Mmcp.market

skanfirmy.pl MCP server

by bartosz-kuc·io.github.bartosz-kuc/skanfirmy·v1.1.2

Verify Polish companies by NIP/KRS/REGON + EU VAT (VIES). 14 MCP tools (9 no-key).

B81/100grade B
What users say
No reviews yet
Be the first
Safety scan
B81/100

full report

Adoption
New

0 stars

Reviews

Write one

Nobody has reviewed skanfirmy.pl yet.

If you have run it, two minutes of your experience saves the next person an afternoon.

skanfirmy.pl tools (14, 1 write)

write = sends, deletes, buys or posts
  • changes_sinceFree

    Return changes (VAT status, bank accounts, or registry data — name, address, KRS, REGON — from the White List) detected since a given date for the NIPs you monitor. The field property is one of: status_vat, account_added, account_removed, name, address, krs, regon. A polling channel for agents. Requires a skanfirmy API key.

  • generuj_mikrorachunekFree

    Generate the individual tax micro-account (for PIT/CIT/VAT payments) from a NIP or PESEL.

  • list_observationsFree

    Return the list of NIPs you monitor, with their current VAT status and last-checked date. Each entry keeps the raw Ministry of Finance literal in status_vat and, when a status is known, adds derived language-neutral fields vat_active (boolean) and status_vat_code (active/exempt/not_registered). Requires a skanfirmy API key.

  • oblicz_odsetkiFree

    Calculate statutory or commercial (B2B) late-payment interest, broken down by NBP reference-rate periods.

  • observe_nipFree

    Add a NIP to monitoring. You get notified (via changes_since or email) when its VAT status, bank account, or registry data shown on the Ministry of Finance White List (name, address, KRS, REGON) changes. Requires a skanfirmy API key (Authorization: Bearer, or the api_key argument). Free plan: up to 10 NIPs.

  • set_webhookFree

    Set (or clear) a push webhook URL for your monitoring, instead of or in addition to polling. When we detect a change for a monitored NIP, we send a POST signed with HMAC-SHA256 (X-Skanfirmy-Signature header). Returns the secret ONCE. Pass an empty url to disable. Requires a skanfirmy API key. Public https addresses only (port 443).

  • sprawdz_lista_nipFree

    Bulk-check up to 30 NIPs in one call to the Ministry of Finance VAT White List: VAT status, bank accounts, REGON, KRS and address of each entity. For verifying a portfolio of counterparties. Ministry limits: max 30 NIPs per call, about 500 bulk queries/day per IP. Does not fetch full KRS data (use sprawdz_nip for individual entities).

  • sprawdz_nipFree

    Check VAT status (VAT White List / Biała Lista) and KRS data for a Polish company by NIP.

  • sprawdz_rachunekFree

    Check whether a bank account number (NRB) appears in the VAT White List for a given NIP. Due diligence for payments above PLN 15,000.

  • sprawdz_regonFree

    Look up entity data in the REGON register (Statistics Poland / GUS BIR) by NIP: REGON number, official name, legal form (legal or natural person), full address (voivodeship, county, municipality). Covers ALL entities, including sole proprietors that are not in the KRS.

  • sprawdz_viesFree

    Validate a counterparty's EU VAT number in the VIES system (European Commission).

  • szukaj_katalog_apiFree

    Search otwarteAPI.pl, a catalog of public Polish and EU APIs (VAT, KRS, GUS, NBP, ECB, Eurostat and more). Returns matching entries with a link to each API's official docs. An empty query returns the whole catalog (optionally narrowed by scope or topic).

  • szukaj_pkdFree

    Search PKD 2025 business activity codes by activity name or code number.

  • unobserve_nipwrite actionFree

    Remove a NIP from monitoring. Requires a skanfirmy API key.

Public scan report

scanner v0.1.5 · 2026-09-19 · same rubric, same numbers if you re-run it

1 high
  • Code scanremote-only server, no package to scann/a
  • Live reliabilityremote reachable in 858ms20/20
  • Tool poisoning14 tool descriptions checked15/15
  • Auth qualityopen endpoint exposes 1 write-action tools with no auth3/15
  • Maintenancelast push 18 days ago15/15
  • Maintainer identityregistry namespace matches repository owner; GitHub account older than a year8/10

Findings (1)

  • highWrite-action tools reachable without authenticationauth.open-write
Overall 81/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON

Install directly

claude mcp add --transport http skanfirmy https://skanfirmy.pl/mcp
Add to Cursor

skanfirmy.pl: common questions

Is skanfirmy.pl MCP server safe?
Mostly: it is graded B (81/100). Read the skanfirmy.pl safety report
How do I install skanfirmy.pl?
It runs remotely at skanfirmy.pl. Add it to Claude Code, Claude Desktop or Cursor with the snippets above, or call it through the mcp.market gateway without installing anything.
Does skanfirmy.pl need an API key?
Not as far as the registry entry and our scan can tell: no credentials are declared or required.
Is skanfirmy.pl maintained?
The last commit was 20 days ago (2026-09-01). The latest release is v1.1.2.
Is skanfirmy.pl up?
100% of our last 6 checks got an answer. We check remote servers about four times a day.

More from bartosz-kuc