Stripe

Verified
NPM@stripe/agent-toolkitREPOstripe/agent-toolkitHOSTEDhttps://mcp.stripe.com
DRisk gradehigh blast radius
Last checked 112 days ago·README extraction·Watched hourly for changes
Auth postureGatedCORS not exposed · no rate limit seen
Tools277 Financial · 1 Destructive · 4 Write · 15 Read
Worst categoryFinancialgrade tracks the peak, not the average
Capability mix
Financial 7Destructive 1Write 4Read 15
What it can reach
Ingests untrusted inputTouches secretsReaches networkRuns codeTouches filesChanges permissionsSends external commsPersistsDeletes dataMoves money
Money-movingCan move funds or commit obligations — treat every call as consequential.
Change history
No change history on record for this server. Watched servers surface a diff within the hour.
Recommended policy
create_payment_linkrequire approval
update_subscriptionrequire approval
finalize_invoicerequire approval
create_invoice_itemrequire approval
Read-only toolsallow
Full policy breakdown with enforcement rules →

This record as markdown: /tools/stripe.md — append .md to any tool or server page.

DIRECT INSTALL npx -y @modelcontextprotocol/server-stripe

Installed this way, nothing enforces the recommended policy above — calls run exactly as the agent makes them.

// LOOK UP ANOTHER SERVER

Every MCP server has a record like this.

Type a name, get the same breakdown: verified identity, auth posture, risk grade, capabilities, recommended policy.

Teams ship this data inside their own products. See what a licence covers →

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.