MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Magic Patterns
23 tools · footprint 28
2 high 8 med 13 low
WordPress.com
19 tools · footprint 28
3 high 6 med 10 low COSOSOX
Grain
15 tools · footprint 27
1 high 10 med 4 low
Oracle NetSuite
11 tools · footprint 27
3 high 3 med 5 low COSOSOX
Databricks
5 tools · footprint 26
1 critical 2 high 2 med COSOSOX
Lusha
22 tools · footprint 26
1 critical 6 high 15 low
Outlook Mail
10 tools · footprint 26
6 high 4 med
Airwallex Developer MCP
18 tools · footprint 25
1 critical 8 med 9 low COSOGLBA+3 more
Calendly
22 tools · footprint 25
15 med 7 low
Metabase
13 tools · footprint 25
1 critical 4 high 8 low
Atlassian Rovo
54 tools · footprint 24
13 med 41 low
Cognito Forms
9 tools · footprint 24
2 high 6 med 1 low HIPAA
Local Falcon
25 tools · footprint 24
1 high 9 med 15 low
ZoomInfo
15 tools · footprint 24
5 high 4 med 6 low
Braze
40 tools · footprint 23
1 high 5 med 34 low COSOSOX
Glean
11 tools · footprint 23
3 high 7 med 1 low
‹ PrevPage 5 of 19Next ›
Customer.io
1 critical 2 high 5 low · 8 tools · 1 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (3 of 8)

customerio.cio_delete_api critical conf mediumhuman approval
Permanently removes any Customer.io resource, irreversibly destroying customer profiles, segments, or campaigns through arbitrary DELETE calls.
customerio.cio_read_api high conf mediumOBO
Reads and lists any Customer.io resource, including customer profiles and messaging history, enabling bulk export of personal data via pagination and filtering.
customerio.cio_write_api high conf mediumOBO
Creates or edits any Customer.io resource, letting the agent alter customer profiles, segments, and campaign configuration through arbitrary POST, PUT, and PATCH calls.
All other tools (5)
customerio.cio_auth_status low conf mediumallow
Reveals the current authentication state and which Customer.io workspaces the token can reach, exposing account access scope.
customerio.cio_prime low conf mediumallow
Loads the AI-ready Customer.io API reference so the agent can plan subsequent calls; reads and changes no customer data.
customerio.cio_schema low conf mediumallow
Enumerates available Customer.io API endpoints and their parameters for call planning; exposes no customer data.
customerio.cio_skills_list low conf mediumallow
Lists the available agent skill playbooks for multi-step Customer.io operations; reveals no customer data.
customerio.cio_skills_read low conf mediumallow
Retrieves the full instructions for a specific Customer.io agent skill; exposes workflow guidance only, not customer data.