
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
splitbill-mcp
Advanced tools
Split bills and collect payments through PayNow (Singapore) from your AI. MCP server for SplitBill.
Split bills and collect payments through PayNow (Singapore) — from the AI you already use.
You paid for the dinner. SplitBill works out who owes what and gives you links to send. Money never passes through us: everyone pays from their own banking app.
User:
Split SGD 891 between 4 people.
AI: creates a SplitBill payment page
SGD 222.75 × 3 participants (you paid up front, so you are not billed)
Share: https://sposched.jittee.com/split/pay/?t=…
Manage: https://sposched.jittee.com/split/manage/?t=… (keep this one to yourself)
Status: https://sposched.jittee.com/split/manage/?t=… (read-only, safe to share)
https://jittee.com/mcp/splitbill
That endpoint speaks OAuth 2.1 (dynamic client registration + PKCE), so there is no key to copy around. Connecting opens SplitBill, you enter the PayNow number (or UEN) that should receive the money plus the display name your payers will see in their banking app, and you press allow. The key is created at that moment and kept by your client, and the AI is never asked for your number again.
Claude Code
claude mcp add --transport http splitbill https://jittee.com/mcp/splitbill
Claude Desktop / claude.ai / ChatGPT — Settings → Connectors → add a custom connector and paste the URL. Leave authentication on OAuth.
Smithery — https://smithery.ai/server/jittee/splitbill does the same through its gateway.
For a stdio install, or a client that does not speak OAuth.
Open https://sposched.jittee.com/split/mcp/ and enter the PayNow number (or UEN) that should
receive the money, plus the display name your payers will see in their banking app. You get a
key that starts with wkn_, shown only once.
⚠️ That key can create pages that collect money to your PayNow. Keep it to yourself. It cannot move money. If you lose it, just create another one.
Claude Code
claude mcp add splitbill --env SPLITBILL_TOKEN=wkn_xxx -- npx -y splitbill-mcp
Any client with a JSON config
{
"mcpServers": {
"splitbill": {
"command": "npx",
"args": ["-y", "splitbill-mcp"],
"env": { "SPLITBILL_TOKEN": "wkn_xxx" }
}
}
}
Remote, with the key in the URL — for clients that cannot send headers. Choose No authentication, since the key is already in the URL:
https://jittee.com/mcp/splitbill?token=wkn_xxx
"Split this receipt four ways. Tanaka did not drink, so $20 for him."
| Tool | What it does |
|---|---|
create_split | Create the page. Takes a total or itemised receipt, a head count, optional names, per-person overrides and rounding. Returns the manage URL, the share URLs (one per amount) and a read-only status URL. |
list_splits | Splits created with this key, newest first, with how much has been collected and who is left. |
get_split | One split: who has paid, their notes, the share URLs. |
By default you are treated as the person who paid up front: you count towards the head
count, but no payment link is created for you. Pass i_paid: false to turn that off.
| Variable | Meaning |
|---|---|
SPLITBILL_TOKEN | Your key from /split/mcp (starts with wkn_). Required. |
SPLITBILL_URL | Endpoint override. Only needed to point at a non-production environment. |
MIT © Jittee Pte. Ltd.
FAQs
Split bills and collect payments through PayNow (Singapore) from your AI. MCP server for SplitBill.
The npm package splitbill-mcp receives a total of 0 weekly downloads. As such, splitbill-mcp popularity was classified as not popular.
We found that splitbill-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.