Mmcp.market

SOC 2 Compliance MCP server

by CSOAI-ORG·io.github.CSOAI-ORG/soc2-compliance-ai-mcp·v1.0.15

SOC 2 Type II compliance for trust services criteria (security, availability, processing

C65/100grade C
What users say
No reviews yet
Be the first
Safety scan
C65/100

full report

Adoption
New

56 downloads/wk

Reviews

Write one

Nobody has reviewed SOC 2 Compliance yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

SOC 2 Compliance tools (6)

write = sends, deletes, buys or posts

Read from the package source without running it. The installed server may list more.

  • assess_trust_principles

    Audit an AI system against the 5 SOC 2 Trust Service Criteria: Security (Common Criteria), Availability, Processing Integrity, Confidentiality, and Privacy. Returns compliance status per principle with AI-specific findings.

  • control_gap_analysis

    Gap analysis against SOC 2 controls. Compares implemented controls to required criteria and produces a prioritized remediation plan.

  • crosswalk_to_iso27001

    Map SOC 2 controls to ISO 27001 Annex A controls. Shows how SOC 2 compliance overlaps with ISO 27001 certification requirements, enabling organizations pursuing dual compliance to identify shared controls.

  • generate_control_matrix

    Generate a SOC 2 control matrix with control objectives, criteria, control activities, and evidence requirements. Suitable for auditor preparation and internal control documentation.

  • readiness_checklist

    SOC 2 Type I/II readiness assessment. Generates a comprehensive pre-audit checklist with timeline, resource requirements, and AI-specific considerations.

  • risk_assessment

    SOC 2 risk assessment per AICPA guidelines. Identifies risks to Trust Service Criteria, assesses likelihood and impact, and maps to specific SOC 2 control requirements.

Public scan report

scanner v0.1.9 · 2026-09-22 · same rubric, same numbers if you re-run it

no findings
  • Code scan22 source files scanned25/25
  • Live reliabilityno gateway calls yet and no remote to proben/a
  • Tool poisoningtools not inspected (local package is not executed); not countedn/a
  • Auth qualitylocal package, no credentials required12/15
  • Maintenancerepository not readable: repo not found3/15
  • Maintainer identityno repository or website to verify2/10
Overall 65/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

Install directly

claude mcp add soc2-compliance-ai-mcp -- uvx soc2-compliance-ai-mcp
Add to Cursor

SOC 2 Compliance: common questions

Is SOC 2 Compliance MCP server safe?
With care: it is graded C, so read the findings first (65/100). Read the SOC 2 Compliance safety report
How do I install SOC 2 Compliance?
It runs on your machine. Copy the Claude Code, Claude Desktop or Cursor config from the install section.
Does SOC 2 Compliance need an API key?
Not as far as the registry entry and our scan can tell: no credentials are declared or required.
Is SOC 2 Compliance maintained?
The latest release is v1.0.15.
What can I use instead of SOC 2 Compliance?
Servers from other publishers that do the same job: Feedmyagent MCP server, Passiv Web Tools MCP server and CrowdStrike Falcon MCP Server. Compare all SOC 2 Compliance alternatives.

Alternatives to SOC 2 Compliance

Same job from other publishers: the closest match first, then the best rated.

All SOC 2 Compliance alternatives →
  • Feedmyagent
    Technology intelligence feed for AI agents: tech stack, compliance, security.
    A
  • Passiv Web Tools
    Free web tools for AI agents: HTML to Markdown, compliance scan, page profile, security headers.
    B
  • CrowdStrike Falcon MCP Server
    Connects AI agents with CrowdStrike Falcon for security analysis and automation.
    A
  • SSH Manager
    SSH server management for agents, with per-server read-only and allowlist security modes
    B
  • Reversecore MCP
    Security-first MCP server for reverse engineering, malware analysis, forensics, and SAST.
    B

More from CSOAI-ORG