accessoracle

AccessOracle - 10 access control tools: IAM, PAM, recertification, segregation of duties.

Should I use this

Quality & Safety

B
Description quality
89%
Schema completeness
51%
Naming quality
82%
Poisoning risk
100%
Permission match
100%
Protocol compliance
100%

Findings (2)

  • LOWTool 'access_gap_analysis' description lacks action verbin access_gap_analysis
  • LOWTool 'health_check' description lacks action verbin health_check

Based on automated analysis of tool definitions and protocol compliance.

Context Cost

~709Tokens (tool definitions)
~585 BTypical response size
Moderate attention impact (0.55% of 128k context)

This is the approximate number of tokens consumed each time the server's tools are loaded into a model's context. Higher counts reduce the attention available for other tasks.

Install

One-Click Install

Add this to your `claude_desktop_config.json` file:

{
  "mcpServers": {
    "accessoracle": {
      "url": "https://tooloracle.io/access/mcp/"
    }
  }
}

Remote endpoints

https://tooloracle.io/access/mcp/streamable-http

What it can do

Tool inventory

Tools (10)

🟢 Read-only🟡 Write🔴 Delete⚪ Unknown
⚪register_account(account_id, username, account_type, system, owner, ...)

Register a privileged/service/shared account for IAM tracking.

Input Schema

{
  "type": "object",
  "properties": {
    "account_id": {
      "type": "string"
    },
    "username": {
      "type": "string"
    },
    "account_type": {
      "type": "string",
      "enum": [
        "privileged",
        "service",
        "shared",
        "standard",
        "break_glass"
      ]
    },
    "system": {
      "type": "string"
    },
    "owner": {
      "type": "string"
    },
    "department": {
      "type": "string"
    },
    "mfa_method": {
      "type": "string",
      "enum": [
        "totp",
        "fido2",
        "smartcard",
        "push",
        "sms",
        "none"
      ]
    },
    "mfa_enabled": {
      "type": "boolean"
    },
    "is_shared": {
      "type": "boolean"
    },
    "criticality": {
      "type": "string",
      "enum": [
        "critical",
        "important",
        "standard"
      ]
    },
    "remote_access": {
      "type": "boolean"
    },
    "cif_access": {
      "type": "boolean"
    },
    "notes": {
      "type": "string"
    }
  },
  "required": [
    "username",
    "account_type"
  ],
  "additionalProperties": false
}
🟢list_accounts(account_type, system, no_mfa)

List accounts with filters.

Input Schema

{
  "type": "object",
  "properties": {
    "account_type": {
      "type": "string"
    },
    "system": {
      "type": "string"
    },
    "no_mfa": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
🟢mfa_compliance

Check MFA coverage against DORA Art. 9(4)(d) requirements.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟡access_review(add, account_id, reviewer, decision, review_date, ...)

Track access recertification reviews. Set add=true to log a review.

Input Schema

{
  "type": "object",
  "properties": {
    "add": {
      "type": "boolean"
    },
    "account_id": {
      "type": "string"
    },
    "reviewer": {
      "type": "string"
    },
    "decision": {
      "type": "string",
      "enum": [
        "confirmed",
        "revoked",
        "modified"
      ]
    },
    "review_date": {
      "type": "string"
    },
    "overdue_days": {
      "type": "integer"
    },
    "notes": {
      "type": "string"
    }
  },
  "additionalProperties": false
}
⚪sod_matrix

Detect Segregation of Duties conflicts across accounts.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
⚪privileged_audit

Privileged account audit — MFA, shared, review status.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟡jml_process(log_event, event_type, username, date, actions_taken, ...)

Joiner/Mover/Leaver process tracking. Set log_event=true to log.

Input Schema

{
  "type": "object",
  "properties": {
    "log_event": {
      "type": "boolean"
    },
    "event_type": {
      "type": "string",
      "enum": [
        "joiner",
        "mover",
        "leaver"
      ]
    },
    "username": {
      "type": "string"
    },
    "date": {
      "type": "string"
    },
    "actions_taken": {
      "type": "string"
    },
    "verified_by": {
      "type": "string"
    }
  },
  "additionalProperties": false
}
🟡break_glass_log(log, account_id, reason, used_by, approved_by, ...)

Emergency access logging. Set log=true to record usage.

Input Schema

{
  "type": "object",
  "properties": {
    "log": {
      "type": "boolean"
    },
    "account_id": {
      "type": "string"
    },
    "reason": {
      "type": "string"
    },
    "used_by": {
      "type": "string"
    },
    "approved_by": {
      "type": "string"
    },
    "duration_minutes": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
⚪access_gap_analysis

Gap analysis against RTS Art. 21 requirements.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
🟢health_check

Server status.

Input Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}

Community

Rate this Server

Evidence

Recent observations

verifiedversion not recorded10 tools
verifiedversion not recorded10 tools
verifiedversion not recorded10 tools