Back to Browse

APIbase MCP Server

Developer ToolsUse Caution4.2MCP RegistryLocalRemote
Free

Server data from the Official MCP Registry

MCP endpoint to APIbase catalog (https://apibase.pro/llms.txt). USDC: x402 Base, MPP Tempo.

About

MCP endpoint to APIbase catalog (https://apibase.pro/llms.txt). USDC: x402 Base, MPP Tempo.

Remote endpoints: streamable-http: https://apibase.pro/mcp

Security Report

4.2
Use Caution4.2High Risk

APIbase.pro is a well-structured MCP server providing access to 1379+ tools from 396 providers via a unified API. The codebase demonstrates good architecture with proper auth (x402/MPP payments, rate-limiting), type safety (TypeScript, Zod validation), and clean tool definitions. However, several moderate concerns exist: the server accepts provider API keys from environment without documented validation, lacks explicit input sanitization patterns in the visible code, and the broad network access to external APIs (Sabre, Amadeus, CoinGecko, etc.) creates potential data exposure risk if user queries or results are logged. These are mitigated by the payment/escrow model and mature dependencies, but warrant explicit documentation and monitoring guidelines. Supply chain analysis found 8 known vulnerabilities in dependencies (0 critical, 4 high severity). Package verification found 1 issue (1 critical, 0 high severity).

4 files analyzed · 15 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

env_vars

Check that this permission is expected for this type of plugin.

database

Check that this permission is expected for this type of plugin.

process_spawn

Check that this permission is expected for this type of plugin.

Unverified package source

We couldn't verify that the installable package matches the reviewed source code. Proceed with caution.

How to Install & Connect

Available as Local & Remote

This plugin can run on your machine or connect to a hosted endpoint. during install.

Documentation

View on GitHub

From the project's GitHub README.

APIbase.pro — The API Hub for AI Agents

One MCP + REST endpoint to 1392 tools from 400 providers. No signup, no subscription, no API key to start — pay per call in USDC (x402 on Base or MPP on Tempo).

Security Audit Deploy License: MIT MCP Registry Smithery MPPScan


Quick Start

{
  "mcpServers": {
    "apibase": { "url": "https://apibase.pro/mcp" }
  }
}

That's the Claude Desktop config. Cursor, Windsurf, OpenAI Agents SDK, LangChain, Google ADK, CrewAI, Microsoft Copilot Studio, and plain REST: apibase.pro/connect.


For AI Agents


Integrations & Registries

Full framework guides →

Registry listings: Smithery · Glama · MCP Registry (io.github.whiteknightonhorse/apibase) · PulseMCP · MPPScan


Self-Hosting

git clone https://github.com/whiteknightonhorse/APIbase.git && cd APIbase
cp .env.example .env   # set POSTGRES_PASSWORD, X402_PAYMENT_ADDRESS, provider keys
docker compose -f docker-compose.yml -f docker-compose.prod.yml up -d

Full prerequisites, verification steps, and config reference: docs/self-hosting.md.


Architecture

Single Node.js/TypeScript API server, PostgreSQL as the append-only financial source of truth, Redis for cache/rate-limiting only, multi-container Docker stack on one Hetzner server. Every tool call runs the same multi-stage pipeline (escrow-first, idempotent, fail-closed, content-moderated) — dual-rail payments (self-hosted x402 facilitator + MPP), error-code contract, and full container/pipeline detail (exact counts, live): docs/architecture.md.

License

MIT

Reviews

No reviews yet

Be the first to review this server!