MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Freshservice
23 tools · footprint 33
5 high 12 med 6 low
Microsoft Teams
25 tools · footprint 33
4 high 11 med 10 low
Ramp
17 tools · footprint 33
5 high 5 med 7 low COSOGLBA+2 more
Attio
37 tools · footprint 32
4 high 14 med 19 low
Euler
25 tools · footprint 32
1 high 13 med 11 low
Box
25 tools · footprint 31
4 high 13 med 8 low
Egnyte
21 tools · footprint 31
3 high 9 med 9 low
Stytch
7 tools · footprint 31
1 critical 2 high 2 med 2 low
Affinity
25 tools · footprint 30
20 med 5 low
Superhuman Mail
10 tools · footprint 30
4 high 3 med 3 low
dbt
22 tools · footprint 29
3 high 7 med 12 low COSOSOX
Microsoft Outlook Mail
22 tools · footprint 29
5 high 8 med 9 low
Ticket Tailor
20 tools · footprint 29
2 high 14 med 4 low PCI
Wix
16 tools · footprint 29
1 critical 1 high 1 med 13 low COSOPCI+1 more
GoCardless
9 tools · footprint 28
2 critical 3 high 1 med 3 low COSOGLBA+2 more
GovTribe
25 tools · footprint 28
2 high 15 med 8 low
‹ PrevPage 4 of 19Next ›
Microsoft DataverseDocs ↗
1 critical 3 high 8 med 3 low · 15 tools · 2 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDNIST_CSFPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (4 of 15)

dataverse.delete_table critical conf mediumhuman approval
Drops an entire Dataverse table and every row it holds — irreversible loss of all business and customer data stored in that table.
dataverse.read_query high conf mediumhuman approval
Runs arbitrary SQL SELECT queries across Dataverse tables, capable of returning large volumes of records including personal data in a single call.
dataverse.delete_record high conf mediumOBO
Permanently removes a row from a Dataverse table, destroying a business record that may contain personal data with no built-in recovery.
dataverse.file_download high conf mediumOBO
Generates a SAS URL that grants direct download access to a stored Dataverse file, whose contents may include personal or confidential data.
All other tools (11)
dataverse.commit_file_upload low conf mediumallow
Finalizes a previously staged file upload, attaching the uploaded content to Dataverse.
dataverse.create_record medium conf mediumaudit
Inserts a new row into a Dataverse table, creating a business record that may contain personal data about identifiable individuals.
dataverse.create_table medium conf mediumaudit
Adds a new table and schema to the Dataverse environment, altering the data model that downstream apps and flows depend on.
dataverse.delete_skill medium conf mediumaudit
Removes a Dataverse skill or playbook, disabling automation that dependent agents or apps rely on.
dataverse.describe low conf mediumallow
Retrieves detailed contents of tables, records, schemas, and skills from search results, which can expose personal data held in matched rows.
dataverse.init_file_upload medium conf mediumaudit
Generates a time-limited SAS URL granting write access to Dataverse file storage, staging content to be attached to records.
dataverse.search low conf mediumallow
Searches table schemas and business skills by keyword, returning metadata only without exposing row-level data.
dataverse.search_data medium conf mediumaudit
Searches structured and unstructured Dataverse data, surfacing matching records that may include personal or customer information.
dataverse.update_record medium conf mediumaudit
Overwrites fields on an existing Dataverse row, changing a business record that may hold personal or customer data.
dataverse.update_table medium conf mediumaudit
Alters the schema or metadata of an existing table, which can break dependent apps, forms, and integrations relying on the old shape.
dataverse.upsert_skill medium conf mediumaudit
Adds or updates a Dataverse skill or playbook, changing reusable automation logic that agents and apps execute against the environment.