Salesforce

MuleSoft

MuleSoft anchors enterprise integration because its hosted Platform MCP Server gives governed agent access to Anypoint administration, while MCP Connector lets Mule applications expose selected legacy, SaaS, connector, and custom-API capabilities or consume other MCP servers.

Automation, data & MCP bridgesSystem of orchestrationAgent-accessible SaaS
An illustration of access surfaces surrounding a governed system.
System roleSystem of orchestration
Access maturityAgent-accessible SaaS
MCP supportOfficial MCP server
Reference updatedNot stated by publisher
BYO-UI reviewedJul 22, 2026

Concrete capability record

Data, retrieval, actions, identity, and operating limits

A field-by-field summary of what the reviewed first-party references actually support. Publisher update dates and BYO-UI review dates are shown separately below.

01 · Records and state owned

Anypoint business groups and environments; APIs, agents, LLMs, MCP servers, governance strategies, policies, gateways, monitoring and portfolio services; plus Mule-exposed tools, resources, prompts, APIs, connectors, and app flows.

02 · Data you can retrieve

The hosted Platform MCP can search and inspect authorized APIs, agents, LLMs, MCP servers, governance reports, policies, monitoring, and portfolio services. Connector-built servers expose only the downstream reads explicitly implemented in the Mule app.

03 · Actions and write paths

With administrative scopes, Platform MCP tools can apply or delete policy/governance state, provision or update MCP servers, and create gateways or scanners. MCP Connector writes are whatever state-changing API or connector operations the Mule flow intentionally exposes.

04 · Authentication and permissions

Platform MCP requires an Anypoint Connected App acting on the user's behalf with Authorization Code and Refresh Token grants; tool access maps to Exchange, API Manager, Governance, Monitoring, Runtime Manager, and organization permissions. Connector client/server authentication is configured by the Mule app and target system.

05 · Monitoring, approval, and recovery

Platform MCP ties tools to Anypoint viewer/contributor/admin permissions and exposes governance and monitoring operations. MCP Connector supports custom response headers and distributed tracing, but operators define its security and downstream capability set. BYO-UI should preview diffs and require confirmation for policy, governance, provisioning, gateway, scanner, or downstream writes.

06 · Limits and caveats

Platform MCP uses region-specific endpoints and currently requires manual client registration rather than DCR. MCP Connector 1.6 requires Mule 4.9.6+, Java 17, Maven, Anypoint Platform, and target credentials; Streamable HTTP lacks GET notifications and resumability/redelivery, while deprecated SSE server transport is single-replica only.

Agent access

MCP support

Official MCP serverSalesforce-hosted MuleSoft Platform MCP plus Mule-deployed MCP ConnectorCurrent Platform MCP service and MCP Connector 1.6.1

Support: Official MCP server

Read scope: Search and inspect permitted Anypoint APIs, agents, LLMs, MCP assets, governance, policies, monitoring, and portfolio resources; connector-built reads depend on the Mule flow's exposed tools/resources.

Write scope: Permissioned hosted tools can change policies and governance, provision/update MCP servers, and create gateway/scanner resources; Mule-built MCP tools can invoke any downstream write deliberately mapped into the flow.

Authentication: Hosted Platform MCP uses a manually registered user-delegated Anypoint Connected App and regional HTTP endpoint. MCP Connector supports Mule-configured HTTP/OAuth and target-resource credentials for client or server flows.

Approval boundary: The hosted server enforces Anypoint permissions but the reviewed docs do not establish universal human approval for its administrative tools; custom connector tools likewise inherit whatever approval logic the Mule flow implements. BYO-UI should require explicit confirmation for destructive, externally visible, costly, or provisioning changes.

Protocol does not erase product boundaries.

Confirm the current tool catalog, plan, region, scopes, rate limits, terms, and write behavior before implementation.

Editorial assessment

Access-maturity dimensions

A comparative architecture lens—not a quality score, market ranking, or buying recommendation. Scale: 1–5.

Data access4
Action access4
Event access4
Identity2
Governance3
Agent access4
UI extensibility3
Portability4
Observability4
Documentation5

Proposed customer-shaped experiences

What customers could create on top.

The output could be an export, report, graph, artifact, application, agent, workflow, or downstream feed. These proposals are derived from documented access—not claims that Salesforce ships them.

Single-platform patterns

  • Governed MCP gateway for API-only Marcom systems
  • Marcom control plane
  • Data-quality exception console
  • Approved capability registry
Use in the brief builder →

Multi-platform compositions

  • MuleSoft + systems of record: marcom control plane
  • MuleSoft + systems of engagement + interface host or builder: cross-system decision workspace
Explore composition recipes →

Evidence and dates

First-party references, with publisher and review dates separated

“Publisher updated” is shown only when the page exposes an update date. “BYO-UI reviewed” records when this research checked the reference. A missing publisher date is reported as missing—not replaced with the review date.

7 recorded sources
MCPRepresentative source
https://docs.mulesoft.com/mulesoft-mcp-server/getting-started-platform ↗

hosted Platform MCP authentication, permissions, client registration, and regional endpoints

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 22, 2026

hosted Platform MCP authentication, permissions, client registration, and regional endpoints reviewed from live first-party documentation on 2026-07-22.

APISource inventory
https://docs.mulesoft.com/api-manager/latest/ ↗

First-party API reference or API overview recorded for this platform.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

Developer docsSource inventory
https://docs.mulesoft.com/ ↗

First-party developer documentation or platform overview.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

HomepageSource inventory
https://www.mulesoft.com/ ↗

First-party product homepage used to confirm product identity and current positioning.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

MCPSource inventory
https://docs.mulesoft.com/mcp-connector/latest/ ↗

Connector server/client roles, exposed MCP primitives, transport, tracing, prerequisites, and limitations

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 22, 2026

MCP Connector role, transport, security, observability, prerequisites, and limitations reviewed 2026-07-22

Webhooks / extensionsSource inventory
https://docs.mulesoft.com/connectors/ ↗

First-party webhook, event, SDK, embedded-app, or extension documentation.

Publisher updated
Not stated by publisher
BYO-UI reviewed
Jul 10, 2026

Inventory source: structurally normalized; content was not individually reopened in this pass.

Verified fact

Tied to cited first-party evidence reviewed for this profile.

Source inventory

Official links recorded for deeper research but not necessarily reopened endpoint by endpoint.

Editorial assessment

System role, maturity interpretation, and architectural boundary.

Proposed design

Interface patterns and compositions—not vendor product claims.