AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
MCP verified MIT Self-run

Mcp Boilerplate

mcp-iannuttall-mcp-boilerplate · by iannuttall

A remote Cloudflare MCP server boilerplate with user authentication and Stripe for paid tools.

No reviews yet
0 installs
6 views
0.0% view→install

Install

$ agentstack add mcp-iannuttall-mcp-boilerplate

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets Used
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/mcp-iannuttall-mcp-boilerplate)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
6mo ago

Declared compatibility

Claude CodeClaude DesktopCursorWindsurf

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Mcp Boilerplate? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

MCP Boilerplate: Simple Setup Guide

This project helps you create your own remote MCP server on Cloudflare with user login and payment options. You don't need to be a technical expert to get it running.

> [!NOTE] > This project is now free to use and open source. If you want to support me, just follow me on X @iannuttall and subscribe to my newsletter.

What You'll Get

  • An MCP server that works with Cursor, Claude and other AI assistants
  • User login with Google or GitHub
  • Payment processing with Stripe
  • The ability to create both free and paid MCP tools

Setup Checklist

Before starting, make sure you have:

Step-by-Step Setup

Step 1: Get the Code

  1. Clone this repository to your computer:
git clone https://github.com/iannuttall/mcp-boilerplate.git
cd mcp-boilerplate
  1. Install everything needed:
npm install

Step 2: Set Up the Database

  1. Install Wrangler (Cloudflare's tool) if you haven't already:
npm install -g wrangler
  1. Create a database for user login:
npx wrangler kv namespace create "OAUTH_KV"

Note: you can't use a different name for this database. It has to be "OAUTH_KV".

  1. After running this command, you'll see some text that includes id and preview_id values
  1. Open the wrangler.jsonc file in the project folder
  1. Look for the section with "kv_namespaces": [
  1. Add your database information there:
"kv_namespaces": [
  {
    "binding": "OAUTH_KV",
    "id": "paste-your-id-here",
    "preview_id": "paste-your-preview-id-here"
  }
]

Step 3: Set Up Your Local Settings

  1. Create a file for your settings:
cp .dev.vars.example .dev.vars
  1. Open the .dev.vars file in your code editor
  1. You'll need to add several values here (we'll get them in the next steps)

Step 4a: Setting Up Google Login (Recommended)

  1. Go to the Google Cloud Console
  2. Create a new project with any name you like
  3. Go to "APIs & Services" > "Credentials"
  4. Click "+ CREATE CREDENTIALS" and choose "OAuth client ID"
  5. If prompted, set up a consent screen:
  • Choose "External" for User Type
  • Add an App name (like "My AI Tool")
  • Add your email address where required
  • You can skip the "Scopes" and "Test users" sections
  1. For the OAuth client:
  • Select "Web application" for Application type
  • Give it a name
  • Under "Authorized redirect URIs" add the following:
http://localhost:8787/callback/google
  1. Click "CREATE"
  2. You'll now see your Client ID and Client Secret - copy these values
  3. Add them to your .dev.vars file:
GOOGLE_CLIENT_ID="paste-your-client-id-here"
GOOGLE_CLIENT_SECRET="paste-your-client-secret-here"

Once you've completed this step, you can proceed directly to Step 5 if you don't need GitHub login.

Step 4b: Setting Up GitHub Login (Optional)

If you prefer to use GitHub for login instead of Google:

  1. Go to your GitHub account
  2. Click on your profile picture in the top-right corner, then go to "Settings"
  3. In the left sidebar, scroll down and click on "Developer settings"
  4. Click on "OAuth Apps", then click the "New OAuth App" button
  5. Fill in the form:
  • Application name: Give it a name (like "My AI Tool")
  • Homepage URL: http://localhost:8787
  • Application description: A brief description of your app (optional)
  • Authorization callback URL: http://localhost:8787/callback/github
  1. Click "Register application"
  2. On the next page, you'll see your Client ID
  3. Click "Generate a new client secret"
  4. Copy your Client Secret immediately (you won't be able to see it again)
  5. Add these values to your .dev.vars file:
GITHUB_CLIENT_ID="paste-your-client-id-here"
GITHUB_CLIENT_SECRET="paste-your-client-secret-here"
  1. You'll also need to update the default authentication in your code:
  • Open src/index.ts
  • Find the import for Google handler: import { GoogleHandler } from "./auth/google-handler";
  • Replace it with: import { GitHubHandler } from "./auth/github-handler";
  • Find the line with defaultHandler: GoogleHandler as any,
  • Change it to: defaultHandler: GitHubHandler as any,

After completing either Step 4a or 4b, proceed to Step 5.

Step 5: Setting Up Stripe Payments

  1. Log in to your Stripe Dashboard
  2. Get your test API key:
  • Go to Developers > API keys
  • Copy your "Secret key" (it starts with sk_test_)
  1. Create a product and price:
  • Go to Products > Add Product
  • Give it a name and description
  • Add a price (this is what users will pay)
  • Save the product
  • After saving, find and copy the "Price ID" (it starts with price_)
  1. Add these values to your .dev.vars file:
STRIPE_SECRET_KEY="sk_test_your-key-here"
STRIPE_SUBSCRIPTION_PRICE_ID="price_your-price-id-here"
STRIPE_METERED_PRICE_ID="your-stripe-metered-price-id"

Step 5a: Configuring the Stripe Customer Billing Portal

This boilerplate includes a tool (check_user_subscription_status) that can provide your end-users with a link to their Stripe Customer Billing Portal. This portal allows them to manage their subscriptions, such as canceling them or, if you configure it, switching between different plans.

Initial Setup (Important):

By default, the Stripe Customer Billing Portal might not be fully configured in your Stripe account, especially in the test environment.

  1. After setting up your Stripe keys and products (Step 5) and running your server, you can test the check_user_subscription_status tool (e.g., via MCP Inspector, or by triggering it through an AI assistant).
  2. If the tool returns a JSON response where billingPortal.message contains an error like: "Could not generate a link to the customer billing portal: No configuration provided and your test mode default configuration has not been created. Provide a configuration or create your default by saving your customer portal settings in test mode at https://dashboard.stripe.com/test/settings/billing/portal."
  3. You must visit the URL provided in that error message (usually https://dashboard.stripe.com/test/settings/billing/portal) and save your portal settings in Stripe. This activates the portal for your test environment. You'll need to do a similar check and configuration for your live environment.

Once activated, the check_user_subscription_status tool will provide a direct link in the billingPortal.url field of its JSON response, which your users can use.

Allowing Users to Switch Plans (Optional):

By default, the billing portal allows users to cancel their existing subscriptions. If you offer multiple subscription products for your MCP server and want to allow users to switch between them:

  1. In your Stripe Dashboard, navigate to Settings (click the gear icon in the top-right) and then find Customer portal under "Billing". (Alternatively, use the direct link: https://dashboard.stripe.com/settings/billing/portal for live mode, or https://dashboard.stripe.com/test/settings/billing/portal for test mode).
  2. Under the "Products" section of the Customer Portal settings page, find "Subscription products".
  3. Enable the "Customers can switch plans" toggle.
  4. In the "Choose the eligible products that customers can update" subsection that appears, click to "Find a test product..." (or "Find a product..." in live mode) and add the other subscription products you want to make available for your users to switch to. The image you provided earlier shows this UI in Stripe.
  5. You can also configure other options here, like allowing customers to change the quantity of their plan if applicable.

This configuration empowers your users to manage their subscriptions more flexibly directly through the Stripe-hosted portal.

Step 6: Complete Your Settings

Make sure your .dev.vars file has all these values:

BASE_URL="http://localhost:8787"
COOKIE_ENCRYPTION_KEY="generate-a-random-string-at-least-32-characters"
GOOGLE_CLIENT_ID="your-google-client-id"
GOOGLE_CLIENT_SECRET="your-google-client-secret"
STRIPE_SECRET_KEY="your-stripe-secret-key"
STRIPE_SUBSCRIPTION_PRICE_ID="your-stripe-price-id"
STRIPE_METERED_PRICE_ID="your-stripe-metered-price-id"

For the COOKIE_ENCRYPTION_KEY, you can generate a random string with this command:

openssl rand -hex 32

Step 7: Start Your Server Locally

  1. Run this command to start your server:
npx wrangler dev
  1. Your server will start at http://localhost:8787
  1. The main endpoint for AI tools will be at http://localhost:8787/sse

Step 8: Try It Out

You can test your server by connecting to it with an AI assistant:

  1. Go to Cloudflare AI Playground
  2. Enter your server URL: http://localhost:8787/sse
  3. You'll be redirected to log in with Google
  4. After logging in, you can start testing the tools

Or with Claude Desktop:

  1. Open Claude Desktop
  2. Go to Settings > Developer > Edit Config
  3. Add your server:
{
  "mcpServers": {
    "my_server": {
      "command": "npx",
      "args": [
        "mcp-remote",
        "http://localhost:8787/sse"
      ]
    }
  }
}
  1. Restart Claude Desktop
  2. Your tools should now be available in Claude

Or with MCP Inspector:

  1. Run MCP Inspector and connect to your server:
npx @modelcontextprotocol/inspector@0.11.0 

> [!WARNING] > The latest version of MCP Inspector is 0.12.0 but using npx @modelcontextprotocol/inspector@latest doesn't work right now. Working on it.

  1. Enter your server URL: http://localhost:8787/sse
  2. Use the web interface to test and debug your tools
  3. You can directly call your tools, see the request/response data, and quickly iterate during development

Step 9: Going Live (Deploying)

When you're ready to make your server available online:

  1. Deploy to Cloudflare:
npx wrangler deploy
  1. After deployment, you'll get a URL like https://your-worker-name.your-account.workers.dev

3a. Update your Google OAuth settings:

  • Go back to Google Cloud Console > APIs & Services > Credentials.
  • Edit your OAuth client.
  • Add another redirect URI: https://your-worker-name.your-account.workers.dev/callback/google.
  • Next, navigate to the "OAuth consent screen" page (still within "APIs & Services").
  • Under "Publishing status", if it currently shows "Testing", click the "Publish app" button and confirm to move it to "Production". This allows users outside your GSuite organization to use the login if you initially set it up as "External".

3b. Update your GitHub OAuth App settings: (optional)

  • Go to your GitHub Developer settings > OAuth Apps
  • Select your OAuth App
  • Update the "Authorization callback URL" to: https://your-worker-name.your-account.workers.dev/callback/github
  1. Add your settings to Cloudflare by running these commands (you'll be prompted to enter each value):
npx wrangler secret put BASE_URL
npx wrangler secret put COOKIE_ENCRYPTION_KEY
npx wrangler secret put GOOGLE_CLIENT_ID
npx wrangler secret put GOOGLE_CLIENT_SECRET
npx wrangler secret put STRIPE_SECRET_KEY
npx wrangler secret put STRIPE_SUBSCRIPTION_PRICE_ID
npx wrangler secret put STRIPE_METERED_PRICE_ID

For the BASE_URL, use your Cloudflare URL: https://your-worker-name.your-account.workers.dev

Creating Your Own Tools

You can easily create your own AI tools by adding new files to the src/tools folder. The project comes with examples of both free and paid tools.

Creating a Free Tool

To create a free tool (one that users can access without payment):

  1. Create a new file in the src/tools folder (for example: myTool.ts)
  2. Copy this template from the existing add.ts example:
import { z } from "zod";
import { experimental_PaidMcpAgent as PaidMcpAgent } from "@stripe/agent-toolkit/cloudflare";

export function myTool(agent: PaidMcpAgent) {
  const server = agent.server;
  // @ts-ignore
  server.tool(
    "my_tool_name",                      // The tool name
    "This tool does something cool.",    // Description of what your tool does
    {                                    // Input parameters
      input1: z.string(),                // Parameter definitions using Zod
      input2: z.number()                 // E.g., strings, numbers, booleans
    },
    async ({ input1, input2 }: { input1: string; input2: number }) => ({
      // The function that runs when the tool is called
      content: [{ type: "text", text: `You provided: ${input1} and ${input2}` }],
    })
  );
}
  1. Modify the code to create your own tool:
  • Change the function name (myTool)
  • Change the tool name (my_tool_name)
  • Update the description
  • Define the input parameters your tool needs
  • Write the code that runs when the tool is called
  1. Add your tool to src/tools/index.ts:
// Add this line with your other exports
export * from './myTool';
  1. Register your tool in src/index.ts:
// Inside the init() method, add:
tools.myTool(this);

Creating Paid Tools: Subscription, Metered, or One-Time Payment

You can create tools that require payment in three ways: recurring subscriptions, metered usage, or one-time payments.

Option 1: Creating a Subscription-Based Paid Tool

This option is suitable if you want to charge users a recurring fee (e.g., monthly) for access to a tool or a suite of tools.

Stripe Setup for Subscription Billing:

  1. In your Stripe Dashboard, create a new Product.
  2. Give your product a name (e.g., "Pro Access Tier").
  3. Add a Price to this product:
  • Select "Recurring" for the pricing model.
  • Set the price amount and billing interval (e.g., $10 per month).
  • Save the price.
  1. After creating the price, Stripe will show you the Price ID (e.g., price_xxxxxxxxxxxxxx). This is the ID you will use for STRIPE_SUBSCRIPTION_PRICE_ID in your .dev.vars file and when registering the tool.

Tool Implementation:

  1. Create a new file in the src/tools folder (for example: mySubscriptionTool.ts)
  2. Copy this template from the existing subscriptionAdd.ts example:
import { z } from "zod";
import { experimental_PaidMcpAgent as PaidMcpAgent } from "@stripe/agent-toolkit/cloudflare";
import { REUSABLE_PAYMENT_REASON } from "../helpers/constants";

export function mySubscriptionTool(
  agent: PaidMcpAgent,
  env?: { STRIPE_SUBSCRIPTION_PRICE_ID: string; BASE_URL: string }
) {
  const priceId = env?.STRIPE_SUBSCRIPTION_PRICE_ID || null;
  const baseUrl = env?.BASE_URL || null;

  if (!priceId || !baseUrl) {
    throw new Error("Stripe Price ID and Base URL must be provided for paid tools");
  }

  agent.paidTool(
    "my_subscription_tool_name", // The tool name
    {
      // Input parameters
      input1: z.string(), // Parameter definitions using Zod
      input2: z.number(), // E.g., strings, numbers, booleans
    },
    async ({ input1, input2 }: { input1: string; input2: number }) => ({
      // The function that runs when the tool is called
      content: [
        { type: "text", text: `You provided: ${input1} and ${input2}` },
      ],
    }),
    {
      priceId, // Uses the Stripe price ID for a subscription product
      successUrl: `${baseUrl}/payment/success`,
      paymentReason: REUSABLE_PAYMENT_REASON, // General reason shown to user
    }
  );
}
  1. Modify the code:
  • Change the functi

Source & license

This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.