6sense
Ask an AI agent about 6sense account insights, buying signals and keyword trends.
Ask legal questions, query Vault projects and search research knowledge sources.
Opens Agent Studio, where connecting is one click. The connector URL below works in any MCP client.
Paste it into any MCP client. Setup docs
The Harvey MCP server connects Harvey, a legal AI platform used by law firms and in-house legal teams, to Claude, Google Gemini and Microsoft 365 Copilot. It exposes five read-only tools: ask a general legal question, ask about documents in a Vault project, query a research knowledge source, and list the projects and sources you can reach. Sign-in is OAuth.
Verified connector
Listed by Anthropic as a partner connector in its Connectors Directory.
Connection checked by Agentman on .
Anthropic states this reflects the level of review a connector received, not a security audit.
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
scopes_supported, and the Auth0 tenant it delegates to advertises fourteen scopes that are all OpenID identity claims. Nothing at the OAuth grant separates a general legal question from a query against a specific client's documents.VAULT permission. Harvey also states elsewhere that API access to its Assistant requires an additional purchase, so entitlement is not uniform across workspaces.No. All five tools ask questions or list what exists, and none carries a create, upload, update or delete verb. Harvey's Vault API does document deleting a file and deleting an entire project, and states that project deletion cannot be undone, but neither endpoint is exposed as an MCP tool. The connector reads; it does not manage documents.
Only the Vault projects your own Harvey account can already open. Harvey states the server resolves every request to the authenticated user and enforces that user's permissions and feature gates, so Vault queries are scoped to projects you can access. The connector grants no new reach into the workspace, but everything you can reach it can read.
Harvey enforces walls inside Harvey, not after the answer leaves. Harvey states it syncs and enforces your firm's existing ethical wall policies and never creates or modifies walls. Its MCP guide separately states that data sent to third-party assistants is governed by your agreements with those providers and that Harvey is not responsible once data leaves its systems.
None that narrow anything. Harvey's resource descriptor omitted scopes_supported entirely on 2026-08-22, and the Auth0 tenant behind it advertised fourteen scopes that are all OpenID identity claims such as openid, profile and email. No scope separates asking a general legal question from querying a specific client's Vault project.
Because the feature is enabled per account rather than self-serve. Harvey's troubleshooting section directs you to your Harvey admin or representative to confirm you are enrolled. A separate message, that you lack permission to use a tool, is a different problem: Harvey states ask_about_vault requires the VAULT permission on your account specifically.
No. Harvey states each tool call is stateless and the server keeps no conversation history between requests. Your MCP client has to carry context across calls itself. That matters for follow-ups, because a second question about the same Vault project must repeat the project identifier rather than relying on the server to recall it.
No, and Harvey designed it that way. Harvey states each user authenticates individually through the browser OAuth flow, and the server resolves each request to that authenticated user before enforcing their permissions. There is no shared workspace token for the connector, so one person's access never becomes another's.
Not through the documented setup. Harvey lists Claude Web, Claude Desktop, Google Gemini and Microsoft 365 Copilot, and its own authorization metadata advertised no registration_endpoint on 2026-08-22. Clients that rely on Dynamic Client Registration have nothing to register against. Harvey documents no personal access token fallback for MCP either.
.md suffix affordance on the same URL. · retrieved 2026-08-22llms.txt (retrieved 2026-08-22). developers.harvey.ai/robots.txt carries Content-Signal: ai-train=yes, search=yes, ai-input=yes — all three axes opted in, so synthesis here is expressly permitted by the publisher. · retrieved 2026-08-22client_matter_id and knowledge_sources parameters (retrieved 2026-08-22) · retrieved 2026-08-22www.harvey.ai/legal/terms-of-service returns a 308 redirect to this page. · retrieved 2026-08-22initialize to the endpoint returned HTTP 401 with WWW-Authenticate: Bearer naming resource_metadata at https://api.harvey.ai/.well-known/oauth-protected-resource, which returned 200 with no scopes_supported; https://api.harvey.ai/.well-known/oauth-authorization-server returned 200 with no registration_endpoint; two control paths under the same prefix returned distinct 404 bodies. · retrieved 2026-08-22Connect Harvey once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.