Server data from the Official MCP Registry
Agents are not bots. PayClaw proves it — then lets them pay. Badge + Spend on existing Visa rails.
Agents are not bots. PayClaw proves it — then lets them pay. Badge + Spend on existing Visa rails.
Set these up before or after installing:
Environment variable: PAYCLAW_API_KEY
Environment variable: PAYCLAW_API_URL
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-payclaw-spend": {
"env": {
"PAYCLAW_API_KEY": "your-payclaw-api-key-here",
"PAYCLAW_API_URL": "your-payclaw-api-url-here"
},
"args": [
"-y",
"@payclaw/mcp-server"
],
"command": "npx"
}
}
}This PayClaw MCP server handles virtual payment cards and agent identity verification for AI agents. While the core functionality is legitimate for its category, there are concerning patterns including hardcoded card credentials, agent sampling that could collect user activity data, and broad network access combined with sensitive financial operations. Supply chain analysis found 2 known vulnerabilities in dependencies (1 critical, 0 high severity). Package verification found 1 issue.
Scanned 7 files · 7 findings
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Be the first to review this server!