No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by square · MCP Server · ★ 105
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is square-mcp-server safe to install? View the security audit →
Square Model Context Protocol Server (Beta) This project follows the Model Context Protocol standard, allowing AI assistants to interact with Square's connect API. Quick Start Get up and running with the Square MCP server using npx: Replace with your actual Square access token. You can obtain your access token by following the guide at Square Access Tokens. You can also set environment variables before running the command. Remote MCP Server Square now offers a hosted remote MCP server at: The remote MCP is recommended as it uses OAuth authentication, allowing you to log in with your Square account directly without having to create or manage access tokens manually. Configuration Options
| Stars | 105 |
| Forks | 26 |
| Language | TypeScript |
| Category | MCP Server |
| License | Apache-2.0 |
| Quality Score | 71.5142802500353/100 |
| Open Issues | 13 |
| Last Updated | 2026-04-09 |
| Created | 2025-04-23 |
| Platforms | mcp, node |
| Est. Tokens | ~30k |
Explore other popular mcp server tools:
square-mcp-server is A Model Context Protocol (MCP) server for square. It is categorized as a MCP Server with 105 GitHub stars.
square-mcp-server is primarily written in TypeScript.
You can find installation instructions and usage details in the square-mcp-server GitHub repository at github.com/square/square-mcp-server. The project has 105 stars and 26 forks, indicating an active community.
square-mcp-server is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: