tuanle96/mcp-odoo

๐Ÿข Workplace & Productivity
0 Views
0 Installs

๐Ÿ ๐Ÿ  ๐ŸŽ ๐ŸชŸ ๐Ÿง - Production-grade MCP server for Odoo ERP (16-19) with zero Odoo-side install. 24 tools across read, write (approval-token gated), diagnose, migrate, and audit. JSON-2 transport for Odoo 19+, real Docker Compose smoke tests against Odoo 16/17/18/19, diagnostics (diagnoseodoocall, upgraderiskreport, fitgapreport, scanaddonssource), and 5 reusable agent prompts.

Quick Install

One-Click IDE Configuration
claude_desktop_config.json
{
  "mcpServers": {
    "tuanle96-mcp-odoo": {
      "command": "npx",
      "args": [
        "-y",
        "tuanle96-mcp-odoo"
      ]
    }
  }
}
Or

Using an AI coding agent (Claude Code, Cursor, etc.)? Copy a ready-made prompt that tells it to fetch the setup instructions and install this server for you.

Documentation Overview

Odoo MCP

The free AI layer for Odoo โ€” any edition, any version.
Odoo's built-in AI is Enterprise-only. Odoo MCP gives Community and Enterprise 16+ the same power for $0 with the LLM you already use (Claude, GPT, Gemini, DeepSeek, Ollama).
Five-minute install. Zero Odoo-side setup. Safe writes, real diagnostics, JSON-2 ready years before the Odoo 22 XML-RPC removal.

PyPI Python Downloads License CI Stars Forks Agent Skills

๐Ÿš€ ERPipe hosted โ€” free v1 ยท live at mcp.erpipe.com ย ยทย  TypeScript open core ย ยทย  ๐Ÿ” Fixed-price audits

Want ChatGPT / Claude on a stable remote URL without running a process?
ERPipe is the hosted product from the same author โ€” free v1 public beta, live in production.
Sign up โ†’ add HTTPS Odoo instance(s) โ†’ connect once to https://mcp.erpipe.com/mcp (workspace OAuth, multi-instance, gated writes, audit dashboard).
This repo stays the local / self-host Python server (full 41-tool surface, stdio, Docker). TypeScript building blocks: erpipe.

This repo (odoo-mcp)ERPipe hosted
Run whereYour laptop / Docker / CICloudflare (managed)
Installuvx odoo-mcp --setupSign up at mcp.erpipe.com
MCP URLstdio or local HTTPhttps://mcp.erpipe.com/mcp
ClientsClaude Code, Cursor, local agentsChatGPT (primary), Claude, Cursor, any remote MCP client
Tool surface41 tools + 11 prompts (full local pack)37 tools + 7 prompts (workspace multi-instance + governance)
Multi-instanceConfig file / env on your machineDashboard + explicit instance key per tool
WritesEnv gate + approval tokens (+ optional MCP elicitation)Default OFF ยท HITL inbox ยท journal ยท field policy
AuditOptional JSONL fileDashboard + D1 audit trail
CostFree forever (MIT)Free v1 beta (fair-use caps)

Odoo MCP turns any Odoo 16+ database into a Model Context Protocol server โ€” using only your existing credentials. No App Store module, no permission setup, no admin access required. Built for local agents, IDEs, and automation tools that need real Odoo context without hand-rolled scripts or unsafe direct write access.

It speaks XML-RPC for Odoo 16-18 and External JSON-2 for Odoo 19+. It exposes a compact MCP surface with read tools, diagnostics, schema discovery, migration helpers, local addon scanning, and a gated write workflow. One server can serve multiple named Odoo instances at once.

Try it in 30 seconds

Once configured (see Setup), ask your agent things like:

"Show me all customers from Spain with unpaid invoices."

"Find products with stock below 10 units in the main warehouse."

"Audit the custom_billing addon for upgrade risks before we move to Odoo 19."

Highlights

CapabilityWhat it gives you
41 MCP toolsRead records and attachments, aggregate server-side, post chatter, inspect schema, build domains, scan addons, diagnose calls and upgrade logs, check data quality, access rules, resolve model renames, validate writes, and fan out across instances.
Field-level ACLOpt-in per-instance, per-model field allow/deny enforced on every read path (records, aggregates, knowledge index, resources). First open-source Odoo MCP with it. See docs/field-acl.md.
Cross-instance queriesRead-only fan-out across many client DBs with merged, attributed, partial-failure-tolerant results โ€” no warehouse, no sync. See docs/partner-playbook.md.
Workflow prompts11 prompts including 6 end-to-end business workflows (invoice approval, PO match, onboarding, expense review, month-end close, pre-migration data quality) that route writes through the gate.
Background taskssubmit_async_task runs long read operations (addon scans, knowledge indexing, AR/AP aging) on a bounded worker pool; poll with get_async_task while the agent keeps reasoning.
Local-first knowledge searchindex_knowledge + search_knowledge give BM25 relevance ranking over a bounded record slice โ€” accent-insensitive, in-process, no embeddings service, no data leaving the machine.
Accounting packreceivable_payable_aging and accounting_health_summary answer the most common finance questions in one call instead of hand-built domains.
Agent Skills pack4 business-workflow skills (data-quality gate, migration copilot, month-end close, agency fleet review) โ€” npx skills add erpipe-org/mcp-odoo. Developing on Odoo with shell access? Add the 21-skill companion dev suite odoo-ai-skills. See skills/.
Tool pluginsShip your own tools as pip packages (odoo_mcp.tools entry points) โ€” opt-in via ODOO_MCP_PLUGINS, fail-isolated, no fork needed. Trim the surface per deployment with ODOO_MCP_TOOLS_INCLUDE/EXCLUDE. See docs/plugins.md.
Rate limitingOpt-in sliding-window budget per instance and tool (ODOO_MCP_RATE_LIMIT_MODE=warn|block), surfaced in health_check.
Multi-instanceOne server, several named Odoo instances โ€” optional instance parameter on every tool, list_instances discovery, instance-bound approval tokens, per-instance schema caches.
5 agent promptsReusable workflows for failed calls, fit/gap workshops, JSON-2 migration, safe writes, and module audits.
Odoo 16-19 coverageXML-RPC by default, JSON-2 opt-in for Odoo 19.
MCP 2026-07-28Stateless modern protocol with server/discover, plus automatic compatibility with legacy 2025-11-25 clients on the same endpoint.
Streamable HTTPLocal HTTP/SSE support for clients that do not use stdio.
Smart field selectionsearch_records and read_record curate business-relevant fields when no fields argument is supplied โ€” drops audit, message, binary, and unstored compute noise. Pass fields=["*"] to opt out.
Server-side aggregationaggregate_records pushes groupby/sum/count/avg into Postgres via formatted_read_group (Odoo 19+) or read_group (16-18).
Chatter integrationchatter_post adds messages to any mail.thread record under the same approval-token gate as writes โ€” or directly via MCP_CHATTER_DIRECT=1.
Locale plumbingODOO_LOCALE injects context.lang automatically on every Odoo call (caller can override).
Structured loggingJSON formatter and rotating file handler via ODOO_MCP_LOG_LEVEL, ODOO_MCP_LOG_JSON, ODOO_MCP_LOG_FILE.
Safe writesDirect create, write, and unlink are blocked; approved writes require live metadata, a same-session token, explicit confirmation, and an env gate.
Human-in-the-loop approvalODOO_MCP_ELICIT_WRITES=1 shows a native MCP confirmation form (with a diff summary) before any approved write executes โ€” token flow stays as fallback.
Audit trailODOO_MCP_AUDIT_LOG appends one JSONL line per write-path event (preview, validate, execute, chatter) with instance and token digest.
ResilienceRead-only calls retry connection errors with exponential backoff; schema caches are TTL- and LRU-bounded; health_check flags N+1 read loops.
Real smoke testsDocker Compose validation boots disposable Odoo 16.0, 17.0, 18.0, and 19.0 stacks, including restricted users, custom record rules, and packaged addon XML install/update.

Why Odoo MCP

TraitOdoo MCPOther MCP-Odoo bridges
Setup steps on Odoo side0 โ€” works with any Odoo 16+ instance using credentials you already have.Often require installing an App Store module, configuring enabled models, and granting per-tool permissions.
Safe write workflowApproval token + live fields_get validation + explicit confirm + env gate.Often expose direct create/write/unlink or a "yolo" bypass.
Diagnosticsdiagnose_odoo_call, diagnose_access, inspect_model_relationships, upgrade_risk_report, fit_gap_report, business_pack_report, scan_addons_source.Usually CRUD only.
TransportXML-RPC (16+) and External JSON-2 (Odoo 19+). Ready for the Odoo 22 XML-RPC removal years early.Usually XML-RPC only โ€” deprecated since Odoo 19, removed in Odoo 22.
Migration helpersgenerate_json2_payload previews the JSON-2 body for any XML-RPC call before you migrate.None.
Multi-instanceNamed instances in one config file, per-tool routing, tokens and caches isolated per instance.Usually one global connection per server process.
Agent prompts5 ready-made prompts for diagnose / fit-gap / JSON-2 migration / safe-write / module-audit.Usually none.
HTTP transport securityDNS-rebinding protection, host/origin allowlists, local-bind by default.Often missing.
Real Odoo smoke testsDocker Compose harness boots disposable Odoo 16/17/18/19 stacks per release.Often mock-based only.
Framework examplesCopy-paste adapters for Cursor, Claude Code, OpenAI Agents, LangGraph, CrewAI, and n8n in examples/.None.
Audit & approval UXJSONL audit trail + native elicitation confirm forms โ€” without installing anything in Odoo.Audit features usually require an Odoo-side module.

Comparing specific projects? See the per-project breakdown in docs/comparison.md.

Setup

Two paths to a working server: set it up yourself, or paste one prompt and let your coding agent do it for you.

For humans

The fastest path is the interactive wizard via uvx, which fetches the package on demand:

uvx odoo-mcp --setup

The wizard asks for your Odoo URL, database, and credentials, tests the connection live, writes the config file, and prints ready-to-paste snippets for Claude Code, Cursor, and Claude Desktop. Prefer a quick smoke check instead? uvx odoo-mcp --health.

Using Claude Desktop on macOS? It reads MCP configuration from:

~/Library/Application Support/Claude/claude_desktop_config.json

Use an absolute Python path because GUI apps may not inherit your shell PATH:

{
  "mcpServers": {
    "odoo": {
      "command": "/opt/homebrew/bin/python3",
      "args": ["-m", "odoo_mcp"],
      "env": {
        "ODOO_URL": "https://your-odoo-instance.com",
        "ODOO_DB": "your-database",
        "ODOO_USERNAME": "your-user",
        "ODOO_PASSWORD": "your-password-or-api-key",
        "ODOO_TRANSPORT": "xmlrpc"
      }
    }
  }
}

More client configs (Windsurf, VS Code, Zed, Continue.dev, Streamable HTTP) are in docs/client-configs.md.

Other ways to install:

pip install odoo-mcp
# or: pipx install odoo-mcp

Prefer a container? See Docker. For local development:

git clone https://github.com/erpipe-org/mcp-odoo.git
cd mcp-odoo
uv sync --extra dev

For AI agents

Paste this into Claude Code, Cursor, Codex, or any coding agent and it will install the server for you:

Install the odoo-mcp MCP server (https://github.com/erpipe-org/mcp-odoo) in this environment:

1. Ask me for my Odoo URL, database name, username, and password or API key.
   Treat them as secrets: never echo, print, or log these values.
2. Register the server as a stdio MCP server:
   - Claude Code: claude mcp add odoo --env ODOO_URL=<url> --env ODOO_DB=<db>
     --env ODOO_USERNAME=<user> --env ODOO_PASSWORD=<secret> -- uvx odoo-mcp
   - Any other client: write the equivalent config with "command": "uvx",
     "args": ["odoo-mcp"], and the same four env vars.
3. Verify the install: run `uvx odoo-mcp --health`, then call the health_check
   MCP tool and confirm the Odoo connection is reachable.
4. Leave writes disabled (do not set ODOO_MCP_ENABLE_WRITES) unless I
   explicitly ask you to enable them.

Full machine-readable instructions: https://github.com/erpipe-org/mcp-odoo/blob/main/llms-install.md

Already know your client? One-liners and config snippets:

claude mcp add odoo --env ODOO_URL=https://mycompany.odoo.com --env ODOO_DB=mycompany \
  --env ODOO_USERNAME=agent@mycompany.com --env ODOO_PASSWORD=your-api-key -- uvx odoo-mcp

Framework SDKs

Copy-paste-runnable integrations live in examples/:

ClientExample
Cursorexamples/cursor/ โ€” .cursor/mcp.json + agent rules
Claude Code / Codex CLIsnippets in examples/README.md
OpenAI Agents SDKexamples/openai-agents/ โ€” local + hosted variants
LangGraphexamples/langgraph/ โ€” langchain-mcp-adapters
CrewAIexamples/crewai/ โ€” native mcps=[...] agent
n8nexamples/n8n/ โ€” importable workflow JSON

Configuration reference

Set connection values in the environment:

export ODOO_URL="https://your-odoo-instance.com"
export ODOO_DB="your-database"
export ODOO_USERNAME="your-user"
export ODOO_PASSWORD="your-password-or-api-key"
export ODOO_TRANSPORT="xmlrpc"

For Odoo 19 JSON-2:

export ODOO_TRANSPORT="json2"
export ODOO_API_KEY="your-odoo-api-key"
export ODOO_JSON2_DATABASE_HEADER="1"

ODOO_JSON2_DATABASE_HEADER=1 sends X-Odoo-Database on JSON-2 calls. Set it to 0 only when host or dbfilter routing already selects the intended database.

Optional environment variables:

VariableDefaultEffect
ODOO_CONFIG_FILEunsetExplicit path to a config file, checked before the standard locations.
ODOO_LOCALEunsetInject context.lang on every Odoo call. Caller-supplied context.lang always wins.
ODOO_MCP_MAX_SMART_FIELDS15Cap for smart-field selection when caller omits fields.
ODOO_MCP_LOG_LEVELINFOProcess logger level (DEBUG/INFO/WARNING/ERROR/CRITICAL).
ODOO_MCP_LOG_JSON0Truthy โ†’ emit JSON-formatted log lines.
ODOO_MCP_LOG_FILEunsetPath โ†’ enable rotating file handler (10MB ร— 3 backups).
ODOO_MCP_ENABLE_WRITES0Required for execute_approved_write.
ODOO_MCP_ALLOWED_SIDE_EFFECT_METHODSemptyExact model.method allowlist (e.g. sale.order.action_confirm).
ODOO_MCP_POLICY_FILE./odoo_mcp_policy.json if presentVersion-controllable side-effect allowlist with review metadata (see odoo_mcp_policy.json.example); merged with the env allowlist.
ODOO_MCP_ALLOW_UNKNOWN_METHODS0Broad mode for execute_method. Prefer the exact allowlist above.
ODOO_MCP_AUDIT_LOGunsetPath โ†’ append one JSONL line per write-path event (preview/validate/execute/chatter), tokens stored as digests.
ODOO_MCP_ELICIT_WRITES0Truthy โ†’ execute_approved_write asks the human via MCP elicitation (native confirm form with a diff summary) before executing; falls back to the token flow when the client cannot elicit.
ODOO_MCP_RETRY_ATTEMPTS2Extra attempts for read-only calls on connection errors (0โ€“5). Writes never retry.
ODOO_MCP_RETRY_BACKOFF0.5Base retry backoff seconds; doubles per retry.
ODOO_MCP_SCHEMA_CACHE_TTL600Schema cache entry lifetime in seconds.
ODOO_MCP_SCHEMA_CACHE_MAX256Max schema cache entries (LRU eviction).
ODOO_MCP_RATE_LIMIT_MODEoffwarn tracks per-instance:tool call rates in health_check; block refuses over-budget calls on the hot read tools and execute_method.
ODOO_MCP_RATE_LIMIT_WINDOW60Sliding window length in seconds for rate tracking.
ODOO_MCP_RATE_LIMIT_MAX_CALLS120Calls allowed per window per instance:tool.
ODOO_MCP_ASYNC_MAX_WORKERS2Worker threads for submit_async_task.
ODOO_MCP_ASYNC_MAX_TASKS50Max retained background tasks (finished tasks evicted oldest-first).
ODOO_MCP_ASYNC_RESULT_TTL3600Seconds a finished background task result stays pollable.
ODOO_MCP_KNOWLEDGE_MAX_DOCS5000Total documents allowed across all local BM25 knowledge indexes.
ODOO_MCP_FIELD_POLICY_FILEshared policy fileField ACL policy (a field_acl key in the policy file, or a dedicated file here). Denied fields are removed from every read path. See docs/field-acl.md.
ODOO_MCP_CROSS_INSTANCE_WORKERS4Bounded concurrency for cross-instance fan-out tools.
MCP_CHATTER_DIRECT0Truthy โ†’ chatter_post skips the approval token gate and posts immediately.
MCP_ALLOW_REMOTE_HTTP0Truthy โ†’ permit non-local HTTP binds (still requires external auth/TLS).
MCP_ALLOWED_HOSTS / MCP_ALLOWED_ORIGINSlocalCSV allowlists for HTTP transports.
ODOO_MCP_MAX_ATTACHMENT_BYTES1048576Download cap for read_attachment content (hard cap 16 MiB).
ODOO_MCP_ATTACHMENT_UPLOAD_ROOTSunsetColon-separated local directories validate_write may read <field>_from_path uploads from (mirrors ODOO_ADDONS_PATHS). Required โ€” fails closed with no roots configured.
ODOO_MCP_MAX_ATTACHMENT_UPLOAD_BYTES10485760Size cap for <field>_from_path local-file uploads (hard cap 16 MiB).
ODOO_MCP_AUTH_ISSUER_URLunsetOAuth 2.1: authorization server issuer. With the two vars below, the HTTP transport becomes a protected resource server (RFC 9728 metadata + bearer validation).
ODOO_MCP_AUTH_INTROSPECTION_URLunsetRFC 7662 token introspection endpoint of the authorization server.
ODOO_MCP_AUTH_RESOURCE_URLunsetCanonical URL of this MCP server (RFC 8707 audience check when the AS binds tokens).
ODOO_MCP_AUTH_REQUIRED_SCOPESemptyCSV scopes required on every request.
ODOO_MCP_AUTH_CLIENT_ID / _CLIENT_SECRETunsetCredentials for the introspection call when the AS requires client auth.
ODOO_MCP_AUTH_REQUIRE_AUD0Truthy โ†’ reject tokens whose introspection response has no aud claim (default only checks aud when present).
ODOO_MCP_AUTH_REQUIRE_ISS0Truthy โ†’ reject introspection responses without an iss claim. A present iss must always match ODOO_MCP_AUTH_ISSUER_URL (mix-up attack hardening).
ODOO_MCP_AUTH_CACHE_TTL60Seconds to cache introspection verdicts (0 disables). Bounds both AS load and revocation lag.
ODOO_MCP_PLUGINSunsetCSV entry-point names to load as third-party tool plugins (group odoo_mcp.tools). Installation alone activates nothing; failures are isolated and reported in health_check. See docs/plugins.md.
ODOO_MCP_TOOLS_INCLUDE / _EXCLUDEunsetCSV fnmatch globs trimming the registered tool surface per deployment (small agents drown in 41 tools). Removed names listed in health_check.
ODOO_MCP_INSTRUCTIONS_FILEunsetPlain-text file appended to the server-level MCP instructions every client receives โ€” deployment-specific guidance (fiscal-year rules, naming conventions) without touching tool descriptions.

You can also use odoo_config.json:

{
  "url": "https://your-odoo-instance.com",
  "db": "your-database",
  "username": "your-user",
  "password": "your-password-or-api-key"
}

Multiple Odoo instances

One server can talk to several Odoo databases. Add an instances map to your config file (auto-detected โ€” a file without instances keeps the flat single-instance shape above):

{
  "default": "acme",
  "instances": {
    "acme": {
      "url": "https://acme.odoo.com",
      "db": "acme",
      "username": "bot",
      "api_key": "...",
      "transport": "json2"
    },
    "globex": {
      "url": "https://globex.odoo.com",
      "db": "globex",
      "username": "bot",
      "password": "...",
      "lang": "fr_FR",
      "timeout": 60
    }
  }
}
  • Every read/write tool accepts an optional instance parameter; omitted โ†’ the default instance. default itself is optional when only one instance is defined.
  • Each entry supports the same keys as the flat config (url, db, username, password, api_key, transport, json2_database_header, lang) plus timeout and verify_ssl. Instance entries are self-contained: credentials and transport never fall back to env vars (so one instance can never inherit another deployment's ODOO_API_KEY). Only non-credential knobs (ODOO_TIMEOUT, ODOO_VERIFY_SSL, ODOO_LOCALE) act as fallback defaults for entries that omit them. Env overrides like ODOO_TRANSPORT/ODOO_API_KEY still apply to legacy flat configs, as before.
  • ODOO_CONFIG_FILE=/path/to/config.json points at an explicit config file, checked before ./odoo_config.json, ~/.config/odoo/config.json, and ~/.odoo_config.json.
  • Precedence: when ODOO_URL/ODOO_DB/ODOO_USERNAME/ODOO_PASSWORD are all set, the environment wins and defines a single instance named default โ€” unset them to use a multi-instance file.
  • Instance names must match [A-Za-z0-9_-]{1,64}. Clients connect lazily โ€” an instance is only contacted when a tool targets it.
  • Discovery: the list_instances tool returns configured names, URLs, databases, and transports โ€” never credentials.
  • Write-approval tokens encode the instance name, so a token validated against one instance can never execute on another.
  • MCP resources (odoo://โ€ฆ) always use the default instance in this release; use tools for multi-instance access.

Run

Start the MCP server over stdio:

odoo-mcp

or:

python -m odoo_mcp

Start Streamable HTTP for local clients:

odoo-mcp --transport streamable-http --host 127.0.0.1 --port 8000 --path /mcp

Non-local HTTP binds are rejected unless you pass --allow-remote-http or set MCP_ALLOW_REMOTE_HTTP=1. This server does not include built-in HTTP authentication. Put remote HTTP deployments behind your own authentication, TLS, and network policy.

Check runtime posture without starting the server loop:

odoo-mcp --health

MCP Tools

41 tools grouped by use case. Each tool name is a single-purpose handle the agent can call. Tools that talk to Odoo accept an optional instance parameter when multiple instances are configured (see Multiple Odoo instances).

Read & Discover (11)

ToolPurpose
list_modelsList Odoo model technical names and labels.
get_model_fieldsRead field metadata for one model.
search_recordsRun bounded read-only search_read. Smart-field selection when caller omits fields.
read_recordRead one record by model and ID. Smart-field selection when caller omits fields.
aggregate_recordsServer-side groupby/aggregation via formatted_read_group (Odoo 19+) or read_group (16-18).
search_employeeSearch employees by name.
search_holidaysSearch leave records by date range.
get_odoo_profileRead server version, user context, transport, database, and installed module summary.
schema_catalogBuild a bounded model catalog with optional field metadata.
build_domainBuild and validate an Odoo domain from structured conditions.
read_attachmentRead an ir.attachment's metadata and size-capped base64 content (ODOO_MCP_MAX_ATTACHMENT_BYTES, default 1 MiB).

Write & Operate (5)

ToolPurpose
preview_writeProduce a non-executing approval payload for create, write, or unlink.
validate_writeValidate a write payload against trusted live fields_get metadata.
execute_approved_writeExecute only a same-session, live-validated, confirmed write when ODOO_MCP_ENABLE_WRITES=1.
execute_methodExecute a reviewed model method. Direct create, write, and unlink are blocked. Side-effect methods require an exact allowlist or ODOO_MCP_ALLOW_UNKNOWN_METHODS=1.
chatter_postPost a chatter message on a mail.thread record. Default mode requires the approval-token preview/execute flow.

Diagnose (3)

ToolPurpose
diagnose_odoo_callDiagnose a model call without executing it.
diagnose_accessDiagnose ACL and record-rule visibility for the current Odoo credential.
inspect_model_relationshipsGroup relationship fields, required fields, and create/write hints.

Migrate (3)

ToolPurpose
generate_json2_payloadConvert XML-RPC-shaped input into JSON-2 endpoint, headers, and named body.
upgrade_risk_reportSurface transport, method, and migration risks across Odoo versions.
lookup_model_historyResolve outdated model names (account.invoice โ†’ account.move) against a curated per-version rename catalog.

Audit & Plan (3)

ToolPurpose
scan_addons_sourceScan local addon source without importing addon code.
fit_gap_reportClassify requirements into standard, configuration, Studio, custom module, avoid, or unknown.
business_pack_reportReport expected modules, models, and discovery calls for sales, CRM, inventory, accounting, or HR.

Knowledge search โ€” local-first (3)

ToolPurpose
index_knowledgeFetch a bounded record slice once and build a local BM25 index (accent-insensitive; data never leaves the machine).
search_knowledgeRelevance-ranked free-text search over indexed records with zero further RPC calls.
knowledge_statsReport per-model index sizes and the ODOO_MCP_KNOWLEDGE_MAX_DOCS budget.

Accounting (2)

ToolPurpose
receivable_payable_agingAged AR/AP report bucketed by days overdue (not due / 1-30 / 31-60 / 61-90 / 90+), with per-partner totals.
accounting_health_summaryOpen receivable/payable item counts plus the draft invoice backlog.

Background tasks (4)

ToolPurpose
submit_async_taskRun an allowlisted long read operation (scan_addons_source, index_knowledge, receivable_payable_aging) on a bounded worker pool. Writes are never accepted.
get_async_taskPoll a task's status and result.
cancel_async_taskCancel a pending or running task.
list_async_tasksList live and recently finished tasks.

Cross-instance fan-out โ€” read-only (3)

One question across many configured instances, merged and attributed. See the partner playbook.

ToolPurpose
search_across_instancesSearch every opted-in instance (or a list/tag selection); rows tagged with _instance, partial results on per-instance failure.
aggregate_across_instancesGroup/aggregate per instance plus additive grand totals across the fleet.
accounting_health_across_instancesAR/AP aging across every client DB with combined buckets โ€” the partner-network sweep.

Utility (2)

ToolPurpose
health_checkReport non-secret MCP runtime posture, including rate-limit counters and field-ACL status when enabled.
list_instancesList configured Odoo instance names, URLs, databases, transports, and cross-instance tags โ€” never credentials.

Resources

URIDescription
odoo://modelsList available models.
odoo://model/{model_name}Read model metadata and fields.
odoo://record/{model_name}/{record_id}Read one record.
odoo://search/{model_name}/{domain}Search records with a bounded domain.

Prompts

11 prompts: 5 diagnostic, plus 6 operational workflow prompts that encode end-to-end business processes and route every write through the approval gate.

PromptUse it for
diagnose_failed_odoo_callRoot-cause a failing Odoo call before retrying.
fit_gap_workshopTurn raw requirements into Odoo fit/gap buckets.
json2_migration_planPlan XML-RPC or JSON-RPC migration to External JSON-2.
safe_write_reviewReview a proposed create, write, or unlink.
custom_module_auditAudit local addon source with scan, risk, and business evidence.
invoice_approval_chainTriage draft invoices and post each through the write gate with human checkpoints.
po_to_receiptThree-way match a purchase order against receipt and bill; flags discrepancies (read-only).
customer_onboardingDedup-check, then gated-create a customer with contacts and payment terms.
expense_claim_reviewPolicy-check pending expense claims, then gated approve/refuse.
accounting_close_checklistRead-only month-end checklist: aging, unreconciled items, draft backlog.

Safe Write Model

Writes are intentionally boring.

  1. preview_write creates a canonical, non-executing payload.
  2. validate_write checks model metadata, required fields, readonly fields, relation hints, record IDs, and payload shape.
  3. execute_approved_write runs only when all gates pass:
    • the approval came from validate_write in the same server process,
    • validation used trusted, non-empty live Odoo fields_get metadata,
    • the token has not expired or been consumed,
    • confirm=true is passed,
    • ODOO_MCP_ENABLE_WRITES=1 is set.

Odoo access rules, record rules, and server-side constraints still decide the final result.

Batch creates go through the same gates: pass values_list (one dict per record, max 100) to preview_write/validate_write โ€” execution maps to a single atomic Odoo create(vals_list) call. Per-record differing write values are deliberately unsupported (they would need one non-atomic RPC per record). Optional extras: ODOO_MCP_ELICIT_WRITES=1 adds a native human-confirmation form, ODOO_MCP_AUDIT_LOG records every write-path event.

Large binary fields (a resume attached to ir.attachment.datas, a product image, ...) don't have to be inlined as base64 in the tool call โ€” pass <field>_from_path instead (e.g. datas_from_path: "/local/path/cv.pdf") to validate_write. The server reads the file itself; the approval only ever carries a sha256:<hex>:<size> fingerprint for that field, never the real content, so nothing large has to round-trip through the calling agent's context. Requires ODOO_MCP_ATTACHMENT_UPLOAD_ROOTS (fails closed otherwise) and respects ODOO_MCP_MAX_ATTACHMENT_UPLOAD_BYTES. No new tool โ€” this rides the same preview_write โ†’ validate_write โ†’ execute_approved_write gate as every other write.

Reviewed side-effect methods such as sale.order.action_confirm can be enabled one by one:

export ODOO_MCP_ALLOWED_SIDE_EFFECT_METHODS="sale.order.action_confirm,res.partner.message_post"

ODOO_MCP_ALLOW_UNKNOWN_METHODS=1 is still supported for trusted deployments, but health_check reports it as broad mode. Prefer exact allowlist entries when you only need a small number of reviewed methods.

Docker

Use the prebuilt GHCR image:

docker pull ghcr.io/erpipe-org/mcp-odoo:latest

Or build it locally:

docker build -t mcp/odoo:latest -f Dockerfile .

Run over stdio from an MCP client (replace mcp/odoo:latest with ghcr.io/erpipe-org/mcp-odoo:latest to use the prebuilt image):

{
  "mcpServers": {
    "odoo": {
      "command": "docker",
      "args": [
        "run",
        "-i",
        "--rm",
        "-e", "ODOO_URL",
        "-e", "ODOO_DB",
        "-e", "ODOO_USERNAME",
        "-e", "ODOO_PASSWORD",
        "-e", "ODOO_TRANSPORT",
        "-e", "ODOO_API_KEY",
        "mcp/odoo:latest"
      ]
    }
  }
}

Run Streamable HTTP locally:

docker run --rm \
  -p 127.0.0.1:8000:8000 \
  -e ODOO_URL \
  -e ODOO_DB \
  -e ODOO_USERNAME \
  -e ODOO_PASSWORD \
  -e ODOO_TRANSPORT \
  -e ODOO_API_KEY \
  mcp/odoo:latest \
  --transport streamable-http \
  --host 0.0.0.0 \
  --port 8000 \
  --allow-remote-http

Test

Run the normal quality gates:

uv run python -m ruff check .
uv run python -m mypy src
uv run python -m pytest

Run real Odoo smoke tests:

uv run --python 3.12 --with-editable . scripts/odoo_compose_smoke.py \
  --versions 16.0 17.0 18.0 19.0 \
  --timeout 360 \
  --inspector-smoke

The smoke harness boots disposable Docker Compose stacks, validates direct Odoo access, validates MCP stdio, and for Odoo 19 also validates JSON-2 and Streamable HTTP.

Run the multi-instance smoke (one stack, three databases, two accounts on one instance):

uv run --python 3.12 --with-editable . scripts/odoo_multi_instance_smoke.py

Compatibility

XML-RPC remains the default transport for broad compatibility. Odoo 19 supports External JSON-2 through ODOO_TRANSPORT=json2. XML-RPC and JSON-RPC are deprecated since Odoo 19 and scheduled for removal in Odoo 22 (fall 2028), so new integrations should plan for JSON-2.

Documentation

GuideCovers
docs/comparison.mdHow Odoo MCP compares to other Odoo MCP bridges
docs/architecture.mdSystem shape, transports, safety boundaries
docs/multi-instance.mdMulti-database config, routing, isolation model
docs/troubleshooting.mdFrom error text to root cause (ACL, record rules, routing)
docs/performance.mdCache/retry knobs, batching patterns, N+1 detection
docs/client-configs.mdClaude Desktop, Docker, Streamable HTTP setups
docs/testing.mdLocal gates and the Docker Compose smoke harness

Contributing

Issues, pull requests, and compatibility reports are welcome. Start with CONTRIBUTING.md, include your Odoo version, transport, client type, and the verification you ran.

Security

Do not publish logs that contain Odoo credentials, API keys, database names from private environments, or full Odoo debug traces. Report vulnerabilities through SECURITY.md.

License

MIT. See LICENSE.

Related MCP Servers

6figr-com/jobgpt-mcp-server

๐Ÿ“‡ โ˜๏ธ ๐Ÿ  ๐ŸŽ ๐ŸชŸ ๐Ÿง - MCP server for JobGPT โ€” search jobs, auto-apply, generate tailored resumes, track applications, and find recruiters from any MCP client. 34 tools for job search, applications, resumes, and outreach.

๐Ÿข Workplace & Productivity0 views
Agentled/mcp-server

๐Ÿ“‡ โ˜๏ธ - AI-native workflow orchestration with long-term memory, 100+ integrations, and unified credits. 32 MCP tools for building and running intelligent business workflows โ€” lead enrichment, content publishing, company research, media production, and more. Knowledge Graph that learns across executions.

๐Ÿข Workplace & Productivity0 views
alex13slem/openproject-codex-plugin

๐Ÿ“‡ โ˜๏ธ ๐Ÿ  ๐ŸŽ ๐ŸชŸ ๐Ÿง - Write-capable MCP server for OpenProject API v3 with Community Edition support. Search, create, update, assign, prioritize, and comment on work packages. Published as io.github.alex13slem/openproject in the official MCP Registry and installable with npx -y openproject-codex-plugin.

๐Ÿข Workplace & Productivity0 views
ap311036/ews-meeting-mcp

๐Ÿ ๐Ÿ  ๐ŸŽ ๐ŸชŸ ๐Ÿง - Safely schedule Outlook meetings on on-prem Exchange EWS. Resolves attendees, discovers rooms, suggests slots, and requires preview-confirmed create/update/cancel writes with local credential handling and audit-friendly lifecycle records.

๐Ÿข Workplace & Productivity0 views

Engagement

Views
0
Installs
0
Upvotes
0

Views and upvotes are unique per visitor network (hashed IP). Installs count copy actions.

Status

Health: Not checked yet

We have not completed a health check for this listing yet.

No check timestamp yet.

Unclaimed listing (imported or pending owner verification). Claim it โ†’
โ˜… Spotlight Slot

Feature Your MCP Server

Get maximum visibility for your server across our directory, search results, and detail pages.

Spotlight Your Server

Own this project?

This directory is pre-filled from public sources. Claim via GitHub README, site badge, or DNS TXT to get the verified badge and attach your website.

Claim this listing

Promote this listing

Optional paid placement. Free listings stay free forever.

Share & Embed

Add our SVG badge (dark/light directory styles) or embeddable widget to your site.