Join video meetings as a voice bot, visual avatar, or avatar with live screen sharing.
Design & media
Stripe
Try itInspect allowlisted Stripe account data and documentation through read-only remote MCP tools.
What it does
Inspect ordinary single-account Stripe data through Stripe’s official remote MCP, including payments, customers, invoices, subscriptions, account context, and documentation. It discovers the live tool catalog and schemas before each session, then exposes only allowlisted read tools. OAuth credentials are stored locally and refreshed by mcporter; sandbox and live access remain separate.
When to use it
- Inspecting sandbox payment records
- Reviewing customers and subscriptions
- Checking invoices and account context
- Looking up Stripe documentation
The skill document
Stripe
How to use this skill
This skill uses Stripe's official remote MCP server at https://mcp.stripe.com. Maverick's config-level allowlist is the source of truth for which of Stripe's advertised tools are visible to the assistant.
Step 1 — Discover the live tool catalog and any server-published usage instructions. Always run this first; do not rely on tool names from memory:
mcporter --config {baseDir}/mcporter.json list maverick-stripe-mcp --schema
The output includes the server's Instructions: field, if published, and a JSON Schema for every tool's parameters. Treat this as the authoritative reference for the rest of the session.
Step 2 — Call an allowlisted read tool using the form maverick-stripe-mcp.:
mcporter --config {baseDir}/mcporter.json call maverick-stripe-mcp. = ...
Add --output json for structured output and transport-error envelopes:
mcporter --config {baseDir}/mcporter.json call --output json maverick-stripe-mcp. ...
Safety
The exposed tool set is intentionally read-only. stripe_api_write, create_refund, the mixed read/write stripe_report, send_stripe_mcp_feedback, and the Treasury-preview get_balance_summary are invisible at the mcporter protocol layer. Refunds, subscriptions, invoices, payment links, customer/payment mutations, and every other write remain unavailable until Maverick has a real execution-time approval gate.
stripe_api_read is documented as GET-only, but it accepts broad Stripe API paths and may reach preview GET endpoints. mcporter filters exact tool names, not tool arguments, so do not describe this allowlist as a resource-path restriction.
Use Stripe sandbox for validation and confirm the selected Stripe environment before account-data reads. The broker does not persist sandbox/live mode, so local authorization or sync state proves neither environment. Sandbox and live MCP authorizations are separate; never infer one from the other or switch environments without the user's explicit intent.
Authentication
Ordinary single-account authorization uses Stripe's MCP-native OAuth flow: protected-resource discovery, dynamic public-client registration, Authorization Code with PKCE S256, and refresh tokens. Credentials are provisioned by scripts/setup.sh into mcporter's local vault; mcporter sends and refreshes the resource-bound bearer token for the official remote MCP.
Setup needs bash, jq, basename, and mcporter (>= v0.11.0). Run setup only after fresh authorization or credential rotation. Re-running it with stale values can overwrite a refresh token already rotated in the vault.
Dashboard revocation is user-visible and invalidates the remote grant. Maverick does not currently receive a provider-revocation callback, so its local grant can remain active/synced until a remote call fails or the user disconnects. Those local states prove only that authorization was saved and the bundle/credential projection succeeded; they are not evidence that Stripe remains authorized.
Stripe Connect connected-account operations are a separate exception. They require a restricted key plus Stripe-Account context and must never be described as MCP-native OAuth. This bundle does not implement or expose that path.
References
- Stripe MCP overview and OAuth notes:
- Model Context Protocol authorization:
- Stripe restricted API keys:
- mcporter config reference:
Questions people ask
- Can it modify Stripe data or issue refunds?
- No. Write and mixed read/write tools are hidden at the protocol layer, including refund creation; customer, payment, invoice, and subscription mutations are unavailable.
- How does Stripe authentication work?
- Ordinary single-account access uses Stripe’s MCP-native OAuth flow with Authorization Code, PKCE S256, refresh tokens, and resource-bound bearer tokens managed through mcporter’s local vault.
- Does it support Stripe Connect connected accounts?
- No. Connected-account operations require a restricted key and Stripe-Account context, and that path is not implemented or exposed.
Related skills
Diagnose why people know what to do but don't do it, then design a behavior-changing nudge without mandates or incentives.
Prioritize growth directions with a 2×2 risk framework — pick one bet and commit.
Detect when presentation language is steering your decision instead of the facts themselves.
Diagnose which mental domain is holding you back before choosing a cognitive intervention.
Measure whether a transformation changed your growth engine or just added a one-time bump.
More from maverick
Browse all skillsRead permitted HubSpot data through a dynamically discovered, read-only MCP tool catalog.
Read and write PandaDoc workspace data through PandaDoc’s hosted MCP server.
Research X posts and users, search context, and execute individually confirmed X actions.
Read and update Linear workspace data through Linear’s hosted MCP server.
Read and manage WordPress.com content through its hosted MCP server and live tool catalog.
Discover and invoke Canva’s current MCP tools while respecting account permissions and confirmation boundaries.