MCP server for managing Xendit balances, invoices, transactions, and guarded disbursements across Southeast Asia.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent โ or use 1-click editor setup below.
We haven't yet run this listing's install command through our automated sandbox check. This isn't a red flag โ we're steadily working through the catalog.
๐ก Paste the JSON block into your client's configuration file under mcpServers, then restart the application.
Inspect callable tools, capabilities, and parameters exposed to AI agents by Xendit MCP.
get_workspace_modeExplain which Xendit mode is active, what is enabled, and the safest next step to unlock more features.
guided_setupGenerate a Claude Code or Claude Desktop config snippet for `read-only`, `invoices`, or `guarded-payouts`.
get_balanceAccount balance by type (CASH, HOLDING, TAX).
list_invoicesList invoices filtered by status, date range, or currency.
get_invoiceRetrieve a single invoice.
create_invoiceCreate a payment invoice and return a payment link. Disabled unless `XENDIT_ENABLE_INVOICE_MUTATIONS=true`.
Model Context Protocol server for the Xendit payment API. Supports payment links via invoices, payouts/disbursements, balances, and transactions across Indonesia, the Philippines, Thailand, Vietnam, and Malaysia.
Or run on demand with npx xendit-mcp.
0.2.0 introduces breaking defaults. If you were on 0.1.x and relied on invoice creation or one-shot payouts working out of the box, those tools are now disabled by default.
To restore the old behavior, set these in your MCP config env:
If you enable disbursements, you must also set the four safety gates (XENDIT_MAX_DISBURSEMENT_AMOUNT, XENDIT_MAX_DAILY_AMOUNT, XENDIT_ALLOWED_ACCOUNTS, XENDIT_APPROVAL_CODE) or the server will refuse to start.
The recommended migration is to adopt the new two-step payout flow (prepare_disbursement โ confirm_disbursement with an approval code) instead of re-enabling the legacy one-shot. See Safety for details.
Think about the product in 3 modes:
read-only: balances, invoices read, transactions readinvoices: read-only plus create_invoice and expire_invoiceguarded-payouts: invoices mode plus prepare_disbursement and confirm_disbursementFor non-technical users, the easiest helpers are:
doctor prints the current mode, enabled capabilities, and what is still blocked.setup generates a Claude Code or Claude Desktop snippet for the mode you want.xnd_development_...) for development or a live key for production.| Variable | Required | Description |
|---|---|---|
XENDIT_API_KEY | yes | Test or live API key |
XENDIT_ENABLE_INVOICE_MUTATIONS | no | Set to true to enable create_invoice, expire_invoice, and the create_payment_link prompt. Disabled by default for safer read-only behavior. |
XENDIT_ENABLE_DISBURSEMENTS | no | Set to true to enable disbursement tools (money-movement). Disabled by default. |
XENDIT_ALLOW_LIVE | no | Set to true to allow live/production keys (prefixes xnd_production_, iluma_production_, sk_live_). Refused by default. |
XENDIT_MAX_DISBURSEMENT_AMOUNT | no | Hard cap for one money-out call. Set to 0 or omit to disable. |
XENDIT_MAX_DAILY_AMOUNT | no | Rolling 24-hour cap across money-out calls. Set to 0 or omit to disable. |
XENDIT_ALLOWED_ACCOUNTS | no | Comma-separated allowlist in CHANNEL_CODE:ACCOUNT_NUMBER format, e.g. ID_BCA:1234567890. |
XENDIT_PREPARE_TTL_SECONDS | no | How long a prepared disbursement token stays valid. Defaults to 300, max 86400. |
XENDIT_APPROVAL_CODE | no | Required when XENDIT_ENABLE_DISBURSEMENTS=true. Human approval code required by confirm_disbursement and legacy one-shot payouts. Keep it out of untrusted prompt context. |
XENDIT_ENABLE_LEGACY_ONE_SHOT_DISBURSEMENT | no | Set to true only if you intentionally want the old create_disbursement one-shot tool. Disabled by default. |
If you do not want to hand-edit env vars, run:
It will ask which client you use and which mode you want, then output a ready-to-paste Claude config snippet with placeholders for secrets.
If the MCP is already connected in Claude, you can also ask Claude to use:
get_workspace_modeguided_setupguided_setup uses MCP elicitation in Claude Code when available, so the user sees a form instead of raw config details.
Edit claude_desktop_config.json:
Add to ~/.cursor/mcp.json with the same shape as Claude Desktop.
| Tool | Description |
|---|---|
get_workspace_mode | Explain which Xendit mode is active, what is enabled, and the safest next step to unlock more features. |
guided_setup | Generate a Claude Code or Claude Desktop config snippet for read-only, invoices, or guarded-payouts. |
get_balance | Account balance by type (CASH, HOLDING, TAX). |
list_invoices | List invoices filtered by status, date range, or currency. |
get_invoice | Retrieve a single invoice. |
create_invoice | Create a payment invoice and return a payment link. Disabled unless XENDIT_ENABLE_INVOICE_MUTATIONS=true. |
expire_invoice | Expire an active invoice. Disabled unless XENDIT_ENABLE_INVOICE_MUTATIONS=true. |
list_transactions | List payments, payouts, refunds, transfers, and balance adjustments. |
prepare_disbursement | Stage a money-out call and return a short-lived confirmation token. Disabled unless XENDIT_ENABLE_DISBURSEMENTS=true. |
confirm_disbursement | Execute a previously prepared money-out token. Requires approvalCode. Disabled unless XENDIT_ENABLE_DISBURSEMENTS=true. |
cancel_disbursement | Cancel a prepared money-out token. Disabled unless XENDIT_ENABLE_DISBURSEMENTS=true. |
create_disbursement | Legacy one-shot payout/disbursement. Requires approvalCode and explicit legacy opt-in. Disabled unless both XENDIT_ENABLE_DISBURSEMENTS=true and XENDIT_ENABLE_LEGACY_ONE_SHOT_DISBURSEMENT=true. |
get_disbursement | Check payout/disbursement status. Disabled unless XENDIT_ENABLE_DISBURSEMENTS=true. |
list_disbursement_banks | List payout channels such as ID_BCA and PH_BPI. Disabled unless XENDIT_ENABLE_DISBURSEMENTS=true. |
| Prompt | Description |
|---|---|
check_balance | Report account balance. |
recent_payments | Payments received in the last N days. |
create_payment_link | Generate a payment link for a customer. Disabled unless XENDIT_ENABLE_INVOICE_MUTATIONS=true. |
unpaid_invoices | List pending invoices. |
daily_summary | Today's payment activity. |
| Resource | URI | Description |
|---|---|---|
| Supported Banks | xendit://banks | Common payout channel aliases for Indonesia and the Philippines. |
| Setup Guide | xendit://setup | Current mode, setup commands, and plain-English mode explanations. |
| API Info | xendit://info | Xendit API overview and doc links. |
With XENDIT_ENABLE_DISBURSEMENTS=true:
Xendit issues separate test and live API keys. Test keys operate against the Xendit sandbox, so no real funds move. Live keys (xnd_production_..., iluma_production_..., sk_live_...) operate against production.
This server can move real money through the Xendit API. Key safeguards:
XENDIT_ENABLE_INVOICE_MUTATIONS=true. Money-moving tools are disabled unless XENDIT_ENABLE_DISBURSEMENTS=true.xnd_production_, iluma_production_, or sk_live_ are rejected at startup unless XENDIT_ALLOW_LIVE=true. Always test with a development key (xnd_development_...) first.XENDIT_MAX_DISBURSEMENT_AMOUNT, XENDIT_MAX_DAILY_AMOUNT, XENDIT_ALLOWED_ACCOUNTS, and XENDIT_APPROVAL_CODE are configured.confirm_disbursement requires both the staged token and a separate approvalCode.create_disbursement is not even registered unless XENDIT_ENABLE_LEGACY_ONE_SHOT_DISBURSEMENT=true.XENDIT_MAX_DISBURSEMENT_AMOUNT, XENDIT_MAX_DAILY_AMOUNT, and XENDIT_ALLOWED_ACCOUNTS let you fail closed before a payout is sent.externalId as the Idempotency-Key, so safe retries do not create duplicate transfers.get_workspace_mode and guided_setup are exposed even in read-only mode so users can understand what is blocked and how to enable the next mode safely.Factual signals from GitHub, npm, and our automated checks โ not a rating.
No reviews yet โ be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/mrslbt-xendit-mcp)<a href="https://allmcps.com/mcp/mrslbt-xendit-mcp"><img src="https://allmcps.com/api/badge/mrslbt-xendit-mcp?style=directory" alt="Xendit MCP on AllMCPs" /></a>