MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
Freshdesk
6 high 14 med 4 low · 24 tools · 1 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDNIST_CSFPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (6 of 24)

freshdesk.createAgent high conf mediumOBO
Provisions a new Freshdesk agent with a login and access to customer tickets and contact PII, expanding the set of principals who can read helpdesk data.
freshdesk.updateAgent high conf mediumhuman approval
Modifies an existing agent's role or ticket scope; a role change here can widen one agent's access to customer data and helpdesk controls without a separate approver.
freshdesk.fetchContacts high conf mediumOBO
Lists customer contact records in bulk, exposing names, emails, and phone numbers for many individuals at once as a mass-PII read.
freshdesk.createTicketBulkUpdate high conf mediumOBO
Applies field or status changes to many tickets in a single operation, mutating large volumes of customer-case records at once.
freshdesk.fetchTickets high conf mediumOBO
Lists support tickets in bulk, exposing many customers' contact details and issue contents in one read as mass-PII exposure.
freshdesk.fetchTicketConversations high conf mediumOBO
Retrieves the full conversation thread of a ticket, exposing private customer support communications and any personal data within them.
All other tools (18)
freshdesk.createCompany medium conf mediumaudit
Creates a company record representing a customer organization, including domain, industry, and account notes.
freshdesk.createContact medium conf mediumaudit
Creates a customer contact record holding name, email, phone, and other requester PII in the helpdesk.
freshdesk.createGroup medium conf mediumaudit
Creates a support group that governs ticket routing and which agents can be assigned work, shaping how customer tickets are distributed and accessed.
freshdesk.createSolutionFolderArticle low conf mediumallow
Publishes a new knowledge-base article in a solution folder, adding self-service help content for customers.
freshdesk.createTicket medium conf mediumaudit
Creates a support ticket capturing a customer's request, contact details, and issue description in the helpdesk queue.
freshdesk.createTicketNote low conf mediumallow
Adds an internal private note to a ticket, visible to agents only, recording context or handling instructions on the case.
freshdesk.fetchAgents medium conf mediumaudit
Retrieves the full roster of support agents with names, emails, and role assignments, exposing the internal staffing and access inventory of the helpdesk.
freshdesk.fetchContact medium conf mediumaudit
Reads a single customer contact record, exposing that individual's name, email, phone, and support history.
freshdesk.fetchContactAutocomplete medium conf mediumaudit
Returns partial-match customer contact suggestions by name or email, surfacing requester PII through type-ahead lookups.
freshdesk.fetchSearchCompanies low conf mediumallow
Searches company records by attributes, returning matching customer-organization accounts and their business details.
freshdesk.fetchSearchTickets medium conf mediumaudit
Searches tickets by query across the helpdesk, returning matching customer cases and their embedded contact and issue data.
freshdesk.fetchTicket medium conf mediumaudit
Reads a single support ticket including the customer's contact info, conversation, and issue details.
freshdesk.replyTicket medium conf mediumaudit
Sends an outbound reply to the customer on a ticket, communicating externally on the company's behalf and processing the requester's contact data.
freshdesk.updateCompany medium conf mediumaudit
Updates a customer company's account fields such as domain, health, or renewal notes, changing business context used across its tickets.
freshdesk.updateConversation medium conf mediumaudit
Edits an existing ticket conversation entry, changing the recorded content of a customer support exchange.
freshdesk.updateGroup medium conf mediumaudit
Changes a support group's membership or routing configuration, altering which agents receive and can access the tickets in that queue.
freshdesk.updateSolutionArticle low conf mediumallow
Edits an existing knowledge-base article's content or publication status, changing published self-service documentation.
freshdesk.updateTicket medium conf mediumaudit
Modifies a support ticket's status, priority, assignment, or fields, changing how a customer's case is handled and recorded.