Back to Browse

Dev Latam MCP Server

by User
Developer ToolsUse Caution4.2Local
Free

MCP server for Onfido — global identity verification + KYC: applicants, documents, checks, workflows

About

MCP server for Onfido — global identity verification + KYC: applicants, documents, checks, workflows

Security Report

4.2
Use Caution4.2High Risk

This is a large monorepo containing 109 MCP servers for Latin American commerce integrations. The codebase is well-structured with proper authentication patterns (API keys via environment variables, OAuth2, mTLS support), clear separation of concerns across workspaces, and no evidence of malicious patterns or data exfiltration. Minor code quality observations exist (broad error handling in some places, verbose logging potential), but permissions align well with the stated purpose of providing commerce API integrations. The alpha flag on contract-gated providers is appropriately documented. Supply chain analysis found 2 known vulnerabilities in dependencies (1 critical, 0 high severity). Package verification found 1 issue (1 critical, 0 high severity).

4 files analyzed · 10 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

network_https

Check that this permission is expected for this type of plugin.

env_vars

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

File System Write

Writes or modifies files on your machine. Check that this is expected for the tool.

Unverified package source

We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.

What You'll Need

Set these up before or after installing:

Onfido API token. Sent as 'Authorization: Token token=<value>'.Required

Environment variable: ONFIDO_API_TOKEN

Region for the API host: 'eu' (api.eu.onfido.com), 'us' (api.us.onfido.com), 'ca' (api.ca.onfido.com). Defaults to api.onfido.com when unset.Optional

Environment variable: ONFIDO_REGION

How to Install

Add this to your MCP configuration file:

{
  "mcpServers": {
    "io-github-codespar-mcp-onfido": {
      "env": {
        "ONFIDO_REGION": "your-onfido-region-here",
        "ONFIDO_API_TOKEN": "your-onfido-api-token-here"
      },
      "args": [
        "-y",
        "mcp-dev-latam"
      ],
      "command": "npx"
    }
  }
}

Reviews

No reviews yet

Be the first to review this server!