MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
AsanaDocs ↗
1 high 4 med 18 low · 23 tools · 1 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (1 of 23)

asana-api.delete_task high conf mediumhuman approval
Permanently deletes a task and all of its subtasks; the manifest states this cannot be undone, so a single caller destroys work irreversibly.
All other tools (22)
asana-api.add_comment low conf mediumallow
Posts a comment on a task under the authenticated user's identity, supporting @-mentions and pinned comments.
asana-api.create_project low conf mediumallow
Creates a new project, optionally seeding sections and tasks in a single operation.
asana-api.create_project_status_update low conf mediumallow
Posts a status update with a color status to a project or portfolio, visible to its members.
asana-api.create_tasks low conf mediumallow
Creates up to 50 tasks immediately without a confirmation step.
asana-api.get_agent low conf mediumallow
Reads a single AI Teammate agent record by GID, revealing how an automated workspace principal is configured.
asana-api.get_attachments medium conf mediumaudit
Returns attachment URLs on tasks, projects, or briefs; attached files may contain PII or confidential documents.
asana-api.get_me low conf mediumallow
Reads the authenticated user's own name, email, and workspace memberships.
asana-api.get_my_tasks low conf mediumallow
Returns tasks assigned to the authenticated user with completion-status filtering.
asana-api.get_portfolio low conf mediumallow
Reads one portfolio's details including name, owner, and associated projects.
asana-api.get_portfolios low conf mediumallow
Lists the portfolios owned by the authenticated user.
asana-api.get_project low conf mediumallow
Reads one project's details including owner, members, task counts, and sections.
asana-api.get_projects low conf mediumallow
Lists projects in the workspace with optional team and archive filters.
asana-api.get_status_overview low conf mediumallow
Returns an aggregated status report across one or more projects or portfolios.
asana-api.get_task low conf mediumallow
Reads full detail for one task including description, assignee, due dates, custom fields, and comments.
asana-api.get_tasks low conf mediumallow
Returns a filtered list of tasks scoped by project, section, or assignee context.
asana-api.get_teams low conf mediumallow
Reads the workspace teams the user belongs to, with optional user filtering.
asana-api.get_user low conf mediumallow
Reads a single user record including name and email by GID, email, or 'me'.
asana-api.get_users medium conf mediumaudit
Enumerates the workspace user roster including names and emails, exposing directory PII at scale.
asana-api.get_workspace_agents low conf mediumallow
Lists the AI Teammate agents configured across the workspace and their identifiers.
asana-api.search_objects medium conf mediumaudit
Universal typeahead search across tasks, projects, portfolios, goals, teams, users, and tags; can surface confidential content the caller would not otherwise browse to.
asana-api.search_tasks low conf mediumallow
Advanced full-text task search with complex filters across the workspace (Premium accounts only).
asana-api.update_tasks medium conf mediumaudit
Modifies up to 50 tasks in one call, changing assignee, due date, or completion state across a batch of work items.