access.Starter prompts
Run the first prompt to discover your Firewall IDs, then use returned IDs in the remaining prompts.Evidence safety
Expected result
After login,list_firewalls returns the deployments your account can access. Restricted finding and trace tools remain unavailable unless your account has detail access.