@guillaume_code_2012/stripe-mcp
npm
v1.0.0
Published by @guillaume_code_2012 — no publish provenance and no public repository, so the publisher could not be verified and the source cannot be independently located.
The most complete MCP server for Stripe — manage customers, subscriptions, invoices, and analytics with natural language
The grade answers one question — how safe is this server for you to adopt — so it is computed in two auditable stages. Nothing below is an opinion or an LLM's guess; every line is a real term the deterministic engine applied, and the same input always yields the same number.
1. Threat score — 100 − 0 = 100. What the published surface and source actually contain:
The deterministic scan raised no scored threat in the surface it inspected — the threat score stayed at 100. Capability observations and advisory notes are recorded but never lower it.
2. Client adoption risk — 100 − 5 = 95. Three small, subtract-only factors that reflect your risk in adopting it — a clean scan proves less on a powerful, unverified or barely-inspectable package, so the grade says so plainly:
| Points | Adoption-risk factor |
|---|---|
| −3 | capability blast radius (moderate) — client exposure if the model is manipulated |
| −2 | publisher verification (unlinked) — no provenance/repo link, but the shipped source was fully read |
Capability observations and info notes are shown under Findings but never scored.
Open any row's finding below for the file, line and evidence behind a deduction.
Tool "stripe_webhooks_create" takes a URL/host parameter "url" with no allowlist/pattern. An outbound-request tool with an unbounded destination enables SSRF and cloud-metadata access (e.g. 169.254.169.254).
Fix: Allowlist destinations or constrain the parameter; block private/link-local addresses server-side.
Location: tool stripe_webhooks_create · inputSchema.properties.url
Tool "stripe_webhooks_update" takes a URL/host parameter "url" with no allowlist/pattern. An outbound-request tool with an unbounded destination enables SSRF and cloud-metadata access (e.g. 169.254.169.254).
Fix: Allowlist destinations or constrain the parameter; block private/link-local addresses server-side.
Location: tool stripe_webhooks_update · inputSchema.properties.url
Each tool and what it can reach — statically extracted from the published source.
stripe_checkout_get_sessionnetwork egressstripe_invoices_sendnetwork egressstripe_webhooks_createnetwork egressstripe_webhooks_deletenetwork egressstripe_webhooks_getnetwork egressstripe_webhooks_updatenetwork egressAcme Corpno sensitive capabilitystripe_analytics_get_churn_rateno sensitive capabilitystripe_analytics_get_failed_payments_reportno sensitive capabilitystripe_analytics_get_mrrno sensitive capabilitystripe_analytics_get_revenue_summaryno sensitive capabilitystripe_analytics_get_top_customersno sensitive capabilitystripe_balance_getno sensitive capabilitystripe_balance_list_transactionsno sensitive capabilitystripe_billing_portal_create_sessionno sensitive capabilitystripe_checkout_create_sessionno sensitive capabilitystripe_checkout_expire_sessionno sensitive capabilitystripe_checkout_list_sessionsno sensitive capabilitystripe_coupons_createno sensitive capabilitystripe_coupons_deleteno sensitive capabilitystripe_coupons_getno sensitive capabilitystripe_coupons_listno sensitive capabilitystripe_customers_createno sensitive capabilitystripe_customers_deleteno sensitive capabilitystripe_customers_getno sensitive capabilitystripe_customers_listno sensitive capabilitystripe_customers_searchno sensitive capabilitystripe_customers_updateno sensitive capabilitystripe_disputes_closeno sensitive capabilitystripe_disputes_getno sensitive capabilitystripe_disputes_listno sensitive capabilitystripe_disputes_updateno sensitive capabilitystripe_invoices_finalizeno sensitive capabilitystripe_invoices_getno sensitive capabilitystripe_invoices_listno sensitive capabilitystripe_invoices_payno sensitive capabilitystripe_invoices_voidno sensitive capabilitystripe_meters_createno sensitive capabilitystripe_meters_getno sensitive capabilitystripe_meters_listno sensitive capabilitystripe_payment_intents_cancelno sensitive capabilitystripe_payment_intents_confirmno sensitive capabilitystripe_payment_intents_createno sensitive capabilitystripe_payment_intents_getno sensitive capabilitystripe_payment_intents_listno sensitive capabilitystripe_payment_links_createno sensitive capabilitystripe_payment_links_getno sensitive capabilitystripe_payment_links_listno sensitive capabilitystripe_payment_links_updateno sensitive capabilitystripe_payouts_cancelno sensitive capabilitystripe_payouts_createno sensitive capabilitystripe_payouts_getno sensitive capabilitystripe_payouts_listno sensitive capabilitystripe_prices_createno sensitive capabilitystripe_prices_getno sensitive capabilitystripe_prices_listno sensitive capabilitystripe_prices_updateno sensitive capabilitystripe_products_archiveno sensitive capabilitystripe_products_createno sensitive capabilitystripe_products_getno sensitive capabilitystripe_products_listno sensitive capabilitystripe_products_updateno sensitive capabilitystripe_promotion_codes_createno sensitive capabilitystripe_promotion_codes_getno sensitive capabilitystripe_promotion_codes_listno sensitive capabilitystripe_refunds_createno sensitive capabilitystripe_refunds_getno sensitive capabilitystripe_refunds_listno sensitive capabilitystripe_subscriptions_cancelno sensitive capabilitystripe_subscriptions_createno sensitive capabilitystripe_subscriptions_getno sensitive capabilitystripe_subscriptions_listno sensitive capabilitystripe_subscriptions_pauseno sensitive capabilitystripe_subscriptions_resumeno sensitive capabilitystripe_subscriptions_searchno sensitive capabilitystripe_subscriptions_updateno sensitive capabilitystripe_tax_create_rateno sensitive capabilitystripe_tax_get_rateno sensitive capabilitystripe_tax_list_ratesno sensitive capabilitystripe_webhooks_listno sensitive capabilityScan history per published version. The engine is deterministic — the same version always yields the same score, so a changed score means the package itself changed.
| Version | Score | Findings | Engine | Scanned |
|---|---|---|---|---|
v1.0.0 latest |
A 95/100 | 2 | 1.13.0 | 2026-09-07 |
Show this server's live Trust Score in your README, docs or website. The badge is served straight from the registry and updates automatically after every rescan — no API key needed. It links back to this page, so anyone who sees the grade can also read the findings behind it instead of taking a number on faith.
The score above is reproducible: the same package version always yields the same result. Run it locally or over the free API — no account, no LLM, fully deterministic.
npx mcptrustchecker scan @guillaume_code_2012/stripe-mcp --online
Independent packages implementing the same tool, scanned with the same engine. Compare all 14 side by side →
Stripe’s official MCP server: payments API access and documentation search for agents.
MCP server for Stripe API — customers, charges, payments, subscriptions, products, and invoices
A command line tool for setting up Stripe MCP server
Stripe MCP server for payment processing and management
Stripe payment provider adapter for Stipend (closed-loop PaymentIntents in v1.0; Shared Payment Token acceptance in v1.5).
An MCP server for Stripe API, enabling AI assistants to query financial data.
<img src="./public/logo.png" alt="1Money Logo" width="200"/>
Signed verification attestations for agent decisions: business, price, freshness, claim checks.
Actual Budget MCP server exposing API functionality
MCP server for Actual Budget - query and manage your personal finances through Claude
The Adyen Model Context Protocol server allows you to integrate with Adyen APIs through LLMs function calling utilizing various Clients. It currently supports the following tools:
Trusted agent-commerce hub: discover, trust-check, and route x402 payments with failover.