The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the Proofpoint Essentials listing page.
A Model Context Protocol (MCP) server for the Proofpoint Essentials API. Enables AI assistants to manage MSP-multi-tenant email security: organizations, domains, users, licensing, features, subscription packages, and email flow reporting.
This is a distinct product/API from Proofpoint TAP (see
proofpoint-mcp for TAP threat intelligence,
quarantine, and URL defense) — Essentials is Proofpoint's SMB/MSP email-security product,
with its own base URL, auth model, and org-management surface.
Part of the WYRE AI MCP fleet — a growing suite of AI integrations for the MSP stack.
Set the following environment variables:
| Variable | Required | Description |
|---|---|---|
PROOFPOINT_ESSENTIALS_USERNAME | Yes | Org-administrator username (sent as the X-User header) |
PROOFPOINT_ESSENTIALS_PASSWORD | Yes | Org-administrator password (sent as the X-Password header) |
PROOFPOINT_ESSENTIALS_REGION | No | Region subdomain, e.g. us1 or eu1 (default: us1) |
MCP_TRANSPORT | No | Transport mode: stdio (default) or http |
Only organization-administrator accounts can authenticate against this API; end-user accounts cannot.
Add to your Claude Desktop claude_desktop_config.json:
Proofpoint Essentials is an MSP multi-tenant API — every org/domain/user-scoped tool takes the target customer organization's domain as a per-call argument (credentials are not scoped to a single org).
proofpoint_essentials_org_get — get org data and its domainsproofpoint_essentials_org_set_active — activate/deactivate an org ⚠ high-impactproofpoint_essentials_org_delete — delete an org ⚠ destructive, irreversibleproofpoint_essentials_domains_listproofpoint_essentials_domains_create — batch addproofpoint_essentials_domains_update ⚠ high-impactproofpoint_essentials_domains_delete ⚠ destructive, irreversibleproofpoint_essentials_users_listproofpoint_essentials_users_getproofpoint_essentials_users_create — batch addproofpoint_essentials_users_update ⚠ high-impactproofpoint_essentials_users_delete ⚠ destructive, irreversibleproofpoint_essentials_endpoint_discover — resolve which region hosts a customer domainproofpoint_essentials_features_get / proofpoint_essentials_features_update ⚠ high-impactproofpoint_essentials_licensing_get / proofpoint_essentials_licensing_update ⚠ high-impactproofpoint_essentials_package_update ⚠ high-impactproofpoint_essentials_reporting_get — inbound/outbound email flow metricsproofpoint_essentials_token_create — mint an Odin-based SSO tokenDestructive tools require explicit confirmation. Interactive MCP clients are prompted
via elicitation; non-interactive callers (e.g. the WYRE gateway) must pass
confirm_destructive_action: true and are otherwise blocked.
Contributions are welcome! Please see CONTRIBUTING.md, or open an issue to discuss changes.
Licensed under the Apache License, Version 2.0. See LICENSE for details.