Who it is for
Security awareness managers administering a Phished tenant.
Overview
Phished runs security awareness training and simulated phishing campaigns for organisations. The connector's claim is unusually direct: every endpoint in the product's API is exposed, so what a tenant can do through the interface is reachable from a session instead.
Ninety-six tools back that claim, one of the larger surfaces published in this category, which fits a product covering users, groups, campaigns, training content, and reporting. The connector sits at the partner tier with documentation published, and it is filed under productivity as well as developer tooling. A Phished tenant is required, and the endpoint answers a credential challenge before anything else.
Security awareness managers administering a Phished tenant.
Ninety-six claimed tools mapped onto an entire API is a broad grant, and none of it was inspectable: the tenant credential check comes first, so the read and write proportions are unknown.
Availability
Phished is listed in the Claude connectors directory only. Phished BV has no app under the same domain in the ChatGPT directory; 392 of the 3,150 products here are on both marketplaces, and this is not one of them.
The MCP server behind a Claude connector is usually the same server a ChatGPT app would need, so the absence is a distribution decision rather than a technical one.
Claude listing
Phished publishes 96 tools to Claude, a deeper surface than 98.2% of the 1,253 Claude-listed connectors, the top decile.
The median Claude-listed connector filed under Developer Tools publishes 13, so this one runs 83 tools above its bucket's median and ranks 4th of 95 by tool count.
It falls in the 51+ tools band, which holds 9.6% of the Claude directory.
Phished publishes a remote MCP endpoint. Claude connects to it over HTTP; there is nothing to install locally.
Every connector in the Claude directory is remote, all 1,253 of them, so transport is not a differentiator there.
https://mcp.phished.io/mcp Phished carries partner verification in the Claude directory, which 474 of 1,253 listings do (37.8%). That is a review step past self-publishing, not an Anthropic-built server.
In the publisher's words
Phished MCP's server allows you to connect directly to your Phished tenant and control it. You have access to all endpoints in our API, which allow you to basically control Phished directly from your local Claude instance.
Quoted from the connector's own Claude directory listing as captured in August 2026. Node8 did not write it and does not vouch for it.
Nearby
Vulnerability findings and endpoint inventory from Affirmed
Claude
Application security risk context from an Apiiro deployment
Claude
Manage Descope users, tenants, roles and auth journeys
Claude
Turn anything built in a chat into a page reviewers can comment on
Claude
Natural language search across a video and photo library
Claude
Read-only view of AI agent authorization decisions and audit trails
Claude
This is an independent catalogue entry compiled by Node8 from Phished's public marketplace listing as it stood in August 2026. Listing facts come from the marketplaces; the comparisons against the rest of the directory and any live-endpoint measurements are Node8's. Node8 is not affiliated with Phished BV, and inclusion here is not an endorsement.
Node8 builds MCP servers end to end: deciding which tools are worth exposing, the authentication and permission model, the review submissions, and the onboarding that gets them used. One server serves ChatGPT, Claude, and Microsoft Copilot.