MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Magic Patterns
23 tools · footprint 28
2 high 8 med 13 low
WordPress.com
19 tools · footprint 28
3 high 6 med 10 low COSOSOX
Grain
15 tools · footprint 27
1 high 10 med 4 low
Oracle NetSuite
11 tools · footprint 27
3 high 3 med 5 low COSOSOX
Databricks
5 tools · footprint 26
1 critical 2 high 2 med COSOSOX
Lusha
22 tools · footprint 26
1 critical 6 high 15 low
Outlook Mail
10 tools · footprint 26
6 high 4 med
Airwallex Developer MCP
18 tools · footprint 25
1 critical 8 med 9 low COSOGLBA+3 more
Calendly
22 tools · footprint 25
15 med 7 low
Metabase
13 tools · footprint 25
1 critical 4 high 8 low
Atlassian Rovo
54 tools · footprint 24
13 med 41 low
Cognito Forms
9 tools · footprint 24
2 high 6 med 1 low HIPAA
Local Falcon
25 tools · footprint 24
1 high 9 med 15 low
ZoomInfo
15 tools · footprint 24
5 high 4 med 6 low
Braze
40 tools · footprint 23
1 high 5 med 34 low COSOSOX
Glean
11 tools · footprint 23
3 high 7 med 1 low
‹ PrevPage 5 of 19Next ›
CalendlyDocs ↗
15 med 7 low · 22 tools · 0 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (0 of 22)

None — every tool is low-risk, high-confidence, and outside PCI/HIPAA payload scope.
All other tools (22)
calendly-api.availability-list_user_busy_times low conf mediumallow
Lists a user's busy time blocks within a date range, revealing when they are unavailable.
calendly-api.event_types-create_event_type low conf mediumallow
Creates a new bookable event type, adding a scheduling offering to the account.
calendly-api.event_types-update_event_type medium conf mediumaudit
Updates an existing event type's configuration, changing how and when it can be booked.
calendly-api.event_types-update_event_type_availability_schedule medium conf mediumaudit
Changes the availability schedule tied to an event type, altering the windows when it can be booked.
calendly-api.meetings-cancel_event medium conf highaudit
Cancels a scheduled event, notifying invitees and freeing the booked time slot.
calendly-api.meetings-create_invitee medium conf highaudit
Books a meeting on an event type, recording the invitee's name, email, and responses to booking questions.
calendly-api.meetings-create_invitee_no_show low conf mediumallow
Flags an invitee as a no-show for a scheduled event, recording attendance behavior against that person.
calendly-api.meetings-delete_invitee_no_show low conf mediumallow
Clears the no-show flag on an invitee, restoring their attendance record for the event.
calendly-api.meetings-get_event low conf mediumallow
Returns details of one scheduled event including its time, location, and membership.
calendly-api.meetings-get_event_invitee medium conf highaudit
Returns one invitee's booking details including name, email, and answers to scheduling questions.
calendly-api.meetings-list_event_invitees medium conf highaudit
Lists all invitees for a scheduled event with their names, emails, and question responses, enabling bulk read of attendee PII.
calendly-api.meetings-list_events medium conf highaudit
Lists scheduled events across a user or organization with their times, locations, and status.
calendly-api.organizations-create_organization_invitation medium conf highaudit
Emails an organization invitation that provisions a new member into the Calendly org once accepted, writing the invitee's email address.
calendly-api.organizations-get_organization_membership medium conf highaudit
Returns one organization member's profile, role, and email address.
calendly-api.organizations-list_organization_invitations medium conf highaudit
Lists pending organization invitations, exposing the email addresses of everyone invited but not yet joined.
calendly-api.organizations-list_organization_memberships medium conf highaudit
Lists every member of the organization with their names, email addresses, and roles, enabling bulk extraction of the member directory.
calendly-api.organizations-revoke_organization_invitation medium conf highaudit
Revokes a pending organization invitation, removing a prospective member's access before they can join.
calendly-api.routing_forms-get_routing_form_submission medium conf highaudit
Retrieves a single routing form submission with the respondent's answers and contact information.
calendly-api.routing_forms-list_routing_form_submissions medium conf highaudit
Lists submissions to a routing form, exposing in bulk the contact details and answers respondents entered.
calendly-api.scheduling_links-create_single_use_scheduling_link low conf mediumallow
Generates a single-use scheduling link for an event type that lets one recipient book a meeting.
calendly-api.shares-create_share low conf mediumallow
Creates a customized single-use scheduling link from an event type for sharing with a recipient.
calendly-api.users-get_user medium conf highaudit
Returns a specific user's profile including name, email, timezone, and scheduling URL.