Paypal for AI agents
PayPal is a widely used online payment system for transferring money and processing transactions as an alternative to traditional payment methods. Businesses use it to accept and send payments globally. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Paypal.
Create an invoice for a client
Generate an invoice with line items and a due date and send it to a customer.
Check a subscription's status read-only
Look up a subscription's billing status before responding to a customer's question.
Capture a payment with approval
Capture an authorized order payment only after the order is confirmed ready to fulfill.
78 Paypal actions, graded by risk.
Every Paypal action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
34Look things up. Allowed by default.
- paypal.get_planGet Plan
- paypal.get_orderGet Order Details
- paypal.list_plansList billing plans
- paypal.get_invoiceGet Invoice
- paypal.get_paymentGet Payment Details
- paypal.get_productGet Product
- paypal.get_webhookGet Webhook
- paypal.get_userinfoGet PayPal User Info
- paypal.get_user_infoGet User Info
- paypal.list_disputesList PayPal Disputes
- paypal.list_invoicesList PayPal Invoices
- paypal.list_paymentsList Payments
- paypal.list_productsList PayPal Products
- paypal.list_webhooksList Webhooks
- paypal.list_templatesList PayPal Invoice Templates
- paypal.get_web_profileGet Web Profile
write
32Create and change things. Allow, or ask the user first.
- paypal.create_planCreate a billing plan
- paypal.send_invoiceSend Invoice
- paypal.create_invoiceCreate invoice
- paypal.create_paymentCreate PayPal payment
- paypal.create_productCreate Product
- paypal.create_webhookCreate a webhook
- paypal.update_disputeUpdate Dispute
- paypal.update_invoiceUpdate Invoice (Full)
- paypal.create_templateCreate template
- paypal.update_templatesUpdate template
- paypal.add_batch_trackersAdd Batch Tracking Information
- paypal.create_web_profileCreate a web experience profile
- paypal.update_web_profileUpdate web experience profile
- paypal.create_subscriptionCreate Subscription
- paypal.create_webhook_lookupCreate a webhook lookup
- paypal.update_pay_pal_productUpdate product (partial)
destructive
12Delete, cancel or archive. Ask first, or deny outright.
- paypal.cancel_invoiceCancel Invoice
- paypal.delete_invoiceDelete Invoice
- paypal.delete_webhookDelete Webhook
- paypal.delete_templateDelete Template
- paypal.cancel_remindersCancel Invoice Reminders
- paypal.delete_web_profileDelete Web Experience Profile
- paypal.delete_external_paymentDelete Invoice External Payment
- paypal.delete_payment_resourceDelete Payment Resource
- paypal.delete_invoice_refund_recordDelete Invoice Refund Record
- paypal.delete_invoice_payment_recordDelete invoice payment record
- paypal.deactivate_planDeactivate Plan
- paypal.get_payments_refundGet Refund Details
Paypal in three steps.
- 01Your users connect PaypalThey add their Paypal oauth 2.0 client credentials on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, writes like “create a billing plan” can wait for the user, and “delete Invoice” can be denied outright.
- 03Any agent can actYour agent calls Paypal through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('paypal', { read: 'allow', write: 'ask', // create_plan destructive: 'deny', // delete_invoice }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Paypal connects.
Connect Paypal with a service credential for your workspace. Arc0 keeps it in the vault, exchanges it for short-lived tokens, and never passes it to the model.
The same Paypal connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- OAuth 2.0 client credentials
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Paypal from any agent.
More finance and accounting apps.
Paypal and Arc0, answered.
Can I use Paypal with Claude, ChatGPT or Cursor?
Yes. Connect Paypal to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Paypal actions you allow.
How do users connect Paypal?
Connect Paypal with a service credential for your workspace. Arc0 keeps it in the vault, exchanges it for short-lived tokens, and never passes it to the model.
Which Paypal actions can my agent take?
78 in total: 34 read, 32 write and 12 destructive, such as “create a billing plan”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Paypal?
Yes. Actions like “delete Invoice” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Paypal too?
Yes. The same Paypal connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Paypal into your agent.
Your users connect Paypal once, under your brand. Your agent gets 78 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan