Claude security directory

Contentful MCP

Published by Contentful Inc.

High risk

## About the Contentful Remote MCP App The Remote MCP App makes your Contentful spaces accessible to AI agents, enabling them to perform content management operations. Once installed, the app gives space admins a simple dashboard to control exactly which Contentful tools are available to AI clients, like enabling read-only access for marketing teams auditing content, or unlocking write tools for developers building agentic workflows. Each space gets its own configuration. ## Features ### Per-Space MCP Permissions Configure which tools are exposed to AI clients on an environment-by-environment basis, scoping access to only what each team or workflow needs. ### Granular Tool Control Toggle individual tools on or off — restrict to read-only content queries, or enable write operations for agentic content pipelines. ### Admin Dashboard A simple, purpose-built UI for space administrators to review and update tool permissions without touching code. ## Requirements This app must be installed in a Contentful environment before the Remote MCP server can be used within that environment.

Security assessment

Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.

  • Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
  • Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.

Available capabilities

This add-on exposes 70 tools or capabilities.

  • append_entry_field
  • archive_asset
  • archive_entry
  • create_ai_action
  • create_concept
  • create_concept_scheme
  • create_content_type
  • create_entry
  • create_environment
  • create_locale
  • create_tag
  • create_upload_session
  • delete_ai_action
  • delete_asset
  • delete_concept
  • delete_concept_scheme
  • delete_content_type
  • delete_content_type_field
  • delete_entry
  • delete_environment
  • delete_locale
  • disable_content_type_field
  • get_ai_action
  • get_ai_action_invocation

The interactive security report will load automatically.