PayPal MCP Server
Official PayPal MCP server that lets AI agents handle invoices, payments, orders, and other business operations in natural language.
- Skill Road
- PayPal MCP Server
Categories
Description
The PayPal MCP Server implements the Model Context Protocol and gives AI agents direct access to core PayPal business functions, without anyone having to switch manually between a chat window and the PayPal dashboard. Per PayPal, the server is meant to lay the groundwork for a "more intelligent and responsive digital commerce ecosystem" and targets both developers building their own agentic workflows and merchants who want to connect their preferred AI tools directly to their own PayPal account. Technically, the server builds on the open-source PayPal Agent Toolkit, which supports MCP alongside OpenAI's Agent SDK, LangChain, and Vercel's AI SDK.
Tool catalog
The server covers seven functional areas: creating, listing, retrieving, sending, and reminding on invoices, plus cancelling, deleting, generating QR codes for, and setting up recurring series of them; creating and retrieving orders, and capturing payments and processing refunds; listing disputes, viewing their details, and accepting claims; creating, retrieving, and updating shipment tracking records; managing a product catalog (creating, listing, and viewing product details); managing subscription plans and subscriptions; and reporting tools for listing transactions and business insights.
Setup: local or as a hosted remote server
PayPal offers two access paths. Locally, the server can be started via npx -y @paypal/mcp --tools=all, with a PayPal access token and the environment (SANDBOX or PRODUCTION) passed as environment variables. Alternatively, PayPal operates a hosted remote server at mcp.sandbox.paypal.com (testing) and mcp.paypal.com (production), reachable via Server-Sent Events or Streamable HTTP through the mcp-remote helper tool. Remote access uses OAuth: you sign in with your own PayPal account and grant the client the requested permissions.
Keeping sandbox and production separate
For initial testing, PayPal explicitly recommends the sandbox environment with a PayPal developer account, since no real payments are processed there. Moving to production requires a regular PayPal business account and real credentials from the PayPal Developer Dashboard.
Security and write access
Because the server exposes both read and write tools, a misdirected or manipulated agent could trigger real business actions, such as sending invoices or issuing refunds. Before using it in production, check exactly which permissions the access token actually needs, and where possible require human confirmation for write actions in the MCP client being used.
Typical use cases
The server is particularly useful for small and mid-sized merchants who want to create invoices and payment reminders by voice or chat instead of through the dashboard, for example "Create a PayPal invoice for painting a house with a cost of $450, add 8% tax, and apply a 5% discount." It's equally suited to accounting and support tasks where an agent needs to look up payment status or disputes, and to automating recurring reporting on transactions and subscriptions.
Who the server is a good fit for
Developers building their own agent or checkout experiences with PayPal benefit from the local npm package and its source code. Merchants without their own development resources can instead use the hosted remote server directly with their existing PayPal account, without having to operate a server themselves.
Requirements
For local use, Node.js version 18 or later plus a PayPal access token from the PayPal Developer Dashboard. For the hosted remote server, an MCP client with OAuth support and a PayPal account is enough; production payments require a regular PayPal business account instead of a sandbox developer account.
Installation instructions
Locally in Claude Desktop or another client with an mcpServers configuration:
{
"mcpServers": {
"paypal": {
"command": "npx",
"args": ["-y", "@paypal/mcp", "--tools=all"],
"env": {
"PAYPAL_ACCESS_TOKEN": "YOUR_PAYPAL_ACCESS_TOKEN",
"PAYPAL_ENVIRONMENT": "SANDBOX"
}
}
}
}
Hosted remote server via Streamable HTTP (analogous via Server-Sent Events under /sse instead of /http):
{
"mcpServers": {
"paypal-mcp-server": {
"command": "npx",
"args": ["mcp-remote", "https://mcp.sandbox.paypal.com/http"]
}
}
}
On first use, the PayPal login page opens; after granting permission, the client needs to be restarted. Per the provider, clearing the local auth cache via rm -rf ~/.mcp-auth helps with connection issues.
npx -y @paypal/mcp --tools=all
Authentication
Locally via a PayPal access token, passed as the PAYPAL_ACCESS_TOKEN environment variable or as a command-line argument. The hosted remote server instead uses OAuth: on first connection, you sign in with your own PayPal account and grant the client access.
Required access permissions
Access scope depends on the access token used or the OAuth authorization of the signed-in PayPal account. --tools=all exposes every tool; individual tool groups (for example, only invoices) can also be restricted at startup.
Transmitted or stored data
Requests and tool parameters go to the PayPal API and are returned to the MCP client and its language model to answer the request. Responses can include payment, customer, invoice, and revenue data from the connected PayPal account. The local server runs as its own process on your own machine; the remote server runs on infrastructure operated by PayPal at mcp.paypal.com or mcp.sandbox.paypal.com.
Security risks
Because the server exposes both read and write tools (sending invoices, issuing refunds, handling disputes), a misdirected or manipulated agent could trigger real business actions. Before production use, the access token should be restricted to the permissions actually needed, and, where supported by the client, human confirmation should be enabled for write actions. For initial testing, use the sandbox environment exclusively.
License and costs
- License
- Apache-2.0
- Cost
- free
The MCP server itself does not incur separate costs. A PayPal account is required; PayPal's usual transaction-based fees for payment processing and other products apply independently of the MCP server.
Alternatives
Not recorded yet.
At a glance
- Provider
- PayPal
- Status
- Official server
- Deployment
- Local and remote
- Current version
- 1.8.1
- GitHub stars
- 193
- Last reviewed
- 23.09.2026
Repository and documentation
Categories
Supported clients
Related guides
Guides and background related to this entry.
Set up the Asana plugin for Claude Code
Create your own Asana OAuth app, install the Claude Code plugin, and connect to Asana's V2 MCP server via /asana-setup.
30.09.2026
Setting up the Zernio MCP Server
Connect the Zernio MCP Server via OAuth or an API key, link social accounts, and deliberately safeguard write access to posts, inboxes, and ad campaigns.
28.09.2026
Setting up the Intercom MCP Server
Connect the Intercom MCP Server via OAuth or a bearer token, choose the correct regional endpoint, and deliberately safeguard write access to articles and notes.
23.09.2026
Setting up the PayPal MCP Server
Connect the PayPal MCP Server locally via npx or as a hosted remote server via OAuth, and deliberately safeguard write access.
23.09.2026