
Research
/Security News
Malicious Chrome and Firefox Extensions Steal Crypto Traders’ Session and Wallet Data
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.
@codespar/mcp-siigo
Advanced tools
MCP server for Siigo — Colombian accounting platform with integrated DIAN electronic invoicing.
# Set your credentials
export SIIGO_API_KEY="your-api-key"
export SIIGO_ACCESS_TOKEN="your-access-token"
# Run via stdio
npx tsx packages/colombia/siigo/src/index.ts
# Run via HTTP
npx tsx packages/colombia/siigo/src/index.ts --http
| Variable | Required | Description |
|---|---|---|
SIIGO_API_KEY | Yes | API key from Siigo |
SIIGO_ACCESS_TOKEN | Yes | Bearer access token |
MCP_HTTP | No | Set to "true" to enable HTTP transport |
MCP_PORT | No | HTTP port (default: 3000) |
| Tool | Description |
|---|---|
create_invoice | Create an invoice (DIAN electronic invoice) |
get_invoice | Get invoice details by ID |
list_invoices | List invoices |
create_credit_note | Create a credit note |
list_customers | List customers |
create_customer | Create a customer |
list_products | List products |
create_product | Create a product |
list_taxes | List available tax types |
list_payment_methods | List payment methods |
Uses Bearer token authentication. Obtain your access token from the Siigo developer portal.
Enterprise? Contact us at codespar.com for dedicated support, custom integrations, and SLAs.
FAQs
MCP server for Siigo — Colombian accounting + DIAN e-invoicing
The npm package @codespar/mcp-siigo receives a total of 14 weekly downloads. As such, @codespar/mcp-siigo popularity was classified as not popular.
We found that @codespar/mcp-siigo demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.

Research
/Security News
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.