# MCP Server Governance & Risk Check — Free Tool > Answer for an MCP server; get an approve / conditional / block verdict against the OWASP MCP governance framework. URL: [https://playciso.com/tools/mcp-server-risk](https://playciso.com/tools/mcp-server-risk) The MCP Server Governance & Risk Check turns the OWASP MCP Governance & Risk Project into a two-minute decision. Model Context Protocol servers let AI agents read wikis, open pull requests, post to Slack and trigger production workflows at machine speed — so the governing question is simple: should this MCP server be allowed in our environment, and under what controls? This tool applies the framework's four non-negotiable gates (no owner = no approval; no logging = no production; no scope = no access; no review = no enterprise deployment), its Tier 0-4 data/action classification, and an eight-factor risk read, then returns an approve / conditional / block verdict with the specific controls to add. It maps to the OWASP MCP Top 10, OWASP LLM Top 10, NIST AI RMF, ISO 42001 and SOC 2. Nothing you enter leaves your browser. ## How to use it - Answer the four hard gates: does the server have a named owner, audit logging, a documented data/action scope, and a scheduled risk-tier review? Any "no" blocks approval on its own. - Classify the server into a Tier (0 public read-only through 4 privileged/critical) — this sets how strict the bar is. - Score the eight risk factors: access scope, credential handling, tool chaining, data sensitivity, auth strength, vendor trust, auditability, and human approval for irreversible actions. - Read the verdict and banded score, work through the recommended controls, then copy the summary into your risk register or intake form. ## FAQ ### What is MCP governance? MCP (Model Context Protocol) governance is the structured decision-making around whether an MCP server may connect to your AI agents, at what classification tier, and under what controls. The OWASP MCP Governance & Risk Project frames it as three layers — policy, controls and checklists — answering one question: should this server be allowed, and under what conditions? ### What are the four non-negotiable MCP governance rules? From the OWASP framework: no owner = no approval (every server needs a named owner); no logging = no production use (audit trails are mandatory in production); no scope definition = no access (the data and actions a server can take must be documented); and no review = no enterprise deployment (periodic risk-tier reviews are required). This tool treats each as a hard gate. ### What are the MCP risk classification tiers? The framework uses five tiers: Tier 0 (public data, read-only), Tier 1 (internal non-sensitive read), Tier 2 (sensitive read), Tier 3 (write-capable), and Tier 4 (privileged/critical). Higher tiers demand stronger controls and human approval, and the risk bar this tool applies rises with the tier. ### What is the biggest MCP governance risk? The framework names tool chaining as the primary risk: an MCP server that can invoke other tools or trigger downstream workflows can turn a single approved action into a chain the user never saw. Combined with write access and weak logging, that is where a governed MCP program most often fails. ### Does this replace the OWASP MCP framework? No. It is a fast triage that applies the framework's gates, tiers and risk factors so you can make and record a decision quickly. For the full guidance — inventory, classification, risk scoring and a 90-day rollout — read the OWASP MCP Governance & Risk Project itself. --- PlayCISO is a simulation-first platform for security leaders: a War Room incident simulator, a simulated PCI DSS QSA interview, board-report coaching, free security scanners, and a curated library of free courses. https://playciso.com