MCP servers for CRM, sales, ERP, HR, support desks and business operations. Each entry is scanned with the deterministic Capability-Flow Trust Model — grades are computed, never self-reported.
Security scan results for the Provider Scale Products MCP server.
Security scan results for the Duckduckgo MCP server.
Security scan results for the Mysql MCP server.
Security scan results for the Nestjs Mcp MCP server.
Security scan results for the Git MCP server.
Security scan results for the B2c Dx MCP server.
Security scan results for the Clipy MCP server.
Security scan results for the Appstore Connect MCP server.
Security scan results for the Sofagent MCP server.
Security scan results for the Zendesk MCP server.
Security scan results for the Next Finance MCP server.
Security scan results for the Erpnext MCP server.
Security scan results for the Vis MCP server.
Security scan results for the Csdd MCP server.
Security scan results for the Helmdesk MCP server.
Security scan results for the Gorgias MCP server.
Security scan results for the Stitch MCP server.
Security scan results for the Salesforce Cloud MCP server.
Security scan results for the Twine MCP server.
Security scan results for the Seedance MCP server.
Security scan results for the Mssql Mcp Reader MCP server.
Security scan results for the Dexe MCP server.
Security scan results for the Zd MCP server.
Security scan results for the Seldonframe MCP server.
Quarter close is a week out. The forecast lives in Salesforce, escalations are stacking up in Zendesk, an invoice question is buried in NetSuite, and a new hire's onboarding sits half-finished in the HR portal. A Model Context Protocol connector collapses that scatter into one conversation with Claude, Cursor or another LLM client — and hands the assistant the same keys a trusted operations manager would carry. So vet the connector the way you would vet the hire.
Business & CRM MCP servers typically wrap the APIs of CRMs (Salesforce, HubSpot, Pipedrive, Attio), support desks (Zendesk, Intercom), ERP and accounting suites (NetSuite, Odoo), and HR platforms in the BambooHR mold. Once connected, an assistant can enrich and update contact records in bulk, condense a raw sales pipeline into a forecast narrative, or classify inbound tickets and draft first replies. The full registry covers every category; Analytics & Monitoring holds the dashboards this data usually feeds, and Lifestyle & Local the booking and scheduling tools that sit alongside many CRM workflows.
Customer, revenue and employee records are the data attackers prize most, so an over-permissioned or malicious server in this category fails badly:
Each listing's Trust Score comes from the deterministic, open-source mcptrustchecker engine: it reads the published package code, maps capabilities into a blast-radius profile, and backs every finding with evidence — identical input, identical grade, and no paid placement. Unlisted packages can be checked through the free scan API.
Yes — if the server's security posture matches the data's sensitivity. Prefer a strong Trust Score and narrow capabilities, hand it a least-privilege API key instead of admin credentials, and start read-only before granting writes. Treat ticket bodies and CRM notes as untrusted input whenever the assistant can modify records.