For developers & AI-forward teams

Connect your AI assistant to your books

The KikoBooks MCP server is an open-source Model Context Protocol server that gives Claude, ChatGPT, and GitHub Copilot secure, governed access to a KikoBooks organization — 116 tools across bookkeeping, reports, banking, CRM, proposals and workflow. Read-only by default, scoped write when you approve it, and secrets are never exposed.

116 tools Claude · ChatGPT · Copilot Approval-gated writes npm · MIT

Ask your assistant

"What's my cash position and runway?"
"Show me AR aging and who's overdue."
"Categorize last month's transactions for review."
"Draft journal entries for payroll — I'll approve."

How it works

Your assistant talks to KikoBooks through the MCP server. Reads flow freely; writes stop at the approval gate until you say go.

You

Ask a question or request work in plain language.

Your AI assistant

Claude, ChatGPT, or Copilot picks the right tools.

MCP server

116 governed tools over the KikoBooks API.

Approval gate

Reads pass through; writes wait for your sign-off.

Your ledger

Changes land in KikoBooks with a full audit trail.

Read-only by default. Scope tiers and the approval gate are yours to set — and revoke anytime.

Quick start

Connected in under five minutes

Grab an API key from your KikoBooks organization settings, add one block to your assistant's config, and start asking. The server is published on npm — npx pulls it automatically.

Claude Desktop · claude_desktop_config.json

{
  "mcpServers": {
    "kikobooks": {
      "command": "npx",
      "args": ["-y", "@agentkiko/kikobooks-mcp-server@latest"],
      "env": {
        "KIKOBOOKS_BASE_URL": "https://ai.kikobooks.com",
        "KIKOBOOKS_API_KEY": "your_api_key"
      }
    }
  }
}

VS Code (GitHub Copilot) · .vscode/mcp.json

{
  "servers": {
    "kikobooks": {
      "command": "npx",
      "args": ["-y", "@agentkiko/kikobooks-mcp-server@latest"],
      "env": {
        "KIKOBOOKS_BASE_URL": "https://ai.kikobooks.com",
        "KIKOBOOKS_API_KEY": "your_api_key"
      }
    }
  }
}
You stay in control

Scoped access, by design

Read tools always load. Mutating tools are grouped into scope tiers you can suppress at startup — so you can hand an assistant read-only analysis, or let it draft changes while holding writes for your approval. Authenticate with an org API key (auto-exchanged for short-lived JWTs); the key itself is never written to disk or returned to the model.

Read the operating guide

TierEnvironment flagWhat it gates
Read Always on—Every get_* and search_* tool — reporting, analysis, discovery.
WriteKIKOBOOKS_DISABLE_WRITEcreate_*, post_*, reverse_*, move_*, promote_*, copy_*, generate_*
UpdateKIKOBOOKS_DISABLE_UPDATEupdate_* tools
DeleteKIKOBOOKS_DISABLE_DELETEdelete_*, void_* tools

116 tools, one ledger

The full KikoBooks org — core bookkeeping, practice management, banking, and analytics — exposed as typed MCP tools over the public REST API.

Core bookkeeping

Chart of Accounts

  • search_accounts
  • get_account
  • create_account
  • update_account
Accounts receivable

Customers & Invoices

  • search_customers
  • create_invoice
  • update_invoice
  • create_payment
  • create_credit_memo
  • create_sales_receipt
Accounts payable

Vendors & Bills

  • search_vendors
  • create_bill
  • void_bill
  • create_bill_payment
  • create_purchase
General ledger

Journal Entries

  • search_journal_entries
  • create_journal_entry
  • post_journal_entry
  • reverse_journal_entry
Catalog

Items

  • search_items
  • get_item
  • create_item
  • update_item
Read-only

Reports

  • get_trial_balance
  • get_profit_and_loss
  • get_ar_aging
  • get_ap_aging
  • get_cash_position
  • get_business_health
Banking

Bank & Reconciliation

  • search_bank_accounts
  • search_bank_transactions
  • start_reconciliation
  • complete_reconciliation
  • get_reconciliation_summary
Treasury

Deposits & Fixed Assets

  • create_deposit
  • post_deposit
  • create_fixed_asset
  • run_depreciation
  • dispose_fixed_asset
Automation

Recurring & Statements

  • search_recurring_schedules
  • generate_recurring_invoice
  • search_statements
  • send_statement
Practice · Sales module

CRM

  • search_leads
  • create_deal
  • get_pipeline
  • move_deal_stage
  • promote_deal_to_customer
Practice · Sales module

Proposals

  • search_proposals
  • copy_proposal
  • generate_invoice_from_proposal
  • create_job_from_proposal
Practice · Workflow module

Workflow

  • search_jobs
  • list_job_tasks
  • update_task_status
  • generate_invoice_from_job

Plus connection & discovery tools (get_connection_status, get_enabled_modules) and lifecycle bridges: CRM deal → proposal → job → invoice, end to end. See the full list →

Governed by the same engine as Kiko

The MCP server is a client of KikoBooks — it inherits the platform's approval-aware controls, not a side door around them.

Status-first connect

Agents are told to call get_connection_status and get_enabled_modules before acting — no blind writes.

Read-back verification

Every write is followed by a read to confirm the change landed as intended — and surfaced for your approval.

Secrets stay secret

API keys are exchanged for short-lived JWTs and never persisted or returned to the model. Scope is yours to set and revoke.

MCP, answered

The questions developers and finance teams ask before connecting an assistant to their books.

Which AI assistants work with it?

  • Any Model Context Protocol client — including Claude Desktop, ChatGPT, and GitHub Copilot in VS Code. If your tool speaks MCP, it can connect.

Can my assistant change my books, or just read them?

  • Your choice. Read tools (get_*, search_*) always load. Writes are grouped into scope tiers you switch on with KIKOBOOKS_DISABLE_WRITE, _UPDATE, and _DELETE — so you can start read-only for analysis and enable scoped writes when you’re ready. Every write is read back and surfaced for approval.

Is it secure? What happens to my API key?

  • Your org API key is exchanged for short-lived JWTs and is never written to disk or returned to the model. The server only exposes typed tools over the public REST API — no raw credentials, and connection status never leaks secrets. You can revoke access anytime from KikoBooks.

Do I need to be a developer?

  • No. The server is published on npm, so npx pulls it automatically — you just paste one config block into your assistant and add your API key. No build step, no server to host.

What can my AI actually do?

  • 116 tools span the whole org: chart of accounts, customers, invoices, vendors, bills, journal entries, payments, expenses; reports (trial balance, P&L, AR/AP aging, cash position, business health); banking & reconciliation; deposits, fixed assets, recurring schedules and statements; plus CRM, proposals and workflow with end-to-end lifecycle bridges.

Does it work for firms with multiple clients?

  • Yes. Connect one client org per API key and set the access per org. CRM, Proposals, and Workflow tools require the Sales / Workflow modules — always on for accounting firms, opt-in for self-service businesses. Call get_enabled_modules to check.

Point your AI assistant at your books

Start free, grab an API key, and connect Claude, ChatGPT, or Copilot in minutes — with read-only analysis today and approval-gated writes when you're ready.