← All servers

Stratalize Governance

warnings

www.stratalize.com

AI governance intelligence: EU AI Act, FCA PS7/24, NIST AI RMF, OCC enforcement, and state AI laws.

https://www.stratalize.com/api/mcp-public?vertical=governanceWebsiteOAuthMCP 2025-11-25v1.0.0last checked 24 Aug 2026spoke MCP on 3 of 3 checks (30 days)initialize in 719 ms

How to authenticate

Checked against the endpoint by our probe on 24 Aug 2026. These are the capabilities the server advertises, not a prediction about any particular client.

Scheme
OAuth
Issuer
https://www.stratalize.com
Dynamic client registration
Advertised (RFC 7591)
Client ID Metadata Document
Not advertised
PKCE
S256
Grant types
authorization_code
Scopes
read:alerts, read:benchmarks, read:business_memory, read:integrations, read:market, read:reports, read:spend, write:governance, admin
Protected-resource metadata
Published (RFC 9728)
Anonymous access
Handshake succeeds; 18 tools listable
Credentials demanded in prose
get_stratalize_overview, get_nist_ai_rmf_requirements

These tools are listed anonymously and their own descriptions ask for an account or key, but no challenge is issued — so a client has nothing to act on and the refusal arrives as a tool error.

Documentation
https://www.stratalize.com/docs

What the probe found

warningTools needing credentials are listed without a challenge

2 of the 18 tools listed anonymously say in their own descriptions that they need an account or a key (get_stratalize_overview, get_nist_ai_rmf_requirements), but the endpoint issued no WWW-Authenticate challenge. The requirement is stated only in prose, so a call reaches the tool and comes back as a tool error instead of an authorization step.

No CORS headers for browser-based clients

A cross-origin preflight came back without Access-Control-Allow-Origin, so the endpoint is reachable from native clients only — code running in a web page is stopped by the browser before a request is ever sent.

18 tools usable without signing in

The server exposes a public surface before authorization: get_stratalize_overview, get_adoption_stage, get_ofac_sanctions_screening, get_oig_exclusion_screening, get_sam_exclusion_screening, get_eu_ai_act_coverage, get_uk_fca_coverage, get_occ_enforcement_actions, get_sba_loan_market_data, get_cra_performance_ratings, get_federal_court_cases, get_fec_campaign_finance, get_ftc_enforcement_history, get_dol_labor_violations, get_colorado_ai_act_requirements, get_nist_ai_rmf_requirements, get_us_state_ai_legislation, get_model_risk_management_standards.

Tools

get_adoption_stageget_colorado_ai_act_requirementsget_cra_performance_ratingsget_dol_labor_violationsget_eu_ai_act_coverageget_fec_campaign_financeget_federal_court_casesget_ftc_enforcement_historyget_model_risk_management_standardsget_nist_ai_rmf_requirementsget_occ_enforcement_actionsget_ofac_sanctions_screeningget_oig_exclusion_screeningget_sam_exclusion_screeningget_sba_loan_market_dataget_stratalize_overviewget_uk_fca_coverageget_us_state_ai_legislation

Contract history

24 Aug 2026v1.0.0first recorded contract

Get alerted when this contract changes

Depend on this server? Leave an email and get a message when a probe records a change — a tool removed, an argument newly required, an enum narrowed. Alerts are being built; signing up is what tells us to hurry.

Prefer a feed reader? This page's contract changes are also an Atom feed.

Status badge

Status for a README, from the last probe — cached an hour, so up to seven hours behind the endpoint. Links back to this page.

MCP status badge for Stratalize Governance
[![MCP status](https://mcpi.app/servers/stratalize-governance/badge.svg)](https://mcpi.app/servers/stratalize-governance)

Own this server?

Sign in to claim this listing by proving control of the endpoint.