MCP compliance catalog

Every MCP tool in the SCOPE compliance index, grouped by server — risk posture, regulatory exposure, and the tools that warrant tighter governance.
303MCP servers
4476tools
Reset 303 of 303 servers
Intuit QuickBooks
51 tools · footprint 188
15 critical 10 high 17 med 9 low COSOGLBA+3 more
PayPal
33 tools · footprint 86
6 critical 7 high 9 med 11 low COSOGLBA+3 more
Stripe
26 tools · footprint 77
3 critical 7 high 10 med 6 low COSOPCI+2 more
Qonto
25 tools · footprint 76
15 high 9 med 1 low COSOGLBA+3 more
PostHog
36 tools · footprint 69
6 high 22 med 8 low
Supabase
32 tools · footprint 69
4 critical 4 high 8 med 16 low COSOSOX
Datadog
25 tools · footprint 68
1 critical 12 high 11 med 1 low
PostHog
25 tools · footprint 66
3 critical 12 high 10 med
Adobe Workfront
25 tools · footprint 65
2 critical 7 high 13 med 3 low
MailerLite
25 tools · footprint 63
1 critical 11 high 12 med 1 low
MongoDB
25 tools · footprint 63
2 critical 7 high 12 med 4 low
MotherDuck
21 tools · footprint 62
4 critical 5 high 9 med 3 low
Salesforce
32 tools · footprint 60
4 critical 2 high 9 med 17 low COSOSOX
Close
64 tools · footprint 59
5 high 22 med 37 low COSOSOX
Cloudflare
26 tools · footprint 58
3 critical 4 high 6 med 13 low
Webflow
23 tools · footprint 57
2 critical 5 high 10 med 6 low
‹ PrevPage 1 of 19Next ›
Todoist
7 med 18 low · 25 tools · 0 SoD-flagged
regimes APPICCPAGDPRISO_27001LGPDPIPEDAPIPLPOPIASOC2UK_GDPR

Tools needing tighter control (0 of 25)

None — every tool is low-risk, high-confidence, and outside PCI/HIPAA payload scope.
All other tools (25)
todoist.add-comments low conf highallow
Adds comments to tasks or projects, posting free-text notes visible to project collaborators.
todoist.add-filters low conf highallow
Creates saved custom filter views using query syntax to organize how tasks are surfaced.
todoist.add-labels low conf highallow
Creates new personal labels used to tag and categorize tasks, a reversible low-impact write.
todoist.add-projects low conf highallow
Creates one or more new projects to organize tasks, a reversible low-impact write.
todoist.add-reminders low conf highallow
Adds relative, absolute, or location-based geofence reminders to tasks, capturing places that trigger a notification.
todoist.add-sections low conf highallow
Creates new sections within projects to group tasks, a reversible low-impact write.
todoist.add-tasks low conf highallow
Creates one or more tasks in a project, section, or under a parent, optionally assigning them to project collaborators.
todoist.complete-tasks low conf highallow
Marks one or more tasks complete by ID, a reversible state change on personal work items.
todoist.delete-object medium conf mediumaudit
Permanently deletes a project, section, task, comment, label, filter, or reminder by ID; deleting a project cascades to all its contained tasks.
todoist.find-activity medium conf mediumaudit
Reads the workspace activity log showing who created, completed, or changed items across all users — a cross-user audit trail.
todoist.find-comments low conf highallow
Reads comment threads on a task or project, returning free-text discussion content authored by collaborators.
todoist.find-project-collaborators medium conf highaudit
Resolves teammates by name or email into user IDs, exposing collaborator names and email addresses to the caller.
todoist.get-productivity-stats low conf highallow
Returns the user's productivity metrics including completion breakdowns, goal streaks, and karma score and trends.
todoist.list-workspaces low conf highallow
Lists every workspace the user belongs to along with plan type and the user's role (ADMIN, MEMBER, or GUEST).
todoist.manage-assignments medium conf highaudit
Bulk assigns, unassigns, or reassigns responsibility for many tasks across project collaborators in a single atomic operation.
todoist.project-management low conf highallow
Archives or unarchives a project, hiding or restoring it and its tasks from the active workspace view.
todoist.project-move medium conf highaudit
Moves a project between personal and workspace contexts, changing which principals can see and act on its tasks.
todoist.reorder-objects low conf highallow
Reorders sibling projects or sections and can move a project under a new parent, restructuring workspace hierarchy reversibly.
todoist.reschedule-tasks low conf highallow
Reschedules tasks to new dates while preserving recurring schedules, a reversible edit to task due dates.
todoist.update-comments low conf highallow
Edits the content of existing comments, reversibly changing discussion text on tasks or projects.
todoist.update-projects low conf highallow
Updates names, colors, and settings on existing projects, a reversible metadata edit.
todoist.update-reminders low conf highallow
Updates existing task reminders including their type, time, or location trigger, a reversible edit.
todoist.update-tasks low conf highallow
Updates existing task content, dates, priorities, and assignments, reversibly editing work items.
todoist.user-info medium conf highaudit
Returns the authenticated user's identity profile including full name, email, and timezone.
todoist.view-attachment medium conf mediumaudit
Retrieves the contents of a file attached to a comment, returning images inline and text or documents as data that may contain sensitive material.