# Comp AI MCP connector

The Comp AI connector brings your compliance program into Claude, ChatGPT, Cursor, and other MCP clients, so your team can check people, devices, training, and employment evidence in Comp AI by asking in plain language.

Source: https://elaichi.ai/connectors/compai/

## Facts

| | |
| --- | --- |
| Application | Comp AI |
| Category | Compliance |
| AI tools | 248 |
| Authentication | Connects with an API key |
| Needs your own OAuth app | No |
| MCP endpoint | https://api.elaichi.ai/mcp |
| Works with | Claude, ChatGPT, Cursor, any MCP client, and the Elaichi Agent |
| Tools advertised by name | No. 248 tools is past the 30-tool threshold, so clients use `search_tools` and `execute_tool` |

## What you can ask once Comp AI is connected

- Which Comp AI organizations still have onboardings unfinished?
- List Comp AI API keys created in the last month.
- Who was added to Comp AI people this week?

## Connect Comp AI in Elaichi

This happens once for the organization, before any client is involved.

1. Open Connections, choose Add connection, and pick Comp AI.
2. Optionally set Share with, then press Connect.
3. Paste a Comp AI API key. One person generates a token in Comp AI and pastes it once. Everyone else works through Share with, and never sees it.

Credentials are vaulted and nobody, including the AI, reads them back. The connection becomes a toolbox immediately, so you can curate which Comp AI tools are exposed, rename them, or freeze arguments before anyone points a client at it.

## Connect Comp AI to Claude

Endpoint: https://api.elaichi.ai/mcp

1. Open Customize, then Connectors.
2. Press Add.
3. Name it, paste the MCP server URL, then Continue.
4. Sign in and approve.

On Team and Enterprise, an Owner adds it once. Everyone else turns it on for themselves.

## Connect Comp AI to ChatGPT

Endpoint: https://api.elaichi.ai/mcp

1. Open Plugins, then press the + button.
2. Name it and paste the endpoint into Server URL.
3. Leave Authentication on OAuth, then tick the risk acknowledgement.
4. Press Create, then sign in and approve.

Works on the web today. The plugin directory lives at chatgpt.com/plugins.

## Connect Comp AI to Cursor

Endpoint: https://api.elaichi.ai/mcp

1. Open `~/.cursor/mcp.json`.
2. Add the endpoint under `mcpServers`.
3. Reload Cursor, then sign in and approve.

Set up per machine, so repeat it on each computer you work from.

## Connect Comp AI to any MCP client

Endpoint: https://api.elaichi.ai/mcp

1. Add the endpoint as a remote MCP server.
2. Sign in and approve.

The Elaichi Agent already has these tools, with nothing to set up.

## What the consent screen decides

Only Read is granted by default, which is not enough to call a Comp AI tool. Over MCP there is no trusted place to confirm a write in the moment, so the consent screen is the standing approval rather than a formality. Grant Read and Run tools. Think hard before granting Delete, which reaches into connected apps and cannot be undone.

## What teams do with Comp AI through Elaichi

### Find who still owes training before the audit

Compliance. Ask which people in Comp AI have not finished their security training videos and get a list you can chase, without opening every profile.

### Check which devices are registered to whom

IT. Pull the devices linked to each person in Comp AI to confirm laptops are enrolled before an access review or a hardware refresh.

### Add new hires in one go

People. Give the agent the names and emails from this week's start list and it creates them as people in Comp AI in bulk, then resends portal invites to anyone who has not accepted.

### See how tests are doing by owner

Security. Ask for test results grouped by assignee to spot which owners have failing or stale checks and who to nudge first.

### Gather employment evidence for a control

Operations. Collect the employment evidence Comp AI holds for a group of people when an auditor asks you to prove offboarding or onboarding was handled correctly.

### Keep organization details and roles current

Leadership. Update your Comp AI organization details, adjust who receives role notifications, or hand ownership to a new compliance lead as the team changes.

## Frequently asked questions

### How do I connect Comp AI to Claude?

Connect Comp AI in Elaichi first, which asks for a Comp AI API key from your Comp AI settings, then paste https://api.elaichi.ai/mcp into Claude under Customize, then Connectors, then Add. There is no OAuth application to register and no client ID or secret to generate. Once it is added, Claude signs you in through Elaichi and Comp AI is ready to use in your conversations.

### Does Comp AI work with ChatGPT and Cursor as well as Claude?

Yes. Comp AI is connected once in Elaichi, and the same endpoint, https://api.elaichi.ai/mcp, works in Claude, ChatGPT, Cursor, any other MCP client, and the Elaichi Agent. You do not set Comp AI up again for each client.

### What can an AI agent actually do with my Comp AI data?

With Comp AI connected, an agent can look up people and their devices, see who has finished training videos, review test results by assignee, and gather employment evidence for a control. It can also add people one at a time or in bulk, resend portal invites, and update your organization details or role notifications. Comp AI has a lot of ground to cover, so short, specific asks like "list people with unfinished training" work better than long paragraphs.

### Does connecting Comp AI give the AI access to my whole organization?

No. Every request to Comp AI through Elaichi runs as the person who signed in, so the agent sees only the organizations, people, and evidence that person's Comp AI access already allows. Elaichi can narrow that further with restrictions, but it can never grant more than the person already has in Comp AI.

### Can my team share one Comp AI connection?

Yes. One person connects Comp AI in Elaichi and shares it with a team, and nobody else ever handles the Comp AI API key. Each teammate still signs in to Elaichi as themselves, so the audit log names the actual person behind every change to a person, device, or organization record in Comp AI.

### Can I stop an agent from deleting or changing things in Comp AI?

Yes. Restrictions in Elaichi work per action, so you can allow reading people, devices, and test results in Comp AI while blocking deletions, bulk creates, or organization changes. A blocked action is never shown to Claude, ChatGPT, or any other client, so no prompt can reach it.

### What happens to a Comp AI connection when someone leaves?

Offboarding the person in Elaichi ends their access to Comp AI through every client at once, and the audit log keeps a record of what they did while they had it. A shared Comp AI connection keeps working for everyone else on the team. If you ever want Comp AI gone entirely, disconnecting it once in Elaichi removes it from Claude, ChatGPT, Cursor, and every other client together.

## All 248 Comp AI tools

Every tool below is callable through https://api.elaichi.ai/mcp once Comp AI is connected, subject to the toolbox it is in and the restrictions on the caller.

- **List all Comp AI organizations** (List). Retrieve the compai organization profile used to personalize compliance workflows, Trust Center branding, and audit readiness reporting. Returns: id, name, slug, logo, website, onboardingCompleted, hasAccess, primaryColor, createdAt, and authType.
- **Update a Comp AI organization by ID** (Update). Partially update the authenticated organization in compai; only the fields you supply are changed. Returns: id, name, slug, logo, website, onboardingCompleted, hasAccess, primaryColor, createdAt, and authType.
- **List all Comp AI organization onboardings** (List). Get the organization onboarding status in Comp AI. Returns the onboarding configuration including profile, api_keys, logo, ownership, role_notifications, and access_approval settings.
- **Create a Comp AI organization transfer ownership** (Create). Transfer organization ownership to another member in compai. The current owner becomes an admin and the new member receives the owner role. Returns: success, message, currentOwner (with memberId, previousRoles, newRoles), and newOwner (with memberId, previousRoles, newRoles). Required: newOwnerId.
- **List all Comp AI organization role notifications** (List). Get the current role notification settings for the organization in Comp AI. Returns: settings (an array of per-role notification preferences, each containing role, policyNotifications, taskReminders, taskAssignments, taskMentions, weeklyTaskDigest, and findingNotifications).
- **Update a Comp AI organization role notification by ID** (Update). Update role notification settings for the organization in Comp AI. Returns the updated settings array, each entry containing role, policyNotifications, taskReminders, taskAssignments, taskMentions, weeklyTaskDigest, and findingNotifications. Required: settings.
- **List all Comp AI organization API keys** (List). List active API keys for the organization in compai, enabling administrators to audit automation access and safely rotate credentials. Returns: id, attributes.
- **Create a Comp AI organization API key** (Create). Create a scoped API key for the organization in compai for server-side compliance automation such as evidence sync, policy workflows, or security questionnaire tooling. Returns: id, attributes.
- **Create a Comp AI organization logo** (Create). Upload an organization logo in Comp AI. Returns an empty 201 response on success.
- **Delete a Comp AI organization logo by ID** (Delete). Remove the organization logo in Comp AI. Returns an empty 200 response on success.
- **Create a Comp AI API keys revoke** (Create). Revoke an organization API key in compai when an integration is retired, credentials rotate, or access should be removed. Returns an empty 201 response on success.
- **Create a Comp AI organization access auto approve** (Create). Trigger an auto-approval check for organization access in compai. Grants access if the requesting user is an internal trycomp.ai user, the deployment is self-hosted, or the user's email domain matches the organization's website domain and the organization is an active Stripe customer. Returns: hasAccess.
- **List all Comp AI peoples** (List). List employees and contractors in compai with onboarding, device, and compliance status. Returns: data (array of member records including id, role, department, isActive, createdAt, user), count, authType. Required: includeDeactivated, onboardAfter, onboardBefore, offboardAfter, offboardBefore.
- **Create a Comp AI people** (Create). Create a new workforce member in compai by adding an existing user to the authenticated organization. Returns: id, organizationId, userId, role, department, isActive, createdAt, user. Required: userId.
- **Comp AI peoples bulk create** (Create). Bulk add multiple members to the authenticated organization in compai in a single request. Members who already exist or have invalid data are skipped with error details returned. Returns: created (successfully added member records), errors (with index, userId, error), summary (total, successful, failed). Required: members.
- **Get single Comp AI people by ID** (Get). Get a specific workforce member in compai by their member id. Returns: id, organizationId, userId, role, department, isActive, createdAt, user. Required: id.
- **List all Comp AI people devices** (List). List all employee devices with fleet compliance data in compai. Returns device records containing workforce member device and compliance information; the upstream source does not enumerate specific response fields for this endpoint — consult the compai API documentation for the full field-level breakdown.
- **List all Comp AI test stats by assignees** (List). List integration test statistics grouped by assignee in compai. Returns test statistics data per assignee; the upstream source does not enumerate response fields for this endpoint.
- **List all Comp AI people mentionables** (List). List compai members who can read a specific resource type and are eligible to be mentioned. Returns: id, name. Required: resource.
- **List all Comp AI training videos** (List). List training video completions for a member in Comp AI. Returns an array of training video completion records associated with the specified member; the upstream source does not enumerate specific response fields beyond the 200 OK status. Required: id.
- **Delete a Comp AI host by ID** (Delete). Remove a FleetDM host (device) from a compai member's Fleet. Returns: success, authType. Required: id, host_id.
- **Create a Comp AI resend portal invite** (Create). Resend a portal invite email to a member in compai. Returns an empty 201 response on success. Required: id.
- **List all Comp AI employment evidences** (List). List employment evidence attachments for a person in Comp AI by event type. Returns the onboarding or offboarding evidence records associated with the specified member (response body fields not enumerated by the source). Required: id, event_type.
- **Get single Comp AI people email preference by ID** (Get). Get current user email notification preferences in Comp AI. Returns the email notification preferences as an object; the upstream API does not enumerate specific response fields for this endpoint.
- **Update a Comp AI people email preference by ID** (Update). Update current user email notification preferences in Comp AI. Returns the updated email notification preferences as an object; specific request body fields (UpdateEmailPreferencesDto) and response fields are not enumerated in the upstream API documentation.
- **Create a Comp AI attachment** (Create). Upload a base64-encoded file and attach it to a supported entity (task, vendor, risk, or comment) in compai. The file is stored on S3 and a database record is created. Returns the created attachment record including id, url, file_name, entity_type, entity_id, and created_at. Required: file, file_name, entity_type, entity_id.
- **List all Comp AI attachment downloads** (List). Generate a signed download URL for a shared attachment in compai linked to comments, evidence records, or compliance workflow reviews. Returns: downloadUrl, expiresIn. Required: attachment_id.
- **Create a Comp AI uploads presign** (Create). Create a presigned S3 upload URL in compai. Returns the presignedUrl to PUT raw file bytes to directly, and the s3Key where the file lands for use in downstream feature tool calls (e.g. upload-and-parse). File bytes never pass through the LLM.
- **List all Comp AI timelines** (List). List timelines for the organization in Comp AI. Returns: id, phases.
- **Create a Comp AI phase ready** (Create). Mark a phase as ready for review in Comp AI, signalling audit and compliance readiness for a specific timeline phase. Returns an empty 201 response on success. Required: id (timeline id), phase_id.
- **List all Comp AI risks** (List). List organization risks in compai with owners, severity, and mitigation status for risk management reporting. Returns: id, title, category, status, likelihood, impact, treatmentStrategy, assigneeId, createdAt, updatedAt per item.
- **Update a Comp AI risk by ID** (Update). Update an organization risk by id in compai as mitigation work progresses to keep compliance reports current. Returns: id, title, category, department, status, likelihood, impact, residualLikelihood, residualImpact, treatmentStrategy, organizationId, assigneeId, createdAt, updatedAt. Required: id.
- **List all Comp AI stats by assignees** (List). List risk statistics grouped by assignee in Comp AI, covering organizational risks with ownership, departments, and compliance remediation status. Returns per-assignee aggregated risk statistics in attributes; the exact field shape is not enumerated in the upstream documentation — consult the compai API for the full field-level breakdown.
- **List all Comp AI stats by departments** (List). Get risk count statistics grouped by department in compai. Returns: department, count.
- **List all Comp AI global searches** (List). Search global vendor records in compai by name to prefill vendor profiles and speed up third-party risk assessment workflows. Returns matching vendor records; the upstream source does not enumerate the specific response fields for this endpoint. Optional: name.
- **List all Comp AI vendors** (List). List vendors in compai for third-party risk management. Returns: id, name, category, status, inherentProbability, inherentImpact, residualProbability, residualImpact, website, assigneeId, createdAt, updatedAt.
- **Update a Comp AI vendor by ID** (Update). Update a vendor record in compai by id, modifying name, category, status, risk attributes, or assigned owner. Returns: id, name, category, status, organizationId, assigneeId, inherentProbability, inherentImpact, residualProbability, residualImpact, updatedAt. Required: id.
- **Create a Comp AI vendor trigger assessment** (Create). Trigger a vendor risk assessment in Comp AI so it can update third-party risk evidence and vendor security review status for the specified vendor. Returns an empty 201 response on success. Required: id.
- **List all Comp AI contexts** (List). List compai organization context entries used as approved source material for evidence, questionnaires, and AI workflows. Returns: id, organizationId, question, answer, tags, createdAt, updatedAt per entry.
- **Create a Comp AI context** (Create). Create a new context entry in compai for the authenticated organization. Returns the created entry including id, organizationId, question, answer, tags, createdAt, updatedAt, and authType. Required: question, answer.
- **Delete a Comp AI context by ID** (Delete). Permanently delete a compai context entry by id. Returns: message, deletedContext (containing id and question), and authType. Required: id.
- **Delete a Comp AI device by ID** (Delete). Delete a device in compai by id. Returns an empty 204 response on success. Required: id.
- **Create a Comp AI device** (Create). Sync devices for a dynamic provider integration in compai. Returns an empty 201 response on success. Required: provider_slug, connectionId.
- **Get single Comp AI devices member by ID** (Get). Get all devices assigned to a specific member in compai. Retrieves devices from FleetDM using the member's dedicated FleetDM label ID. Returns: devices. Required: id.
- **Create a Comp AI policy** (Create). Create a new compliance policy in compai that can be reviewed, versioned, published, and linked to controls. Returns: id, name, description, status, content, frequency, department, isRequiredToSign, reviewDate, isArchived, createdAt, updatedAt, organizationId, assigneeId, approverId. Required: name.
- **Get single Comp AI policy by ID** (Get). Get a single compliance policy by id in compai, including its current content, draft content, review status, and audit metadata. Returns: id, name, description, status, content, isRequiredToSign, signedBy, reviewDate, isArchived, createdAt, updatedAt, organizationId, assigneeId, approverId. Required: id.
- **Update a Comp AI policy by ID** (Update). Update a compliance policy by id in compai while keeping it connected to controls, tasks, and approvals. Returns: id, name, description, status, content, frequency, department, isRequiredToSign, signedBy, reviewDate, isArchived, createdAt, updatedAt, organizationId, assigneeId, approverId. Required: id.
- **Create a Comp AI policies publish all** (Create). Publish all draft policies in bulk in compai so that approved policy content can power Trust Center sharing, questionnaire answers, and audit evidence. Returns an empty 201 response on success.
- **List all Comp AI policie controls** (List). List all controls mapped to a policy in Comp AI. Returns: id. Required: id.
- **List all Comp AI policie evidence tasks** (List). List evidence tasks that serve as evidence for a Comp AI policy, grouped by control. Returns: control, tasks. Required: id (Policy ID).
- **Create a Comp AI policie regenerate** (Create). Regenerate policy content using Comp AI for a specific policy in compai. Triggers AI-based regeneration while keeping the result reviewable before it is published or used as compliance evidence. Returns an empty 201 response on success. Required: id.
- **List all Comp AI PDF signed URLS** (List). Get a signed URL for a policy PDF in Comp AI. Returns: url (a time-limited signed URL for downloading or viewing the PDF export of the policy). Required: id. Optionally scope to a specific policy version with versionId.
- **Create a Comp AI policie PDF** (Create). Upload a PDF to a policy version in compai via multipart file upload or base64-encoded JSON payload. Defaults to the latest draft version when no versionId is supplied; returns 400 if no draft is available. Returns an empty 201 response on success. Required: id.
- **Delete a Comp AI policie PDF by ID** (Delete). Delete the PDF from a policy version in compai. Targets the latest draft version when no versionId is supplied. Cannot delete PDFs attached to published or pending-approval versions. Returns an empty 200 response on success. Required: id.
- **Create a Comp AI PDF upload URL** (Create). Generate a presigned S3 upload URL for attaching a PDF to a compliance policy in compai. Returns the presigned upload URL and s3Key; upload the file bytes directly to S3 using the URL, then call confirm-policy-pdf-uploaded with the same s3Key to finalize the attachment. Required: id.
- **List all Comp AI policie PDF URLS** (List). Get the signed PDF URL for a policy in Comp AI. Returns: url (a signed URL granting access to the policy PDF document). Required: id. Optionally scope the URL to a specific policy version with versionId.
- **Update a Comp AI policie version by ID** (Update). Update the content of a Comp AI policy draft version. Returns: versionId. Required: policy_id, id.
- **Delete a Comp AI policie version by ID** (Delete). Delete a Comp AI policy version by id. Returns: deletedVersion (the version number of the deleted version). Required: policy_id, id.
- **Comp AI policie versions activate** (Activate). Set a specific Comp AI policy version as the active published version. Returns: versionId, version. Required: policy_id, id.
- **Get single Comp AI policie version by ID** (Get). Get a specific Comp AI policy version by id. Returns: version, currentVersionId, pendingVersionId. Required: policy_id, id.
- **Create a Comp AI version submit for approval** (Create). Submit a policy version for approval in compai, advancing it into the approval workflow. Returns: versionId, version. Required: policy_id, id.
- **Create a Comp AI policie deny change** (Create). Deny pending policy changes in Comp AI for a specific policy. Returns an empty 201 response on success. Required: id.
- **List all Comp AI device agent my organizations** (List). List organizations associated with the current device in Comp AI. Returns organization records including id and organization-specific attributes. No query parameters are required.
- **Create a Comp AI device agent register** (Create). Register a Comp AI Device Agent installation so employee endpoint checks can report into compliance tasks and device inventory. Returns an empty 201 response on success.
- **List all Comp AI device agent macs** (List). Download the Comp AI Device Agent installer for macOS. Returns a binary DMG file (application/x-apple-diskimage) — an opaque binary blob whose contents are the device compliance and security monitoring agent installer, delivered with a Content-Disposition header indicating the filename (e.g., Comp AI Agent-1.0.0-arm64.dmg).
- **Delete a Comp AI device agent session by ID** (Delete). Revoke a device agent session in Comp AI by device ID. Returns an empty 204 response on success. Required: id.
- **List all Comp AI tasks** (List). List compliance tasks in compai with assignments and status for tracking audit readiness, evidence work, and control implementation. Returns: id, title, description, status, createdAt, updatedAt.
- **Create a Comp AI task** (Create). Create a compliance task in compai for evidence collection, remediation, review, or recurring control work. Returns: id, title, description, status, createdAt, updatedAt. Required: title, description.
- **Comp AI tasks bulk update** (Update). Update status for multiple compliance tasks in compai in a single request. Returns: updatedCount. Required: taskIds, status.
- **Comp AI tasks bulk submit for review** (Action). Bulk submit multiple compliance tasks for review in compai, assigning an approver to each. Returns an empty 204 response on success. Required: taskIds, approverId.
- **Update a Comp AI task by ID** (Update). Update a compliance task by id in compai, modifying fields such as status, assignee, department, frequency, or review date. Returns: id, title, description, status, createdAt, updatedAt. Required: id.
- **Delete a Comp AI task by ID** (Delete). Delete a compliance task by id in compai. Returns: success, message. Required: id.
- **Comp AI tasks list activity** (List). Get activity history for a compliance task by id in compai. Returns an empty 204 response on success. Required: id.
- **Comp AI tasks approve** (Approve). Approve a compliance task that is in review in compai; moves status to done and creates an audit comment. Only the assigned approver can approve. Returns an empty 204 response on success. Required: id.
- **Comp AI tasks reject** (Reject). Reject a compliance task that is in review in compai; reverts status to its previous value and creates an audit comment. Only the assigned approver can reject. Returns an empty 204 response on success. Required: id.
- **Comp AI tasks list attachments** (List). List evidence attachments for a compliance task by id in compai. Returns: id, name, type, size, downloadUrl, createdAt. Required: id.
- **Comp AI tasks attach attachment** (Action). Upload an evidence attachment to a compliance task in compai so auditors and reviewers can trace completion to source documentation. Returns: id, entityId, entityType, fileName, fileType, fileSize, createdAt, createdBy. Required: id.
- **List all Comp AI tasks templates** (List). List task templates in Comp AI for managing compliance task lifecycle. Returns: id, frameworkId. Optionally filter results by frameworkId.
- **List all Comp AI tasks options** (List). List page options for the tasks overview in Comp AI, covering compliance task lifecycle, assignments, review approvals, evidence uploads, policy links, and activity history. Returns the available configuration options object. The specific response field structure is not enumerated in the upstream API documentation.
- **List all Comp AI task policies** (List). List policies that reference a specific task via shared controls in Comp AI. Returns a list of policy objects linked to the task; the upstream source does not enumerate individual response fields. Required: task_id.
- **Create a Comp AI task automation** (Create). Create an automated evidence workflow attached to a task in Comp AI. Returns: success and an automation object containing id and name. Required: task_id.
- **Delete a Comp AI task automation by ID** (Delete). Delete an automation by id in Comp AI. Returns an empty 204 response on success. Required: task_id, id.
- **Get single Comp AI task automation by ID** (Get). Get a specific automation by id for a task in Comp AI. Returns: success and an automation object containing id, name, and description. Required: task_id, id.
- **List all Comp AI automation runs** (List). List all runs for a specific automation in Comp AI. Returns run records for the automation's evidence collection workflow; the exact shape of each run record depends on the automation's workflow configuration. Required: task_id, automation_id.
- **List all Comp AI automation versions** (List). List all versions for an automation in Comp AI. Returns: id, version, scriptKey, changelog, publishedBy, and createdAt for each version record. Required: task_id, automation_id.
- **Create a Comp AI automation version** (Create). Create a published version record for an automation in Comp AI. Returns: id, version, scriptKey, changelog, publishedBy, and createdAt for the newly created version. Required: task_id, automation_id, scriptKey.
- **List all Comp AI task evidences** (List). Get the evidence summary for a task in Comp AI, covering task evidence, automation evidence, and reviewer-ready bundles exportable as PDF or ZIP files. Returns an opaque binary evidence bundle (PDF or ZIP). Required: task_id.
- **List all Comp AI evidence exports** (List). Download a ZIP package containing task evidence and automation results from compai for auditor review or customer security requests. Returns a binary ZIP file (application/zip) — no enumerable JSON fields. Required: task_id.
- **Create a Comp AI evidence export all** (Create). Trigger a bulk evidence export in Comp AI, packaging all organization evidence into an auditor review package. Returns an empty 201 response on success indicating the export job has started.
- **List all Comp AI comments** (List). List comments for a compai compliance entity (task, policy, risk, vendor, or finding). Returns: id, entityId, entityType, userId, content, createdAt. Required: entityId, entityType.
- **Delete a Comp AI comment by ID** (Delete). Delete a comment by id in compai. Returns: success, deletedCommentId, message. Required: id.
- **List all Comp AI trust portal settings** (List). Get Trust Center settings in compai. Returns the portal configuration including is_public, custom_domains, framework_visibility, resources, faqs, and access_rules. No required parameters.
- **Create a Comp AI compliance resources upload** (Create). Upload or replace a compliance certificate PDF in compai for Trust Center sharing, supporting frameworks such as SOC 2, ISO 27001, HIPAA, and GDPR. Returns the uploaded compliance resource record including its id, framework, fileUrl, and organizationId. Required: framework, fileUrl.
- **Create a Comp AI compliance resources list** (Create). List uploaded compliance certificates for the organization in Comp AI's Trust Portal. Returns an array of compliance resource objects; each item includes id and attributes with schema-specific compliance resource fields.
- **Create a Comp AI documents upload** (Create). Upload an additional trust portal document in Comp AI's Trust Center. Returns the uploaded trust document object including its id and schema-specific attributes. The request body is required; consult the Comp AI API reference (UploadTrustDocumentDto) for the full field list.
- **Create a Comp AI document delete** (Create). Delete (deactivate) a trust portal document in Comp AI. Returns: success. Required: document_id.
- **Update a Comp AI settings faq by ID** (Update). Update trust portal FAQs in Comp AI. Returns a 200 response on success. No request body fields or response body fields are enumerated in the source documentation.
- **Update a Comp AI settings allowed domain by ID** (Update). Update the allowed domains settings for the trust portal in Comp AI. Configure the live Trust Center, custom domain, public overview, FAQs, compliance resources, documents, links, and vendor disclosures. Returns a 200 response on success.
- **Update a Comp AI settings framework by ID** (Update). Update trust portal framework settings in Comp AI. Configures the live Trust Center including custom domain, public overview, FAQs, compliance resources, documents, links, and vendor disclosures. Returns a 200 response on success.
- **Update a Comp AI trust portal custom framework by ID** (Update). Enable or disable a custom framework on the trust portal and set its compliance status in Comp AI. Returns: customFrameworkId, enabled, status. Required: customFrameworkId, and at least one of enabled or status.
- **List all Comp AI trust portal overviews** (List). Get the trust portal overview for a Comp AI organization, including Trust Center configuration for custom domain, FAQs, compliance resources, documents, links, and vendor disclosures. Returns: organizationId, customDomain, overview, faqs, complianceResources, documents, links, vendorDisclosures. Required: organizationId.
- **Create a Comp AI trust portal overview** (Create). Update the public Trust Center overview content in Comp AI, configuring the security posture and compliance status shown to prospects and customers. Returns: organizationId, customDomain, overview, faqs, complianceResources, documents, links, vendorDisclosures.
- **List all Comp AI trust portal custom links** (List). List custom links for the trust portal in Comp AI. Returns: id. Required: organizationId.
- **Create a Comp AI trust portal custom link** (Create). Create a custom link for the trust portal in Comp AI. Returns: id.
- **Update a Comp AI trust portal custom link by ID** (Update). Update a custom link in the trust portal in Comp AI. Returns: id. Required: id.
- **Create a Comp AI custom link delete** (Create). Delete a custom link in Comp AI's Trust Portal. Returns an empty 200 response on success. Required: link_id.
- **Create a Comp AI trust acces request** (Create). Submit a Trust Center access request in compai for administrator approval. The request body carries requester details, company context, and a review reason. Returns an empty 201 response on success. Required: friendly_url.
- **List all Comp AI admin requests** (List). List Trust Center access requests in compai, covering both pending and completed entries. Returns: id, status. Optionally filter by status (under_review, approved, denied, canceled).
- **Get single Comp AI admin request by ID** (Get). Get a single Trust Center access request by id in compai, including requester context, review metadata, and audit details. Returns: id, status. Required: id.
- **Comp AI admin requests approve** (Approve). Approve a Trust Center access request in compai, configure the grant window, and trigger the NDA or access email workflow. Returns: id, status. Required: id.
- **Create a Comp AI request deny** (Create). Deny a Trust Center access request in compai by id. Rejects the request with a review reason so that security access decisions remain auditable. Returns a 200 response on success with no documented body. Required: id.
- **Comp AI admin grants revoke** (Revoke). Immediately revoke a compai Trust Access grant when a customer review ends or shared compliance access should be removed. Returns: id, status. Required: id.
- **Create a Comp AI grant resend access email** (Create). Resend the access email for an active Trust Access grant in compai so approved reviewers can reopen shared resources. Returns an empty 200 response on success. Required: id.
- **Create a Comp AI request resend nda** (Create). Resend the NDA signing email for a compai Trust Access request that still requires reviewer signature. Returns an empty 200 response confirming the email was resent. Required: id.
- **Create a Comp AI trust acces reclaim** (Create). Request a fresh Trust Access link for a reviewer who already has an active grant on a published compai Trust Center. Triggers re-delivery of the access link to the reviewer's email. Returns an empty 200 response confirming the link was sent. Required: friendly_url.
- **List all Comp AI trust acces faqs** (List). List published Trust Center FAQs for a compai organization's trust page. Returns: id, question, answer, order for each FAQ item. Required: friendly_url.
- **List all Comp AI trust acces custom links** (List). List published custom links shown on an organization Trust Center in compai for customer security and compliance reviews. Returns: id, name, url. Required: friendly_url (Trust Portal friendly URL or Organization ID).
- **List all Comp AI trust acces custom frameworks** (List). List org-authored custom frameworks displayed on a Comp AI trust portal. Returns a collection of custom framework objects including id and framework-specific attributes. Required: friendly_url.
- **List all Comp AI findings** (List). List audit findings in Comp AI filtered by status, severity, area, and related entity IDs for compliance review workflows. Returns: id, status, severity, area, memberId, taskId, policyId, vendorId, riskId, evidenceSubmissionId, evidenceFormType, deviceId.
- **Create a Comp AI finding** (Create). Create an audit finding in Comp AI to track issue ownership, remediation activity, and severity. Returns: id, status, severity, area, memberId, taskId, policyId, vendorId, riskId, evidenceSubmissionId, evidenceFormType, deviceId.
- **Get single Comp AI finding by ID** (Get). Get a single audit finding by id in Comp AI. Returns: id, status, severity, area, memberId, taskId, policyId, vendorId, riskId, evidenceSubmissionId, evidenceFormType, deviceId. Required: id.
- **Delete a Comp AI finding by ID** (Delete). Delete an audit finding by id in Comp AI. Returns an empty 204 response on success. Required: id.
- **List all Comp AI roles** (List). List all roles in Comp AI. Returns: builtInRoles (each with name, isBuiltIn, description) and customRoles (each with id, name, permissions, isBuiltIn, createdAt, updatedAt).
- **Create a Comp AI role** (Create). Create a custom role in Comp AI for organization-level access control. Returns: id, name, permissions, isBuiltIn, createdAt, updatedAt. Required: name.
- **Delete a Comp AI role by ID** (Delete). Delete a custom role by id in Comp AI. Returns: success, message. Required: id.
- **List all Comp AI built in obligations** (List). Get the effective obligations for a built-in role in compai — returns the DB override if present, otherwise the hardcoded default. Returns: name, obligations (including compliance flag). Required: name.
- **Update a Comp AI built in obligation by ID** (Update). Update (override) the obligations for a built-in role in compai, for example to disable the compliance obligation for owners. Permissions continue to be sourced from hardcoded defaults. Returns: name, obligations (including compliance flag). Required: name.
- **List all Comp AI questionnaires** (List). List security questionnaires in compai saved for an organization, enabling teams to track customer reviews, answer status, and response history. Returns: id, questions, answers, review_context.
- **Delete a Comp AI questionnaire by ID** (Delete). Delete a security questionnaire in compai when a customer review or vendor assessment no longer needs to be retained. Returns: id. Required: id.
- **Create a Comp AI auto answer** (Create). Start background auto-answer generation for a compai questionnaire. Triggers an asynchronous answer-generation job and returns a run handle immediately; poll GET /v1/questionnaire/:id until answeredQuestions equals totalQuestions to track completion. Returns: id. Required: id.
- **Create a Comp AI questionnaire parse** (Create). Parse questionnaire content in compai from a submitted JSON payload, extracting security questions before generating or reviewing answers. Returns the parsed questionnaire content as a dynamic object whose structure depends on the submitted questionnaire payload.
- **Create a Comp AI questionnaire save answer** (Create). Save a manual or AI-generated security questionnaire answer in compai for later review, export, and audit tracking. Returns: success, error.
- **Create a Comp AI questionnaire delete answer** (Create). Delete a stored questionnaire answer in compai, removing it from the active response set. Returns: success, error.
- **Create a Comp AI questionnaire upload and parse** (Create). Upload a questionnaire payload to compai and start asynchronous parsing. Returns: runId, publicAccessToken.
- **Create a Comp AI upload and parse upload** (Create). Upload a security questionnaire file to compai, extract its questions, and save the parsed result. Returns: questionnaireId, totalQuestions. Required: file, organizationId.
- **Create a Comp AI answers export** (Create). Generate and export questionnaire answers in compai from a submitted payload using approved organization evidence. Returns an empty 201 response on success.
- **Create a Comp AI export upload** (Create). Upload a questionnaire file to compai and receive generated answer exports. Returns a binary file payload in the requested format (PDF, CSV, or XLSX). Required: file, organizationId.
- **Create a Comp AI questionnaire auto answer** (Create). Stream generated questionnaire answers in compai over server-sent events, allowing clients to display progress as answers are produced in real time. Returns an empty 201 response on success.
- **List all Comp AI knowledge base documents** (List). List uploaded knowledge base documents in Comp AI that serve as approved source material for answers, policies, and reviews. Returns: id, attributes. No required parameters.
- **List all Comp AI knowledge base manual answers** (List). List all manual answers for an organization in compai. Returns: id.
- **Create a Comp AI knowledge base manual answer** (Create). Save or update a reusable manual answer in compai for security questionnaires that need approved, consistent response language. Returns: id.
- **Create a Comp AI manual answer delete** (Create). Delete a manual answer in Comp AI by its ID. Required: manual_answer_id. Returns an empty 200 response on success.
- **Create a Comp AI soa save answer** (Create). Save a SOA answer in Comp AI for an ISO 27001 Statement of Applicability document. Returns: success.
- **Create a Comp AI soa create document** (Create). Create a new ISO 27001 Statement of Applicability (SOA) document in Comp AI, enabling auto-fill, review, approval, and export workflows. Returns a 200 success response; the response body shape is not enumerated in the upstream documentation.
- **Create a Comp AI soa get setup** (Create). Read the SOA (Statement of Applicability) setup in Comp AI, returning the existing configuration and document without creating either. Returns: configuration, document (either may be null if not yet set up).
- **Create a Comp AI soa decline** (Create). Decline a SOA document in Comp AI, marking it as rejected within an ISO 27001 Statement of Applicability workflow. Returns a 200 OK response indicating the document was declined successfully, with no structured response body.
- **Get single Comp AI isms document by ID** (Get). Get an ISMS document with its latest version in Comp AI. Returns: id. Required: id.
- **Comp AI isms documents approve** (Approve). Approve an ISMS document in Comp AI, marking it as approved. Returns: id. Required: id.
- **Create a Comp AI document control** (Create). Map organization controls to an ISMS document in Comp AI. Required: id. Returns a 200 response confirming the controls were linked.
- **Create a Comp AI document generate** (Create). Derive Context-of-the-Organization issues for a document in Comp AI. Returns the document object with content-type-specific derived issue fields. Required: id.
- **Create a Comp AI document context issue** (Create). Create a manual context issue in Comp AI for a specified document. Returns a 200 confirmation response on successful creation. Required: id.
- **Create a Comp AI isms context issue** (Create). Update a context issue in Comp AI. Accepts a JSON body with update fields for the specified context issue. Returns an empty 200 response on success. Required: id.
- **Delete a Comp AI isms context issue by ID** (Delete). Delete a context issue in Comp AI by id. Returns an empty 200 response on success. Required: id.
- **Create a Comp AI document submit for approval** (Create). Submit an ISMS document for approval in Comp AI. Returns an empty response on success. Required: id.
- **Create a Comp AI document export** (Create). Export an ISMS document as PDF or DOCX in Comp AI. Returns a rendered document binary (the file content itself). Required: id.
- **Create a Comp AI document interested party** (Create). Create a manual interested party for a document in Comp AI. Returns the created interested party object (response fields are not enumerated in the upstream API documentation). Required: id.
- **Create a Comp AI isms interested party** (Create). Update an interested party in Comp AI by id. Accepts a JSON request body containing the fields to update. Returns a 200 response on success. Required: id.
- **Create a Comp AI document requirement** (Create). Create a manual requirement in compai for a specific ISMS document. Returns a 200 response indicating the requirement was created successfully; no response body fields are documented by the source. Required: id.
- **Create a Comp AI isms requirement** (Create). Update a requirement in Comp AI by id. Returns a 200 response on success with no documented body. Required: id.
- **Delete a Comp AI isms requirement by ID** (Delete). Delete a requirement in Comp AI by id. Returns a 200 response on success with no documented body. Required: id.
- **Create a Comp AI isms objective** (Create). Update an objective in Comp AI by id. Returns an empty 200 response on success. Required: id.
- **Create a Comp AI isms generate all** (Create). Ensure and regenerate all ISMS documents in Comp AI. Returns a 200 response upon successful regeneration.
- **List all Comp AI connections providers** (List). List available integration providers in Comp AI that can connect to the organization for automated evidence collection and compliance checks. Returns: id, slug. Required: activeOnly.
- **Create a Comp AI integrations connection** (Create). Create an integration connection in Comp AI so it can collect evidence, run compliance checks, or sync data from a connected provider. Returns: id.
- **Get single Comp AI integrations connection by ID** (Get). Get an integration connection by id in Comp AI. Returns: id. Required: id.
- **Update a Comp AI integrations connection by ID** (Update). Update an integration connection by id in Comp AI. Returns: id. Required: id.
- **Delete a Comp AI integrations connection by ID** (Delete). Delete an integration connection by id in Comp AI. Returns an empty 204 response on success. Required: id.
- **Comp AI integrations connections resume** (Resume). Resume a paused integration connection by id in Comp AI to restart evidence collection and compliance checks. Returns: id. Required: id.
- **Create a Comp AI connection test** (Create). Test an integration connection in Comp AI. Triggers a connectivity check for the specified connection and returns an empty 201 response on success. Required: id.
- **List all Comp AI checks providers** (List). List check definitions for a provider in Comp AI. Returns check definition objects with id and provider-specific attributes whose shape varies by provider. Required: provider_slug.
- **Create a Comp AI connection run** (Create). Run all compliance checks for an integration connection in Comp AI and capture results as automated evidence. Required: connection_id. Returns an empty 201 response on success.
- **List all Comp AI connection options** (List). List available options for a connection variable in Comp AI. Returns option records including id and variable-specific attributes whose shape depends on the variable's configuration. Required: connection_id, variable_id.
- **List all Comp AI checks** (List). List checks associated with a task template in Comp AI. Returns check objects including id and attributes; the upstream API does not enumerate specific response fields in its documentation. Required: template_id.
- **Create a Comp AI google workspace status** (Create). Get the Google Workspace sync status in Comp AI. Returns a 201 response on success with no documented response body.
- **Create a Comp AI rippling status** (Create). Get the Rippling sync status in Comp AI. Triggers a status check for the Rippling integration, covering employee sync, variable management, OAuth configuration, and compliance checks. Returns a 201 response on success with no documented response body.
- **Create a Comp AI jumpcloud employee** (Create). Sync JumpCloud employees in Comp AI. Triggers an employee sync for the specified JumpCloud connection and returns an empty 201 response on success. Required: connectionId.
- **Create a Comp AI jumpcloud status** (Create). Get JumpCloud sync status in Comp AI. Triggers a sync status check for the JumpCloud integration, returning a 201 response on success. No request body or documented response fields are defined by the upstream API.
- **Create a Comp AI sync employee sync provider** (Create). Set the employee sync provider in Comp AI. Returns: provider. Required: provider.
- **List all Comp AI sync device sync providers** (List). Get the currently configured device sync provider in Comp AI. Returns the provider configuration as an opaque object; the response fields are not enumerated in the source documentation.
- **List all Comp AI sync available providers** (List). List sync providers available to the org in Comp AI. Returns a list of available sync provider records for the given sync type. Required: syncType.
- **Create a Comp AI employee** (Create). Sync employees for a dynamic provider in Comp AI. Triggers an employee synchronisation job for the specified provider connection. Returns a 201 response on success. Required: provider_slug, connectionId.
- **List all Comp AI cloud security providers** (List). List supported cloud security providers in compai (AWS, Azure, and GCP). Returns provider records including id and name. No required parameters.
- **Create a Comp AI finding exception** (Create). Mark a compai cloud-security finding as an exception so it no longer appears in the active Scan Results list. Returns an empty 201 response on success. Required: finding_id.
- **Update a Comp AI connection scan mode by ID** (Update). Switch the AWS scan mode for a connection in Comp AI, toggling between Comp AI scanners and Security Hub. Returns an empty 200 response on success. Required: connection_id.
- **Delete a Comp AI cloud security exception by ID** (Delete). Revoke a compai cloud security exception by id, reopening the associated finding. Returns an empty 200 response on success. Required: id.
- **List all Comp AI finding check definitions** (List). Get the 'About this check' definition for a compai finding, resolving its check description (AI-cached for AWS; provider-derived for GCP/Azure). Returns a check definition object whose response shape is not enumerated by the upstream source. Required: finding_id.
- **Create a Comp AI cloud security resolve session** (Create). Resolve short-lived AWS credentials for a connection in Comp AI, enabling cloud security scans across AWS, Azure, and GCP. Returns an empty 201 response on success. Required: id.
- **Create a Comp AI cloud security detect service** (Create). Detect available cloud services for a connection in Comp AI, triggering AWS, Azure, and GCP cloud security scans to identify enabled services and link posture results to compliance work. Returns an empty 201 response on success. Required: id.
- **Create a Comp AI cloud security detect gcp org** (Create). Detect the GCP organization for a connection in Comp AI. Triggers organization detection for the specified connection as part of GCP cloud security scanning. Returns an empty 201 response on success. Required: id.
- **Create a Comp AI cloud security setup gcp** (Create). Set up GCP for a connection in Comp AI, enabling cloud security scans, service detection, and cloud posture findings linked to compliance work. Returns an empty 201 response on success. Required: id.
- **Create a Comp AI setup gcp resolve step** (Create). Resolve a GCP setup step in Comp AI to advance cloud security configuration. Required: connection_id. Returns an empty 201 response on success.
- **Create a Comp AI cloud security setup azure** (Create). Set up Azure for a connection in Comp AI, initiating cloud security scans, detecting enabled services, reviewing findings, and linking cloud posture results to compliance work. Returns an empty 201 response on success. Required: id.
- **Create a Comp AI cloud security trigger** (Create). Trigger a cloud security run for a connection in Comp AI, initiating AWS, Azure, and GCP scans to detect enabled services, review findings, and connect cloud posture results to compliance work. Returns an empty 201 response on success. Required: id.
- **Get single Comp AI cloud security run by ID** (Get). Get a cloud security scan run by ID in Comp AI. Retrieves a single run record for AWS, Azure, or GCP cloud security scans. Returns: id. Required: id, connectionId.
- **List all Comp AI task managements** (List). List task items for an entity in Comp AI. Returns: id, entityId, entityType, title, status, priority, assigneeId, createdAt, updatedAt. Required: entityId, entityType. Optionally filter by status, priority, or assigneeId and sort by field and order.
- **Create a Comp AI task management** (Create). Create a new task item in Comp AI linked to an operational entity such as a vendor or risk. Returns: id, entityId, entityType, title, status, priority, assigneeId, createdAt, updatedAt. Required: entityId, entityType.
- **Update a Comp AI task management by ID** (Update). Update an existing task item in Comp AI by id. Returns: id, entityId, entityType, title, status, priority, assigneeId, createdAt, updatedAt. Required: id.
- **Create a Comp AI task management attachment** (Create). Upload a file attachment to a task item in compai, storing it under the org-scoped S3 path for the target entity. Returns the created attachment object including id, entityType, and entityId. Required: entityType, entityId.
- **Comp AI training completions complete** (Complete). Mark a specific training video as completed in compai for the authenticated member; triggers a completion email if all required training is now done. Returns: id, video_id. Required: video_id.
- **Create a Comp AI training send completion email** (Create). Send a training completion email with certificate in Comp AI, recording security awareness and HIPAA training completion status and generating a completion certificate for the recipient. Returns: sent, reason.
- **Create a Comp AI training generate hipaa certificate** (Create). Generate a HIPAA training certificate PDF in compai. Records security awareness and HIPAA training completion status and returns the resulting certificate as a binary PDF file. Returns a binary PDF file on success (not a JSON payload).
- **List all Comp AI org charts** (List). Get the organization chart in Comp AI, used for governance, accountability, and audit readiness. Returns: id, attributes (org chart structural data and metadata).
- **Update a Comp AI org chart by ID** (Update). Create or update the interactive organization chart in Comp AI used for governance, accountability, and audit readiness. Returns the saved org chart object including id and attributes.
- **Create a Comp AI org chart upload** (Create). Upload an image as the organization chart in Comp AI to support governance, accountability, and audit readiness. Returns the uploaded organization chart record including id and attributes.
- **List all Comp AI evidence forms** (List). List evidence forms in compai that collect recurring submissions for security, HR, IT, finance, and compliance workflows. Returns: id, attributes.
- **Get single Comp AI evidence form by ID** (Get). Get a single evidence form by id in compai. Returns: id, attributes. Required: id.
- **List all Comp AI evidence forms statuses** (List). List submission statuses for all evidence forms in compai. Returns status records including id and attributes containing form-specific status details for compliance tasks and document requirements.
- **Update a Comp AI evidence form setting by ID** (Update). Update the document relevance setting for a specific evidence form type in Comp AI. Returns a 200 response on success. Required: form_type.
- **List all Comp AI my submissions pending counts** (List). Get the pending evidence form submission count for the current user in Comp AI. Returns: count of pending submissions awaiting action.
- **List all Comp AI evidence form submissions** (List). Get a single evidence form submission in Comp AI by form type and submission ID. Returns: id. Required: form_type, submission_id.
- **Delete a Comp AI evidence form submission by ID** (Delete). Delete an evidence form submission in Comp AI by form type and submission ID. Returns an empty 204 response on success. Required: form_type, submission_id.
- **Update a Comp AI submission review by ID** (Update). Review an evidence form submission in compai by approving or rejecting it, so that task status and audit readiness reflect the latest decision. Returns a 200 response on success. Required: form_type, submission_id.
- **Create a Comp AI evidence forms upload** (Create). Upload an evidence form file in Comp AI to support compliance tasks and document requirements. Returns a 201 response on success with no documented response body.
- **List all Comp AI evidence form export csvs** (List). Export compai evidence form submissions as a CSV file for auditor requests, offline review, or internal compliance reporting. Returns a CSV-formatted file whose columns correspond to the submitted evidence form fields (structure varies by form type). Required: form_type.
- **List all Comp AI frameworks** (List). List active compliance frameworks in Comp AI, covering SOC 2, ISO 27001, HIPAA, GDPR, and custom frameworks, with implementation status and progress data. Returns: id, name, status, progress, controls, scores.
- **Get single Comp AI framework by ID** (Get). Get a single compliance framework instance with full detail in Comp AI, including requirements, scores, controls, and sync history. Returns: id, name, status, progress, requirements, scores, controls, syncHistory. Required: id.
- **List all Comp AI frameworks update statuses** (List). List update statuses for all framework instances in compai, spanning SOC 2, ISO 27001, HIPAA, GDPR, and custom frameworks. Returns a collection of update status objects; the response field structure is not enumerated in the source documentation.
- **List all Comp AI framework requirements** (List). Get a specific framework requirement with its related controls for a given framework instance in Comp AI. Returns: id. Required: id, requirement_key.
- **Create a Comp AI framework requirement** (Create). Add a custom requirement to a framework instance in Comp AI. Returns: id. Required: id.
- **Create a Comp AI requirements link** (Create). Link (clone) existing requirements from another framework into the specified framework in Comp AI. Returns an empty 201 response on success. Required: id.
- **List all Comp AI framework update status** (List). Get the update status for a framework instance in Comp AI (covering SOC 2, ISO 27001, HIPAA, GDPR, and custom frameworks). The upstream API documents a 200 response but does not enumerate the response body fields or provide an example payload. Required: id.
- **List all Comp AI audit logs** (List). List organization audit logs in compai for compliance activity, access changes, evidence updates, and customer-facing review events. Returns: id, entityType, entityId. Optionally filter results by entityType, entityId, or pathContains.
- **Create a Comp AI control** (Create). Create a custom compliance control in Comp AI and connect it to framework requirements, policies, tasks, and evidence expectations. Returns: id, name, policies, tasks, requirements, documentTypes. Required: name.
- **Get single Comp AI control by ID** (Get). Get control detail with implementation progress in Comp AI, including linked policies, tasks, requirements, and document types. Returns: id, name, policies, tasks, requirements, documentTypes, progress. Required: id, frameworkInstanceId.
- **Delete a Comp AI control by ID** (Delete). Delete a compliance control by id in Comp AI. Returns an empty 200 response on success. Required: id.
- **Create a Comp AI tasks link** (Create). Link compliance tasks to a control in compai, connecting implementation work, evidence collection, and review status. Returns an empty 201 response on success. Required: id, frameworkInstanceId.
- **Get single Comp AI security penetration test by ID** (Get). Get the status and details of a penetration test run in Comp AI by id. Returns: id, status, findings, events. Required: id.
- **List all Comp AI security penetration test progreses** (List). Get the progress of a specific security penetration test run in Comp AI. Returns the progress object including id. Required: id.
- **List all Comp AI security penetration test issues** (List). List security penetration test issues in compai for a given penetration test run. Returns the structured finding objects discovered during the scan, growing over time during a live run; the source documentation does not enumerate the individual fields of each issue record. Required: id.
- **List all Comp AI security penetration test events** (List). List the real-time agent activity log events for a compai security penetration test run. Returns events covering tool calls, observations, and other agent activity emitted during the run — useful for activity feeds and debugging. Returns: id, attributes (event-specific fields that vary by event type). Required: id.
- **List all Comp AI security penetration test reports** (List). Get penetration test report output for a specific security penetration test in Comp AI. Returns the report as a raw markdown document (unstructured text, not a JSON payload). Required: id.
- **List all Comp AI security penetration test pdfs** (List). Download the PDF report for a security penetration test in Comp AI. Returns a binary PDF report artifact for the specified test. Required: id.
- **Delete a Comp AI pentest finding context by ID** (Delete). Remove the context note from a pentest finding in compai so future scans no longer receive it during testing. Returns an empty 204 response on success. Required: id.
- **List all Comp AI offboarding checklist templates** (List). List offboarding checklist template items in compai, returning the ordered set of tasks every departing member must complete. Returns: id, label, description, settings.
- **Create a Comp AI offboarding checklist template** (Create). Add a new item to the offboarding checklist template in compai so it appears on every future member's offboarding checklist. Returns the created item including id, label, description, and settings. Required: label.
- **Update a Comp AI offboarding checklist template by ID** (Update). Update an existing offboarding checklist template item by id in compai, modifying its label, description, or settings. Returns the updated item including id, label, description, and settings. Required: id.
- **Delete a Comp AI offboarding checklist template by ID** (Delete). Delete an offboarding checklist template item by id in compai so it no longer appears on members' offboarding checklists. Returns the deleted item including id, label, and description. Required: id.
- **Get single Comp AI offboarding checklist member by ID** (Get). Get a compai member's offboarding checklist by member id. Returns: items (array of checklist items, each with a completed status indicating whether that step has been finished) to track the member's overall offboarding progress. Required: id.
- **Comp AI items complete** (Complete). Mark an offboarding checklist item as complete for a member in compai, recording that the step has been finished as part of their offboarding. Returns an empty 201 response on success. Required: member_id, template_item_id.
- **Comp AI items delete complete** (Delete). Reopen a previously completed offboarding checklist item for a member in compai, reverting it to incomplete in case the step was marked done by mistake. Returns an empty 200 response on success. Required: member_id, template_item_id.
- **Create a Comp AI evidence** (Create). Upload evidence for a compai offboarding checklist item, attaching a supporting file to a member's completed offboarding step to document it was carried out. Returns an empty 201 response on success. Required: member_id, template_item_id.
- **List all Comp AI access revocations** (List). List vendor access revocations for a departing member in compai, showing whether each vendor's access has been removed during offboarding. Returns: member_id, vendor_id, is_revoked, evidence, notes. Required: member_id.
- **Delete a Comp AI access revocation by ID** (Delete). Undo a vendor access revocation for a member in compai, marking the vendor's access as not revoked in case it was confirmed by mistake during offboarding. Returns an empty response on success. Required: member_id, vendor_id.
- **Create a Comp AI access revocations confirm all** (Create). Confirm all vendor access revocations for a departing member in compai, marking every vendor access record as revoked in a single step to complete offboarding access removal. Returns an empty 201 response on success. Required: member_id.
- **Create a Comp AI knowledge base document download** (Create). Initiate a download for a Comp AI knowledge base document by document_id. The response content is document-specific and varies by file type; the exact payload shape cannot be enumerated from the available source. Required: document_id.
- **Create a Comp AI knowledge base document delete** (Create). Delete a knowledge base document in Comp AI by document ID. Returns an empty 204 response on success. Required: document_id.
- **Create a Comp AI connection check run** (Create). Run a single compliance check on a connection in Comp AI. Triggers execution of the specified check against the given integration connection. Required: connection_id, check_id.
- **List all Comp AI evidence form CSV exports** (List). Export compai evidence form submissions as a CSV file for auditor requests, offline review, or internal compliance reporting. Returns a CSV export whose column structure depends on the specified form type. Required: form_type.
