{"generated_at":"2026-08-17T10:36:11+00:00","item":{"added_at":"2026-03-07","analysis_method":"capability_triage","category":"Web Connector","description":"Get documents signed faster without switching between tools. The SignNow MCP server connects Claude directly to your SignNow account, letting you manage the ...","did":"com-signnow-mcp","homepage_url":"","icon":"","id":"com.signnow/mcp","installs":0,"last_scanned":"","license":"","long_description":"Get documents signed faster without switching between tools. The SignNow MCP server connects Claude directly to your SignNow account, letting you manage the entire eSignature workflow through conversation. Send signature requests, create documents from templates and pre-fill them, track invite statuses, and retrieve signed files - all by describing what you need in plain language. Whether you're handling contracts, agreements, or approvals, Claude handles the SignNow actio...","name":"SignNow","plutonium_url":"https://plutonium.pluto.security/detail.html?planet=claudesec&did=com-signnow-mcp&utm_source=plutonium_analysis_skill&utm_medium=claude_skill&utm_campaign=connector_risk_assessment","publisher":"airSlate Inc","publisher_url":"https://www.airslate.com/","repository_url":"","risk":"medium","risk_severity":"medium","security_risks":[{"description":"This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.","evidence":"Connector has 16 tools; permissions on claude.ai/directory: \"Read and write\". Data flows out of the connected service into the model.","remediation":{"block_tool_categories":[],"steps":["Connect using an account that only has access to the information you actually want Claude to read - not your main admin login.","When you grant access, pick the smallest set of folders, mailboxes, or channels possible.","Check the connector's activity log every so often to make sure nothing unexpected is being read."]},"risk_type":"reads_private_data","severity":"medium","title":"Reads your private information"},{"description":"This connector can post messages, emails, or chat replies on your behalf. Recipients will believe the message came from you, which makes phishing or social-engineering risks higher.","evidence":"2 sends externally tools on this connector - e.g. send_invite, send_invite_from_template.","remediation":{"block_tool_categories":["sends_externally"],"steps":["In the tools list below, turn off any tool tagged Block if you don't need Claude to send messages or emails on your behalf.","If you do enable sending, restrict it to a private channel or distribution list - never customer-facing or company-wide.","Read the message before it goes out: don't let Claude send anything without you confirming first."]},"risk_type":"sends_messages_as_you","severity":"medium","title":"Can send messages as you"},{"description":"This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.","evidence":"8 state change tools on this connector - e.g. create_embedded_invite, create_embedded_sending, create_embedded_editor, create_from_template and 4 more.","remediation":{"block_tool_categories":["state_change"],"steps":["Try the connector on a test account first to see what it changes before letting it touch your real records.","Where the connected service supports it, give Claude read-only access and only allow writes for the specific things you need updated.","In the tools list below, turn off any tool you don't actively need - the ones tagged Block are the most important to disable."]},"risk_type":"modifies_data","severity":"medium","title":"Can change or update your information"},{"description":"Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.","evidence":"Server runs at mcp-server.signnow.com/mcp; queries and responses pass through the publisher's infrastructure.","remediation":{"block_tool_categories":[],"steps":["Treat anything you tell this connector as if you sent it directly to the third-party company - because you did.","Check how long that company keeps your data and how to delete it.","Avoid putting health info, customer names, or payment details into this connector unless you have a written agreement with that company."]},"risk_type":"forwards_data_to_third_party","severity":"low","title":"Sends your data to outside companies"}],"signature_status":"unknown","source_code_reviewed":false,"tags":["network_access","reads_private_data","email_messaging","filesystem_access","database_access"],"tools":[{"description":"List templates and template groups with simplified metadata, supporting limit/offset pagination.","name":"list_all_templates"},{"description":"Browse documents, document groups, and their statuses with limit/offset pagination support.","name":"list_documents"},{"description":"Send email invites for documents or groups with support for ordered recipients.","name":"send_invite","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}},{"description":"Create an embedded signing session for a document without sending an email.","name":"create_embedded_invite","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}},{"description":"Generate an embedded sending and management experience for a document.","name":"create_embedded_sending","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Generate an embedded editor link to place or adjust fields on a document.","name":"create_embedded_editor","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Create a document or document group from an existing template or template group.","name":"create_from_template","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Create a document from a template and immediately send an email invite in one action.","name":"send_invite_from_template","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}},{"description":"Create a document from a template and generate an embedded sending view in one action.","name":"create_embedded_sending_from_template","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Create a document from a template and generate an embedded editor link in one action.","name":"create_embedded_editor_from_template","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}},{"description":"Create a document from a template and generate an embedded signing session in one action.","name":"create_embedded_invite_from_template","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}},{"description":"Retrieve the current invite status and step details for a document or document group.","name":"get_invite_status","risk":{"category":"privilege","level":"high","recommendation":"Block unless the connector is used solely by IT/admin operators; gate behind explicit approval.","why":"Modifies who has access to data or resources. Misuse can leak sensitive content to unintended parties or escalate an attacker's privileges."}},{"description":"Get a direct download link for a document, or merged output for document groups.","name":"get_document_download_link","risk":{"category":"data_exfiltration","level":"medium","recommendation":"Restrict by row-count or scope at the API layer; alert on unusually large pulls.","why":"Pulls bulk data out of the source system. A prompt-injection attack can use this to siphon entire customer or revenue datasets in one call."}},{"description":"Retrieve a signing link for a document or document group.","name":"get_signing_link"},{"description":"Retrieve a normalized document or group structure including field values.","name":"get_document"},{"description":"Pre-fill text fields in individual documents with specified values.","name":"update_document_fields","risk":{"category":"state_change","level":"medium","recommendation":"Allow only for low-stakes resources; require approval for production data changes.","why":"Creates, modifies, or uploads data on the connected service. Hijacking the tool can pollute records, plant content, or create rogue resources that bill the user."}}],"tools_count":16,"type":"web_connector","url":"https://claude.ai/directory/4bf06559-36bf-4aab-b7f7-360af4e2db86","uuid":"7e839b05-68ee-5ecb-98df-a304fa981d6a","version":""},"query_key":"signnow","schema_version":1,"status":"match"}
