MCP server for C6 Bank — Pix (cob/cobv), DICT keys, Boleto, balance, statement (OAuth2 + mTLS)
MCP server for C6 Bank — Pix (cob/cobv), DICT keys, Boleto, balance, statement (OAuth2 + mTLS)
This is a monorepo containing 109 MCP servers for Latin American commerce integrations. The codebase is well-structured with proper authentication patterns, but several moderate security concerns exist: multiple servers require environment variable credentials without runtime validation, the Sift server (and likely others) lacks input validation on API request parameters allowing potential injection attacks, and broad network permissions are standard across the catalog. The alpha-tier servers are particularly concerning as they ship with unverified endpoint paths marked TODO(verify). Overall, permissions align with the category baseline, but code quality gaps in input sanitization and error handling warrant attention before production deployment. Supply chain analysis found 2 known vulnerabilities in dependencies (1 critical, 0 high severity). Package verification found 1 issue (1 critical, 0 high severity).
4 files analyzed · 14 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Unverified package source
We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.
Set these up before or after installing:
Environment variable: C6_CLIENT_ID
Environment variable: C6_CLIENT_SECRET
Environment variable: C6_CERT_PATH
Environment variable: C6_KEY_PATH
Environment variable: C6_ENV
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-codespar-mcp-c6": {
"env": {
"C6_ENV": "your-c6-env-here",
"C6_KEY_PATH": "your-c6-key-path-here",
"C6_CERT_PATH": "your-c6-cert-path-here",
"C6_CLIENT_ID": "your-c6-client-id-here",
"C6_CLIENT_SECRET": "your-c6-client-secret-here"
},
"args": [
"-y",
"mcp-dev-latam"
],
"command": "npx"
}
}
}Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.