What Is InfraScout?
InfraScout is Infrastructure as Chat — a SaaS platform that lets you assess and audit your IT infrastructure through natural conversation with an AI client. Instead of logging into dozens of systems and running scripts manually, you describe what you want to understand and InfraScout orchestrates the investigation for you. Today, Claude is the supported AI; support for additional models will follow.
How It Works
InfraScout is built on three layers that work together to turn a conversation into a structured infrastructure assessment.
The first layer is the agents you install on your own hosts. These are lightweight binaries that run on Windows, Linux, and macOS. Each agent connects to InfraScout over an encrypted channel, waits for assessment commands, executes them locally, and reports results back to the platform. Your data never takes a detour — agents communicate directly and securely with InfraScout's cloud backend.
The second layer is the InfraScout platform itself — the SaaS infrastructure you never have to manage. The platform coordinates your agents, stores findings as structured Insights, serves assessment playbooks, and exposes everything through an MCP endpoint and a web portal. Availability, scaling, and security of the platform are InfraScout's responsibility, not yours.
The third layer is your AI client. Claude Desktop — or any MCP-compatible client — connects to InfraScout's MCP SSE endpoint. From that point on, InfraScout can list your registered agents, start assessment sessions, run commands, query your Microsoft Cloud environment, and save findings on your behalf. You guide the investigation in plain language; InfraScout handles the tooling.
What You Can Assess
InfraScout gives you two complementary coverage areas that together span most enterprise environments.
For on-premises and hybrid infrastructure, the agent runs the same way on Windows, Linux, and macOS, so one assessment workflow spans your whole fleet. On any platform you can run shell commands, search Active Directory over LDAP, and collect inventory — installed software, running services, certificates, and operating-system details — to surface configuration drift, stale packages, or expiring certificates across hundreds of hosts at once.
Windows hosts add deeper native tooling on top of that baseline: PowerShell scripts and cmdlets, WMI queries, and Windows Event Log searches for forensic and configuration review. Whether you are inspecting a single Linux web server, a macOS laptop, or a hundred Windows domain controllers, the conversation-driven workflow is identical.
For Microsoft Cloud, InfraScout connects directly to your Entra ID tenant and uses Microsoft Graph on your behalf — no agent required on cloud systems. You can query Entra ID users, groups, and role assignments; enumerate Azure subscriptions and resources; review Conditional Access policies; pull Defender alerts; and inspect M365 services including Teams, SharePoint, and Intune. The moment your Entra tenant is connected, the full Microsoft Cloud surface becomes available through InfraScout.
Findings as Insights
Every finding InfraScout saves during an assessment is stored as a structured Insight with a severity level, a category, and a remediation status. You track and resolve Insights in the Insights page of the web portal, giving you a persistent record that carries forward across assessment runs. Insights do not go stale the way a one-off report does — they accumulate into a living picture of your environment's security posture over time.
Playbooks
Assessment playbooks are markdown documents that give InfraScout a structured path through a review. Rather than starting from a blank conversation, a playbook tells InfraScout which areas to examine, what to look for, and how to classify what it finds. InfraScout ships built-in playbooks covering common scenarios — Active Directory, Azure, Exchange, PKI, and Security Review — and lets you author your own to match the specifics of your environment.
What You Set Up
As a customer you are responsible for three things: installing agents on the hosts you want to assess, connecting your Entra ID tenant for Microsoft Cloud coverage, and pointing your MCP client at InfraScout's MCP endpoint. Everything else — the platform, the tooling, the playbook library — is managed by InfraScout.
When you are ready to begin, see the Quick Start guide.