Anypoint business groups and environments; APIs, agents, LLMs, MCP servers, governance strategies, policies, gateways, monitoring and portfolio services; plus Mule-exposed tools, resources, prompts, APIs, connectors, and app flows.
MuleSoft
MuleSoft anchors enterprise integration because its hosted Platform MCP Server gives governed agent access to Anypoint administration, while MCP Connector lets Mule applications expose selected legacy, SaaS, connector, and custom-API capabilities or consume other MCP servers.
Concrete capability record
Data, retrieval, actions, identity, and operating limits
A field-by-field summary of what the reviewed first-party references actually support. Publisher update dates and BYO-UI review dates are shown separately below.
The hosted Platform MCP can search and inspect authorized APIs, agents, LLMs, MCP servers, governance reports, policies, monitoring, and portfolio services. Connector-built servers expose only the downstream reads explicitly implemented in the Mule app.
With administrative scopes, Platform MCP tools can apply or delete policy/governance state, provision or update MCP servers, and create gateways or scanners. MCP Connector writes are whatever state-changing API or connector operations the Mule flow intentionally exposes.
Platform MCP requires an Anypoint Connected App acting on the user's behalf with Authorization Code and Refresh Token grants; tool access maps to Exchange, API Manager, Governance, Monitoring, Runtime Manager, and organization permissions. Connector client/server authentication is configured by the Mule app and target system.
Platform MCP ties tools to Anypoint viewer/contributor/admin permissions and exposes governance and monitoring operations. MCP Connector supports custom response headers and distributed tracing, but operators define its security and downstream capability set. BYO-UI should preview diffs and require confirmation for policy, governance, provisioning, gateway, scanner, or downstream writes.
Platform MCP uses region-specific endpoints and currently requires manual client registration rather than DCR. MCP Connector 1.6 requires Mule 4.9.6+, Java 17, Maven, Anypoint Platform, and target credentials; Streamable HTTP lacks GET notifications and resumability/redelivery, while deprecated SSE server transport is single-replica only.
Agent access
MCP support
Support: Official MCP server
Read scope: Search and inspect permitted Anypoint APIs, agents, LLMs, MCP assets, governance, policies, monitoring, and portfolio resources; connector-built reads depend on the Mule flow's exposed tools/resources.
Write scope: Permissioned hosted tools can change policies and governance, provision/update MCP servers, and create gateway/scanner resources; Mule-built MCP tools can invoke any downstream write deliberately mapped into the flow.
Authentication: Hosted Platform MCP uses a manually registered user-delegated Anypoint Connected App and regional HTTP endpoint. MCP Connector supports Mule-configured HTTP/OAuth and target-resource credentials for client or server flows.
Approval boundary: The hosted server enforces Anypoint permissions but the reviewed docs do not establish universal human approval for its administrative tools; custom connector tools likewise inherit whatever approval logic the Mule flow implements. BYO-UI should require explicit confirmation for destructive, externally visible, costly, or provisioning changes.
Confirm the current tool catalog, plan, region, scopes, rate limits, terms, and write behavior before implementation.
Editorial assessment
Access-maturity dimensions
A comparative architecture lens—not a quality score, market ranking, or buying recommendation. Scale: 1–5.
Proposed customer-shaped experiences
What customers could create on top.
The output could be an export, report, graph, artifact, application, agent, workflow, or downstream feed. These proposals are derived from documented access—not claims that Salesforce ships them.
Single-platform patterns
- Governed MCP gateway for API-only Marcom systems
- Marcom control plane
- Data-quality exception console
- Approved capability registry
Multi-platform compositions
- MuleSoft + systems of record: marcom control plane
- MuleSoft + systems of engagement + interface host or builder: cross-system decision workspace
Evidence and dates
First-party references, with publisher and review dates separated
“Publisher updated” is shown only when the page exposes an update date. “BYO-UI reviewed” records when this research checked the reference. A missing publisher date is reported as missing—not replaced with the review date.
7 recorded sources
hosted Platform MCP authentication, permissions, client registration, and regional endpoints
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 22, 2026
hosted Platform MCP authentication, permissions, client registration, and regional endpoints reviewed from live first-party documentation on 2026-07-22.
First-party API reference or API overview recorded for this platform.
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 10, 2026
Inventory source: structurally normalized; content was not individually reopened in this pass.
First-party developer documentation or platform overview.
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 10, 2026
Inventory source: structurally normalized; content was not individually reopened in this pass.
First-party product homepage used to confirm product identity and current positioning.
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 10, 2026
Inventory source: structurally normalized; content was not individually reopened in this pass.
Connector server/client roles, exposed MCP primitives, transport, tracing, prerequisites, and limitations
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 22, 2026
MCP Connector role, transport, security, observability, prerequisites, and limitations reviewed 2026-07-22
First-party webhook, event, SDK, embedded-app, or extension documentation.
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 10, 2026
Inventory source: structurally normalized; content was not individually reopened in this pass.
Platform MCP object coverage, read/write tools, and permission mappings
- Publisher updated
- Not stated by publisher
- BYO-UI reviewed
- Jul 22, 2026
Platform MCP object coverage, read/write tools, and permission mappings reviewed from live first-party documentation on 2026-07-22.
Verified fact
Tied to cited first-party evidence reviewed for this profile.
Source inventory
Official links recorded for deeper research but not necessarily reopened endpoint by endpoint.
Editorial assessment
System role, maturity interpretation, and architectural boundary.
Proposed design
Interface patterns and compositions—not vendor product claims.