Enables AI assistants to manage BuchhaltungsButler bookkeeping through all 48 API endpoints, with safety-categorized tools for read, write, and destructive operations.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
process.env. You'll be asked to provide them before it can run.BB_API_CLIENT— edit .env → set , BB_API_SECRET, BB_API_KEYBB_API_KEY— edit .env → set BB_API_CLIENT, BB_API_SECRET,BB_API_SECRET— edit .env → set BB_API_CLIENT, , BB_API_KEYBB_BASE_URL— _(from spec)_ Override the API base URLBB_RATE_LIMIT— 90 Client-side requests/minute capHOST— 0.0.0.0 HTTP bind addressMCP_AUTH_TOKEN— → set to a long random string if reachable beyond localhostMCP_HTTP_PATH— /mcp HTTP MCP routeMCP_TRANSPORT— stdio stdio or http (the Docker image defaults to http)PORT— 3000 HTTP listen port[](https://m8ven.ai/mcp/ohneben-buchhaltungsbutler-mcp-1da344)