magento-mcp
MCP server for Magento 2, exposing store data and operations via REST Admin API, GraphQL, and read-only SQL, with safety confirmations for destructive actions.
README
magento-mcp
MCP server exposing a Magento 2 store to AI assistants via:
- REST Admin API — catalog, orders, customers, CMS, inventory, promotions, store config (write tools require
confirm: true), authenticated via OAuth 1.0a against a Magento Integration - GraphQL — storefront-shaped catalog search, product details, category tree
- Direct read-only SQL — a
run_readonly_sqltool plus prebuilt insight queries against the live Magento database, optionally reached over an SSH tunnel
Tools
| Tool | Domain | Notes |
|---|---|---|
search_products, get_product, list_categories |
Catalog | read-only |
update_product, delete_product |
Catalog | destructive, confirm: true required |
search_orders, get_order |
Orders | read-only |
cancel_order, refund_order |
Orders | destructive, confirm: true required |
search_customers, get_customer |
Customers | read-only |
update_customer, delete_customer |
Customers | destructive, confirm: true required |
list_cms_pages, get_cms_page, list_cms_blocks |
CMS | read-only |
get_stock_item, list_source_items |
Inventory | read-only |
update_stock_item |
Inventory | destructive, confirm: true required |
list_cart_price_rules, get_coupon_by_code |
Promotions | read-only |
get_store_config, list_store_views |
Store config | read-only |
set_config_value |
Store config | destructive, confirm: true required |
search_catalog, get_product_details, get_category_tree |
GraphQL catalog | read-only, storefront-shaped queries |
run_readonly_sql |
Database | single SELECT only — see Safety notes |
top_selling_products, low_stock_items, abandoned_carts |
Database | prebuilt read-only insight queries |
Also exposes one MCP resource: magento://store/config (store configuration — currencies, locales, store views, base URLs).
Prerequisites
- Node.js >= 18
- A Magento 2 store (Open Source or Adobe Commerce) with REST/GraphQL enabled
- A Magento Integration for OAuth 1.0a credentials (see Quick Start below) — admin-user password auth is not supported
- MySQL/MariaDB network access to the Magento database, for the read-only SQL tools (optional — the REST/GraphQL tools work without it)
Quick Start (using the published package)
No clone or build needed — this installs and runs on demand via npx.
-
In Magento Admin: System → Extensions → Integrations → Add New Integration. Grant it only the API resources this server actually needs, then Activate it to get four OAuth 1.0a values (shown once): consumer key/secret, access token/secret. This also sidesteps the 2FA restriction that blocks admin-user password auth.
-
If using the DB tools, create a
SELECT-only MySQL user:CREATE USER 'mcp_readonly'@'%' IDENTIFIED BY 'change_me'; GRANT SELECT ON magento_db.* TO 'mcp_readonly'@'%'; FLUSH PRIVILEGES;Do not grant this user INSERT/UPDATE/DELETE/DDL under any circumstance — the application-level query guard (
src/db/guard.ts) is defense in depth, not the safety boundary. -
Register with Claude Desktop/Code, e.g. in
claude_desktop_config.json:{ "mcpServers": { "magento": { "command": "npx", "args": ["-y", "@fahadhussain777/magento-mcp"], "env": { "MAGENTO_BASE_URL": "...", "MAGENTO_CONSUMER_KEY": "...", "MAGENTO_CONSUMER_SECRET": "...", "MAGENTO_ACCESS_TOKEN": "...", "MAGENTO_ACCESS_TOKEN_SECRET": "...", "MAGENTO_DB_HOST": "...", "MAGENTO_DB_NAME": "...", "MAGENTO_DB_READONLY_USER": "...", "MAGENTO_DB_READONLY_PASSWORD": "...", "MAGENTO_DB_SSH_HOST": "...", "MAGENTO_DB_SSH_USER": "...", "MAGENTO_DB_SSH_PRIVATE_KEY_PATH": "..." } } } }The
MAGENTO_DB_SSH_*fields are only needed when tunneling the DB connection over SSH — omit them entirely (not just leave blank) to connect directly. See "Reaching a remote/firewalled DB" below.If REST calls fail with
{"message":"Signature method %1 is not supported","parameters":["HMAC-SHA1"]}, add"MAGENTO_OAUTH_SIGNATURE_METHOD": "HMAC-SHA256"to theenvblock — Magento instances vary on which OAuth1 signature method they accept (defaults toHMAC-SHA1if unset). Check Magento Admin under Stores → Configuration → Services → OAuth if unsure which one a given instance requires.
Development (working on this repo)
npm install- Copy
.env.exampleto.envand fill in the same OAuth/DB values as Quick Start above. npm run buildnpm run test:connections— sanity-checks REST auth, GraphQL, and the DB connection against the values in.env. See Local dev with self-signed certs below if this fails on TLS.- In
claude_desktop_config.json, use"command": "node", "args": ["/path/to/magentoMCP/dist/index.js"]instead of thenpxform, so you're running your local changes instead of the published version.
Publishing
Published at npmjs.com/package/@fahadhussain777/magento-mcp. To publish a new version:
- Bump
versioninpackage.json(semver) — npm rejects re-publishing an existing version. - Make sure you're logged in as the intended npm account:
npm whoami(ornpm login). npm publish—prepublishOnly(typecheck + test + build) runs automatically first and aborts the publish if any of them fail. The package is scoped withpublishConfig.access: "public"already set, so this publishes publicly on the free tier without needing--access publicon the command line.
To test a packed tarball locally without touching the registry: npm pack, then npm install /path/to/the/tarball.tgz in a scratch project.
Development scripts
npm run dev— run directly from TS source viatsxnpm run typechecknpm test— unit tests (src/db/guard.test.tscovers the SQL safety guardrails)npm run test:connections— live smoke test of REST/GraphQL/DB reachability against.env(not a substitute fornpm test)npx @modelcontextprotocol/inspector node dist/index.js— interactively list/invoke tools
Local dev with self-signed certs (mkcert, Warden, etc.)
Node's fetch uses its own bundled CA list, separate from your system's trust store — so even if curl and your browser trust a locally-issued mkcert certificate, Node will reject it with UNABLE_TO_VERIFY_LEAF_SIGNATURE. Point Node at the same root CA:
NODE_EXTRA_CA_CERTS=$(mkcert -CAROOT)/rootCA.pem npm run dev
or set NODE_EXTRA_CA_CERTS in the environment your MCP client launches the server with (e.g. the env block in claude_desktop_config.json). Also double-check MAGENTO_BASE_URL actually matches a hostname the certificate covers (ERR_TLS_CERT_ALTNAME_INVALID means it doesn't) — local Magento setups often have several *.local/*.example.com hostnames configured and only one has a matching cert.
Docker-based setups (e.g. Warden, markoshust/magento-docker): the container itself may generate its own mkcert CA independently of your host's mkcert -CAROOT — if so, the CA cert lives inside the container, not on the host, and gets regenerated (new CA, still UNABLE_TO_VERIFY_LEAF_SIGNATURE even with a previously-working NODE_EXTRA_CA_CERTS path) whenever the container is recreated. Pull the current one out with:
docker exec <nginx-container> find / -iname '*mkcert*.crt' 2>/dev/null
docker cp <nginx-container>:<path-from-above> ./magento-dev-ca.pem
then point NODE_EXTRA_CA_CERTS at that file. Also worth checking after any container restart: docker inspect <db-container> --format '{{range .NetworkSettings.Networks}}{{.IPAddress}}{{end}}' — container IPs on the Docker bridge network can change across restarts, so a previously-working MAGENTO_DB_HOST may go stale (ECONNREFUSED) even though nothing in .env looks wrong.
Reaching a remote/firewalled DB (SSH tunnel)
MAGENTO_DB_HOST/PORT don't need to be on the same machine as this server — mysql2 just connects over TCP. But never expose MySQL's port to the open internet to make that work. If the DB isn't already reachable over a private network/VPN, set MAGENTO_DB_SSH_* in .env (see .env.example for the full field list) to tunnel the DB connection through SSH instead — this server opens the SSH connection itself (via the ssh2 package, not a shelled-out ssh process) and forwards a local port to MAGENTO_DB_HOST/PORT as resolved from the SSH host's side. A private key (MAGENTO_DB_SSH_PRIVATE_KEY_PATH) is preferred over a password. Leave MAGENTO_DB_SSH_HOST unset to connect directly, as before — the tunnel is opt-in and only engages when that variable is present.
Safety notes
- Every destructive REST tool (
update_product,delete_product,cancel_order,refund_order,update_customer,delete_customer,update_stock_item,set_config_value) previews the action and no-ops unless called withconfirm: true. run_readonly_sqlonly accepts a singleSELECTstatement, rejects DML/DDL keywords and sensitive tables (admin_user, etc.), and injects/caps aLIMIT— seesrc/db/guard.ts. This is on top of, not instead of, the DB user's SELECT-only grants.- Query timeout and row cap are configurable via
MAGENTO_DB_QUERY_TIMEOUT_MS/MAGENTO_DB_MAX_ROWSin.env.
Issues & contributing
Bugs and feature requests: github.com/FahadEjaz/magento-mcp/issues. MIT licensed — see LICENSE.
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。