MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Magic Patterns
23 tools · footprint 28
2 high 8 med 13 low
WordPress.com
19 tools · footprint 28
3 high 6 med 10 low COSOSOX
Grain
15 tools · footprint 27
1 high 10 med 4 low
Oracle NetSuite
11 tools · footprint 27
3 high 3 med 5 low COSOSOX
Databricks
5 tools · footprint 26
1 critical 2 high 2 med COSOSOX
Lusha
22 tools · footprint 26
1 critical 6 high 15 low
Outlook Mail
10 tools · footprint 26
6 high 4 med
Airwallex Developer MCP
18 tools · footprint 25
1 critical 8 med 9 low COSOGLBA+3 more
Calendly
22 tools · footprint 25
15 med 7 low
Metabase
13 tools · footprint 25
1 critical 4 high 8 low
Atlassian Rovo
54 tools · footprint 24
13 med 41 low
Cognito Forms
9 tools · footprint 24
2 high 6 med 1 low HIPAA
Local Falcon
25 tools · footprint 24
1 high 9 med 15 low
ZoomInfo
15 tools · footprint 24
5 high 4 med 6 low
Braze
40 tools · footprint 23
1 high 5 med 34 low COSOSOX
Glean
11 tools · footprint 23
3 high 7 med 1 low
‹ PrevPage 5 of 19Next ›
Lumin PDFDocs ↗
2 high 2 med 3 low · 7 tools · 0 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (2 of 7)

lumin.send_signature_request_on_lumin high conf highOBO
Transmits attached documents and signer names and email addresses to external recipients and starts execution of a binding agreement outside the organization's review path.
lumin.cancel_signature_request_on_lumin_by_id high conf highOBO
Voids an in-flight signature request, invalidating any signatures already collected and forcing the agreement to be re-issued from scratch.
All other tools (5)
lumin.get_lumin_user_information low conf mediumallow
Reads the authenticated account's profile, including name and email address, confirming which identity the agent is operating as.
lumin.get_signature_request_on_lumin_by_id medium conf highaudit
Returns signer identities, contact details and agreement status for a single signature request, exposing counterparty personal data to the agent.
lumin.get_workspace_list_of_user_on_lumin low conf highallow
Enumerates every workspace the authenticated user belongs to, mapping the document estate the agent can subsequently reach.
lumin.lumin_markdown2pdf low conf highallow
Renders supplied Markdown into a PDF hosted by Lumin; content passed to the converter leaves the local environment but no existing record is changed.
lumin.upload_file_to_lumin medium conf mediumaudit
Pushes arbitrary local or remote files into the Lumin document store, where contract or customer content becomes retrievable by anyone with workspace access.