GoCardless MCP

Live

OAUTH 2.0

ACCOUNTING & FINANCE

AI

Connect to GoCardless MCP. Retrieve and list customers, mandates, payments, payouts, refunds, and subscriptions, and explore integration options from your...

  • Acts as the user: Every tool call runs as the authorizing user. Access and audit trail stay intact.
  • Credentials stay vaulted: AES-256 encrypted, resolved at request time, never stored in LLM context.
  • Scoped before every call: Per-user permissions enforced automatically. 90-day audit trail included.
GoCardless MCP
agent · Acme Q3
Run
Get Customer in GoCardless MCP
Message Claude...

GoCardless MCP tools for AI agents

CALL ANY TOOL
12 tools covering get.
gocardlessmcp_list_events
List events
List audit log events for state changes across all resources, optionally filtered by resource type, action, or date range.
Parameters
Name
Type
Required
Description
action
string
Optional
Filter by action (e.g. created, confirmed, failed, paid_out, cancelled)
after
string
Optional
Cursor for next page
created_at_gte
string
Optional
Filter: created at or after this ISO 8601 datetime
created_at_lte
string
Optional
Filter: created at or before this ISO 8601 datetime
limit
number
Optional
Number of results per page (default 50, max 500)
mandate
string
Optional
Filter by mandate ID
payment
string
Optional
Filter by payment ID
payout
string
Optional
Filter by payout ID
refund
string
Optional
Filter by refund ID
resource_type
string
Optional
Filter by resource type: payments, mandates, payouts, refunds, subscriptions, instalment_schedules
subscription
string
Optional
Filter by subscription ID
gocardlessmcp_get_payout
Get payout
gocardlessmcp_list_payouts
List payouts
gocardlessmcp_get_refund
Get refund
gocardlessmcp_list_refunds
List refunds
gocardlessmcp_get_mandate
Get mandate
gocardlessmcp_list_mandates
List mandates
gocardlessmcp_get_payment
Get payment
gocardlessmcp_list_payments
List payments
gocardlessmcp_get_customer
Get customer
gocardlessmcp_list_customers
List customers
gocardlessmcp_get_environment
Get environment
gocardlessmcp_list_subscriptions
List subscriptions
gocardlessmcp_get_subscription
Get subscription
gocardlessmcp_create_refund
Create refund
gocardlessmcp_submit_feedback
Submit feedback
gocardlessmcp_create_payment
Create payment
gocardlessmcp_read_gocardless_resource
Read gocardless resource
gocardlessmcp_create_subscription
Create subscription
gocardlessmcp_integrate_with_gocardless
Integrate with gocardless
gocardlessmcp_create_payment_link
Create payment link
gocardlessmcp_cancel_mandate
Cancel mandate
gocardlessmcp_create_payment_template_link
Create payment template link
gocardlessmcp_cancel_payment
Cancel payment
Build your Agent
Same auth pattern across every framework.
Python · LlamaIndex
token = client.agent.get_token(user_id="user_id", connector="gocardlessmcp")
const token = await client.agent.getToken({ userId: "user_id", connector: "gocardlessmcp" });
const token = await client.agent.getToken({ userId: "user_id", connector: "gocardlessmcp" });
token = client.agent.get_token(user_id="user_id", connector="gocardlessmcp")
Try these prompts
Paste any prompt into your agent to get started.
Get started
SEE HOW AUTH WORKS
User authorises once. Every agent call after uses their token with scope enforcement.
1
Authorize
Your user connects
GoCardless MCP
once. We tie it to their identity and the meetings they approved — no shared bot account, no org-wide access
Who:
user ‘A’
when:
Once per user
access:
Limited to user
2
Store
Their
GoCardless MCP
token lives in a vault scoped to them. User A's meetings are never reachable by an agent acting for user B, even on the same connection
vault:
encrypted
scope:
per-user
tokens:
auto-refreshed
3
Resolve
When your agent calls a
GoCardless MCP
tool, we fetch the right token server-side. It never touches your agent, never appears in the LLM context, never shows up in your logs
speed:
~40ms
check:
before every call
seen by:
nobody
4
Audit
Every
GoCardless MCP
tool call is logged — who triggered it, which meeting was fetched, what came back. 90 days of history, tied to the user who authorized it
history:
90 days
export:
SIEM-ready
logged:
every call
Test other agents
See the same per-user auth pattern across other connectors.
GTM and RevOps Teams
Revenue forecast commentary
Pulls open pipeline from Salesforce and HubSpot, calculates coverage against quota, flags at-risk stages, posts commentary to Slack, and logs every snapshot to Google Sheets.
GTM and RevOps Teams
Deal room sync
Pulls opportunity context from Salesforce, captures key decisions from Slack, and syncs a running summary to the deal room doc in Google Drive, but only when the deal actually changed.
People Ops and HR teams
Offer letter routing agent
Drafts the offer in PandaDoc, blocks on the hiring manager's approval in Slack, then emails the candidate their e-signature link. Every call runs as the recruiter who triggered it, never a shared HR bot.
GTM and RevOps Teams
CRM AI agent
Reads the Granola transcript after every call, extracts next steps and updates the HubSpot record, drafts the follow-up in Gmail, and confirms in Slack, all on the rep's own delegated OAuth.
Test other agents
See the same per-user auth pattern across other connectors.
GTM
Revenue forecast agent
Score pipeline coverage against quota across Salesforce and HubSpot, post forecast commentary to Slack, log snapshots to Sheets.
GTM
Deal room sync agent
Pull opportunity context from Salesforce, capture decisions from Slack, and keep the Google Drive deal room doc current.
PEOPLE OPS
Offer letter routing agent
Draft the offer in PandaDoc, gate it on hiring manager approval in Slack, then email the candidate their signature link.
GTM
CRM AI agent
Turn each Granola call transcript into a HubSpot record update, a drafted Gmail follow-up, and a Slack recap.
Why Scalekit
Secure your agent's access. Connectors ship in minutes
01.
Shared tokens break per-user analytics
“Our agents act across Salesforce, Gong, Google Drive, and more, on behalf of every customer. Scalekit behind the scenes meant we can keep adding tools without ever rebuilding how credentials or tool calling work.”
Venu Madhav Kattagoni
Head of Engineering / Von
FAQs
Frequently Asked Questions

Does the agent access GoCardless as the user or as a shared key?
As the user. Each workspace member authorizes once and Scalekit resolves their credential at request time. Audit logs attribute every action to that user, not a shared service account.

Where is the GoCardless OAuth token stored?
In Scalekit's managed AES-256 token vault, namespaced per tenant. Refresh is automatic. Revocation is a single dashboard action. Tokens never appear in prompts, logs, or LLM context.

Can I limit what the agent is allowed to do in GoCardless?
Yes. Pass a tool name filter to listScopedTools so the AI agent only sees the subset you authorize. Pre-API-call scope checks block out-of-policy actions before the request reaches GoCardless.

What happens when a user revokes GoCardless access?
The connection is invalidated on the next tool call. Subsequent requests for that user fail closed with a clear error. Other users in the tenant remain unaffected. The event is logged for audit.

Can the agent move money in GoCardless?
No. The toolset is read-only: customers, mandates, payments, payouts, refunds, and subscriptions. Scalekit scope checks block anything outside that list before it reaches GoCardless.

Start in your coding agent
Up and running in one command
Install the Scalekit skill in your editor of choice. Connector, auth, tools, prompt, all wired up
Claude Code REPL
/plugin marketplace add scalekit-inc/claude-code-authstack
/plugin install agentkit@scalekit-auth-stack
Cursor Code REPL
# ~/.cursor/mcp.json
{
""mcpServers"": {
""gocardlessmcp"": {
""url"": ""https://mcp.scalekit.com/gocardlessmcp"",
""headers"": { ""Authorization"": ""Bearer $SCALEKIT_TOKEN"" }
}
}
}
Codex Code REPL
# ~/.codex/config.toml
[mcp_servers.gocardlessmcp]
url = ""https://mcp.scalekit.com/gocardlessmcp""
auth_env = ""SCALEKIT_TOKEN""
Copilot Code REPL
# .vscode/mcp.json
{
""servers"": {
""gocardlessmcp"": {
""url"": ""https://mcp.scalekit.com/gocardlessmcp"",
""type"": ""http""
}
}
}