Square for AI agents

Square handles payment processing, point-of-sale systems, and invoicing for sellers of every size, from a coffee shop terminal to a full online store checkout flow. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.

Finance and accountingOAuth 2.0MCP + RESTsquareup.com
AUDIT LOG · SQUAREPOLICY: acme-support
09:41:07 · claude · u_8f2read
square.list_cards
List Cards✓ allowed · 212ms
09:41:08 · claude · u_8f2read
square.get_booking
Get Booking✓ allowed · 164ms
09:41:09 · claude · u_8f2write
square.create_card
Create Card✓ approved · approved by user
09:41:12 · claude · u_8f2destructive
square.delete_invoice
Delete Invoice✕ blocked · policy: deny
EVERY SQUARE CALL, ON THE RECORD
01 · USE CASES

What agents do in Square.

01

Check an order before issuing a refund

Get an order's details and payment status before an agent issues a refund against it.

02

Send a customer an invoice

Create an invoice for a customer with the agreed line items, ready to send for payment.

03

Confirm before deleting a customer

Review a customer's order history before deleting their record, since the removal is permanent.

02 · ACTIONS

122 Square actions, graded by risk.

Every Square action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.

read

59

Look things up. Allowed by default.

  • square.list_cards
    List Cards
  • square.get_booking
    Get Booking
  • square.get_invoice
    Get Invoice
  • square.get_merchant
    Get Merchant
  • square.list_channels
    List Channels
  • square.list_invoices
    List Invoices
  • square.list_payments
    List Payments
  • square.search_orders
    Search Orders
  • square.list_customers
    List Customers
  • square.list_locations
    List Locations
  • square.list_merchants
    List Merchants
  • square.get_team_member
    Get Team Member
  • square.get_subscription
    Get Subscription
  • square.search_customers
    Search Customers
  • square.list_subscriptions
    List Subscriptions
  • square.get_loyalty_account
    Get Loyalty Account
+ 43 MORE

write

40

Create and change things. Allow, or ask the user first.

  • square.create_card
    Create Card
  • square.create_order
    Create Order
  • square.update_order
    Update Order
  • square.update_booking
    Update Booking
  • square.create_customer
    Create Customer
  • square.create_location
    Create Location
  • square.update_customer
    Update Customer
  • square.update_location
    Update Location
  • square.create_team_member
    Create Team Member
  • square.update_team_member
    Update Team Member
  • square.add_group_to_customer
    Add Group to Customer
  • square.create_bulk_customers
    Create Bulk Customers
  • square.create_customer_group
    Create Customer Group
  • square.update_customer_group
    Update Customer Group
  • square.update_customers_bulk
    Bulk Update Customers
  • square.create_gift_card_activity
    Create Gift Card Activity
+ 24 MORE

destructive

23

Delete, cancel or archive. Ask first, or deny outright.

  • square.cancel_booking
    Cancel Booking
  • square.cancel_invoice
    Cancel Invoice
  • square.cancel_payment
    Cancel Payment
  • square.delete_invoice
    Delete Invoice
  • square.delete_customer
    Delete Customer
  • square.delete_catalog_object
    Delete Catalog Object
  • square.delete_customer_group
    Delete Customer Group
  • square.delete_customers_bulk
    Bulk Delete Customers
  • square.delete_dispute_evidence
    Delete Dispute Evidence
  • square.delete_invoice_attachment
    Delete Invoice Attachment
  • square.remove_group_from_customer
    Remove Group From Customer
  • square.delete_webhook_subscription
    Delete Webhook Subscription
  • square.delete_catalog_objects_batch
    Delete Catalog Objects (Batch)
  • square.delete_customer_custom_attribute
    Delete Customer Custom Attribute
  • square.delete_location_custom_attribute
    Delete Location Custom Attribute
  • square.delete_merchant_custom_attribute
    Delete Merchant Custom Attribute
+ 7 MORE
03 · HOW IT WORKS

Square in three steps.

  1. 01Your users connect SquareThey sign in to Square on Arc0 Connect, under your brand, and approve the access you ask for.
  2. 02You set the rulesReads run, writes like “create Card” can wait for the user, and “delete Invoice” can be denied outright.
  3. 03Any agent can actYour agent calls Square through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
POLICY.TS
await arc0.policies.set('square', {
  read: 'allow',
  write: 'ask',        // create_card
  destructive: 'deny',  // delete_invoice
})

# Claude Code: the same connection, one URL
$ claude mcp add --transport http arc0 \
    https://mcp.arc0.ai/u/u_8f2
04 · AUTH AND DATA

How Square connects.

Users sign in to Square on Arc0 Connect and approve the scopes you request. Build with Arc0’s Square OAuth app, or bring your own so the Square consent screen names you. Tokens refresh automatically, and you can export them whenever you want.

The same Square connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →

AUTH
OAuth 2.0
CREDENTIALS
Per-tenant encrypted vault
MODEL SEES
Results only, never credentials
AUDIT LOG
Every call, on every plan
05 · WORKS WITH

Use Square from any agent.

Claude
ChatGPT
Cursor
Codex
VS Code
OpenAI Agents SDK
Claude Agent SDK
Vercel AI SDK
Mastra
LangGraph
07 · FAQ

Square and Arc0, answered.

Q01

Can I use Square with Claude, ChatGPT or Cursor?

Yes. Connect Square to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Square actions you allow.

Q02

How do users connect Square?

Users sign in to Square on Arc0 Connect and approve the scopes you request. Build with Arc0’s Square OAuth app, or bring your own so the Square consent screen names you. Tokens refresh automatically, and you can export them whenever you want.

Q03

Which Square actions can my agent take?

122 in total: 59 read, 40 write and 23 destructive, such as “create Card”. Your policies decide which of them each agent may call.

Q04

Can I stop my agent from deleting things in Square?

Yes. Actions like “delete Invoice” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.

Q05

Can my own backend call Square too?

Yes. The same Square connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.

Get started

Plug Square into your agent.

Your users connect Square once, under your brand. Your agent gets 122 actions behind your policies, with every call on the record.

Free to build · MCP + REST · Audit log on every plan