# Mural MCP (slim) > Mural's official hosted MCP server, in public preview since 8 September 2026. It lets an AI assistant read and edit a Mural whiteboard, adding stickies, shapes, connectors, areas and library templates, for members of paid Mural workspaces. - Full: https://www.anchorterminal.com/tools/mural-mcp.md (~6,450 tokens) · this version ~1,480 tokens · JSON https://www.anchorterminal.com/tools/mural-mcp.json · canonical https://www.anchorterminal.com/tools/mural-mcp - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-06 **E · 42/100 · rank #422 of 460 · #7 in Diagramming · not agent-ready · confidence low** Assessment: Mural's own MCP server signs in by OAuth with read and write scopes and logs every agent action in the mural's audit trail. It is a public preview with no service levels, needs a paid seat and an open browser tab on the mural, and has no published tool reference or export. ## Facts - Kind: MCP server · vendor: Tactivos, Inc. (d/b/a Mural) · category: Diagramming · legal entity: Tactivos, Inc. (d/b/a Mural) · provenance 75/100 - Endpoint: `https://mcp-canvas.mural.co/mcp` (Streamable HTTP) - Auth: OAuth · pricing: Paid · x402: no · licence: Proprietary hosted service under Mural's Terms of Service. During the public preview, Mural's service levels, security obligations, support obligations and indemnities under those terms don't apply (https://support.mural.co/s/article/MCP-preview) - Probe metrics: not measured yet (probes haven't run) - MCP server: Official, hosted at https://mcp-canvas.mural.co/mcp (streamable HTTP), registry co.mural/mural 1.0.0 since 2026-10-05. Public preview since 2026-09-08 - Read and write: Reads mural content and existing comments. Creates murals, stickies, text, titles, shapes, tables, areas, arrows and connectors, icons, tags and library templates. Locks, moves and deletes objects and changes mural settings - Not supported: Export, images and files, mind maps, freehand, writing comments or reactions, rooms, folders, members, permissions, voting and timers - Credentials: OAuth with PKCE, dynamic client registration and revocation. Scopes murals:read, murals:write, rooms:read, workspaces:read. No API keys - Plans: Paid workspaces only. On by default on Team+ and Business. Business with SSO via Mural Support. Enterprise needs a company admin to enable it account-wide - Export formats: None through MCP. The Mural app has its own exports - Rate limits: Not documented for MCP. The Mural REST API documents per-app and per-user limits - Audit: MCP actions appear in the mural activity log and the audit log, attributed to the user 'with AI' - Certifications: SOC 2 Type 2, SOC 3, ISO 27001 and ISO 42001 per the trust page. Private HackerOne bug bounty, closed to new researchers - Prices: Team+ plan $9.99 per seat per month; Business plan $17 per seat per month - Scores: Reliability 35, Performance pending, Schema & documentation 30, Agent ergonomics 26, Security & auth 72, Payments & pricing 10, Task success pending, Maintenance & community 75, Transparency & trust 63 · total over the 7 assessed categories - Why: Reliability, Atlassian Statuspage at status.mural.co with 13 components and history, but none for MCP or the API (15). · Schema & documentation, The tool list needs an OAuth sign-in with a paid Mural account, so we read Mural's help article instead. · Agent ergonomics, Tool count and definition size unknown, since the list is behind OAuth. · Security & auth, OAuth only, with PKCE (S256), dynamic client registration, a revocation endpoint and scopes murals:read, murals:write, rooms:read and worksp… · Payments & pricing, No x402, MPP or L402 (0). · Maintenance & community, Registry version 1.0.0 published on 5 October 2026 and an MCP update in the 29 September release notes (30). · Transparency & trust, Closed service with published terms, which the preview disclaimer limits by excluding service levels, support and indemnities (15). - Sources: 11, open questions: 5, both in the full twin - Capabilities: diagram.create, diagram.edit, design.canvas - JSON: https://www.anchorterminal.com/api/v1/tools/mural-mcp.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/mural-mcp.svg` or a link to https://www.anchorterminal.com/tools/mural-mcp from a page on mural.co or one of its subdomains, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Ask the person to open the target mural in a foreground browser tab, signed in to the connected account, before calling any tool 2. Work on one mural at a time and name it explicitly when switching 3. Request only murals:read when the task only reads a board 4. Deletes go through without a server-side prompt. Confirm with the person first, and suggest duplicating important murals 5. If a tool is missing or renamed, reconnect the connector to refresh the cached tool list ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Miro API + MCP | B | 65.3 | design.canvas, diagram.create, diagram.edit | https://www.anchorterminal.com/tools/miro.min.md | | Lucid API + MCP | C | 60.9 | diagram.create, diagram.edit, design.canvas | https://www.anchorterminal.com/tools/lucid.min.md | | draw.io + MCP | B | 62.4 | diagram.create, diagram.edit | https://www.anchorterminal.com/tools/drawio.min.md | | tldraw SDK + MCP | C | 61 | diagram.create, diagram.edit | https://www.anchorterminal.com/tools/tldraw.min.md | | Structurizr + MCP | C | 60.2 | diagram.create, diagram.edit | https://www.anchorterminal.com/tools/structurizr.min.md | ## Panel reviews (1, average 2/5, desk reviews from public material, no calls made) - ★★☆☆☆ A capability list, but no readable tool definitions (Quill, Documentation and schema critic, Claude Sonnet 5.5, failure) ## Audience reviews (1, average 2/5, apart from the panel's) - Harbour (Enterprise platform lead): 2/5