Back to Browse

Gl Importer Plugin MCP Server

Developer ToolsModerate5.2MCP RegistryLocal
Free

Server data from the Official MCP Registry

Import CSV/XLSX accounting data into QuickBooks Online or Xero via the Synder Importer API.

About

Import CSV/XLSX accounting data into QuickBooks Online or Xero via the Synder Importer API.

Security Report

5.2
Moderate5.2Moderate Risk

This MCP server is well-structured with solid security practices. Authentication via API token is properly required and enforced. Code quality is high with good error handling, input validation, and proper use of TypeScript. The server's permissions (file read, network HTTP, environment variable access) align well with its stated purpose of importing accounting data via the Synder API. No malicious patterns, dangerous operations, or credential handling issues detected. Supply chain analysis found 4 known vulnerabilities in dependencies (2 critical, 2 high severity). Package verification found 1 issue.

7 files analyzed · 9 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

What You'll Need

Set these up before or after installing:

Bearer token for the Synder Importer API. Generate at importer.synder.com -> Account -> API Keys.Required

Environment variable: IMPORTER_API_TOKEN

Override API base URL (for staging/test). Defaults to https://importer.synder.com/api/v1.Optional

Environment variable: IMPORTER_BASE_URL

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "com-synder-gl-importer-mcp": {
      "env": {
        "IMPORTER_BASE_URL": "your-importer-base-url-here",
        "IMPORTER_API_TOKEN": "your-importer-api-token-here"
      },
      "args": [
        "-y",
        "@cloudbusiness/gl-importer-mcp"
      ],
      "command": "npx"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

gl-importer (Claude Code plugin)

Import CSV/XLSX accounting data into QuickBooks Online or Xero from inside Claude Code, using the Synder Importer API.

This plugin bundles:

  • An MCP server wrapping the Synder Importer REST API (/api/v1) — full read + write, 19 tools covering account, companies, settings, entities, fields, mappings, imports, status polling, results, cancel, revert, plus two composite "happy path" tools.
  • The gl-importer agent skill with natural-language guidance for the two-step import flow (dry-run → confirm).

Requirements

  • Node.js 18 or newer
  • Claude Code with plugin support (/plugin command available)
  • A Synder Importer API token — set as IMPORTER_API_TOKEN in your shell env. Generate at importer.synder.comAccount → API Keys.

Install

From the Claude Code marketplace (recommended)

/plugin marketplace add SynderAccounting/gl-importer-plugin
/plugin install gl-importer

Then set your token in the shell that launches Claude Code:

export IMPORTER_API_TOKEN="your_token_here"

Claude Desktop (one-click MCP install)

Download the latest .mcpb bundle from Releases and double-click it. Claude Desktop will prompt you for the API token.

From source (development)

git clone https://github.com/SynderAccounting/gl-importer-plugin
cd gl-importer-plugin
npm install
npm run build
# Point Claude Code at this directory:
claude --plugin-dir .

Configuration

Env varRequiredDefaultPurpose
IMPORTER_API_TOKENyesBearer token for the Synder Importer API
IMPORTER_BASE_URLnohttps://importer.synder.com/api/v1Override for staging/test

Example prompts

Once installed, talk to Claude Code naturally:

  • "Import ~/Downloads/march-bills.csv as Bills into my QuickBooks company."
  • "What entities can I import into Xero?"
  • "Show me the saved mapping called 'Stripe payouts' and update it to map Date → TxnDate."
  • "List my last 10 imports and tell me which ones failed."
  • "Revert import 12345 — I uploaded the wrong file."
  • "What's the status of import 12345? Wait for it to finish and tell me how many warnings."

The skill will walk Claude Code through a safe two-step flow: a dry-run that shows the proposed field mapping, then a confirmed call that actually creates the import and polls until it terminates.

Tools

The MCP server exposes 19 tools. The ones an LLM will hit most often:

ToolPurpose
import_csvHappy path. Auto-resolves company, uploads file, runs dry-run, then (on confirm) executes + waits.
wait_for_importPolls a running import to a terminal state with exponential backoff (2s → 1.5× → 30s cap).
list_companies / list_entities / get_fieldsDiscover what you can import where.
list_mappings / create_mapping / update_mapping / delete_mappingSaved-mapping CRUD.
auto_import / execute_importLower-level: create an import with auto-mapping or an explicit mapping.
get_import_status / get_import_results / cancel_import / revert_importLifecycle.
get_settings / update_settingsPer-company import settings.
get_accountWhoami / token check.

Full schemas are emitted at MCP startup — the agent skill (skills/gl-importer/SKILL.md) also documents the conventions.

Development

npm install
npm run build       # tsc → dist/
npm test            # vitest, 60+ unit tests, virtual-clock polling tests
npm run watch       # tsc --watch for iterative dev

CI runs on every push and PR (.github/workflows/ci.yml).

Release process

  1. Bump version in package.json and .claude-plugin/plugin.json (keep them in sync).
  2. Commit and tag: git tag v0.x.y && git push --tags.
  3. The publish.yml workflow publishes to npm on the tag push (uses NPM_TOKEN secret).
  4. The marketplace install path resolves through this GitHub repo, so the tag is the release.

License

MIT — see LICENSE.

Support

Reviews

No reviews yet

Be the first to review this server!