MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Magic Patterns
23 tools · footprint 28
2 high 8 med 13 low
WordPress.com
19 tools · footprint 28
3 high 6 med 10 low COSOSOX
Grain
15 tools · footprint 27
1 high 10 med 4 low
Oracle NetSuite
11 tools · footprint 27
3 high 3 med 5 low COSOSOX
Databricks
5 tools · footprint 26
1 critical 2 high 2 med COSOSOX
Lusha
22 tools · footprint 26
1 critical 6 high 15 low
Outlook Mail
10 tools · footprint 26
6 high 4 med
Airwallex Developer MCP
18 tools · footprint 25
1 critical 8 med 9 low COSOGLBA+3 more
Calendly
22 tools · footprint 25
15 med 7 low
Metabase
13 tools · footprint 25
1 critical 4 high 8 low
Atlassian Rovo
54 tools · footprint 24
13 med 41 low
Cognito Forms
9 tools · footprint 24
2 high 6 med 1 low HIPAA
Local Falcon
25 tools · footprint 24
1 high 9 med 15 low
ZoomInfo
15 tools · footprint 24
5 high 4 med 6 low
Braze
40 tools · footprint 23
1 high 5 med 34 low COSOSOX
Glean
11 tools · footprint 23
3 high 7 med 1 low
‹ PrevPage 5 of 19Next ›
Pylon
3 med 8 low · 11 tools · 0 SoD-flagged
regimes APPICCPAGDPRLGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (0 of 11)

None — every tool is low-risk, high-confidence, and outside PCI/HIPAA payload scope.
All other tools (11)
pylon-api.create_issue low conf mediumallow
Generates a new support issue in Pylon; reversible low-impact write that adds to the support queue.
pylon-api.get_account low conf mediumallow
Retrieves a customer account's details and field values, exposing the company record to the caller.
pylon-api.get_contact low conf mediumallow
Fetches a customer contact by ID, exposing that individual's personal contact details.
pylon-api.get_issue low conf mediumallow
Retrieves a single support issue by ID or number, exposing its fields and status to the caller.
pylon-api.get_issue_messages medium conf mediumaudit
Reads the complete message history of a support issue, surfacing private customer correspondence that may contain personal data.
pylon-api.get_me low conf mediumallow
Returns the authenticated user's own account details, confirming the identity the token is acting as.
pylon-api.get_user low conf mediumallow
Retrieves team member information for a Pylon user, exposing that employee's identity and profile details.
pylon-api.search_accounts low conf mediumallow
Queries customer accounts by name, domain, tags, or custom fields; read-only lookup across the account book.
pylon-api.search_issues low conf mediumallow
Locates support issues by title, state, account, assignee, tags, or custom fields; read-only discovery across the support queue.
pylon-api.update_account medium conf mediumaudit
Modifies customer account information, altering the record that downstream billing and support workflows rely on.
pylon-api.update_issue medium conf mediumaudit
Modifies issue fields including status and assignee, changing how a customer request is triaged and routed.