Install
$ agentstack add mcp-sylius-mcpserverplugin ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ● Network access Used
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
MCP Server Plugin
A Sylius plugin that exposes a Model Context Protocol (MCP) server for enabling interaction with your store via Large Language Models (LLMs) like ChatGPT.
Installation
Requirements
We work on stable, supported and up-to-date versions of packages. We recommend you to do the same.
| Package | Version | |---------------|---------| | PHP | ^8.2 | | sylius/sylius | ^2.1 | | MySQL | ^8.4 | | NodeJS | ^20.x |
Beware!
This installation instruction assumes that you're using Symfony Flex.
- Require plugin with composer:
``bash composer require sylius/mcp-server-plugin ``
Clear application cache by using command:
``bash bin/console cache:clear ``
Without Symfony Flex
- Require the plugin:
``bash composer require sylius/mcp-server-plugin ``
- Import the plugin configuration in
config/packages/sylius_mcp_server.yaml:
```yaml imports:
- { resource: "@SyliusMcpServerPlugin/config/config.yaml" }
```
- Import the routes in
config/routes.yaml:
``yaml sylius_mcp_server: resource: '@SyliusMcpServerPlugin/config/routes.yaml' ``
- Clear application cache:
``bash bin/console cache:clear ``
Documentation
What is MCP Server?
The Model Context Protocol (MCP) is a standardized way to connect language models (like ChatGPT) with external tools, APIs, and systems. It allows an AI model to make structured tool calls — similar to calling functions — during a conversation.
The MCP Server acts as a bridge between the language model and your application logic. It exposes a list of tools (like “search for a product” or “create an order”) and executes them in response to requests from the AI.
This plugin integrates Sylius with an MCP Server, enabling AI agents to interact with your store (e.g., search products, check prices, start checkout).
We use the official symfony/mcp-bundle to provide the MCP server runtime.
┌────────────────┐ ┌───────────────┐ ┌────────┐
│ MCP Client │◄────────────────►│ MCP Server │◄─────►│ Sylius │
│ (OpenAi, etc.) │ (Stdio/HTTP) │ (Tools, etc.) │ (API) │ │
└────────────────┘ └───────────────┘ └────────┘
To learn more, see the official MCP introduction at modelcontextprotocol.io.
Running the MCP Server
Stdio Transport
``bash bin/console mcp:server ``
HTTP Transport
The HTTP endpoint is available at /_mcp.
MCP Server Configuration
For more options, refer to the symfony/mcp-bundle documentation.
Sylius API
Tools communicate with the Sylius API through pre-configured HTTP clients:
sylius_mcp_server.http_client.api_shop:
base_uri: '%sylius_mcp_server.api.shop_base_uri%'
headers:
- 'Accept: application/ld+json'
- 'Content-Type: application/ld+json'
sylius_mcp_server.http_client.api_shop_merge_patch:
base_uri: '%sylius_mcp_server.api.shop_base_uri%'
headers:
- 'Accept: application/ld+json'
- 'Content-Type: application/merge-patch+json'
The default API base URI is http://localhost:8000/api/v2/shop/, and can be overridden using the environment variable SYLIUS_MCP_SERVER_API_SHOP_BASE_URI.
Tools
The following tools are available out of the box:
| Name | Description | |-------------------------|---------------------------------------------------------------| | additemtoorder | Adds an item to the order. | | completecheckout | Completes the checkout process. (Final step) | | createorder | Creates a new order. | | fetchchannel | Fetches a channel by code. | | fetchcurrency | Fetches a currency by code. | | fetchorder | Fetches an order by its token. | | fetchproduct | Fetches a product by its code. | | fetchproductvariant | Fetches a product variant by its code. | | listpaymentmethods | Lists all available payment methods. | | listshippingmethods | Lists all available shipping methods. | | searchproducts | Searches for products by name. | | searchproductvariants | Searches for product variants by name. | | selectpaymentmethod | Selects a payment method for the order. (Step 3 of checkout) | | selectshippingmethod | Selects a shipping method for the order. (Step 2 of checkout) | | updateorderaddress | Updates the order address. (Step 1 of checkout) |
These tools currently operate in guest mode only — fetch_order returns data only if the order has no associated customer account.
Adding custom tools
You can extend the server with your own tools by creating PHP classes annotated with the #[McpTool] attribute.
To learn how to define and structure a tool, see the symfony/mcp-bundle documentation.
Register your tools as services with autoconfiguration in config/services.yaml:
services:
App\Mcp\Tool\:
resource: '../src/Mcp/Tool/*'
autoconfigure: true
Usage Example
You can use the server directly in OpenAI Playground, exposing it via ngrok or similar tunneling tools.
Example with OpenAI Playground
- Add a new tool in the OpenAI Playground.
- Configure the tool with the following settings:
- URL:
http://localhost:8080/_mcp(or your ngrok URL) - Label: Sylius
- Authentication: None
Example with API Call
curl https://api.openai.com/v1/responses \
-H "Content-Type: application/json" \
-H "Authorization: Bearer $OPENAI_API_KEY" \
-d '{
"model": "gpt-4.1",
"tools": [
{
"type": "mcp",
"server_label": "Sylius",
"server_url": "$YOUR_MCP_SERVER_URL",
"require_approval": "never"
}
],
"input": [
{
"role": "user",
"content": [
{
"type": "input_text",
"text": "Find me red shoes"
}
]
}
],
"max_output_tokens": 1024
}'
Security issues
If you think that you have found a security issue, please do not use the issue tracker and do not post it publicly. Instead, all security issues must be sent to security@sylius.com
Community
For online communication, we invite you to chat with us & other users on Sylius Slack.
License
This plugin's source code is completely free and released under the terms of the MIT license.
Source & license
This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: Sylius
- Source: Sylius/McpServerPlugin
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.