Elfcare
by Elfcare
Read your own Elfcare health-check results — blood biomarkers, MRI and CT findings, body composition and doctor summaries — from an AI agent. Four tools, all read. One OAuth scope, health:read, verified on the wire.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Connect Elfcare via MCP
https://patient.elf.care/api/mcpWorks in any MCP-compatible client. In Agentman Studio it is one click — no config file to edit.
Elfcare Tools & Capabilities (4)
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
Limits
- Elfcare publishes no tool list. The four names come from Anthropic's directory. Elfcare's page describes capabilities and exclusions in prose only, so a rename between the two would be invisible to us. We can report that the four names are consistent with everything Elfcare says; we cannot report a literal-string match in either direction.
- We could not read tool schemas or safety annotations. The endpoint returned 401 to an anonymous request on 2026-08-23. No parameter detail, no
readOnlyHint, nodestructiveHint. - One scope covers everything.
health:readis a real boundary between reading and writing, but none within your health data. You cannot grant biomarkers without imaging, or trends without your doctor's comments. - The connector reads only published results. Elfcare presents results through a doctor and its FAQ states they arrive no more than 10 days after the MRI, so a pending scan is not readable.
- Marker explanations cover a subset. Elfcare says contextual explanation is available "for supported markers". It does not publish which of the 80-plus panel markers those are.
get_imagereturns something undocumented. Elfcare's FAQ distinguishes a results report from raw-format images supplied on request for a second opinion. Which of those the connector returns, and at what fidelity, is not stated anywhere we found.- No HIPAA claim, no BAA, no connector-specific DPA. Elfcare's privacy policy is GDPR-framed and does not mention MCP, AI assistants or third-party model providers at all. It was last updated 19 November 2025, before this connector was listed on 2026-07-03. Elfcare has not published how the connector fits its data-protection posture.
- No published rate limit. We found no documented request ceiling for the MCP endpoint.
- We did not call any tool. Everything above comes from the directory entry, Elfcare's documentation, and unauthenticated metadata requests. No handshake succeeded and no health data was retrieved.
Frequently asked questions
No. Elfcare's MCP page states the connection can only read published results and that it cannot change records, book appointments, upload files, or modify health data. All four tool names Anthropic lists are read verbs, and the only OAuth scope the server advertises is health:read. That is an unusually specific vendor denial rather than a generic read-only claim.
Your published results. Anthropic's directory describes the permission as results from your blood tests, comments from your doctor, and MRI and CT scans. Elfcare's own page adds biomarkers, imaging results, body composition data and blood pressure. Elfcare's health check covers 80-plus blood biomarkers and a full-body MRI, so the reachable surface is a complete diagnostic record.
One scope, health:read. The server's RFC 9728 descriptor and its authorization server metadata both advertise exactly that single value, checked live on 2026-08-23. It is a named application scope rather than an identity claim, and it names a read verb, so it matches the read-only surface the vendor describes. It offers no narrower choice than all your health data.
Elfcare makes no HIPAA claim and we found no mention of a BAA. Elfcare AB is a Swedish provider and its privacy policy cites the EU GDPR as the applicable framework, listing rights of access, erasure, objection and portability. Elfcare's FAQ states it is a healthcare provider registered by IVO, the Swedish health and social care inspectorate. No data processing agreement is published for the connector.
Your own. Elfcare is a direct-to-consumer health check sold per person, and the connector authenticates against patient.elf.care with your own sign-in. Elfcare's page says access requires sign-in and consent and that you can review and disconnect connected apps from your profile. We found no documented caregiver, proxy or dependent access, so no third-party record is reachable through this connector.
No published rate and no billing tool. Elfcare sells health checks per visit rather than per API call, and its FAQ states the service is not a membership. No tool among the four carries a credit, balance, usage, quota or billing name, so an agent cannot observe spend. We found no published rate limit for the MCP endpoint either.
No, but it publishes something better shaped. Elfcare's MCP page never names get_results, get_marker_history, get_marker_info or get_image; those four names come from Anthropic's directory. Instead Elfcare publishes a list of what the connector cannot do. That constrains the surface rather than describing it, but it cannot catch a silent rename.
Treat it as context, not a diagnosis. Elfcare's own biomarker pages carry a disclaimer that results should always be discussed with a healthcare professional and that the guide is not medical advice. Elfcare's FAQ also states it does not treat disease and refers findings to specialists. An agent reading your results inherits that boundary.
Sources
- Elfcare MCP page (retrieved 2026-08-23). Beat
llms.txt,llms-full.txtand the.mdsuffix, all of which 404. Source of the read-only exclusion list and the five described capabilities. · retrieved 2026-08-23 - Elfcare FAQ (retrieved 2026-08-23). IVO registration, 80-plus biomarkers, 10-day results, raw images on request, not a membership, no treatment. · retrieved 2026-08-23
- Elfcare privacy policy (retrieved 2026-08-23, policy dated 19 November 2025). GDPR basis, health-data categories, data-subject rights. · retrieved 2026-08-23
- Elfcare full health check overview (retrieved 2026-08-23). MRI coverage and panel composition. · retrieved 2026-08-23
- Elfcare biomarker library, S-CRP as representative (retrieved 2026-08-23). The public reference corpus behind marker explanations, and the not-medical-advice disclaimer. · retrieved 2026-08-23
- Live auth posture check, 2026-08-23: anonymous
initializereturned HTTP 401 with an authentication challenge advertisingscope="health:read"; RFC 9728 metadata at ; authorization server metadata at . A bogus control path under the same prefix returned 404 with a differing body hash. · retrieved 2026-08-23 - Anthropic Connectors Directory entry — , read from our directory snapshot dated 2026-08-23 · retrieved 2026-08-23
- Elfcare support — <mailto:support@elf.care> · Privacy
Use in Agentman
Connect once and your agents call these tools on their own — on a schedule, in a workflow, with nobody at the keyboard.
Open in Agentman StudioServer Info
- Category
- Data & Research
- Developer
- Elfcare
- Tools
- 4
- Domain
- patient.elf.care
Using Claude Desktop or another MCP client? Setup docs — the connection URL above works anywhere.