ClaudeChatGPTPerplexityGeminiMicrosoft CopilotRaycastMeta AIGrokZ.aiQwenKimi
DeepSeekMistralCursorVS CodeWindsurfJetBrainsClineLovableVercel AI SDKLangChain

Use OneTrust with your AI.

Connect your account once and let the AI you already use work with it, without building another integration. Manage privacy requests, assessments, vendors, consent, and incidents via OneTrust. automate GDPR, CCPA, and data governance from any AI agent.

Included with plan

Ask AI about this Connector

Developed, maintained, and hosted by Vinkius.

MCP VERIFIED · PRODUCTION READY · VINKIUS GUARANTEED

Waiting for input…

Works with modern AI clients that support MCP, including ChatGPT, Claude, Cursor, and more.

ChatGPTClaudeCursorPerplexityGeminiMicrosoft CopilotRaycastMeta AI

Complete set · 10 capabilities

The complete OneTrust capability set.

These are the exact actions your AI can choose when you ask it to work with OneTrust.

Capability set01 / 03

01-04

4 capabilities in this set.

Part of 10 available through OneTrust.

  1. 01

    Onetrust get dsar

    15/17/20, CCPA §1798.100), processing steps completed, data sources discovered, assigned handler, deadline, and audit trail. Use for detailed DSAR investigation, compliance verification, or reporting. Get complete details of a specific data subject request. subject information, request history, fulfillment steps, and regulatory context

  2. 02

    Onetrust list vendors

    Each vendor shows: name, risk score, assessment status (questionnaire sent/completed/overdue), data categories shared, contractual safeguards (DPA signed/pending), and last review date. Use for vendor due diligence, subprocessor management, or GDPR Art. 28 compliance verification. List third-party vendors in OneTrust vendor risk management. data processors, subprocessors, and partners with security/privacy risk ratings

  3. 03

    Onetrust create dsar

    Request types: ACCESS (subject wants their data), DELETION (right to be forgotten), RECTIFICATION (correct inaccurate data), PORTABILITY (data export), OPT_OUT (stop selling/sharing). The request enters the fulfillment workflow with regulatory deadlines automatically calculated (e.g., 30 days for GDPR). Create a new data subject access request in OneTrust. register a GDPR/CCPA privacy request on behalf of an individual

  4. 04

    Onetrust get assessment

    Use for assessment review, audit evidence, or understanding the privacy risk landscape of a specific project or data processing activity. Get full details of a privacy impact assessment. questions, responses, risk findings, and recommendations from the review process

Capability set02 / 03

05-07

3 capabilities in this set.

Part of 10 available through OneTrust.

  1. 05

    Onetrust list assessments

    Each shows: assessment name, type, risk score, status (Draft/In Review/Approved/Rejected), assigned owner, and completion date. Use for GDPR Art. 35 compliance, risk oversight, or assessment pipeline review. List privacy impact assessments (PIAs/DPIAs) in OneTrust. Data Protection Impact Assessments with risk scores and approval status

  2. 06

    Onetrust list assets

    Each asset includes: name, type, data categories processed, processing purposes, legal basis, data subjects affected, retention periods, and risk classification. Essential for GDPR Art. 30 compliance. Use when the user asks about "what systems process personal data?" or needs the data map. List data inventory assets in OneTrust. applications, databases, systems, and third-party services with data classification and processing purposes

  3. 07

    Onetrust list consent purposes

    Each purpose includes: name, description, category (Strictly Necessary/Performance/Functional/Marketing), associated cookies/trackers, and default consent state. Purposes are the building blocks of your cookie banners and preference centers. Use for consent configuration review or privacy banner auditing. List consent purposes configured in OneTrust consent management. cookie categories, marketing preferences, and data collection purposes

Capability set03 / 03

08-10

3 capabilities in this set.

Part of 10 available through OneTrust.

  1. 08

    Onetrust list dsars

    Each DSAR includes: subject name, email, request type (Access/Deletion/Rectification/Portability/Opt-Out), current status (Open/In Progress/Completed/Overdue), assigned handler, submission date, and regulatory deadline. Use when the user asks about pending privacy requests, DSAR compliance, or deadline tracking. List data subject access requests (DSARs) in OneTrust. GDPR, CCPA, and privacy rights requests from individuals with status and deadlines

  2. 09

    Onetrust list incidents

    Each incident includes: title, severity (Critical/High/Medium/Low), status (Open/Under Investigation/Resolved/Closed), type (Data Breach/Near Miss/Complaint), affected data subjects count, regulatory notification status, and assigned investigator. Use for breach response management, regulatory reporting requirements, or incident trend analysis. List security and privacy incidents in OneTrust incident management. breaches, near-misses, and reports with severity and regulatory notification status

  3. 10

    Onetrust list risks

    Each risk includes: title, description, category, impact level, likelihood score, calculated risk rating, treatment plan (Accept/Mitigate/Transfer/Avoid), associated controls, and assigned owner. Use for enterprise risk management reporting, board-level risk summaries, or identifying areas that need attention. List privacy and security risks from OneTrust risk register. identified risks with impact, likelihood, risk score, and treatment plans

Observed, not estimated

873ms average. Fast in production.

OneTrust is checked daily against the live service.

Daily averagePeak 1052ms
Aug 20Today
Fastest day
750ms
Slowest day
1052ms
14-day trend
Slowing+24%

Connect your client

One URL. Every client.

Activate the Connector, copy your link, and paste it into the client you already use. 10 capabilities arrive ready to run.

Preview access · not provider authentication

The vk_preview_* token belongs to Vinkius preview infrastructure. It lets Claude discover and display the capabilities of OneTrust, so you can see the experience inside your AI.

It does not authenticate your account with OneTrust. Actions requiring credentials or live account data may not run until you activate the Connector and authorize the service.

OneTrust Connector

You're all set. Choose your MCP client and follow the setup instructions.

Connector linkhttps://edge.vinkius.com/vk_preview_QyXYX8Uk9tWgyP2uTUFoAEIPmCJb73Dix0eWInrc/mcp

Claude Desktop

Follow the steps below to connect in seconds.

  1. 1In Claude Desktop, open Settings → Connectors.
  2. 2Click “Add custom connector” and paste the connector link above as the remote MCP server URL.
  3. 3Click Add and start a new chat — OneTrust capabilities are ready to use.
Configuration · claude_desktop_config.jsonCopy
{
  "mcpServers": {
    "onetrust-mcp": {
      "url": "https://edge.vinkius.com/vk_preview_QyXYX8Uk9tWgyP2uTUFoAEIPmCJb73Dix0eWInrc/mcp"
    }
  }
}
  • Claude
  • ChatGPT
  • Cursor
  • VS Code
  • Windsurf
  • Claude Code
  • JetBrains
  • Cline

Step-by-step instructions for each client are in the guide. How to connect

FAQ

Questions OneTrust owners ask.

  • 01

    How do I get started with OneTrust?

    Subscribe, then enter your OneTrust API token (from Admin Console → Integration → API Access) and your base URL (e.g., app.onetrust.com or app-eu.onetrust.com). Your AI agent connects instantly. No code, no SDK. just connect and start managing privacy compliance.

  • 02

    Can my AI agent handle GDPR data subject access requests?

    Yes. Create DSARs directly from conversation. specify the subject's name, email, and request type (access, deletion, rectification, portability, opt-out). OneTrust automatically calculates regulatory deadlines (30 days for GDPR, 45 days for CCPA) and routes the request to the right handler.

  • 03

    How do I check which vendors have overdue security assessments?

    Ask your agent "show me vendors with overdue assessments" and it lists every third-party vendor with their risk score, questionnaire status, and last review date. You see exactly which processors need follow-up. all without logging into OneTrust or switching tabs.

  • 04

    Is this suitable for multi-regulation compliance (GDPR + CCPA + HIPAA)?

    Absolutely. OneTrust is built for multi-regulation environments. Browse your entire data inventory mapped to processing purposes and legal bases, track DSARs across any regulation, manage privacy impact assessments, and monitor incidents with regulatory notification requirements. perfect for enterprises, healthcare organizations, and global companies operating across jurisdictions.