MCP server for Santander Brasil — Pix, Cobrança (boleto), Arrecadação, Extrato (OAuth2 + mTLS)
MCP server for Santander Brasil — Pix, Cobrança (boleto), Arrecadação, Extrato (OAuth2 + mTLS)
This is a monorepo of 109 MCP servers for LATAM commerce APIs. The code quality is generally good with proper authentication patterns (API keys, OAuth2). However, there are several moderate-severity concerns: environment variables are read but not always validated before use, the Sift server example has incomplete error handling around API responses, and some servers appear to have alpha/unverified endpoint paths. Permissions are reasonable for the category (network_http, env_vars are standard for Developer Tools), but missing input validation on sensitive operations and potential information disclosure in error messages warrant attention. Supply chain analysis found 2 known vulnerabilities in dependencies (1 critical, 0 high severity). Package verification found 1 issue (1 critical, 0 high severity).
4 files analyzed · 10 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Unverified package source
We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.
Set these up before or after installing:
Environment variable: SANTANDER_CLIENT_ID
Environment variable: SANTANDER_CLIENT_SECRET
Environment variable: SANTANDER_CERT_PATH
Environment variable: SANTANDER_KEY_PATH
Environment variable: SANTANDER_ENV
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-codespar-mcp-santander": {
"env": {
"SANTANDER_ENV": "your-santander-env-here",
"SANTANDER_KEY_PATH": "your-santander-key-path-here",
"SANTANDER_CERT_PATH": "your-santander-cert-path-here",
"SANTANDER_CLIENT_ID": "your-santander-client-id-here",
"SANTANDER_CLIENT_SECRET": "your-santander-client-secret-here"
},
"args": [
"-y",
"mcp-dev-latam"
],
"command": "npx"
}
}
}Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.