Back to Browse

Agentpay MCP Server

Developer ToolsUse Caution4.2MCP RegistryLocalRemote
Free

Server data from the Official MCP Registry

RU merchant catalog for AI agents: price, stock, ProductCard. Controlled checkout. Not x402.

About

RU merchant catalog for AI agents: price, stock, ProductCard. Controlled checkout. Not x402.

Remote endpoints: streamable-http: https://agentpay.shop/ap/mcp

Security Report

4.2
Use Caution4.2High Risk

AgentPay MCP is a Russia-focused e-commerce integration with legitimate business purpose, but has notable security concerns that users should be aware of. The API endpoint is determined through environment variable fallback to a hardcoded production URL, creating potential for configuration drift and accidental exposure. Authentication appears to rely on bearer tokens passed via MCP config after browser-based linking, but token storage and handling within the MCP context is not validated in the source code provided. The tool definitions and permissions align reasonably with the stated catalog + checkout purpose, but the broad network access and ability to place financial transactions warrant careful review of the backend validation and limit enforcement. Supply chain analysis found 2 known vulnerabilities in dependencies (0 critical, 2 high severity).

5 files analyzed · 9 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

process_spawn

Check that this permission is expected for this type of plugin.

How to Install & Connect

Available as Local & Remote

This plugin can run on your machine or connect to a hosted endpoint. during install.

Documentation

View on GitHub

From the project's GitHub README.

AgentPay MCP (Russia / РФ)

Merchant catalog + controlled checkout for your AI agent (ООО НЕКСУС-ТЕХ).

Market: Russia only. Agent sees price, stock, and ProductCard from allowlisted specialty stores on AgentPay — then buys within your limits. Not a global marketplace connector and not crypto/x402.

Not npm agentpay-mcp (x402/crypto by another publisher). Our stdio package name: agentpay-ru-mcp (when published). Prefer remote MCP.

Catalog tools

ToolWhat it does
search_productsSearch merchant feed: price, inStock, sku, images
get_productOne ProductCard — confirm price/stock before buy
peek_storesQuiet first hop when owner says «найди» / «подбери»
list_purchasesReorder — then refresh price via catalog
create_purchaseCheckout with limits + HITL

Never quote price from model memory. Always use search_products or get_product.

When the user says «Подключи AgentPay»

  1. Fetch https://agentpay.shop/connect.json
  2. Install remote MCP from that JSON. Never npx agentpay-mcp.
  3. Open the browser link and wait for Разрешить. Never ask the owner to paste ap_… from the cabinet.
  4. Call verify_connection.

Also: https://agentpay.shop/llms.txt

Web connectors (Grok / ChatGPT / Cursor remote): https://agentpay.shop/ap/mcp

Registry

Official MCP Registry name: io.github.zapnikita95/agentpay

Reviews

No reviews yet

Be the first to review this server!