Aurora
by Aurora
Search Consilio eDiscovery matters, workspaces and documents from an AI agent. Four read-only tools, no write path. Consilio's own terms warn that sending privileged material to an AI provider may risk waiver of privilege.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Connect Aurora via MCP
https://mcp.ai.consilio.comWorks in any MCP-compatible client. In Agentman Studio it is one click — no config file to edit.
Aurora Tools & Capabilities (4)
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
Limits
- Consilio mandates human review of anything you rely on. Its terms require independent expert verification by a qualified legal professional of all AI outputs before any output is relied on in a legal proceeding, regulatory filing, court submission, privilege log or legal advice. The same section acknowledges outputs may be inaccurate, incomplete or fabricated, "including references to case law, statutes, or factual matters that do not exist".
- Privilege risk sits with you. Consilio states the user is solely responsible for assessing and managing privilege risk, and warrants nothing about whether your AI provider's agreement protects it.
- The tools reference omits one of the four tools.
searchTicketsis documented nowhere except two mentions in the quickstart, so its arguments and response shape are unpublished. - We could not read tool schemas or safety annotations. The endpoint returned 401 to an anonymous request, so no parameter detail here comes from the server itself — all of it comes from Consilio's documentation.
- Scopes do not separate matters from documents in practice. Three read scopes exist, but a consent screen offering
documents:readgrants the AI Investigate path over evidence text; there is no narrower grant for matter metadata alone. - Consilio Identity advertises capabilities wider than this connector uses. Its metadata lists scopes including
documents:native,search:read,chat:read,mcp:accessandoffline_access, and supports thepasswordandimplicitgrant types alongsideauthorization_code. Those are properties of the shared identity service, not evidence the connector requests them — but a security reviewer reading the metadata will see them. - The advertised PKCE guarantee is weaker in the metadata than in the prose. Consilio's docs say PKCE with S256 is enforced at the gateway. The authorization server's own metadata advertises
code_challenge_methods_supportedof bothplainandS256. We could not test which the gateway accepts. - The server's own metadata points at a dead documentation page. The RFC 9728 descriptor declares
resource_documentationofhttps://mcp-docs.ai.consilio.com/aurora-mcp, which rendered Consilio's 404 page on 2026-08-22. The working documentation is the/docs/tree linked below. - The support repository is private. Consilio's FAQ directs feature requests to a GitHub
aurora-mcprepository under theconsilio-rndorganisation; both URLs returned a Consilio SSO sign-in page rather than a public repository or a 404. Use the support email instead. - No numeric rate limit is published. Consilio documents HTTP 429 at a per-tenant cap but states no figure, so throughput is unpredictable until your account team confirms it.
- It is read-only and online-only. No tool writes anything, and Consilio states the connector serves no cached data — if the upstream Consilio API is down, tools return errors.
- Availability is gated commercially. Consilio describes Aurora MCP as rolling out to customers and directs new users to an account representative, so the endpoint alone is not enough to get access.
Frequently asked questions
Consilio, LLC, a global eDiscovery and legal services firm. Aurora is not a separate vendor — it is the brand name of Consilio's Legal AI Suite, which includes AI Investigate, the engine behind the document tool. Consilio's site reports 5,400 employees and 30,000 hosted matters, so the listing name and the domain describe one company.
No. All four tools read. Consilio states there is no write path by design, and no tool creates, updates, deletes, exports or shares anything upstream. Anthropic's directory records the permission as Read. The three OAuth scopes the server advertises all end in read, so no grant on the consent screen carries a write.
Three, all read-only: matters:read, documents:read and tickets:read, declared in the server's RFC 9728 resource descriptor on 2026-08-22. Consilio Identity advertises nine more the resource does not request, including documents:native and chat:read. The boundary is real but coarse — no scope separates matter names from document text.
Consilio says it may. Its terms state that transmitting privileged material to a third-party AI environment may give rise to a risk of waiver of legal professional privilege, that preservation depends on your agreement with the AI provider, and that the user is solely responsible for assessing that risk. Consilio disclaims any warranty on the point.
No. Consilio's terms require the connector be used only with credentials tied to an enterprise agreement, and explicitly exclude personal, free-tier, trial and consumer accounts. That agreement must also bar model training on matter data and provide zero or near-zero retention. The FAQ's looser wording about portal accounts does not override this.
Litigation material about real people. Consilio's privacy notice says a query retrieves document text, custodian details, metadata and review annotations and transmits them to your AI provider. Everything is scoped to your existing portal permissions, so the connector cannot widen access — but within that scope the document tool reaches evidence text directly.
Four, per Anthropic's directory: searchMatters, searchWorkspaces, searchDocuments and searchTickets. Consilio's own tools reference documents only three, omitting the tickets tool, which appears elsewhere in its quickstart. Consilio also names its tools with an aurora_ prefix, so neither list matches the other exactly.
Rate-limited yes, separately billed no. Consilio states no additional licence is needed and usage falls under your existing engagement. Tool calls are subject to per-tenant policy at Consilio's API gateway, which returns HTTP 429 once an organisational cap is reached. Consilio publishes no numeric limit, so ask your account team.
Sources
- Aurora MCP documentation home (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP quickstart, prerequisites, prompt-to-tool table and troubleshooting (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP tools reference (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP capability pages, Matter search and AI Investigate — · (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP security model (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP privacy notice, effective 4 June 2026 (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP compliance page (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP terms of service, privilege, eligible enterprise terms and human review (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP FAQ and error codes — · (retrieved 2026-08-22) · retrieved 2026-08-22
- Aurora MCP Claude Code integration guide (retrieved 2026-08-22) · retrieved 2026-08-22
- Consilio corporate site, company scale and Aurora Legal AI Suite (retrieved 2026-08-22) · retrieved 2026-08-22
- Live auth posture check: anonymous initialize returned HTTP 401 with a
www-authenticateBearer challenge naming the resource metadata document; RFC 9728 descriptor athttps://mcp.ai.consilio.com/.well-known/oauth-protected-resource; authorization server metadata athttps://auth.ai.consilio.com/.well-known/oauth-authorization-server(2026-08-22) · retrieved 2026-08-22 - Anthropic Connectors Directory entry — , read from our directory snapshot dated 2026-08-16 · retrieved 2026-08-16
- Consilio support — <mailto:support@consilio.com> · Security — <mailto:infosec.clientrequests@consilio.com> · Privacy
Use in Agentman
Connect once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.
Open in Agentman StudioServer Info
- Category
- Productivity
- Developer
- Aurora
- Tools
- 4
- Domain
- mcp.ai.consilio.com
Using Claude Desktop or another MCP client? Setup docs — the connection URL above works anywhere.