Claude + MCP

Turn Claude into a website risk reviewer.

Ask a plain-English question. Get an evidence-backed review of public website behavior, including privacy, cookies, consent, accessibility, policy, and disclosure signals.

No account to startPublic websitesEvidence-linked results

Scan your own website

Paste after connecting CertScore to Claude

Ask me for the public website URL I want to review, and wait for my reply. Then use CertScore to scan only that URL within the existing access limits, allowing an eligible recent result to be reused. Retrieve the completed report before summarizing findings, evidence links, coverage limitations, and the report URL. Say whether the result was new or reused. Treat preliminary observations as preliminary and explain blocked or incomplete coverage. Results are automated observations, not legal conclusions.

Claude will ask for your URL before scanning. Start with one public page and review its coverage before choosing another website.

Optional: verify the connection with our canary

This controlled test page checks the connection. Its report describes the canary, not your website. This is a scan request under the existing limits.

Use CertScore to scan https://ergoveritas.com/.well-known/certscore-canary/sentinels/broad-baseline.html. Wait for the scan to finish, then summarize the score, risk level, findings, evidence links, coverage limitations, and report URL. Treat the result as an automated public-web observation, not a legal conclusion.

A faster first pass

From “check this site” to a reviewable result.

CertScore gives Claude a structured way to start the work, while keeping evidence, limitations, and report links visible in the response.

01

Connect once

Use the no-auth Light MCP endpoint for the fastest first run.

02

Supply your website URL

Copy the website prompt above, paste it into Claude, then provide the public URL you want to review.

03

Review evidence

Get a bounded result with findings, references, coverage limits, and a report URL.

Hosted OAuth: connect your workspace

Use authenticated access to retrieve reports and previous scans in your authorized CertScore workspace. An eligible account, active workspace membership, and a supported OAuth client are required. Existing access limits apply.

Set up workspace access

After your first report

Review another client, brand, or vendor website

Keep the same conversation so both report links stay at hand. Copy this prompt when you are ready to supply a second website; each report retains its own scope and evidence.

Ask me for a different public website URL to review next, and wait for my reply. Scan only that URL with CertScore, using the same scan settings where supported and staying within existing access limits. Allow an eligible recent result to be reused. Retrieve its completed report and summarize its findings, evidence links, coverage limitations, and report URL separately from the first website. Say whether the result was new or reused. Do not treat missing observations as proof that a site is compliant.

Prompt library

Useful questions to ask Claude

Choose your connection route →

“Scan my website for cookies and trackers observed before consent.”

“Review this domain before vendor onboarding and summarize the evidence-backed concerns.”

“Using the two completed reports already in this conversation, compare their observed privacy and consent signals. Keep scan dates, settings, and coverage differences visible; do not start new scans.”

“Find the most important accessibility, cookie, policy, and disclosure signals on this site.”

Agencies

Turn client-site reviews into a repeatable workflow your team can run from a Claude conversation.

Privacy teams

Get a fast public-web evidence pass before deeper policy, vendor, or consent review.

Developers

Use a remote MCP server with clear tools, bounded results, and copyable setup instructions.

Before you connect

Frequently asked questions

Do I need a CertScore account?

Light MCP does not require an account, API key, bearer token, or OAuth. It is for low-volume public scans with public reports. Hosted OAuth connects an eligible CertScore workspace for authorized scan history and report access; account and workspace requirements apply.

What can Claude scan?

CertScore scans public HTTP or HTTPS websites for observable accessibility, privacy, cookie, consent, policy, and disclosure risk signals.

What should I ask Claude first?

Paste this prompt after connecting: Ask me for the public website URL I want to review, and wait for my reply. Then use CertScore to scan only that URL within the existing access limits, allowing an eligible recent result to be reused. Retrieve the completed report before summarizing findings, evidence links, coverage limitations, and the report URL. Say whether the result was new or reused. Treat preliminary observations as preliminary and explain blocked or incomplete coverage. Results are automated observations, not legal conclusions.

How do I review a second website?

After reviewing the first report, copy the next-website prompt and supply a different public URL when Claude asks. Each target is a separate scan request under the existing limits. Light access is not an unlimited bulk-scanning service.

Are results legal or compliance determinations?

No. Results are automated public-web observations with coverage limitations. Review retained evidence and applicable context before relying on a finding.

Make the first call count

Connect CertScore to Claude and scan a real site.

Connect through Light or your eligible workspace, copy the website prompt, and give Claude the public URL you want to review.