ControlDrill
OfficialControlDrill MCP server
Remote Model Context Protocol server for ControlDrill.
Published on the official MCP registry as com.controldrill/mcp.
Connect
URL:
https://mcp.controldrill.com/mcpTransport: Streamable HTTP
Auth: OAuth 2.1 via WorkOS AuthKit (no API keys)
In any MCP client that supports remote servers + OAuth, add:
{
"mcpServers": {
"controldrill": {
"type": "http",
"url": "https://mcp.controldrill.com/mcp"
}
}
}The client discovers OAuth from the server metadata and opens a browser login. Paid plan required.
Related MCP server: CyberSim Pro MCP Server
Docs
Product page: https://controldrill.com
Official registry: search
com.controldrill/mcpon registry.modelcontextprotocol.io
Note
This repository is the public listing surface (manifest + docs). The Worker implementation lives in the private monorepo; the live endpoint above is the source of truth.
This server cannot be deployed
Maintenance
Related MCP Connectors
List, schedule, and retrieve evidence for ControlDrill incident-response tabletop exercises.
Compliance frameworks (SOC 2, ISO 27001, CMMC, NIST, more) delivered to AI agents as MCP tools.
Live threat intel for agents: incidents, actors, CVEs with KEV/EPSS, ransomware leak-site victims.
11Preflight, approve, and prove consequential agent actions with signed evidence and x402 tools.
Related MCP Servers
- AlicenseNot gradedqualityDmaintenanceEnables AI agents to investigate backend incidents by executing runbooks that gather evidence from observability and storage systems.09MIT
- FlicenseBqualityDmaintenanceEnables cybersecurity training, purple-team collaboration, and executive readiness through tools for scenario generation, attack simulation, telemetry analysis, incident investigation, forensics, and reporting with an immutable audit trail.12-
- FlicenseNot gradedqualityDmaintenanceProve your SRE agent can resolve incidents before production by replaying synthetic incidents and scoring agent performance via MCP tools.-
- AlicenseNot gradedqualityBmaintenanceEnables human-led defensive cyber investigations by letting agents and people share visible case state, review synthetic evidence metadata, prioritize explainable signals, draft findings that require human approval, and generate incident summaries.MIT