MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Microsoft 365
23 tools · footprint 41
8 high 14 med 1 low
Paytm for Business
24 tools · footprint 41
2 critical 7 high 5 med 10 low COSOPCI+1 more
Vercel
20 tools · footprint 41
2 critical 3 high 2 med 13 low COSOSOX
Cloudinary
23 tools · footprint 40
1 critical 4 high 15 med 3 low
Freshdesk
24 tools · footprint 40
6 high 14 med 4 low
Netlify
23 tools · footprint 40
2 critical 4 high 4 med 13 low
Zapier
14 tools · footprint 39
1 critical 3 high 3 med 7 low COSOPCI+1 more
Freshservice
23 tools · footprint 38
6 high 15 med 2 low
GitHub
83 tools · footprint 38
1 high 20 med 62 low COSOSOX
Bright Data
25 tools · footprint 37
5 high 17 med 3 low
Snowflake
6 tools · footprint 37
2 critical 3 high 1 med COSOSOX
Brex
25 tools · footprint 36
3 high 17 med 5 low COSOGLBA+2 more
Microsoft Dataverse
15 tools · footprint 35
1 critical 3 high 8 med 3 low
Calendly
35 tools · footprint 34
2 high 13 med 20 low
Lovable
25 tools · footprint 34
1 critical 2 high 9 med 13 low
Smartsheet
42 tools · footprint 34
2 high 9 med 31 low COSOSOX
‹ PrevPage 3 of 19Next ›
HubSpot Developer MCP Server (App & CMS Development)Docs ↗
4 med 17 low · 21 tools · 1 SoD-flagged
regimes ISO_27001SOC2

Tools needing tighter control (1 of 21)

hubspot-cms-api.deploy-project medium conf highhuman approval
Promotes a build to the connected HubSpot account, changing live app and CMS behavior without a separate review gate.
All other tools (20)
hubspot-cms-api.add-feature-to-project low conf highallow
Adds a feature to an existing local project, expanding its configuration ahead of the next upload.
hubspot-cms-api.create-cms-function low conf highallow
Scaffolds a new CMS serverless function supporting any HTTP method; local code artifact until uploaded.
hubspot-cms-api.create-cms-module low conf highallow
Scaffolds a new CMS module in HubL or React with content-type targeting; local artifact until deployed.
hubspot-cms-api.create-cms-template low conf highallow
Scaffolds a new CMS template of a chosen type; local artifact that shapes page, email, or blog rendering once deployed.
hubspot-cms-api.create-project low conf highallow
Scaffolds a new local developer project from a template; auth type and distribution are locked after first upload.
hubspot-cms-api.create-test-account medium conf mediumaudit
Provisions a temporary developer test account defaulting to Enterprise tier, consuming developer-account entitlements.
hubspot-cms-api.fetch-doc low conf highallow
Retrieves the full content of a HubSpot developer documentation page; read-only knowledge lookup.
hubspot-cms-api.find-projects low conf highallow
Discovers local project directories by walking the filesystem; read-only enumeration of paths.
hubspot-cms-api.get-api-usage-patterns-by-app-id low conf highallow
Exposes aggregate API usage analytics for an app, including which endpoints are called and across how many accounts.
hubspot-cms-api.get-apps-info low conf highallow
Enumerates registered applications and their IDs for the connected account; read-only inventory.
hubspot-cms-api.get-build-logs low conf highallow
Returns full pipeline logs for a build, which may surface configuration detail useful for debugging failures.
hubspot-cms-api.get-build-status low conf highallow
Reports build status and error messages for a project's recent or specified build.
hubspot-cms-api.get-cms-serverless-function-logs medium conf mediumaudit
Returns production execution logs for a deployed serverless function, which may contain request data or other runtime detail.
hubspot-cms-api.get-feature-config-schema low conf highallow
Returns the JSON schema for a feature configuration file so valid values and constraints are known before editing.
hubspot-cms-api.guided-walkthrough-cli low conf highallow
Walks a developer through key HubSpot CLI commands; informational guidance with no state change.
hubspot-cms-api.list-cms-remote-contents low conf highallow
Lists files in a remote CMS directory; deprecated read-only listing superseded by the hs CLI.
hubspot-cms-api.list-cms-serverless-functions low conf highallow
Enumerates serverless functions deployed to the account; deprecated read-only listing superseded by the hs CLI.
hubspot-cms-api.search-docs low conf highallow
Searches HubSpot developer documentation and returns relevant page URLs; read-only knowledge lookup.
hubspot-cms-api.upload-project medium conf highaudit
Pushes a local project to HubSpot and triggers a remote build the vendor flags as potentially destructive, mutating remote project state.
hubspot-cms-api.validate-project low conf highallow
Checks project configuration files locally for errors; no remote state is touched.