monapay-mcp
OfficialServer Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
| MONAPAY_BASE_URL | No | mặc định https://api.monapay.vn | https://api.monapay.vn |
| MONAPAY_PASSWORD | No | mật khẩu; tài khoản bật 2FA không dùng được cách này | |
| MONAPAY_USERNAME | No | tên đăng nhập MONA Pay; chỉ dùng khi không có client credentials | |
| MONAPAY_CLIENT_ID | No | client_id của API key tạo trong dashboard | |
| MONAPAY_CLIENT_SECRET | No | client_secret hiện một lần; dùng lấy OAuth token và ký quyền cho lệnh ghi |
Instructions
Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.
This server publishes no instructions, or was last inspected before Glama recorded them.
Capabilities
Features and capabilities supported by this server
Protocol revision2025-11-25
| Capability | Details |
|---|---|
| tools | {
"listChanged": true
} |
| prompts | {
"listChanged": true
} |
| resources | {
"listChanged": true
} |
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
| monapay_meA | Lấy thông tin tài khoản MONA Pay đang đăng nhập (id, tên, trạng thái). / Get current MONA Pay client profile. |
| monapay_whoamiA | Xác nhận client credentials đang hoạt động, trả tên tài khoản và gói hiện tại. / Verify connection and return account name and plan. |
| monapay_list_bank_accountsA | Liệt kê tài khoản ngân hàng (ACB…) đã nối vào MONA Pay. / List linked bank accounts. |
| monapay_list_virtual_accountsA | Liệt kê tài khoản ảo thuộc một tài khoản ngân hàng. / List virtual accounts of a bank account. |
| monapay_link_bank_startA | Bước 1/4: đăng ký tài khoản ACB + VA. OTP do ngân hàng gửi về điện thoại của người dùng; agent phải HỎI người dùng OTP rồi mới gọi tool xác thực, không được tự đoán. / Step 1/4: register the ACB account and VA. The OTP is sent by the bank to the user’s phone; the agent MUST ASK the user before calling the verification tool and must never guess it. |
| monapay_link_bank_verify_otpB | Bước 2/4: OTP do ngân hàng gửi về điện thoại của người dùng, agent phải HỎI người dùng rồi mới gọi tool này; tuyệt đối không tự đoán OTP. / Step 2/4: the OTP is sent by the bank to the user’s phone; the agent MUST ASK the user before calling this tool and must never guess the OTP. |
| monapay_notification_registerA | Bước 3/4: đăng ký nhận thông báo giao dịch tức thì. OTP lần 2 do ngân hàng gửi về điện thoại của người dùng; agent phải HỎI người dùng rồi mới gọi tool xác thực, không được tự đoán. / Step 3/4: register real-time transaction notifications. The second OTP is sent by the bank to the user’s phone; the agent MUST ASK the user before verification and must never guess it. |
| monapay_notification_verify_otpA | Bước 4/4: OTP do ngân hàng gửi về điện thoại của người dùng, agent phải HỎI người dùng rồi mới gọi tool này; tuyệt đối không tự đoán OTP. / Step 4/4: the OTP is sent by the bank to the user’s phone; the agent MUST ASK the user before calling this tool and must never guess the OTP. |
| monapay_get_payment_profileA | Lấy tên shop, nhận diện và tài khoản mặc định dùng cho trang thanh toán. / Get the hosted-checkout payment profile. |
| monapay_set_payment_profileB | Tạo hoặc cập nhật tên shop, nhận diện và tài khoản nhận tiền mặc định trước khi tạo checkout. Secret ký redirect chỉ được API trả một lần. / Create or update the hosted-checkout payment profile. |
| monapay_create_checkoutB | Tạo link thu tiền, đưa link cho khách hoặc chuyển hướng checkout; đợi webhook CHECKOUT_PAID trước khi giao hàng. / Create a hosted checkout link; wait for CHECKOUT_PAID before fulfilment. |
| monapay_get_checkoutA | Lấy trạng thái và chi tiết checkout theo ID; nên kiểm tra server-side trước khi giao hàng. / Get a checkout by ID. |
| monapay_list_checkoutsB | Liệt kê checkout theo trạng thái, mã đơn, khoảng ngày và phân trang. / List and filter hosted checkouts. |
| monapay_cancel_checkoutA | Huỷ checkout đang pending; checkout đã paid, expired hoặc cancelled không thể huỷ lại. / Cancel a pending checkout. |
| monapay_create_qrA | Tạo mã VietQR động điền sẵn số tiền + nội dung cho một đơn hàng qua ACB. Khách quét là tiền vào tài khoản ảo, MONA Pay bắn webhook. / Create a dynamic VietQR for an order. |
| monapay_cancel_qrB | Huỷ một mã VietQR động đã tạo. / Cancel a dynamic QR. |
| monapay_list_transactionsB | Liệt kê giao dịch tiền vào theo tài khoản ảo, phân trang tối đa 100/trang; dùng để đối soát. / List incoming transactions. |
| monapay_sandbox_transactionA | Tạo một giao dịch tiền vào GIẢ: chưa nối ngân hàng thì MONA Pay tự cấp VA sandbox SBX; MONA Pay ghi giao dịch, bắn webhook có chữ ký, gửi Telegram/email/Zalo, khớp checkout như tiền thật, không tính hạn mức. / Create a fake incoming transaction in the sandbox. |
| monapay_list_webhooksA | Liệt kê webhook đã cấu hình. / List webhook configs. |
| monapay_create_webhookC | Đăng ký URL nhận webhook khi có tiền vào; khuyến nghị auth_type HMAC_SHA256 + secret_key. / Create a webhook config. |
| monapay_update_webhookC | Cập nhật webhook (URL, secret, bật/tắt). / Update a webhook config. |
| monapay_delete_webhookC | Xoá một webhook config. / Delete a webhook config. |
| monapay_test_webhookB | MONA Pay gửi một giao dịch giả (is_dummy) tới URL để kiểm tra endpoint + chữ ký. / Send a dummy webhook. |
| monapay_webhook_logsB | Lịch sử từng lần gửi (HTTP code, thời gian phản hồi, nhãn lỗi). / Webhook delivery logs. |
| monapay_webhook_statsB | Tỷ lệ thành công, P95, phân loại lỗi. / Webhook delivery stats. |
| monapay_list_email_configsA | Liệt kê các cấu hình gửi thông báo email và trạng thái xác minh người nhận. / List email notification configs and recipient verification status. |
| monapay_create_email_configA | Tạo kênh thông báo email. Sau khi tạo, MONA Pay gửi mã 6 số tới từng địa chỉ; hỏi người dùng mã rồi gọi monapay_verify_email; không tự đoán mã. / Create an email notification config. MONA Pay sends a 6-digit code to each address; ask the user for each code, call monapay_verify_email, and never guess a code. |
| monapay_update_email_configB | Cập nhật tên, người nhận, sự kiện, VA hoặc trạng thái bật/tắt của cấu hình email. Người nhận mới phải xác minh trước khi cấu hình hoạt động. / Update an email config; new recipients must be verified before activation. |
| monapay_delete_email_configA | Xoá vĩnh viễn một cấu hình email. / Permanently delete an email notification config. |
| monapay_verify_emailA | Xác minh một người nhận bằng đúng mã 6 số người dùng đọc từ hộp thư; phải hỏi người dùng và không tự đoán mã. / Verify a recipient with the exact 6-digit code supplied by the user; never guess it. |
| monapay_resend_email_verificationB | Gửi mã xác minh mới tới một địa chỉ trong cấu hình; giới hạn 5 lần/địa chỉ/giờ. / Resend a verification code, limited to five requests per address per hour. |
| monapay_test_emailA | Gửi email mẫu tới các địa chỉ đã xác minh trong cấu hình. / Send a test notification to verified recipients in a config. |
| monapay_email_logsA | Tra meta từng lần gửi email, không chứa nội dung thư; lọc theo cấu hình, trạng thái, sự kiện và ngày. / List email delivery metadata; message bodies are never stored. |
| monapay_email_statsB | Lấy tổng số gửi, tỷ lệ thành công, P95 và nhóm lỗi trong khoảng ngày. / Get email delivery totals, success rate, P95 latency and error groups. |
| monapay_list_email_suppressionsB | Liệt kê địa chỉ bị suppression do bounce, khiếu nại hoặc tắt tay. / List suppressed recipient addresses. |
| monapay_remove_email_suppressionA | Gỡ suppression sau khi đã sửa nguyên nhân; client tự chịu trách nhiệm khi gửi lại. / Remove a suppression after fixing its cause; the client accepts responsibility for future sends. |
| monapay_list_zalo_groupsA | Liệt kê cấu hình thông báo nhóm Zalo; nhóm phải có bot Gấu Mona. |
| monapay_create_zalo_groupA | Nối nhóm có bot Gấu Mona bằng group_id 10–25 chữ số lấy từ MONA Account/PMS; Zalo không parse Markdown, nên template phải là text thuần. |
| monapay_update_zalo_groupC | Sửa cấu hình nhóm có bot Gấu Mona; group_id lấy từ MONA Account/PMS và template dùng text thuần vì Zalo không parse Markdown. |
| monapay_delete_zalo_groupB | Xoá một cấu hình thông báo nhóm Zalo. |
| monapay_test_zalo_groupA | Gửi tin thử text thuần; nhóm phải có bot Gấu Mona vì Zalo không parse Markdown. |
| monapay_zalo_group_logsC | Tra lịch sử gửi vào nhóm Zalo, lọc trạng thái thành công hoặc thất bại. |
| monapay_retry_transactionB | Gửi lại webhook hoặc Telegram cho giao dịch đã có. / Re-send webhook/Telegram for a transaction. |
| monapay_generate_keyB | Sinh client_secret mới (hiện 1 lần) để dùng header X-Client-Secret. / Generate a client secret. |
| monapay_rotate_keyA | Dùng khi secret nghi lộ; xoay key hiện tại bằng X-Client-Secret. Sau khi xoay phải cập nhật MONAPAY_CLIENT_SECRET ở plugin/agent rồi khởi động lại. / Rotate the current API key secret after suspected exposure, then update MONAPAY_CLIENT_SECRET. |
| monapay_verify_signatureA | Tính và so chữ ký HMAC-SHA256 của một webhook MONA Pay từ raw body + timestamp + secret, không gọi mạng. / Verify a webhook signature locally. |
| monapay_generate_webhook_snippetA | Trả code mẫu endpoint nhận webhook MONA Pay + verify HMAC đúng chuẩn cho PHP / Node / Python, kèm payload mẫu. / Get a webhook receiver snippet. |
| monapay_quickstartA | DIEM VAO cho y dinh "toi muon nhan tien chuyen khoan tu dong". Goi tool nay TRUOC: no kiem tra tai khoan (da noi ngan hang/VA chua, da co webhook chua) va tra ve cac BUOC TIEP THEO cu the + recipe end-to-end. / Entry point for "I want to receive bank transfers": checks state and returns concrete next steps + recipe. |
| monapay_get_transactionA | Tim 1 giao dich tien vao theo transaction_code (ma don, vd DH10234) hoac id trong mot tai khoan ao; dung de kiem "don X da thanh toan chua". / Get one incoming transaction by code/id within a virtual account. |
| monapay_get_transactions_summaryA | Tong tien vao + so giao dich + du lieu theo ngay trong khoang chon. LUU Y: MONA Pay KHONG giu tien, khong co "so du vi"; day la tong tien da vao tai khoan ngan hang cua ban. / Incoming totals over a date range (MONA Pay holds no wallet balance). |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
| integrate-monapay | Hướng dẫn agent tích hợp nhận tiền chuyển khoản tự động bằng MONA Pay theo 6 bước |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
| monapay-llms | Mục lục tài liệu MONA Pay dạng máy đọc |
TDQS
Scored across 50 tools
Most tools target a clearly distinct resource+action (checkouts, QR, webhooks, email, Zalo, keys, transactions), and the OTP/verification tools are well differentiated. The main overlap is monapay_me vs monapay_whoami, which both return account/connection profile info and could be confused, plus three separate 'verify_*' tools that need careful reading.
Nearly everything follows a consistent monapay_verb_noun snake_case pattern (get_checkout, create_webhook, delete_zalo_group), which is very predictable. A few noun-only outliers (monapay_me, monapay_whoami, monapay_quickstart) break the verb pattern slightly.
50 tools is heavy; while the domain genuinely spans multiple subsystems (bank linking, checkouts, QR, webhooks, email, Zalo, API keys), the surface is large enough to strain selection and could be consolidated (e.g. unified notification-channel CRUD). It sits at the extreme end of the recommended range.
Coverage is thorough: full CRUD plus test/logs/stats for webhooks, email and Zalo; a complete 4-step bank-linking OTP flow; checkout lifecycle (create/get/list/cancel); transactions, summaries, key management, signature verification and sandboxing. No obvious dead ends for the stated payment-receiving domain.