{"_id":"@codespar/mcp-c6","_rev":"4-20a4a6856dc3729e988bf147b98dde65","name":"@codespar/mcp-c6","dist-tags":{"latest":"0.1.0-alpha.3","alpha":"0.1.0-alpha.2"},"versions":{"0.1.0-alpha.1":{"name":"@codespar/mcp-c6","version":"0.1.0-alpha.1","keywords":["mcp","c6","c6bank","banking","pix","boleto","dict","brazil"],"license":"MIT","_id":"@codespar/mcp-c6@0.1.0-alpha.1","maintainers":[{"name":"codespar-npm","email":"contact@codespar.dev"}],"bin":{"mcp-c6":"dist/index.js"},"dist":{"shasum":"4604cc6988d19adc2cfb897b90fd9b6b8b99dabd","tarball":"https://registry.npmjs.org/@codespar/mcp-c6/-/mcp-c6-0.1.0-alpha.1.tgz","fileCount":6,"integrity":"sha512-gaA/qUosCNsRu6LVn/NFcL55N0tbRlYH3YHm/ANIQ1i1VFvCsH9Hs9m1P+GHitVA2dLcrTWpiWkszIxwtDOOQA==","signatures":[{"sig":"MEYCIQCxCQ9RR9vkuV9c3S4qOVLtA0cSZWEce88P/nOvtak0rwIhAJ+9W7ht4xJR4u+dQOODo1xNxRmW7/Zvp57C34US6xUn","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":57462},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","gitHead":"abceab06a74a933da6920cfb3b1735adcf271566","mcpName":"io.github.codespar/mcp-c6","scripts":{"build":"tsc","start":"node dist/index.js"},"_npmUser":{"name":"codespar-npm","email":"contact@codespar.dev"},"_npmVersion":"11.8.0","description":"MCP server for C6 Bank — top Brazilian digital bank backed by JPMorgan. Pix (cob/cobv), DICT keys, Boleto, account balance, and statement via C6's Developer Portal APIs (OAuth2 + mTLS).","directories":{},"_nodeVersion":"25.5.0","dependencies":{"@modelcontextprotocol/sdk":"^1.0.0"},"_hasShrinkwrap":false,"devDependencies":{"typescript":"^5.8.0","@types/node":"^25.5.0"},"_npmOperationalInternal":{"tmp":"tmp/mcp-c6_0.1.0-alpha.1_1777119842333_0.22159635360779895","host":"s3://npm-registry-packages-npm-production"}},"0.1.0-alpha.2":{"name":"@codespar/mcp-c6","version":"0.1.0-alpha.2","keywords":["mcp","c6","c6bank","banking","pix","boleto","dict","brazil"],"license":"MIT","_id":"@codespar/mcp-c6@0.1.0-alpha.2","maintainers":[{"name":"codespar-npm","email":"contact@codespar.dev"}],"bin":{"mcp-c6":"dist/index.js"},"dist":{"shasum":"3fdd008ec6417197f73c607803ba3aa4959d0076","tarball":"https://registry.npmjs.org/@codespar/mcp-c6/-/mcp-c6-0.1.0-alpha.2.tgz","fileCount":6,"integrity":"sha512-k7tpFHnZ7/6aN5ODLe7BguD4ne11lyPvdvamohO7JSqZhKB6DcClwXynyb271u233xgAYWGtb9cLOO5NI3DieA==","signatures":[{"sig":"MEUCIQDhNmk+RBFKutM4hAe0At6zzf9aDRrV3cZKJLZI86mKnwIgOdNCDax6iZzUbISXhNuIHEiS4QSYCT2wAKMI2a9rb+g=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":57903},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","gitHead":"b8f7e5b70db9046319ed757225e0eae8f2dc4451","mcpName":"io.github.codespar/mcp-c6","scripts":{"build":"tsc","start":"node dist/index.js"},"_npmUser":{"name":"codespar-npm","email":"contact@codespar.dev"},"_npmVersion":"11.8.0","description":"MCP server for C6 Bank — top Brazilian digital bank backed by JPMorgan. Pix (cob/cobv), DICT keys, Boleto, account balance, and statement via C6's Developer Portal APIs (OAuth2 + mTLS).","directories":{},"_nodeVersion":"25.5.0","dependencies":{"@modelcontextprotocol/sdk":"^1.0.0"},"_hasShrinkwrap":false,"readmeFilename":"README.md","devDependencies":{"typescript":"^5.8.0","@types/node":"^25.5.0"},"_npmOperationalInternal":{"tmp":"tmp/mcp-c6_0.1.0-alpha.2_1777122911906_0.0948454669581067","host":"s3://npm-registry-packages-npm-production"}},"0.1.0-alpha.3":{"name":"@codespar/mcp-c6","version":"0.1.0-alpha.3","description":"MCP server for C6 Bank — top Brazilian digital bank backed by JPMorgan. Pix (cob/cobv), DICT keys, Boleto, account balance, and statement via C6's Developer Portal APIs (OAuth2 + mTLS).","type":"module","main":"./dist/index.js","bin":{"mcp-c6":"dist/index.js"},"scripts":{"build":"tsc","start":"node dist/index.js"},"dependencies":{"@modelcontextprotocol/sdk":"^1.0.0"},"devDependencies":{"@types/node":"^25.5.0","typescript":"^5.8.0"},"license":"MIT","keywords":["mcp","c6","c6bank","banking","pix","boleto","dict","brazil"],"mcpName":"io.github.codespar/mcp-c6","_id":"@codespar/mcp-c6@0.1.0-alpha.3","gitHead":"8e115a5cb8aed75e812af698b03aa996ccd8d7c1","types":"./dist/index.d.ts","_nodeVersion":"22.22.3","_npmVersion":"10.9.8","dist":{"integrity":"sha512-i+IhEaGU8Dmv6TVtZchVXerI7nn0DI4BcK/QXAm6ujRgZ1jEZMZA9hCDb7gxWlhMyKnXDs6wzOHVU4J7lrcyKg==","shasum":"8102bd8a1cb96a387528a100c1381e57942e8f43","tarball":"https://registry.npmjs.org/@codespar/mcp-c6/-/mcp-c6-0.1.0-alpha.3.tgz","fileCount":6,"unpackedSize":59329,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEYCIQDh8HlS8ONeevLYlB1OYGvPd/YP+W6BTFwgX2EQ5plQ4wIhALNrLtpnYbYvVaeAuKrMDg3WiWfL0h+2z5qJPdXDPdAn"}]},"_npmUser":{"name":"codespar-npm","email":"fabiano@codespar.dev"},"directories":{},"maintainers":[{"name":"codespar-npm","email":"fabiano@codespar.dev"},{"name":"dangazineu","email":"daniel.gazineu@gmail.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/mcp-c6_0.1.0-alpha.3_1782158051245_0.7621987869249172"},"_hasShrinkwrap":false}},"time":{"created":"2026-04-25T12:24:02.230Z","modified":"2026-06-22T19:54:11.554Z","0.1.0-alpha.1":"2026-04-25T12:24:02.469Z","0.1.0-alpha.2":"2026-04-25T13:15:12.050Z","0.1.0-alpha.3":"2026-06-22T19:54:11.409Z"},"license":"MIT","keywords":["mcp","c6","c6bank","banking","pix","boleto","dict","brazil"],"description":"MCP server for C6 Bank — top Brazilian digital bank backed by JPMorgan. Pix (cob/cobv), DICT keys, Boleto, account balance, and statement via C6's Developer Portal APIs (OAuth2 + mTLS).","maintainers":[{"name":"codespar-npm","email":"fabiano@codespar.dev"},{"name":"dangazineu","email":"daniel.gazineu@gmail.com"}],"readme":"# @codespar/mcp-c6\n\nMCP server for [C6 Bank](https://developers.c6bank.com.br) — a top Brazilian digital bank, JPMorgan-backed.\n\nC6 ranks among the largest Brazilian digital banks by retail account base and has expanded aggressively into SMB and corporate banking. Merchants integrate directly for Pix, boleto, and account-data flows.\n\n## Status: alpha (`0.1.0-alpha.1`)\n\nC6's Developer Portal is **contract-gated** — full OpenAPI specs for Pix, Cobrança, and account APIs are only visible to onboarded merchants. The endpoint paths in this server are best-guesses based on (a) the BACEN Pix v2 standard, (b) C6's public marketing pages, and (c) conventions shared across Itaú / Santander / Bradesco. Every unverified path is flagged `TODO(verify)` in the source.\n\nPin to exact versions during `0.1.x`; paths will be corrected to match the portal spec once an onboarded merchant can validate.\n\n## Tools (14)\n\n| Tool | Purpose |\n|---|---|\n| `get_oauth_token` | Mint or return a cached OAuth2 client_credentials bearer token for the C6 Developer Portal. |\n| `create_pix_cob` | Create a Pix immediate charge (cob) with QR code. |\n| `get_pix_cob` | Retrieve a Pix immediate charge (cob) by its txid. |\n| `list_pix_cob` | List Pix immediate charges (cob) registered by the merchant within a date range. |\n| `create_pix_cobv` | Create a Pix charge with due date (cobv) — used for boleto-like Pix where the payer can pay at or after a d... |\n| `get_pix_cobv` | Retrieve a Pix due-date charge (cobv) by its txid. |\n| `resolve_dict_key` | Resolve a DICT key (CPF, CNPJ, email, phone, EVP) to the owner's account data before sending a Pix. |\n| `register_pix_key` | Register a DICT key (CPF, CNPJ, email, phone, or EVP) on a C6 account owned by the merchant. |\n| `delete_pix_key` | Delete a DICT key owned by the merchant. |\n| `create_boleto` | Issue a boleto via C6 Cobrança. |\n| `get_boleto` | Retrieve a boleto by its C6 identifier (id or nosso_numero). |\n| `cancel_boleto` | Cancel (baixa) an outstanding boleto before payment. |\n| `get_account_balance` | Retrieve the current balance snapshot for a merchant account. |\n| `get_statement` | Retrieve account statement transactions for a given period. |\n\n## Install\n\n```bash\nnpm install @codespar/mcp-c6@0.1.0-alpha.1\n```\n\n## Environment\n\n```bash\nC6_CLIENT_ID=\"...\"        # OAuth client_id from C6's Developer Portal\nC6_CLIENT_SECRET=\"...\"    # OAuth client_secret\nC6_CERT_PATH=\"/abs/path/to/client.crt\"   # mTLS client certificate\nC6_KEY_PATH=\"/abs/path/to/client.key\"    # mTLS private key\nC6_ENV=\"sandbox\"                          # or \"production\" (default: sandbox)\n```\n\n## Authentication\n\nTwo factors are **both** required on every call:\n\n1. **OAuth2 `client_credentials`** — the server calls the token endpoint, caches the bearer until ~60s before expiry, and attaches `Authorization: Bearer <token>` to downstream calls.\n2. **mTLS** — BACEN mandates mutual TLS for Pix v2, and C6 enforces it across product families. The server loads the client certificate and private key from the paths you set, builds a Node `https.Agent`, and routes every request through it.\n\nYou obtain the cert + key bundle from the C6 Developer Portal after your merchant contract is signed.\n\n## Run\n\n```bash\n# stdio (default)\nnpx @codespar/mcp-c6\n```\n\n## Caveats\n\n- **Paths are unverified.** See the `TODO(verify)` markers in `src/index.ts`. Onboarded merchants should validate against their portal-issued OpenAPI spec and open a PR.\n- **Sandbox host is a guess.** C6 issues a sandbox subdomain per merchant; override by editing `BASE_URL` if your provisioned sandbox URL differs.\n\n## Enterprise\n\nNeed governance, budget limits, and audit trails for agent payments? [CodeSpar Enterprise](https://codespar.dev/enterprise) adds policy engine, payment routing, and compliance templates on top of these MCP servers.\n\n## License\n\nMIT\n","readmeFilename":"README.md"}