MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
HealthExDocs ↗
1 high 11 med 3 low · 15 tools · 0 SoD-flagged
regimes HIPAAISO_27001SOC2

Tools needing tighter control (10 of 15)

healthex.search high conf highOBO redact
Semantic natural-language search spanning every category of a patient's record — conditions, medications, labs, procedures, visits, and clinical notes — surfacing the entire health picture in one call.
healthex.get_health_summary medium conf highaudit redact
Returns a comprehensive PHI snapshot — date of birth, active conditions, current medications with dosages, allergies, and recent vitals — aggregating the patient's core health profile in a single read.
healthex.search_clinical_notes medium conf highaudit redact
Full-text search across all of a patient's clinical notes exposes the most sensitive free-text documentation, including provider narratives that can contain mental-health and behavioral detail.
healthex.get_notes_by_visit medium conf mediumaudit redact
Retrieves all clinical documentation attached to a single encounter, including provider narrative notes and diagnoses recorded for that visit.
healthex.get_conditions medium conf highaudit redact
Exposes a patient's full diagnosis history, including resolved and inactive conditions with start and end dates.
healthex.get_medications medium conf highaudit redact
Reveals a patient's complete medication record — dosing instructions, prescriber, indication, pharmacy, and refill history — which can imply underlying diagnoses.
healthex.get_labs medium conf highaudit redact
Surfaces laboratory results with values, reference ranges, and abnormal flags across blood work, urinalysis, and pathology.
healthex.get_procedures medium conf highaudit redact
Discloses surgical and diagnostic procedure history, including biopsies, endoscopies, colonoscopies, and interventions.
healthex.get_visits medium conf highaudit redact
Reveals clinical encounter history with dates, visit types, providers, locations, chief complaints, and diagnoses addressed.
healthex.update_and_check_recent_records low conf lowallow
Deprecated combined refresh-and-status call that vendor docs direct users to replace with the separate update_records and check_records_status tools.
All other tools (5)
healthex.check_records_status low conf mediumallow
Reports the current sync status of connected health records without triggering a refresh or returning clinical data.
healthex.get_allergies medium conf mediumaudit
Lists a patient's allergies and intolerances with allergen, clinical status, criticality, and reaction details used for care-safety decisions.
healthex.get_immunizations medium conf mediumaudit
Reveals full vaccination history with vaccine names, dates administered, dose numbers, series completion, and administering providers.
healthex.get_vitals medium conf mediumaudit
Exposes biometric vital-sign measurements including blood pressure, heart rate, temperature, respiratory rate, oxygen saturation, weight, height, and BMI.
healthex.update_records low conf highallow
Triggers a background refresh that re-pulls the patient's health records from all connected provider locations; reversible and returns no clinical data itself.