fp-pattern-finder

Automatically detect false positive patterns in detections using deterministic analysis. Fetches historic detections for a time window, runs pattern detection script to identify noisy patterns (single-host concentration, identical command-lines, service accounts, same hash, temporal periodicity, etc.), generates narrow FP rules for each pattern, and presents for user approval before deployment. Use for bulk FP tuning, detection noise analysis, or automated alert fatigue reduction.

$ Installer

git clone https://github.com/refractionPOINT/documentation /tmp/documentation && cp -r /tmp/documentation/marketplace/plugins/lc-essentials/skills/fp-pattern-finder ~/.claude/skills/documentation

// tip: Run this command in your terminal to install the skill

Repository

refractionPOINT
refractionPOINT
Author
refractionPOINT/documentation/marketplace/plugins/lc-essentials/skills/fp-pattern-finder
2
Stars
1
Forks
Updated3d ago
Added1w ago