74
/ 100
1 month ago
pulsemcp

WooCommerce

Comprehensive WooCommerce store management with 101 tools for products, orders, customers, coupons, shipping, and more.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
🚨
Known vulnerabilities in dependencies: 1 critical
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
🔐
You'll be asked for 1 credential: MCP_AUTH_TOKEN
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// known CVEs in dependencies1 critical

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

criticalvitest@4.0.18GHSA-5xrq-8626-4rwp

When Vitest UI server is listening, arbitrary file can be read and executed

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
configAUTH0_AUDIENCEAuth0 API identifier for OAuth 2.1
configAUTH0_DOMAINAuth0 tenant URL for OAuth 2.1 (Claude.ai Connectors)
🔐 secretMCP_AUTH_TOKENNo Bearer token for HTTP auth (required when MCP_TRANSPORT=http)
configMCP_PORTPORT No Platform-provided port (Hostinger, Railway); overrides
configMCP_SERVER_URLPublic server URL for OAuth 2.1 discovery
configMCP_TRANSPORTNo Set to http for remote HTTP access (default: stdio)
configPORTNo Platform-provided port (Hostinger, Railway); overrides MCP_PORT
configWOOCOMMERCE_MCP_READ_ONLYUse read-only mode when exploring. Set =true to block all write operations — only list, get, and report tools will work.
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 4 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/amitgurbani-mcp-server-woocommerce-14p3nw)](https://m8ven.ai/mcp/amitgurbani-mcp-server-woocommerce-14p3nw)
commit: e68999350e9bb916a64af9ccae06168e62418820
code hash: 9b83e5cf06db33340d8a08e3c9445f6a8eea977d8a5118fe05ebbe416bb6c01d
verified: 6/9/2026, 11:12:12 AM
view raw JSON →