Use OneTrust with your AI.
Connect your account once and let the AI you already use work with it, without building another integration. Manage privacy requests, assessments, vendors, consent, and incidents via OneTrust. automate GDPR, CCPA, and data governance from any AI agent.
Developed, maintained, and hosted by Vinkius.
MCP VERIFIED · PRODUCTION READY · VINKIUS GUARANTEED
Waiting for input…
Works with modern AI clients that support MCP, including ChatGPT, Claude, Cursor, and more.
Complete set · 10 capabilities
The complete OneTrust capability set.
These are the exact actions your AI can choose when you ask it to work with OneTrust.
01-04
4 capabilities in this set.
Part of 10 available through OneTrust.
- 01
Onetrust get dsar
15/17/20, CCPA §1798.100), processing steps completed, data sources discovered, assigned handler, deadline, and audit trail. Use for detailed DSAR investigation, compliance verification, or reporting. Get complete details of a specific data subject request. subject information, request history, fulfillment steps, and regulatory context
- 02
Onetrust list vendors
Each vendor shows: name, risk score, assessment status (questionnaire sent/completed/overdue), data categories shared, contractual safeguards (DPA signed/pending), and last review date. Use for vendor due diligence, subprocessor management, or GDPR Art. 28 compliance verification. List third-party vendors in OneTrust vendor risk management. data processors, subprocessors, and partners with security/privacy risk ratings
- 03
Onetrust create dsar
Request types: ACCESS (subject wants their data), DELETION (right to be forgotten), RECTIFICATION (correct inaccurate data), PORTABILITY (data export), OPT_OUT (stop selling/sharing). The request enters the fulfillment workflow with regulatory deadlines automatically calculated (e.g., 30 days for GDPR). Create a new data subject access request in OneTrust. register a GDPR/CCPA privacy request on behalf of an individual
- 04
Onetrust get assessment
Use for assessment review, audit evidence, or understanding the privacy risk landscape of a specific project or data processing activity. Get full details of a privacy impact assessment. questions, responses, risk findings, and recommendations from the review process
05-07
3 capabilities in this set.
Part of 10 available through OneTrust.
- 05
Onetrust list assessments
Each shows: assessment name, type, risk score, status (Draft/In Review/Approved/Rejected), assigned owner, and completion date. Use for GDPR Art. 35 compliance, risk oversight, or assessment pipeline review. List privacy impact assessments (PIAs/DPIAs) in OneTrust. Data Protection Impact Assessments with risk scores and approval status
- 06
Onetrust list assets
Each asset includes: name, type, data categories processed, processing purposes, legal basis, data subjects affected, retention periods, and risk classification. Essential for GDPR Art. 30 compliance. Use when the user asks about "what systems process personal data?" or needs the data map. List data inventory assets in OneTrust. applications, databases, systems, and third-party services with data classification and processing purposes
- 07
Onetrust list consent purposes
Each purpose includes: name, description, category (Strictly Necessary/Performance/Functional/Marketing), associated cookies/trackers, and default consent state. Purposes are the building blocks of your cookie banners and preference centers. Use for consent configuration review or privacy banner auditing. List consent purposes configured in OneTrust consent management. cookie categories, marketing preferences, and data collection purposes
08-10
3 capabilities in this set.
Part of 10 available through OneTrust.
- 08
Onetrust list dsars
Each DSAR includes: subject name, email, request type (Access/Deletion/Rectification/Portability/Opt-Out), current status (Open/In Progress/Completed/Overdue), assigned handler, submission date, and regulatory deadline. Use when the user asks about pending privacy requests, DSAR compliance, or deadline tracking. List data subject access requests (DSARs) in OneTrust. GDPR, CCPA, and privacy rights requests from individuals with status and deadlines
- 09
Onetrust list incidents
Each incident includes: title, severity (Critical/High/Medium/Low), status (Open/Under Investigation/Resolved/Closed), type (Data Breach/Near Miss/Complaint), affected data subjects count, regulatory notification status, and assigned investigator. Use for breach response management, regulatory reporting requirements, or incident trend analysis. List security and privacy incidents in OneTrust incident management. breaches, near-misses, and reports with severity and regulatory notification status
- 10
Onetrust list risks
Each risk includes: title, description, category, impact level, likelihood score, calculated risk rating, treatment plan (Accept/Mitigate/Transfer/Avoid), associated controls, and assigned owner. Use for enterprise risk management reporting, board-level risk summaries, or identifying areas that need attention. List privacy and security risks from OneTrust risk register. identified risks with impact, likelihood, risk score, and treatment plans
Observed, not estimated
873ms average. Fast in production.
OneTrust is checked daily against the live service.
- Fastest day
- 750ms
- Slowest day
- 1052ms
- 14-day trend
- Slowing+24%
Connect your client
One URL. Every client.
Activate the Connector, copy your link, and paste it into the client you already use. 10 capabilities arrive ready to run.
Preview access · not provider authentication
The vk_preview_* token belongs to Vinkius preview infrastructure. It lets Claude discover and display the capabilities of OneTrust, so you can see the experience inside your AI.
It does not authenticate your account with OneTrust. Actions requiring credentials or live account data may not run until you activate the Connector and authorize the service.
OneTrust Connector
You're all set. Choose your MCP client and follow the setup instructions.
https://edge.vinkius.com/vk_preview_QyXYX8Uk9tWgyP2uTUFoAEIPmCJb73Dix0eWInrc/mcpClaude Desktop
Follow the steps below to connect in seconds.
- 1In Claude Desktop, open Settings → Connectors.
- 2Click “Add custom connector” and paste the connector link above as the remote MCP server URL.
- 3Click Add and start a new chat — OneTrust capabilities are ready to use.
{
"mcpServers": {
"onetrust-mcp": {
"url": "https://edge.vinkius.com/vk_preview_QyXYX8Uk9tWgyP2uTUFoAEIPmCJb73Dix0eWInrc/mcp"
}
}
}
Claude
ChatGPT
Cursor
VS Code
Windsurf
Claude Code
JetBrains
Cline
Step-by-step instructions for each client are in the guide. How to connect
FAQ
Questions OneTrust owners ask.
- 01
How do I get started with OneTrust?
Subscribe, then enter your OneTrust API token (from Admin Console → Integration → API Access) and your base URL (e.g., app.onetrust.com or app-eu.onetrust.com). Your AI agent connects instantly. No code, no SDK. just connect and start managing privacy compliance.
- 02
Can my AI agent handle GDPR data subject access requests?
Yes. Create DSARs directly from conversation. specify the subject's name, email, and request type (access, deletion, rectification, portability, opt-out). OneTrust automatically calculates regulatory deadlines (30 days for GDPR, 45 days for CCPA) and routes the request to the right handler.
- 03
How do I check which vendors have overdue security assessments?
Ask your agent "show me vendors with overdue assessments" and it lists every third-party vendor with their risk score, questionnaire status, and last review date. You see exactly which processors need follow-up. all without logging into OneTrust or switching tabs.
- 04
Is this suitable for multi-regulation compliance (GDPR + CCPA + HIPAA)?
Absolutely. OneTrust is built for multi-regulation environments. Browse your entire data inventory mapped to processing purposes and legal bases, track DSARs across any regulation, manage privacy impact assessments, and monitor incidents with regulatory notification requirements. perfect for enterprises, healthcare organizations, and global companies operating across jurisdictions.
Explore
More in Fort Knox
Dastra AI Connector
Stay GDPR compliant with privacy management tools for data mapping, consent records, and breach notification w
ViewUpGuard AI Connector
Monitor your attack surface and assess vendor security risks with continuous scanning that identifies vulnerab
ViewDigify AI Connector
Equip your AI agent to manage secure files, track data rooms, and monitor document analytics via the Digify AP
ViewCleared (ClearedIn) AI Connector
Manage identity verification and background screening via Cleared — track verifications, monitor screenings, a
View
Suggestions
Openli AI Connector
Generate privacy policies, cookie consent banners, and legal compliance documents for your website with automa
ViewTrend Micro AI Connector
Equip your AI agent with Vision One telemetry to investigate threats, audit endpoint activities, and manage se
VieweCompliance AI Connector
Equip your AI agent to manage safety incidents, track inspections, and monitor action items via the eComplianc
ViewDigify AI Connector
Share documents securely with dynamic watermarks, access controls, and analytics that show exactly who viewed
View
