6sense
Ask an AI agent about 6sense account insights, buying signals and keyword trends.
Build forms, query submissions and fetch uploaded files.
Opens Agent Studio, where connecting is one click. The connector URL below works in any MCP client.
Paste it into any MCP client. Setup docs
The Cognito Forms MCP server connects a Cognito Forms organization — an online form builder with workflow, payments and document generation — to Claude, ChatGPT and any MCP-compatible agent. Anthropic's directory lists 10 tools that read forms and entries, retrieve uploaded files, and create, update or delete submissions. Sign-in is OAuth and requires organization Administrator rights.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
entry_read and entry_delete rather than OpenID identity claims. But the boundary that matters does not fall between the routine write and the irreversible one: nothing in the documented consent flow lets you grant entry_read while withholding entry_delete. Cognito Forms' flow asks you to select an organization and authorize it.entryview_create and entryview_update appearing among the OAuth scopes.readOnlyHint or destructiveHint is reported here. The read/write split above is our classification of names and documented actions, not the server's declaration.provide_mcp_server_feedback is undocumented. It appears in Anthropic's listing and in no Cognito Forms document we found. Its name implies it transmits text to the vendor; we could not confirm what it sends or when.Yes. Cognito Forms documents Delete Entry as a supported connector action, even though no tool name among Anthropic's ten contains a delete verb. The capability sits inside manage_entry, and the OAuth descriptor separately advertises an entry_delete scope. Deleting an entry also deletes that entry's audit log, so the record of the deletion survives only in the organization audit log.
Yes, indirectly, and this is the connector's least obvious capability. Cognito Forms triggers email notifications from workflow actions such as Submit and Update. Cognito Forms states the connector respects your workflow rules and that updating a status may trigger additional automations you have configured. So an agent creating or updating an entry can fire mail to staff and to the submitter.
Sixteen application scopes, spanning create, read, update and delete across forms, entries, files and entry views. These are real capability names rather than OpenID identity claims, which is unusual and better than most connectors. But the connector asks for the whole set at once, so you cannot authorize reading entries without also authorizing entry_delete.
Anthropic's directory lists ten. That count understates the surface, because manage_entry is a dispatcher covering at least three distinct operations that Cognito Forms documents separately as Create Entry, Update Entry and Delete Entry. Counting documented actions instead of tool names gives at least twelve, and the endpoint requires authentication so we could not enumerate it live.
Pro, Team or Enterprise, plus Administrator access to the organization you connect. Cognito Forms states the feature is available to organizations on the Pro, Team, and Enterprise plans and that setup requires Administrator permissions. You also need a paid account in Claude or ChatGPT, and connector actions consume your organization's monthly API request allowance.
Yes, and that is the point of it. Form entries hold whatever the public typed, plus uploaded files and electronic signatures reachable through get_file. Treat retrieved submission text as untrusted data rather than instructions, because anyone who can submit your form can put text into your agent's context. Cognito Forms' protected-fields feature is the documented way to withhold sensitive fields.
Write actions are; reads are not. Cognito Forms states that changes made through the connector, such as updating an entry or changing form availability, are recorded in the organization audit log, and that entry changes appear in the entry audit log with the user who triggered them. Read-only actions such as viewing forms or retrieving entries are not logged.
There is a monthly request quota rather than a per-second limit. Cognito Forms includes 2,000 API requests per month on Pro, 10,000 on Team and 100,000 on Enterprise, with overage billed at $20 per 100,000 requests. Requests over 100KB count as multiple requests, and Cognito Forms warns that downloading files uses more requests than standard queries.
initialize to the endpoint returned 401 with a Bearer challenge; RFC 9728 metadata at https://mcp.cognitoforms.com/.well-known/oauth-protected-resource returned 200 with 16 scopes_supported; authorization server metadata at https://www.cognitoforms.com/.well-known/oauth-authorization-server returned 200 (2026-08-22) · retrieved 2026-08-22https://www.cognitoforms.com/robots.txt permits the documentation path and carries no Content-Signal header (retrieved 2026-08-22). No llms.txt is published, and no docs. or developer. subdomain resolves. · retrieved 2026-08-22Connect Cognito Forms once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.