MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
Customer.io
1 critical 2 high 5 low · 8 tools · 1 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (3 of 8)

customerio.cio_delete_api critical conf mediumhuman approval
Permanently removes any Customer.io resource, irreversibly destroying customer profiles, segments, or campaigns through arbitrary DELETE calls.
customerio.cio_read_api high conf mediumOBO
Reads and lists any Customer.io resource, including customer profiles and messaging history, enabling bulk export of personal data via pagination and filtering.
customerio.cio_write_api high conf mediumOBO
Creates or edits any Customer.io resource, letting the agent alter customer profiles, segments, and campaign configuration through arbitrary POST, PUT, and PATCH calls.
All other tools (5)
customerio.cio_auth_status low conf mediumallow
Reveals the current authentication state and which Customer.io workspaces the token can reach, exposing account access scope.
customerio.cio_prime low conf mediumallow
Loads the AI-ready Customer.io API reference so the agent can plan subsequent calls; reads and changes no customer data.
customerio.cio_schema low conf mediumallow
Enumerates available Customer.io API endpoints and their parameters for call planning; exposes no customer data.
customerio.cio_skills_list low conf mediumallow
Lists the available agent skill playbooks for multi-step Customer.io operations; reveals no customer data.
customerio.cio_skills_read low conf mediumallow
Retrieves the full instructions for a specific Customer.io agent skill; exposes workflow guidance only, not customer data.