MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
CloudinaryDocs ↗
1 critical 4 high 15 med 3 low · 23 tools · 1 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (5 of 23)

cloudinary.delete-folder critical conf mediumhuman approval
Deletes a folder together with every asset it contains in one call, an irreversible mass removal of customer media with no per-asset confirmation.
cloudinary.delete-asset high conf mediumOBO
Permanently removes a single asset by its immutable ID, taking down its delivery URLs and any dependent transformations.
cloudinary.generate-archive high conf mediumOBO
Packages an arbitrary set of assets into a downloadable ZIP or TGZ, enabling bulk export of media that may contain images of identifiable people.
cloudinary.create-trigger high conf mediumOBO
Registers a webhook that streams product-environment events to an external destination URL, opening an outbound data channel to a third party.
cloudinary.update-trigger high conf mediumOBO
Repoints an existing webhook's callback URL, which can silently redirect event notifications and their payloads to an attacker-controlled endpoint.
All other tools (18)
cloudinary.analyze-ai-vision-general medium conf mediumaudit
Sends an image to a general-purpose AI vision model for open-ended analysis, returning inferred descriptions and attributes about its contents.
cloudinary.analyze-ai-vision-moderation medium conf mediumaudit
Submits media to an AI moderation model that flags unsafe or restricted content, producing automated classifications used to gate assets.
cloudinary.asset-rename medium conf mediumaudit
Changes an asset's public ID, which rewrites its canonical delivery URL and can break every embed or link that referenced the old identifier.
cloudinary.asset-update medium conf mediumaudit
Modifies an existing asset's metadata, tags, and attributes, altering how it is categorized, searched, and surfaced across the media library.
cloudinary.create-asset-relations low conf mediumallow
Links an asset to related assets by ID, adding relationship metadata used for grouping and recommendation surfaces.
cloudinary.create-upload-mapping medium conf mediumaudit
Defines a folder-to-remote-URL fetch mapping, letting the platform pull and cache assets from an external source on demand.
cloudinary.create-upload-preset medium conf mediumaudit
Creates a reusable upload preset whose settings govern default access mode, moderation, and transformations applied to future uploads.
cloudinary.delete-asset-relations low conf mediumallow
Removes relationship links between assets, detaching grouping metadata without affecting the underlying media.
cloudinary.delete-derived-assets medium conf mediumaudit
Purges cached derived renditions of assets, forcing regeneration on next request and temporarily increasing transformation load and delivery latency.
cloudinary.delete-trigger medium conf mediumaudit
Removes a configured webhook, halting event notifications to its downstream consumer and potentially breaking dependent automation.
cloudinary.download-asset-backup medium conf mediumaudit
Retrieves a stored backup copy of an asset, exposing original media that may include personal or sensitive imagery outside the live library.
cloudinary.get-usage-details low conf mediumallow
Returns aggregate account usage metrics such as storage, bandwidth, and transformation counts for the product environment.
cloudinary.move-folder medium conf mediumaudit
Relocates or renames an entire folder and all its assets, changing every contained asset's delivery URL and breaking existing references at scale.
cloudinary.search-assets medium conf mediumaudit
Runs an arbitrary expression query across the asset library, returning asset details and metadata that could surface sensitive media in bulk.
cloudinary.update-upload-mapping medium conf mediumaudit
Changes the remote URL template of an existing upload mapping, redirecting where fetched assets originate from for a given folder.
cloudinary.update-upload-preset medium conf mediumaudit
Alters an existing upload preset's configuration, which can weaken default moderation or make future uploads publicly accessible.
cloudinary.upload-asset medium conf mediumaudit
Ingests new image, video, or raw files into the product environment, adding externally-sourced media that downstream delivery and transformations will serve.
cloudinary.visual-search-assets medium conf mediumaudit
Finds images by visual similarity or content, which can be used to locate photos of a specific person and raises biometric-matching concerns.