MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Guidepoint
5 tools · footprint 10
2 med 3 low
isolved People Cloud
6 tools · footprint 10
2 med 4 low
Lightfield
5 tools · footprint 10
2 med 3 low
Shopify
6 tools · footprint 10
1 med 5 low
Swagger (SmartBear)
25 tools · footprint 10
10 med 15 low
Benchling
4 tools · footprint 9
2 high 2 med
Boltz
11 tools · footprint 9
7 med 4 low
CargoAi
6 tools · footprint 9
1 med 5 low
ClinicalTrials.gov Connector
6 tools · footprint 9
1 med 5 low
Exa
7 tools · footprint 9
1 med 6 low
Exa
4 tools · footprint 9
1 med 3 low
FactSet AI-Ready Data
18 tools · footprint 9
1 med 17 low
HubSpot Developer MCP Server (App & CMS Development)
21 tools · footprint 9
4 med 17 low
Indeed
4 tools · footprint 9
1 med 3 low
Canary Data
14 tools · footprint 8
14 low
Google Contacts (People API MCP Server)
3 tools · footprint 8
3 low
‹ PrevPage 13 of 19Next ›
HealthExDocs ↗
1 high 11 med 3 low · 15 tools · 0 SoD-flagged
regimes HIPAAISO_27001SOC2

Tools needing tighter control (10 of 15)

healthex.search high conf highOBO redact
Semantic natural-language search spanning every category of a patient's record — conditions, medications, labs, procedures, visits, and clinical notes — surfacing the entire health picture in one call.
healthex.get_health_summary medium conf highaudit redact
Returns a comprehensive PHI snapshot — date of birth, active conditions, current medications with dosages, allergies, and recent vitals — aggregating the patient's core health profile in a single read.
healthex.search_clinical_notes medium conf highaudit redact
Full-text search across all of a patient's clinical notes exposes the most sensitive free-text documentation, including provider narratives that can contain mental-health and behavioral detail.
healthex.get_notes_by_visit medium conf mediumaudit redact
Retrieves all clinical documentation attached to a single encounter, including provider narrative notes and diagnoses recorded for that visit.
healthex.get_conditions medium conf highaudit redact
Exposes a patient's full diagnosis history, including resolved and inactive conditions with start and end dates.
healthex.get_medications medium conf highaudit redact
Reveals a patient's complete medication record — dosing instructions, prescriber, indication, pharmacy, and refill history — which can imply underlying diagnoses.
healthex.get_labs medium conf highaudit redact
Surfaces laboratory results with values, reference ranges, and abnormal flags across blood work, urinalysis, and pathology.
healthex.get_procedures medium conf highaudit redact
Discloses surgical and diagnostic procedure history, including biopsies, endoscopies, colonoscopies, and interventions.
healthex.get_visits medium conf highaudit redact
Reveals clinical encounter history with dates, visit types, providers, locations, chief complaints, and diagnoses addressed.
healthex.update_and_check_recent_records low conf lowallow
Deprecated combined refresh-and-status call that vendor docs direct users to replace with the separate update_records and check_records_status tools.
All other tools (5)
healthex.check_records_status low conf mediumallow
Reports the current sync status of connected health records without triggering a refresh or returning clinical data.
healthex.get_allergies medium conf mediumaudit
Lists a patient's allergies and intolerances with allergen, clinical status, criticality, and reaction details used for care-safety decisions.
healthex.get_immunizations medium conf mediumaudit
Reveals full vaccination history with vaccine names, dates administered, dose numbers, series completion, and administering providers.
healthex.get_vitals medium conf mediumaudit
Exposes biometric vital-sign measurements including blood pressure, heart rate, temperature, respiratory rate, oxygen saturation, weight, height, and BMI.
healthex.update_records low conf highallow
Triggers a background refresh that re-pulls the patient's health records from all connected provider locations; reversible and returns no clinical data itself.