MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Confluence (Atlassian Rovo MCP Server)
16 tools · footprint 1
1 med 15 low
CourtListener
14 tools · footprint 1
1 med 13 low
Fiscal.ai
2 tools · footprint 1
1 med 1 low
Glovo
5 tools · footprint 1
1 med 4 low
Google Slides
2 tools · footprint 1
1 med 1 low
ICD-10 Codes
6 tools · footprint 1
6 low HIPAA
MSCI
4 tools · footprint 1
1 med 3 low
Open Targets
5 tools · footprint 1
1 med 4 low
Order by Cash App
5 tools · footprint 1
1 med 4 low
PopHIVE
7 tools · footprint 1
1 med 6 low
AdisInsight
4 tools · footprint 0
4 low
Ahrefs
42 tools · footprint 0
42 low
Aiera
39 tools · footprint 0
39 low
AllTrails
5 tools · footprint 0
5 low
Autodesk Product Help
2 tools · footprint 0
2 low
Benevity
2 tools · footprint 0
2 low
‹ PrevPage 16 of 19Next ›
TavilyDocs ↗
2 med 3 low · 5 tools · 0 SoD-flagged
regimes none

Tools needing tighter control (0 of 5)

None — every tool is low-risk, high-confidence, and outside PCI/HIPAA payload scope.
All other tools (5)
tavily.tavily_crawl medium conf highaudit
Recursively harvests content across a website at configurable depth and breadth, a bulk scraping operation that ingests large volumes of third-party data and can breach a site's terms of service.
tavily.tavily_extract low conf highallow
Pulls the full raw content of specified URLs into the agent context, potentially ingesting third-party personal data or injected instructions from those pages.
tavily.tavily_map low conf highallow
Enumerates the URL structure of a target website, exposing its page inventory without fetching page bodies.
tavily.tavily_research medium conf mediumaudit
Runs multi-source aggregated research and returns a synthesized answer, blending many untrusted web sources into one response and compounding provenance risk.
tavily.tavily_search low conf highallow
Retrieves live web search snippets and source URLs, pulling untrusted external content into the agent context that can steer downstream decisions.