Conveyor MCP server for AI agents and assistants

Securely connect your AI agents and chatbots (Claude, ChatGPT, Cursor, etc) with Conveyor MCP or direct API to automate security questionnaires, manage Trust Center content, streamline compliance document sharing, and track review status through natural language.

Conveyor logoConveyor
Api Key

Conveyor is a platform that automates security reviews with a Trust Center and AI-driven questionnaire automation. It streamlines compliance and vendor security processes for faster, hassle-free reviews.

25 Tools

Try Conveyor now

Type what you want done — sign in and watch it run live in the Tool Router playground.

TOOL ROUTER PLAYGROUND
Conveyor
Try asking
TOOLS

Supported Tools

Every Conveyor action and event your agent gets out of the box.

Delete a Conveyor document

Tool to delete a specific document.

Delete folder

Permanently deletes a folder from the Conveyor Exchange by its UUID.

Get all access groups

Tool to retrieve all access groups for a program.

Get Authorization Request

Retrieves details of a specific authorization request from Conveyor Exchange by its ID.

Get Authorization Requests

Retrieves authorization requests from Conveyor's Trust Center.

Get authorizations

Retrieve authorizations from your Conveyor Trust Center.

Get all Conveyor connections

Tool to retrieve all connections.

Get all Conveyor documents

Retrieves all documents from the Conveyor trust center.

List all Exchange folders

Retrieves all folders from the Conveyor Exchange workspace.

Get all interactions

Tool to get all interactions (document interactions, q&a interactions) with optional filters.

Get interactions by connection ID

Tool to fetch interactions associated with a specific connection.

Get interactions by document ID

Tool to fetch interactions associated with a specific document.

Get Knowledge Base Questions

Retrieves knowledge base questions from Conveyor.

Get product lines

Retrieves all product lines configured in Conveyor.

Get questionnaires

Retrieves all questionnaires from Conveyor with optional filters.

Patch authorization

Update an existing authorization by revoking access or modifying Access Group assignments.

Update Conveyor document

Update a Conveyor document's metadata.

Update questionnaire request

Tool to update a questionnaire request in Conveyor.

Create new authorization

Tool to create a new authorization in Conveyor Exchange.

Upload new document

Tool to upload a new document to Conveyor's Knowledge Library.

Create new folder

Tool to create a new folder in Conveyor Exchange.

Submit new questionnaire

Tool to submit a new questionnaire to Conveyor.

Create questionnaire request

Tool to create a new questionnaire request in Conveyor.

Create new review

Tool to create a review in Conveyor with optional references to external VM unique IDs.

Submit single question

Submit a single question to Conveyor's AI knowledge base and receive an immediate answer.

SETUP GUIDE

Connect Conveyor MCP Tool with your Agent

1

Install Composio

typescript
npm install @composio/core ai @ai-sdk/mcp @ai-sdk/openai
Install the Composio SDK and your agent framework
2

Create a session with MCP enabled

typescript
import { Composio } from "@composio/core";

const composio = new Composio();
const { mcp } = await composio.create("your-user-id", {
  toolkits: ["conveyor"],
  mcp: true,
});
Create a session scoped to Conveyor and read its MCP URL and headers
3

Connect your agent to the MCP server

typescript
import { createMCPClient } from "@ai-sdk/mcp";
import { openai } from "@ai-sdk/openai";
import { generateText, stepCountIs } from "ai";

const client = await createMCPClient({
  transport: { type: "http", url: mcp.url, headers: mcp.headers },
});

const { text } = await generateText({
  model: openai("gpt-5.6-sol"),
  tools: await client.tools(),
  prompt: "List all authorization requests with status pending",
  stopWhen: stepCountIs(10),
});

console.log(text);
await client.close();
Pass the session's MCP URL and headers to your agent and run a Conveyor request
SETUP GUIDE

Connect Conveyor API Tool with your Agent

1

Install Composio

typescript
npm install @composio/core @composio/openai openai
Install the Composio SDK, the OpenAI provider, and the OpenAI SDK
2

Create a Composio session

typescript
import OpenAI from "openai";
import { Composio } from "@composio/core";
import { OpenAIResponsesProvider } from "@composio/openai";

const composio = new Composio({ provider: new OpenAIResponsesProvider() });
const client = new OpenAI();

const session = await composio.create("your-user-id", { toolkits: ["conveyor"] });
const tools = await session.tools();
Initialize Composio with the OpenAI Responses provider and create a session scoped to Conveyor
3

Run Conveyor tools with your agent

typescript
let response = await client.responses.create({
  model: "gpt-5.6-sol",
  tools,
  input: [{ role: "user", content: "List all authorization requests with status pending" }],
});

while (response.output.some((o) => o.type === "function_call")) {
  const outputs = await composio.provider.handleToolCalls(session, response.output);
  response = await client.responses.create({
    model: "gpt-5.6-sol",
    tools,
    previous_response_id: response.id,
    input: outputs,
  });
}

console.log(response.output_text);
Send a request, execute the Conveyor tool calls through the session, and print the final answer

Why Use Composio?

AI Native Conveyor Integration

  • Supports both Conveyor MCP and direct API based integrations
  • Structured, LLM-friendly schemas for reliable tool execution
  • Rich coverage for reading, writing, and querying your Conveyor data

Managed Auth

  • Built-in API key management with secure storage
  • Central place to manage, scope, and revoke Conveyor access
  • Per user and per environment credentials instead of hard-coded keys

Agent Optimized Design

  • Tools are tuned using real error and success rates to improve reliability over time
  • Comprehensive execution logs so you always know what ran, when, and on whose behalf

Enterprise Grade Security

  • Fine-grained RBAC so you control which agents and users can access Conveyor
  • Scoped, least privilege access to Conveyor resources
  • Full audit trail of agent actions to support review and compliance

Rolling this out across your team?

Give your team centralized access control across every framework with Composio’s MCP Gateway.

EXPLORE MCP GATEWAY
FAQ

Frequently asked questions

Yes, Conveyor requires you to configure your own API key credentials. Once set up, Composio handles secure credential storage and API request handling for you.

Yes! Composio's Tool Router enables agents to use multiple toolkits. Learn more.

Yes. Composio is SOC 2 Type II compliant and is built to keep your Conveyor connection and credentials secure. OAuth tokens and API keys are encrypted, and sensitive customer data is protected at rest and in transit.

Composio also undergoes independent security testing and continuously monitors its systems for security threats. You can review the latest reports and policies in the Composio Trust Center.

Composio maintains and updates all toolkit integrations automatically, so your agents always work with the latest API versions.

Create the key in your Conveyor account settings, then paste it once on Composio's connection page. Composio stores it encrypted and uses it only for the Conveyor actions your agent runs. Nobody else in your workspace can read it, and you can revoke it inside Conveyor at any time.

When you connect a Conveyor account through Composio, every action runs under that account, so anything the agent creates, sends, or changes shows up in Conveyor as done by you. Keep an approval step in your prompt for actions with side effects, such as sending or deleting, and have the agent draft first.

Whatever the credentials you connect allow inside Conveyor. If Conveyor lets you scope a key to specific permissions, create a scoped one so the agent can only do what you intend. You can revoke the key inside Conveyor at any time.

Yes. Composio supports multiple connected accounts for the same app, and that works in Claude, ChatGPT, or any other assistant you connect through Composio. Give each Conveyor connection a name such as work or personal, and the assistant uses the one you mention in the request. Each account keeps its own credentials and nothing is merged.

The connection stops working the moment Conveyor rejects the old key. Create a new key in Conveyor and reconnect the account from the Composio dashboard or by asking your agent to reconnect Conveyor. Nothing else changes.

Composio's free Hobby plan includes 100,000 tool calls per month with no credit card, which covers most personal Conveyor use. Paid plans add higher limits and team features. Your Conveyor plan and its API limits still apply as usual.

Built-in connectors usually give one AI access to a limited set of apps. Many people use Composio because it lets their AI connect to more apps than it normally supports, or connect to multiple accounts for the same app (e.g. connect Claude to multiple Conveyor accounts).

With Composio, you connect Conveyor once and then use it across different AI assistants without setting it up separately in each one. Connect your apps to Composio once, then connect Composio to whichever AI you use, whether that's Claude, ChatGPT, Hermes, or your own custom assistant.

Start with Conveyor.It takes 30 seconds.

Managed auth, hosted MCP servers, and every Conveyor tool your agent needs.Free to start.

Start building