New:Microsoft Teams Notifications Are Now Available in Socket.Learn more
Get Started

@offerkit/mcp

Package Overview
Dependencies
Maintainers
1
Versions
9
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@offerkit/mcp

OfferKit MCP server - exposes the OfferKit API as Model Context Protocol tools.

latest
Source
npmnpm
Version
0.3.0
Version published
Maintainers
1
Created
Source

@offerkit/mcp

OfferKit MCP server for exposing the OfferKit API as Model Context Protocol tools.

The package connects to an OfferKit deployment, discovers MCP-exposed procedures in the OfferKit contract, and registers them as tools. Tool descriptions and MCP annotations include risk metadata such as safe, mutating, and destructive so hosts and agents can ask for the right confirmation before changing data.

This package provides the local stdio command and a transport-independent server builder. An OfferKit deployment can expose the same tools at /mcp with OAuth by setting OFFERKIT_MCP_ENABLED=true; that hosted transport runs inside the web image and does not require this command on the client.

Install

Most MCP hosts can run the package directly with npx:

npx -y @offerkit/mcp

You can also install it globally:

npm install -g @offerkit/mcp

Configuration

The server reads these environment variables:

  • OFFERKIT_API_URL: OfferKit deployment URL. Defaults to http://localhost:3000.
  • OFFERKIT_API_KEY: Required API key. Mint one in the dashboard at /settings/api-keys.

MCP host config

{
  "mcpServers": {
    "offerkit": {
      "command": "npx",
      "args": ["-y", "@offerkit/mcp"],
      "env": {
        "OFFERKIT_API_URL": "https://your-offerkit-deployment",
        "OFFERKIT_API_KEY": "offerkit_..."
      }
    }
  }
}

Tools

Tools are derived from the OfferKit contract at server startup. Explicit MCP risk metadata is used when present; otherwise the server infers risk from the HTTP method: GET is safe, DELETE is destructive, and other methods are mutating.

Mutating tools describe their risk level and should be confirmed with the user before invocation. Redemption tools accept idempotency keys where supported by the API.

  • Repository: https://github.com/offerkit/offerkit
  • Docs: https://offerkit.dev/docs/integrations
  • SDK package: https://www.npmjs.com/package/@offerkit/sdk
  • License: MIT

FAQs

Package last updated on 18 Aug 2026

Related posts