MCP Tools Directory
← Browse integrations

Developer tools

io.github.NyxToolsDev/quickbooks-mcp-server

Free account · sign-in required

Contact io.github.NyxToolsDev/quickbooks-mcp-server

Loading secure sign-in…

Tools for autonomous AI agents

About this integration

Connect Claude to QuickBooks Online — query finances, create invoices, run reports

Transport
stdio
Authentication
oauth
Initial setup
user-authorization
Runtime
unattended
Evidence
documented
Version
0.1.1
Package
quickbooks-mcp
Last compatibility test
Not independently tested

Connect your agent

quickbooks-mcp

Publisher README and Python manifest reviewed at the pinned hashes. OAuth setup is interactive once, after which encrypted tokens are documented to auto-refresh; the package and QuickBooks connection were not executed or independently security-audited.

Capabilities: Read QuickBooks invoices, expenses, accounts, and customers, Generate accounting reports when entitled, Create invoices, payments, and expenses when entitled

Connected profiles

Additional details

Registry identifier

io.github.NyxToolsDev/quickbooks-mcp-server

Source ↗ · Checked 2026-09-17
Published version

0.1.1

Source ↗ · Checked 2026-09-17
Metadata license

CC0-1.0; package licenses are separate

Source ↗ · Checked 2026-09-17
Package ecosystem

pypi

Source ↗ · Checked 2026-09-17
Source artifact

quickbooks-mcp

Source ↗ · Checked 2026-09-19
Source manifest version

0.1.1

Source ↗ · Checked 2026-09-19
Unattended configuration

After the documented user authorization, stored OAuth tokens auto-refresh for ongoing MCP operation.

Source ↗ · Checked 2026-09-19
Authentication and prerequisites

The setup requires QuickBooks OAuth client credentials, browser authorization, stored tokens, and a realm ID.

Source ↗ · Checked 2026-09-19
Connection configuration

Configure the MCP client to run the quickbooks-mcp console script with the documented QBO environment variables.

Source ↗ · Checked 2026-09-19
Review scope

Publisher documentation reviewed; package and integration endpoint not executed or independently security-audited.

Source ↗ · Checked 2026-09-19