Skip to main content

What is MCP?

MCP (Model Context Protocol) is an open protocol for connecting AI agents to external tools. Conto’s MCP server gives Claude and other MCP clients tools to check balances, request payments, read transactions, and query analytics. Conto checks the agent’s policies before any payment moves. The same @conto_finance/mcp-server package works in Claude Desktop, Claude Code, and other MCP clients. When a user asks for a payment, the client calls a Conto tool. Conto approves the request, denies it, or sends it to a person for approval. Conto sends an approved payment from a managed wallet, and the client reports the receipt. Sandbox payments are simulated. External wallets use approve, your own transfer, then confirm. See wallet custody. See MCP tools for every tool.

MCP vs dashboard assistant vs Conto Pay

Conto has three natural-language surfaces:

Prerequisites

  • An MCP client, such as Claude Desktop or Claude Code
  • A Conto agent SDK key (conto_agent_...). In the dashboard, open Agents, select the agent, open the SDK Integration tab, and choose Generate SDK Key.
  • Node.js 20.19+, with Node.js 22 requiring 22.12+ and Node.js 23 requiring 23.2+, because the server runs through npx
The MCP server always uses CONTO_API_KEY=conto_agent_.... Do not use an organization API key (conto_...) or CONTO_ORG_API_KEY here.
Already ran the CLI wizard? Use npx @conto_finance/create-conto-agent mcp as the server command in the configs below and drop the env block. It reads the SDK key and base URL the wizard saved.

Add the server

In each config below, replace conto_agent_xxx... with your SDK key.
Add Conto as an MCP server in one command:
Environment flags must come before the --. Everything after -- is the command Claude Code runs for the server, so flags placed there would be passed to npx instead.

Verify

Start a new Claude Code session:
Claude calls the get_wallets tool.

Manage the server

Configuration reference

Leave the CONTO_BROWSER_* settings unset unless you run a guarded browser runtime. See guarded browser checkout for the tools they add.
CONTO_BROWSER_RUNTIME_URL and CONTO_BROWSER_RUNTIME_TOKEN enable guarded_browser_checkout. Set both or neither. With only one set, the server exits at startup. The token must contain at least 32 characters and be a dedicated service credential. Conto API keys are rejected. The observation and sessions URLs must be on the same origin as the runtime URL and distinct from it. The browser runtime must own the page and must be the agent’s only route to payment-sensitive click or submit actions. Use createGuardedPlaywrightCheckoutHttpHandler from @conto_finance/sdk/playwright to mount the authenticated endpoint the MCP server calls around your guarded Playwright runtime.

Next steps

MCP tools

Full tool list, parameters, and responses

Set up with the CLI

Create an agent, wallet, and SDK key in one command