find-contact
Resolve a 3CX contact or extension by email, extension, or name
Generate a portfolio-wide M365 security posture report — Secure Score equivalents, MFA enrollment, conditional access coverage, and domain authentication across all managed tenants
$ npx -y skills add wyre-technology/msp-claude-plugins --agent claude-codeHow it fires
How this command gets triggered: by you, by Claude, or both.
/secure-score-reportContext preview
What this command does when you run it.
Generate a portfolio-wide M365 security posture report — Secure Score equivalents, MFA enrollment, conditional access coverage, and domain authentication across all managed tenants
description: Generate a portfolio-wide M365 security posture report — Secure Score equivalents, MFA enrollment, conditional access coverage, and domain authentication across all managed tenants argument-hint: "[format] [tenants]" arguments: [format, tenants]
Portfolio-level security posture report across the MSP's managed tenants. Designed for monthly internal reviews, quarterly business reviews, and as the source data for client-facing security summaries.
For each tenant in scope:
| Metric | Source | |--------|--------| | BPA fail count (Identity / Mail / Security) | `cipp_list_bpa` | | Enabled CA policies (count + presence of MFA-for-all-apps) | `cipp_list_conditional_access_policies` | | MFA enrollment % | `cipp_list_mfa_users` | | Domain health (DMARC enforced, SPF valid, DKIM enabled) | `cipp_list_domain_health` | | Standards baseline coverage | `cipp_list_standards` | | Computed risk band | High / Medium / Low |
Tenants are sorted with high-risk first.
Cross-tenant *change* analysis ("which tenants regressed since last month?") goes to `security-posture-reviewer`, which can compare against a stored baseline and recommend remediation paths. This command produces the data; the agent produces the narrative.
One command to supercharge Claude Code for MSP workflows. Then restart Claude Code. That's it. Documentation: mcp.wyre.ai
Repo: wyre-technology/msp-claude-plugins
Resolve a 3CX contact or extension by email, extension, or name
Search for specific threat patterns in Abnormal Security by sender, recipient, attack type, or keywords
Triage recent email threats detected by Abnormal Security by severity and attack type