Secureframe MCP Server

First-party hosted (remote) Model Context Protocol server exposing the Secureframe compliance platform as 112 tools across 41 categories — 63 read, 49 write — mapped one-for-one onto the Public API operations. Authenticated with OAuth 2.1 (authorization code + PKCE S256, dynamic client registration) or with a REST API key and secret for headless clients. Every request runs as a specific Secureframe user in a specific company and is bounded by that user's RBAC permissions.

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/mcp-server"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

API entry from apis.yml

apis.yml Raw ↑
aid: secureframe:mcp-server
name: Secureframe MCP Server
description: First-party hosted (remote) Model Context Protocol server exposing the Secureframe compliance
  platform as 112 tools across 41 categories — 63 read, 49 write — mapped one-for-one onto the Public
  API operations. Authenticated with OAuth 2.1 (authorization code + PKCE S256, dynamic client registration)
  or with a REST API key and secret for headless clients. Every request runs as a specific Secureframe
  user in a specific company and is bounded by that user's RBAC permissions.
humanURL: https://mcp.secureframe.com/mcp_docs
baseURL: https://mcp.secureframe.com
tags:
- MCP
- Agents
- GRC
- Compliance
properties:
- type: MCPServer
  url: mcp/secureframe-mcp.yml
- type: ToolCrosswalk
  url: mcp/secureframe-tool-crosswalk.yml
- type: Documentation
  url: https://mcp.secureframe.com/mcp_docs
- type: OAuthScopes
  url: scopes/secureframe-scopes.yml
- type: WellKnown
  url: well-known/secureframe-well-known.yml