Compliance & Data Governance MCP Servers — Vanta, Secureframe, Drata, DataHub, and More
At a glance: One of the strongest enterprise MCP categories. All three major compliance platforms (Vanta, Secureframe, Drata) have official MCP servers, and data catalog vendors are well represente...

Source: DEV Community
At a glance: One of the strongest enterprise MCP categories. All three major compliance platforms (Vanta, Secureframe, Drata) have official MCP servers, and data catalog vendors are well represented. 15+ servers across 5 subcategories. Rating: 4/5. Compliance Automation VantaInc/vanta-mcp-server (41 stars, TypeScript, MIT) — The compliance leader. AI agents get access to 1,200+ automated security tests across SOC 2, ISO 27001, HIPAA, GDPR. Filter by status, cloud provider, or framework. Auto-discovered tool registry. secureframe/secureframe-mcp-server (TypeScript) — 11 read-only endpoints covering controls, tests, devices, users, vendors, frameworks, integrations, and repo mappings. Lucene query syntax for precision filtering. Public beta. Drata MCP — Experimental server bringing compliance, risk, and monitoring data to AI workflows. Summarize failed tests, generate real-time risk reports, automate evidence collection across SOC 2, HIPAA, ISO 27001. GRC Platforms CISO Assistant (Python