MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intapp Celeste
10 tools · footprint 18
2 high 4 med 4 low
Intercom
13 tools · footprint 18
8 med 5 low
LunarCrush
15 tools · footprint 18
8 med 7 low
Mixpanel
23 tools · footprint 18
1 high 6 med 16 low
Slack
7 tools · footprint 18
2 high 4 med 1 low
Adobe Customer Journey Analytics
25 tools · footprint 17
1 high 5 med 19 low
Campfire
12 tools · footprint 17
7 med 5 low
Canva
32 tools · footprint 17
7 med 25 low
Circleback
11 tools · footprint 17
2 high 3 med 6 low
Dremio Cloud
11 tools · footprint 17
1 critical 1 high 1 med 8 low
Firecrawl
19 tools · footprint 17
7 med 12 low
Granola
6 tools · footprint 17
3 high 1 med 2 low
iManage Work
14 tools · footprint 17
1 high 5 med 8 low
Jotform
5 tools · footprint 17
1 high 2 med 2 low
Mermaid Chart
25 tools · footprint 17
1 high 2 med 22 low
Todoist
25 tools · footprint 17
7 med 18 low
‹ PrevPage 8 of 19Next ›
Google Drive
2 high 2 med 3 low · 7 tools · 0 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (2 of 7)

google-drive.read_file_content high conf highOBO
Pulls a Drive file's contents into the agent context; high exposure if the file contains PII, financial, or regulated data.
google-drive.download_file_content high conf highOBO
Downloads a binary file from Drive; same exfiltration profile as content read.
All other tools (5)
google-drive.create_file medium conf highaudit
Writes new content into the user's Drive; can introduce malicious or noncompliant material.
google-drive.get_file_metadata low conf highallow
Reads metadata (name, owner, mtime) for a single file.
google-drive.get_file_permissions low conf highallow
Reads who has access to a file.
google-drive.list_recent_files low conf highallow
Lists files recently touched by the user.
google-drive.search_files medium conf highaudit
Searches across the user's Drive; can surface regulated documents the agent wasn't intended to see.