← All servers

Assinafy

warnings

mcp.assinafy.com.br

Send documents for legally valid e-signature in Brazil, track signers and download signed files.

https://mcp.assinafy.com.br/mcpWebsiteOAuthMCP 2025-11-25vv3.0.7last checked 26 Sep 2026spoke MCP on 1 of 1 check (30 days)initialize in 671 ms

Will my client connect?

Decided from what the probe found at the endpoint, and from what each client's own documentation says it can complete. Every row carries the day that documentation was read.

✓Claude CodeConnects with setup

The registration flow this server advertises is not one Claude Code documents, so register a client with the issuer yourself and give Claude Code the client ID.

claude mcp add --transport http --client-id <your-client-id> --client-secret --callback-port 8080 assinafy https://mcp.assinafy.com.br/mcp

Claude Code docs · read on 2026-08-30

✓Claude (claude.ai & Desktop)Connects with setup

The registration flow this server advertises is not one Claude (claude.ai & Desktop) documents, so register a client with the issuer yourself and give Claude (claude.ai & Desktop) the client ID.

Settings → Connectors → Add custom connector, then paste https://mcp.assinafy.com.br/mcp. Under Advanced settings, enter the OAuth Client ID and Secret the issuer gave you.

Claude (claude.ai & Desktop) docs · read on 2026-08-30

✓ChatGPTConnects

The authorization server supports Client ID Metadata Documents, so ChatGPT identifies itself by URL with no registration step.

Settings → Apps → Advanced settings → Developer mode, then create a connector pointing at https://mcp.assinafy.com.br/mcp.

ChatGPT docs · read on 2026-08-30

✓CursorConnects with setup

The registration flow this server advertises is not one Cursor documents, so register a client with the issuer yourself and give Cursor the client ID.

{
  "mcpServers": {
    "assinafy": {
      "url": "https://mcp.assinafy.com.br/mcp"
    }
  }
}

Cursor docs · read on 2026-08-30

✓VS Code (Copilot)Connects with setup

The registration flow this server advertises is not one VS Code (Copilot) documents, so register a client with the issuer yourself and give VS Code (Copilot) the client ID.

{
  "servers": {
    "assinafy": {
      "oauth": {
        "clientId": "<your-client-id>"
      },
      "type": "http",
      "url": "https://mcp.assinafy.com.br/mcp"
    }
  }
}

VS Code (Copilot) docs · read on 2026-08-30

How to authenticate

Checked against the endpoint by our probe on 26 Sep 2026. These are the capabilities the server advertises, not a prediction about any particular client.

Scheme
OAuth
Issuer
https://auth.assinafy.com.br
Dynamic client registration
✕Not advertised
Client ID Metadata Document
✓Supported

A client identifies itself by a URL to its own metadata, so no registration step is required.

PKCE
✓S256
Grant types
authorization_code, refresh_token, urn:ietf:params:oauth:grant-type:token-exchange
Scopes
documents:read, documents:write, templates:read, templates:write, account:read, webhooks:write, openid, profile, email, offline_access
Protected-resource metadata
✓Published (RFC 9728)
Anonymous access
Handshake succeeds; 11 tools listable
Credentials demanded in prose
✕assinafy_verify_document

These tools are listed anonymously and their own descriptions ask for an account or key, but no challenge is issued — so a client has nothing to act on and the refusal arrives as a tool error.

What the probe found

warningTools needing credentials are listed without a challenge

1 of the 11 tools listed anonymously say in their own descriptions that they need an account or a key (assinafy_verify_document), but the endpoint issued no WWW-Authenticate challenge. The requirement is stated only in prose, so a call reaches the tool and comes back as a tool error instead of an authorization step.

No CORS headers for browser-based clients

A cross-origin preflight came back without Access-Control-Allow-Origin, so the endpoint is reachable from native clients only — code running in a web page is stopped by the browser before a request is ever sent.

11 tools usable without signing in

The server exposes a public surface before authorization: assinafy_check_fields, assinafy_delete_document, assinafy_download_document, assinafy_find_documents, assinafy_find_signers, assinafy_find_templates, assinafy_follow_up_assignment, assinafy_prepare_document, assinafy_request_signatures, assinafy_save_signer, assinafy_verify_document.

Tools

assinafy_check_fieldsassinafy_delete_documentassinafy_download_documentassinafy_find_documentsassinafy_find_signersassinafy_find_templatesassinafy_follow_up_assignmentassinafy_prepare_documentassinafy_request_signaturesassinafy_save_signerassinafy_verify_document

Contract history

26 Sep 2026vv3.0.7first recorded contract

Watch this server

Save its public contract as a baseline and manage breaking-change email alerts.

Set up a watch

Own this server?

Sign in to claim this listing by proving control of its host.

Status badge

Status for a README, from the last probe — cached an hour, so up to seven hours behind the endpoint. Links back to this page.

MCP status badge for Assinafy
[![MCP status](https://mcpi.app/servers/assinafy/badge.svg)](https://mcpi.app/servers/assinafy)