prestige-entitlement
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@prestige-entitlementwhy is premium_forecast blocked?"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
prestige-entitlement
Standalone RevenueCat MCP entitlement proxy for Burning Token 2026.
This is not part of prestige-mcp. It sits in front of PrestigeMCP as a separate package: schema compression and tiered loading stay in prestige-mcp; this repo only does boolean entitlement gating.
What it does
Maps an authenticated PrestigeMCP principal to a trusted RevenueCat customer id (server-side, never client-supplied at call time).
tools/listpreviews locked premium tools after PrestigeMCP compression/tiering.tools/callanswersENTITLEMENT_REQUIREDlocally. Blocked premium calls never reach the upstream MCP server.Signed RevenueCat webhooks update a local cache. Execution does not call RevenueCat.
Fail closed for premium if the cache is unverifiable. Free tools stay up during an outage.
Emits
notifications/tools/list_changedwhen entitlements change the catalog.GoldTrac-compatible evidence receipts. No payment details, secrets, or raw principals.
Related MCP server: Enterprise MCP Gateway and Tool Registry
Demo (seven beats)
npm install
npm test
npm run demoFree tool succeeds.
Premium tool is blocked.
RevenueCat entitlement is activated.
Signed webhook updates the proxy.
Tool catalog refreshes.
Premium tool succeeds.
Evidence records authorization and execution.
HMAC
X-RevenueCat-Webhook-Signature: t=<unix>,v1=<hmac_sha256_hex> over "<t>." + rawBody. Verify the untouched raw bytes, constant-time compare, 300s timestamp window, event.id idempotency.
Set REVENUECAT_WEBHOOK_SECRET in the environment. Sandbox fixtures use whsec_sandbox_not_a_real_secret. Never commit live keys.
Error shape
JSON-RPC success with MCP tool result isError: true and structuredContent.code = "ENTITLEMENT_REQUIRED" plus upgradeUrl. This is not JSON-RPC -32002.
Run as a proxy
REVENUECAT_WEBHOOK_SECRET=... npx tsx src/cli.ts --webhook-port 8787 -- npx tsx src/cli.ts --sampleOr --sample for an in-process premium catalog (echo, add, goldtrac_trace, premium_forecast).
This server cannot be deployed
Maintenance
Related MCP Connectors
- TieruxOAuthcom.tierux
Server-side purchase verification and entitlements for Google Play and Apple App Store over MCP.
Zero-setup MCP gateway securely connecting AI to your tools with authentication and workflows
Find, vet, and run MCP tools through a secure audited gateway with prompt-injection risk scoring
Monetize any MCP server: x402 paywall, pay-per-call billing in USDC on Base, agent marketplace.
Related MCP Servers
- AlicenseBqualityCmaintenanceSecurity gateway that wraps any MCP server with per-tool policies, approval gates, and optional Ed25519-signed decision receipts. Shadow mode logs every tool call without blocking; enforce mode applies block, rate-limit, and minimum-tier rules. Receipts are independently verifiable offline with no accounts needed.5785 npm10MIT
- AlicenseNot gradedqualityDmaintenanceEnables AI agents to discover and execute tools via a secure MCP server with JWT authentication, RBAC, rate limiting, and audit logging.1MIT
- FlicenseAqualityDmaintenanceMCP server for RevenueCat that lets AI agents query subscriber data, check entitlements, fetch offerings, and manage subscriptions via natural language.6-
- AlicenseNot gradedqualityCmaintenanceEnables MCP tools to be gated behind per-call USDC micropayments with direct on-chain verification and settlement, removing the need for third-party payment facilitators.MIT