Threat intel lookups from the terminal, with key rotation held for approval
Connect IBM X-Force Exchange and ask about threat intelligence without leaving the terminal. Pull the latest public collections, page through the full set, and check the IP reputation and URL category lists the platform scores against. Reads come back right away. Generating a new API key and password pair is a write, so it is previewed and approved first. Luumen authenticates with an API key.
7 tools: 6 read, 1 write. Reads answer instantly. Writes require approval by default. Everything is logged.
What a governed IBM X-Force Exchange run looks like inside Luumen.
Authorize once with API token. Luumen lists the scopes each action needs before you approve the connection, and credentials never appear in the chat.
Read actions answer immediately. Anything that writes — generate api key and password — is shown as a plan and requires approval by default. Administrators configure that per tool, so you decide exactly which actions can ever run unattended.
You decide. Actions are granted per agent, skill, and team, and per environment — production is not staging. Read access can be broad while writes stay narrow.
Every call to IBM X-Force Exchange — read or write, approved or declined — is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.
Connect in minutes. Every action scoped, approved, and audited from day one.