Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

com.theartofservice/compliance-intelligence

REMOTE · API.THEARTOFSERVICE.COM · SCANNED OCT 7

What one compliance standard already evidences of another, with the reasoning and the rejections.

+2 this week 78 Trust /100
Trust breakdown (7 categories)

How this component scores in each security and reliability category. Every signal is checked automatically against the live server, and we only credit what we can confirm. How we score → Why this is hard to score →

Endpoint Security63
Transport & Reachability100
Schema Quality & AI Usability68
  • AI-judged instruction clarity (good).Pass
  • Context-footprint check failed: tool/resource definitions use about 4562 tokens (~138/item across 33 items; 33 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
  • No destabilizing schema changes in the last 30 days.Pass
Tool Coverage82
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 47% of tool parameters carry a description.Partial
Tool Safety100
  • No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
  • We read all 33 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
  • An AI judge read all 34 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
  • Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Install

How do I install the com.theartofservice/compliance-intelligence MCP server?

com.theartofservice/compliance-intelligence is a hosted endpoint at https://api.theartofservice.com/mcp, so there is nothing to install locally. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

remote · api.theartofservice.com

# add to Claude Code
claude mcp add --transport http com-theartofservice-compliance-intelligence 'https://api.theartofservice.com/mcp'
// .cursor/mcp.json
{
  "mcpServers": {
    "com-theartofservice-compliance-intelligence": {
      "url": "https://api.theartofservice.com/mcp"
    }
  }
}
// .vscode/mcp.json
{
  "servers": {
    "com-theartofservice-compliance-intelligence": {
      "type": "http",
      "url": "https://api.theartofservice.com/mcp"
    }
  }
}
# ~/.codex/config.toml
[mcp_servers.com-theartofservice-compliance-intelligence]
url = "https://api.theartofservice.com/mcp"
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "com-theartofservice-compliance-intelligence": {
      "type": "remote",
      "url": "https://api.theartofservice.com/mcp",
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add com-theartofservice-compliance-intelligence --url 'https://api.theartofservice.com/mcp' --transport streamable-http
# ~/.hermes/config.yaml
mcp_servers:
  com-theartofservice-compliance-intelligence:
    url: "https://api.theartofservice.com/mcp"
// ~/.netclaw/config/netclaw.json
{
  "McpServers": {
    "com-theartofservice-compliance-intelligence": {
      "Transport": "http",
      "Url": "https://api.theartofservice.com/mcp"
    }
  }
}
# add to Vellum
assistant mcp add com-theartofservice-compliance-intelligence -t streamable-http -u 'https://api.theartofservice.com/mcp'
// mcp.json
{
  "mcpServers": {
    "com-theartofservice-compliance-intelligence": {
      "type": "http",
      "url": "https://api.theartofservice.com/mcp"
    }
  }
}

The mcpServers block is a cross-client convention. Remote transports vary, so check your client's docs.

Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 7 Oct 26 +2
    • HSTS header: fail → pass ▲ security
    • The server rewrote its instructions, which are the text every model session reads security
    • Server version: Access 901 compliance frameworks, 43,793+ controls, and 315K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 934 compliance frameworks, 45,023+ controls, and 315K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 1 Oct 26 0
    • The server rewrote its instructions, which are the text every model session reads security
    • Server version: Access 844 compliance frameworks, 40,645+ controls, and 314K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 868 compliance frameworks, 42,974+ controls, and 315K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 30 Sept 26 0
    • The server rewrote its instructions, which are the text every model session reads security
    • Server version: Access 727 compliance frameworks, 36,006+ controls, and 312K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 844 compliance frameworks, 40,645+ controls, and 314K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 29 Sept 26 0
    • The server rewrote its instructions, which are the text every model session reads security
    • Server version: Access 727 compliance frameworks, 36,006+ controls, and 311K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 727 compliance frameworks, 36,006+ controls, and 312K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 28 Sept 26 0
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 27 Sept 26 0
    • The server rewrote its instructions, which are the text every model session reads security
    • Server version: Access 705 compliance frameworks, 34,404+ controls, and 309K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 723 compliance frameworks, 35,732+ controls, and 311K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 26 Sept 26 0
    • The server rewrote its instructions, which are the text every model session reads security
    • Endpoint reachability: not serving MCP → reachable ▲ functional
    • Server version: Access 704 compliance frameworks, 35,249+ controls, and 307K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. → Access 705 compliance frameworks, 34,404+ controls, and 309K+ cross-framework mappings. Query the compliance knowledge graph to research requirements, map controls across frameworks, and analyse coverage gaps. functional
  • 25 Sept 26 +53
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 7 Oct 2026 · Probed https://api.theartofservice.com/mcp

TLS valid

Negotiated TLS 1.3 with TLS_AES_128_GCM_SHA256 .

Subject Issuer Valid from Valid until Key Signature Serial
CN=api.theartofservice.com CN=YE2,O=Let's Encrypt,C=US 15 Aug 2026 13 Nov 2026 ECDSA 256 ECDSA-SHA384 5586105300a83566cfa1732f8c1c28a055e
SANs: api.theartofservice.com
CN=YE2,O=Let's Encrypt,C=US (CA) CN=Root YE,O=ISRG,C=US 3 Sept 2025 2 Sept 2028 ECDSA 384 ECDSA-SHA384 4df3b15dd6c0784c507cd37b58e6f115
CN=Root YE,O=ISRG,C=US (CA) CN=ISRG Root X2,O=Internet Security Research Group,C=US 13 May 2026 2 Sept 2032 ECDSA 384 ECDSA-SHA384 872165fc34b6e5fba8add5b3705fb53a
CN=ISRG Root X2,O=Internet Security Research Group,C=US (CA) CN=ISRG Root X1,O=Internet Security Research Group,C=US 13 May 2026 2 Sept 2032 ECDSA 384 SHA256-RSA 6c8f1dc727c7117f7baf853ac980f9cd

Background: What to check on a remote MCP endpoint →

DNSSEC insecure

Validation of api.theartofservice.com. — Not signed

Zone DS Keys Algorithms Outcome
. trust_anchor 20326, 38696 8, 8 Verified
com. present 19718 13 Verified
theartofservice.com. absent Unsigned (proven) parent-signed NSEC/NSEC3 proves an unsigned delegation
Authentication No authorisation required

The endpoint answered without asking for a token. Anyone who knows the URL can reach it.

Result No authorisation required
HTTP status 200
Header Value
strict-transport-security max-age=31536000; includeSubDomains
x-content-type-options nosniff
x-frame-options SAMEORIGIN
referrer-policy strict-origin-when-cross-origin

Background: How OAuth 2.1 works in the 2026 MCP spec →

Transports 2 probes
Transport URL Outcome Status Location
streamable-http https://api.theartofservice.com/mcp Verified 200
http (plaintext) http://api.theartofservice.com/mcp HTTPS enforced 308 https://api.theartofservice.com/mcp
MCP tools · 33 exposed · ~4,517 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →

Tool Tokens
adoption_get_adoption_summary ~116

Adoption Summary Adoption against baseline for one engagement: overall, by process area, and movement. Says whether the baseline was measured or reconstructed from artefacts, and whether the two waves are comparable at all. A pulse that used a different question set is reported as not comparable rather than differenced, because the difference would be between two rulers rather than two measurements. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
engagement_idintegeryes–

No output schema declared.

No examples provided.

adoption_get_report ~86

Get Report The latest management report as facts plus the evidence behind each one. Returns the fact sheet, not the rendered page. Every figure carries the responses or the uploaded file it came from, so a claim can be checked rather than repeated. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
engagement_idintegeryes–

No output schema declared.

No examples provided.

adoption_list_engagements ~48

List Engagements Every adoption engagement the signed in consultant runs, with its current state. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_buy_course ~127

Build a checkout for one or more courses Turn a course into a purchase. Give one or more product ids and this creates a real cart on the store and returns a checkout link that completes the sale. Free to call; the course price is paid at checkout. Use agent_search_courses to find the product id first. Multiple ids go in one cart, so a recommended set can be bought together in a single transaction. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
product_idsstringyes–
storestring––

No output schema declared.

No examples provided.

agent_buy_crosswalk ~102

Get a checkout link for a crosswalk report Returns a payment link for the crosswalk between two frameworks. Released pairs are delivered immediately on payment; any other pair is built to order at the same price. This returns a LINK, it does not take payment. An agent hands the link to whoever it is acting for. No card details pass through the agent. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_buy_review ~168

Get a checkout link for a single document compliance review Returns a payment link for a Single Document Compliance Review against one framework. On payment the buyer is emailed a single-use link that opens the same automated pipeline a Professional subscriber uses: upload one PDF or Word document, get back a gap analysis naming every control the document addresses and every one it does not, and a rewritten version drafted against those gaps. This returns a LINK, it does not take payment. An agent hands the link to whoever it is acting for. No card details pass through the agent. It produces draft policy language and a gap list. It does not make anyone compliant, and no tool can: that judgement is an assessor's. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_capital_by_function ~139

Capital by the business function it targets Where the money went, classified by whose job it changes. Sector labels describe the company; function labels describe the buyer. The second is the only one a reader can act on, which is why the classification is by function throughout. Concentration is reported when one deal carries a bucket, because a total can be arithmetically true and still mislead: one $1B debt facility once accounted for 73% of a function and 38% of a whole week. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_combined_coverage ~161

What everything you already hold covers, together PAID PER CALL, $0.015 over x402 (USDC on Base); a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs, agent_search_frameworks. Give the frameworks an organisation already holds and one it needs. Returns what they cover TOGETHER, what each one adds that the others do not, and what none of them reaches. No organisation holds one certification, and the marginal number is the one worth knowing: a second and third certification often add far less than expected. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
holdsstringyes–
targetstringyes–

No output schema declared.

No examples provided.

agent_controls_touched_by ~176

Controls a funded capability actually touches The join. A capability, and the controls whose own text concerns it. Matched against the control's requirement text, never against its title alone: a title that reads like a familiar control is the most expensive kind of wrong match. Returns nothing rather than something strained when the capability finds no purchase, because a join that always finds something is worthless. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
capabilitystringyesWhat is being funded, e.g. 'agents that act across systems'
frameworkstring–Restrict to one framework by name
limitinteger––
min_hitsinteger–Distinctive terms a control must contain. 0 chooses for you.

No output schema declared.

No examples provided.

agent_course_contents ~117

What a course actually teaches, module by module FREE, no API key, no payment. The full teaching structure of one course: every module with its summary and every chapter inside it. Use it to confirm a course genuinely covers a requirement before recommending it to someone. The response carries buy_url, a direct purchase link for the course. Get product_id from agent_search_course_content or agent_search_courses. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
product_idintegeryes–

No output schema declared.

No examples provided.

agent_courses_for_frameworks ~144

Find courses covering several standards at once Given two or more standards, returns courses that address ALL of them together, which is what an organisation running overlapping programmes actually needs. Example: frameworks='SOC 2,ISO 27001' returns courses on running both from one evidence set, rather than one course per standard. Falls back to reporting which standards have coverage if no single course spans them all. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
frameworksstringyesComma-separated, e.g. 'SOC 2,ISO 27001'
limitinteger––

No output schema declared.

No examples provided.

agent_coverage_crosswalk ~282

What one framework already evidences of another Given a framework you already hold and one you are working toward, returns which of the target's controls your existing evidence already covers, which remain as gaps, and the reasoning for every claim. Example: source='SOC 2', target='ISO 27001:2022'. Mappings are derived judgements, not text lifted from either standard, and each has survived an adversarial verification pass. Where no mappings exist between the pair, the response says so explicitly rather than reporting zero coverage, because an absence of data is not a coverage of zero. PAID PER CALL, $0.015 over x402 (USDC on Base). Called without payment it answers 402 with a PAYMENT-REQUIRED challenge carrying the amount, asset and address; a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs lists every released pair, agent_search_frameworks and agent_get_framework cover the catalogue. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
min_confidencestring–high, medium or low
sourcestringyesFramework you already hold, e.g. 'SOC 2'
targetstringyesFramework you are working toward, e.g. 'ISO 27001:2022'

No output schema declared.

No examples provided.

agent_coverage_report ~139

Get cross-framework coverage report for a framework PAID PER CALL, $0.015 over x402 (USDC on Base); a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs, agent_search_frameworks. Returns a coverage analysis showing how many controls in the given framework map to controls in every other framework. Includes total controls, mapped control counts, and coverage percentages per target framework. Use this to understand which frameworks overlap most and plan multi-framework strategies. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
namestringyes–

No output schema declared.

No examples provided.

agent_cross_framework_map ~183

Map controls between two compliance frameworks PAID PER CALL, $0.015 over x402 (USDC on Base); a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs, agent_search_frameworks. Returns the complete control-to-control mapping between a source and target framework. Each mapping shows which source control maps to which target control(s). This enables multi-framework compliance: satisfy one control to cover requirements in both frameworks. Use exact framework names as returned by agent_search_frameworks. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
sourcestringyesSource framework name (e.g. 'ISO 27001:2022')
targetstringyesTarget framework name (e.g. 'NIST Cybersecurity Framework 2.0')

No output schema declared.

No examples provided.

agent_crosswalk_pair ~211

Everything about one crosswalk pair, including what was rejected One framework pair in full: the coverage percentage and how it was arrived at, a sample of the claims that held with the reasoning behind each, and a sample of the claims that were proposed and refuted with the reason each failed. The rejected claims are part of the answer, not an appendix. A coverage number quoted without them is a number nobody argued with. PAID PER CALL, $0.015 over x402 (USDC on Base). Called without payment it answers 402 with a PAYMENT-REQUIRED challenge carrying the amount, asset and address; a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs lists every released pair, agent_search_frameworks and agent_get_framework cover the catalogue. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
limitinteger––
sourcestringyes–
targetstringyes–

No output schema declared.

No examples provided.

agent_crosswalk_provenance ~160

How do you know this: the grounding behind a crosswalk's claims For any released framework pair, return the reasoning and the provenance behind its mappings: what document each control was verified against, when, who judged the mapping, on what date, and whether it survived an adversarial pass that argued against it. PAID PER CALL, $0.015 over x402 (USDC on Base); a Professional API key is served free instead. A claim you cannot check is worth nothing, so the checking is not the paid part. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
limitinteger––
sourcestringyes–
targetstringyes–

No output schema declared.

No examples provided.

agent_crosswalk_refuted ~172

What was claimed and did not hold, with the reason PAID PER CALL, $0.015 over x402 (USDC on Base); a Professional API key is served free instead. Free without payment or key: agent_crosswalk_pairs, agent_search_frameworks. The mappings that were proposed for a pair and then refuted, each with why it failed. Refuted mappings are kept in the graph rather than deleted, so what was rejected is as inspectable as what survived. This is the check worth running on any coverage claim: a crosswalk that never rejects anything is not being judged. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
limitinteger––
sourcestringyes–
targetstringyes–

No output schema declared.

No examples provided.

agent_get_control ~100

Get detailed information about a specific control Returns full details for a single control by its code identifier: title, description, domain, and framework. Control codes are framework-specific (e.g. 'A.5.1' for ISO 27001, 'AC-1' for NIST 800-53). ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
codestringyes–

No output schema declared.

No examples provided.

agent_get_control_cross_references ~102

Get cross-framework mappings for a control Returns all controls in other frameworks that map to the given control via MAPS_TO relationships. This is the core cross-framework mapping capability: use it to find equivalent controls across different compliance frameworks (e.g. NIST 800-53 equivalents of ISO 27001 controls). ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
codestringyes–

No output schema declared.

No examples provided.

agent_get_course ~74

Get one course Full detail for a single course by product id, including every standard it covers and its purchase URL. Use after agent_search_courses to justify a recommendation. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
product_idintegeryes–

No output schema declared.

No examples provided.

agent_get_framework ~83

Get detailed information about a compliance framework Returns comprehensive details about a specific compliance framework: description, jurisdiction, version, domains with control counts, and cross-framework mapping statistics. Use the exact framework name as returned by agent_search_frameworks. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
namestringyes–

No output schema declared.

No examples provided.

agent_get_framework_controls ~110

Get all controls for a compliance framework Returns all controls belonging to a framework, optionally filtered by domain. Each control includes: code, title, description, and domain. For large frameworks (e.g. NIST SP 800-53 Rev 5), use the domain filter to narrow results. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
domainstring–Filter controls by domain name
namestringyes–

No output schema declared.

No examples provided.

agent_get_framework_controls_by_name ~196

Get all controls for a framework, naming it as a query parameter Identical to agent_get_framework_controls, taking the framework name as a query parameter instead of a path segment. Use this whenever the framework name contains a forward slash. 84 of the frameworks in the graph do, including CCPA/CPRA, AML/CTF Act 2006 and BSA/AML, and the path form cannot reach any of them: the server decodes %2F back to a real separator before routing, so the request 404s no matter how it is encoded. This route has no such problem and works for every framework. Free, no authentication. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
domainstring–Filter controls by domain name
namestringyesExact framework name, e.g. 'CCPA/CPRA'

No output schema declared.

No examples provided.

agent_list_course_frameworks ~65

List standards the catalogue covers Every standard that has courses, with a course count each. Use this to discover valid values for the framework filter before searching. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_list_crosswalk_pairs ~137

Framework pairs with a released coverage crosswalk Lists the framework pairs that have a reviewed, signed-off coverage crosswalk, with the coverage figure for each. Call this before agent_coverage_crosswalk to find out which pairs return a number. A pair that is not listed here has not been through review. Asking for it returns an honest 'not released' rather than an unreviewed percentage. Any pair across the any framework pair in the graph can be built to order, one pair being one unit of work. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_platform_stats ~58

Get platform statistics Returns current platform statistics: total framework count, control count, cross-framework mapping count, and domain count. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_pricing_info ~68

Get API pricing and rate limit information Returns current API pricing tiers, monthly call limits, and (if authenticated) your current month's usage. Use this to understand costs before making API calls. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

agent_search ~157

Full-text search across controls and frameworks Search the compliance knowledge graph using full-text search. Type 'controls' searches control titles and descriptions. Type 'frameworks' searches framework names and descriptions. Use specific compliance terms for best results (e.g. 'access control', 'encryption at rest', 'data breach notification'). ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
limitinteger–Maximum results to return
querystringyesSearch query (e.g. 'access control', 'encryption at rest')
typestring–Search type: 'controls' for control titles/descriptions, 'frameworks' for framework names/descriptions

No output schema declared.

No examples provided.

agent_search_course_content ~173

Search what courses teach, across the whole catalogue FREE, no API key, no payment. Full-text search over the TEACHING CONTENT of 126,803 professional courses: module titles, module summaries and every chapter title. Ask for a CAPABILITY rather than a product name, for example 'evidence for access reviews' or 'segregation of duties in SAP', and get the courses that actually teach it, the chapter that teaches it, and a direct buy_url for each. Use this when someone asks how to do something rather than what to buy. agent_search_courses matches product NAMES only; this matches what is inside them. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
limitinteger––
qstringyes–

No output schema declared.

No examples provided.

agent_search_courses ~153

Search the course catalogue Find courses by need, framework, role or industry. Free-text search over the catalogue, optionally narrowed to a named standard. Examples: q='soc 2 evidence collection', q='first 90 days as CISO', q='data governance healthcare', or q='audit preparation' with framework='ISO 27001'. Returns up to 25 courses with a direct purchase URL. No authentication required. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
frameworkstring–Narrow to a standard, e.g. 'SOC 2'
limitinteger––
qstringyesWhat the buyer needs to do

No output schema declared.

No examples provided.

agent_search_frameworks ~214

Search and list compliance frameworks Search the compliance knowledge graph for frameworks by name, keyword, or jurisdiction. Returns framework metadata including name, description, jurisdiction, domain count, control count, and mapping-partner count. Without a query, returns all frameworks. Use this as the starting point to discover available frameworks. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
jurisdictionstring–Filter by jurisdiction (e.g. 'International', 'Australia', 'United States', 'European Union')
limitinteger–Maximum frameworks to return
offsetinteger–How many to skip, for paging through the whole catalogue. The limit caps at 200, so an agent that wants every framework pages with offset=0, 200, 400 until it gets fewer than it asked for.
qstring–Search query to filter by name or keyword (e.g. 'ISO 27001', 'privacy', 'Australian')

No output schema declared.

No examples provided.

agent_signal_exposure ~134

Where a framework meets where the money is going A framework, a function, and the controls where the two meet. This answers the question the brief cannot answer for a reader, because it does not know who they are: money is moving into this capability, and here is what my own standard already asks of me about it. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
frameworkstringyesThe standard you are held to
functionstring–Your function, e.g. 'AI and automation'
limitinteger––

No output schema declared.

No examples provided.

agent_signals_this_week ~162

Funded rounds in the current window, filtered The genuine funded rounds, each with its source. Rows are already filtered: rate decisions, analyst price targets, bond issues, buybacks, parked domains, rumoured rounds and figures that were actually valuations are all excluded. The count of what was rejected is returned alongside, so the filtering can be argued with. ### Responses: **200**: Successful Response (Success Response) Content-Type: application/json

NameTypeReqDescription
functionstring–Business function or sector, e.g. 'AI and automation'
instrumentstring–equity, debt, grant, secondary or form_d
limitinteger––
min_usdnumber–Ignore rounds smaller than this

No output schema declared.

No examples provided.

Common questions

What is the com.theartofservice/compliance-intelligence MCP server?

com.theartofservice/compliance-intelligence is an MCP server listed in the public MCP registry as com.theartofservice/compliance-intelligence. What one compliance standard already evidences of another, with the reasoning and the rejections. This page covers its hosted endpoint (https://api.theartofservice.com/mcp).

Is the com.theartofservice/compliance-intelligence MCP server safe to use?

com.theartofservice/compliance-intelligence scores 78 out of 100 on VerifyMCP. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

What tools does the com.theartofservice/compliance-intelligence MCP server expose?

com.theartofservice/compliance-intelligence exposes 33 tools: agent_search_courses, agent_get_course, agent_courses_for_frameworks, agent_list_course_frameworks, agent_buy_course, and 28 more. Their descriptions and schemas cost roughly 4,517 tokens of context every time the server is loaded.

Does the com.theartofservice/compliance-intelligence MCP server require authentication?

No. We connected to com.theartofservice/compliance-intelligence without credentials and it answered, so anything it exposes is reachable by anyone who knows the address.

Is the com.theartofservice/compliance-intelligence MCP server still maintained?

com.theartofservice/compliance-intelligence is still listed as active in the MCP registry. We last reached this channel on 7 October 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.