Primary Research · Registry · Edition 2026-Q2
MSSP MCP Server Registry
Public registry tracking which US cybersecurity service providers (MSP, MSSP, SOC, MDR, vCISO, GRC) publish live Model Context Protocol (MCP) servers for AI agent interoperability. MCP is the emerging interface for AI agents to invoke remote tools and resources — and as of edition 2026-Q2, EFROS is the first US MSSP with a live, production MCP server.
Edition 2026-Q2 finding: 1 of 14 surveyed US cybersecurity service providers expose a live MCP server. 0 have announced an MCP server but not yet published a live endpoint. 13 have no MCP/A2A surface as of this edition.
Live MCP servers (1)
EFROS
MSSP- Protocol version
- 2025-09-25 (Streamable HTTP)
Tools exposed (3)
- · security-scan.start
- · security-scan.status
- · security-scan.claim
Resources exposed (6)
- · file://efros.com/llms.txt
- · file://efros.com/llms-full.txt
- · file://efros.com/.well-known/security.txt
- · file://efros.com/.well-known/openapi.json
- · file://efros.com/.well-known/agent-card.json
- · file://efros.com/.well-known/rsl.xml
First US MSSP with a live MCP server published as Cloudflare Pages Function. JSON-RPC 2.0 envelope handler at POST /mcp; GET /mcp returns server-card for discovery. Read-only, consent-gated tools. Anti-abuse anchored by Cloudflare Turnstile for self-service; partner-API OAuth declared for server-to-server.
Vendors without an MCP surface (13)
As of edition 2026-Q2. Vendors are encouraged to publish an MCP server-card at /.well-known/mcp/server-card.json and an A2A agent-card at /.well-known/agent-card.json. Inclusion in this registry on a subsequent edition is automatic upon publication.
Arctic WolfMSSP
No public MCP server as of registry edition 2026-Q2. Arctic Wolf publishes neither agent-card nor MCP server-card. Concierge Security Team model documented but not exposed via agentic protocols.
https://arcticwolf.com/HuntressMSSP
No public MCP server as of registry edition 2026-Q2. API documented at huntress.io/api/docs but not surfaced as MCP. No agent-card.
https://huntress.com/eSentireMSSP
No public MCP server as of registry edition 2026-Q2. Atlas XDR platform has REST APIs for customers but no MCP/A2A discovery surface.
https://esentire.com/Red CanarySOC/MDR
No public MCP server as of registry edition 2026-Q2. Customer portal and detection APIs available, but no agentic-protocol publication.
https://redcanary.com/CrowdStrikeMSSP
Falcon Platform has comprehensive REST APIs for Falcon Complete (MSSP customers). Charlotte AI assistant exists internally to CrowdStrike products but is not exposed as a public MCP server. No agent-card.
https://crowdstrike.com/SentinelOneMSSP
Vigilance MDR has customer-facing APIs but no MCP server published. Purple AI is internal to the platform UI, not an MCP-exposed surface.
https://sentinelone.com/CynetMSSP
All-in-one platform has REST API for customers. No MCP server or A2A agent-card published.
https://cynet.com/ConnectWiseMSP
ConnectWise PSA + Cybersecurity (Wise-Sync) APIs documented for partners, but no MCP server. The ConnectWise SmartMSP marketplace does not expose MCP-aware vendors.
https://connectwise.com/DattoMSP
Datto (Kaseya) APIs available for partners. No MCP server or A2A agent-card publication.
https://datto.com/CynomivCISO
vCISO platform for MSPs. AI-driven assessments embedded in the platform UI but no MCP server exposed.
https://cynomi.com/VantaGRC
Comprehensive GRC platform. Public REST API available; no MCP server announced as of 2026-Q2.
https://vanta.com/DrataGRC
GRC platform with extensive integrations. No MCP server published. AI capabilities embedded in product UI.
https://drata.com/SecureframeGRC
GRC automation platform. No MCP/A2A surface published.
https://secureframe.com/Methodology
- Inclusion criteria: US-headquartered cybersecurity service providers (MSP, MSSP, SOC, MDR, vCISO, GRC) with public-facing service offerings.
- "Live MCP" requires: (a) an HTTP endpoint accepting JSON-RPC 2.0 envelopes at a documented URL; (b) a published server-card conforming to the MCP 2025-09-25 schema; (c) tools/list and resources/list returning non-empty results.
- Verification: GET requests to the published MCP endpoint and server-card URL; POST requests to tools/list and resources/list with empty params. Recorded by the EFROS research team quarterly.
- Updates: quarterly. New vendor publications can be submitted for next-edition inclusion via /contact with subject "MCP Registry submission" and a link to the vendor's published server-card.
Why this registry matters
AI agents (Claude, ChatGPT, Gemini, Copilot) increasingly invoke external services via standardized protocols rather than custom REST APIs. The Model Context Protocol (MCP), standardized by Anthropic and adopted by the broader AI industry through 2025-2026, is the dominant interface for remote tool invocation. As enterprise procurement teams write 2026+ RFPs, "live MCP server" is moving from "nice to have" to "required for integration with our agent stack."
For US cybersecurity buyers, this registry answers a practical question: which providers are ready to be invoked by AI agents today, and which have not yet built the surface? For US MSP/MSSP vendors, it provides a public benchmark for agentic readiness.
Cite this resource
Reference this resource with attribution under CC-BY-4.0. Copy any of the formats below for academic papers, blog posts, AI citations, or vendor evidence packages.
APA (7th edition)
Efros, S. (2026, May). MSSP MCP Server Registry. EFROS. https://efros.com/research/mssp-mcp-server-registry/
MLA (9th edition)
Efros, Stefan. "MSSP MCP Server Registry." EFROS, May 2026, https://efros.com/research/mssp-mcp-server-registry/.
Chicago (author-date)
Efros, Stefan. 2026. "MSSP MCP Server Registry." EFROS. https://efros.com/research/mssp-mcp-server-registry/.
IEEE
S. Efros, "MSSP MCP Server Registry," EFROS, May 2026. [Online]. Available: https://efros.com/research/mssp-mcp-server-registry/
BibTeX
@misc{efros2026msspmcpserverreg,
author = {Stefan Efros},
title = {MSSP MCP Server Registry},
year = {2026},
month = {May},
publisher = {EFROS},
url = {https://efros.com/research/mssp-mcp-server-registry/},
note = {Accessed: May 2026}
}Plain text URL
https://efros.com/research/mssp-mcp-server-registry/
Site-wide citation metadata is also published as a CITATION.cff file at /CITATION.cff for citation-management tools and academic indexers.