Pop Pay MCP Server

The runtime security layer for AI agent commerce. Drop-in CLI + MCP server — blocks hallucinated purchases and keeps card credentials out of agent

Local serverstdioPython

What is the Pop Pay MCP server?

Connect Pop Pay to Claude, Cursor or any other MCP client and it stops being a tab you switch to. The runtime security layer for AI agent commerce. Drop-in CLI + MCP server — blocks hallucinated purchases and keeps card credentials out of agent context. It only takes 0.1% of hallucination to drain 100% of your wallet. The pop pay mcp server is what makes that connection.

What the server does

The runtime security layer for AI agent commerce. Drop-in CLI + MCP server. Card credentials are injected directly into the browser DOM via CDP — they never enter the agent's context window. One hallucinated prompt can't drain a wallet it can't see.

Available tools

The toolset is worth reading before you wire it up, because it tells you what the integration is really for:

  • request_virtual_card — Issue a virtual card and inject credentials into the checkout page via CDP. Automatically scans the page for hidden prompt injections
  • request_purchaser_info — Auto-fill billing/contact info (name, address, email, phone). Automatically scans the page for hidden prompt injections
  • request_x402_payment — Pay for API calls via the x402 HTTP payment protocol

Credentials and setup notes

Configuration is passed through the environment: POP_CDP_URL, POP_STRIPE_KEY. Treat anything key-shaped as a real credential — scope it to the minimum the server needs, and rotate it if it ever lands in a shared config.

Installation

The server ships on npm as pop-pay, so your MCP client can launch it on demand — there is no separate build step. Add the server block to your client's configuration, restart it, and the tools register themselves.

Where it fits

Plenty of payments and commerce servers cover similar ground. The differences that matter in practice are scope of access and how much setup stands between you and a working tool call. Pop Pay's toolset — request_virtual_card, request_purchaser_info, request_x402_payment — is a fair guide to whether it matches your workflow. It is maintained by 100xpercent; worth a glance at recent repository activity before you build anything load-bearing on it.

We check each listing at SyncDev against the project's documentation before it goes live — if something here drifts out of date, it is a bug worth reporting.

Worth knowing first

  • It runs with your machine's permissions. That is convenient and also the reason to think about what you point it at before you approve a tool call.
  • Missing credentials fail quietly in some clients — if no tools show up, check the environment block first.
  • Keep per-call confirmation enabled while you learn its behaviour; it is the cheapest safeguard you have.

Available tools

ToolWhat it does
request_virtual_cardIssue a virtual card and inject credentials into the checkout page via CDP. Automatically scans the page for hidden prompt injections.
request_purchaser_infoAuto-fill billing/contact info (name, address, email, phone). Automatically scans the page for hidden prompt injections.
request_x402_paymentPay for API calls via the x402 HTTP payment protocol.

How to install the Pop Pay MCP server

{
  "mcpServers": {
    "pop-pay": {
      "command": "npx",
      "args": ["-y", "pop-pay"],
      "env": {
        "POP_CDP_URL": "your-value",
        "POP_STRIPE_KEY": "your-value"
      }
    }
  }
}

Add to claude_desktop_config.json, then restart Claude Desktop.

Configuration

VariableDescriptionRequired
POP_CDP_URLEndpoint or connection string the server talks to.Yes
POP_STRIPE_KEYCredential the server authenticates with.Yes

Example prompts to try

  • Use Pop Pay to request virtual card.
  • Use Pop Pay to request purchaser info.
  • Use Pop Pay to request x402 payment.

Frequently asked questions

It connects Pop Pay to MCP-compatible AI assistants such as Claude and Cursor, exposing 3 tools (request_virtual_card, request_purchaser_info, request_x402_payment) that the assistant can call on your behalf. Instead of copying data back and forth by hand, the assistant works with Pop Pay directly.