37
/ 100
1 month ago
glama

Afro.tools MCP Server

Provides AI agents with structured, verified specs for African APIs like Wave and Paycard, enabling automatic integration code generation without manual documentation parsing.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Secret credentials may flow to a network call
57 flows detected: BICTORYS_PUBLIC_KEY, BICTORYS_SECRET_KEY, KADEVPAY_SECRET_KEY. We can’t prove the destination matches the brand the credential belongs to.
🔐
You'll be asked for 21 credentials: BICTORYS_PUBLIC_KEY, BICTORYS_SECRET_KEY, BICTORYS_WEBHOOK_SECRET, DJOMY_CLIENT_SECRET, FLUTTERWAVE_WEBHOOK_SECRET, KADEVPAY_PUBLIC_KEY, KADEVPAY_SECRET_KEY, KADEVPAY_WEBHOOK_SECRET, LENGOPAY_LICENSE_KEY, NIMBASMS_SECRET_TOKEN, NOTCHPAY_GRANT_TOKEN, NOTCHPAY_PRIVATE_KEY, NOTCHPAY_PUBLIC_KEY, NOTCHPAY_WEBHOOK_SECRET, ORANGE_MONEY_BASIC_TOKEN, ORANGE_MONEY_MERCHANT_KEY, PAYCARD_API_KEY, PAYGATE_AUTH_TOKEN, QOSIC_PASSWORD, WAVE_API_KEY, WAVE_WEBHOOK_SECRET
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
🔐 secretBICTORYS_PUBLIC_KEY
🔐 secretBICTORYS_SECRET_KEY
🔐 secretBICTORYS_WEBHOOK_SECRET
configDJOMY_CLIENT_ID
🔐 secretDJOMY_CLIENT_SECRET
configFLUTTERWAVE_CLIENT_CREDENTIALS
🔐 secretFLUTTERWAVE_WEBHOOK_SECRET
🔐 secretKADEVPAY_PUBLIC_KEY
🔐 secretKADEVPAY_SECRET_KEY
🔐 secretKADEVPAY_WEBHOOK_SECRET
🔐 secretLENGOPAY_LICENSE_KEY
configLENGOPAY_WEBSITE_ID
🔐 secretNIMBASMS_SECRET_TOKEN
configNIMBASMS_SERVICE_ID
🔐 secretNOTCHPAY_GRANT_TOKEN
🔐 secretNOTCHPAY_PRIVATE_KEY
🔐 secretNOTCHPAY_PUBLIC_KEY
🔐 secretNOTCHPAY_WEBHOOK_SECRET
🔐 secretORANGE_MONEY_BASIC_TOKEN
🔐 secretORANGE_MONEY_MERCHANT_KEY
🔐 secretPAYCARD_API_KEY
🔐 secretPAYGATE_AUTH_TOKEN
configQOSIC_CLIENT_ID_MOOV
configQOSIC_CLIENT_ID_TOGOCEL
🔐 secretQOSIC_PASSWORD
configQOSIC_USERNAME
configREADME_PATH
🔐 secretWAVE_API_KEY
🔐 secretWAVE_WEBHOOK_SECRET
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 2 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/afrotools-afrotools-1089v8)](https://m8ven.ai/mcp/afrotools-afrotools-1089v8)
commit: 34772ae0118d2772c3042d94cab5110cafa04963
code hash: a278186d86ba52a3425719a6876c048b38a0c4c7629e40b76426b69cd8eeeb1e
verified: 6/15/2026, 1:55:10 PM
view raw JSON →