Tapfiliate for AI agents
Tapfiliate runs affiliate and referral programs, tracking affiliates, commissions, and payouts for businesses that pay partners to drive sales. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.
What agents do in Tapfiliate.
List commissions owed
Pull the current list of commissions across a program, a read-only check before payout.
Create a new affiliate
Add a new affiliate along with their program and commission terms.
Confirm before canceling a payment
Get approval before canceling a scheduled affiliate payment, since that action can't be undone once processed.
40 Tapfiliate actions, graded by risk.
Every Tapfiliate action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.
read
19Look things up. Allowed by default.
- tapfiliate.get_programRetrieve a Program
- tapfiliate.list_balancesList all balances
- tapfiliate.list_customersList all customers
- tapfiliate.list_conversionsList conversions
- tapfiliate.list_all_affiliatesList all affiliates
- tapfiliate.list_affiliate_notesList affiliate notes
- tapfiliate.list_program_bonusesList program bonuses
- tapfiliate.list_affiliate_groupsList all affiliate groups
- tapfiliate.get_affiliate_balancesGet Affiliate Balances
- tapfiliate.get_affiliate_prospectGet Affiliate Prospect
- tapfiliate.list_affiliate_paymentsList affiliate's payments
- tapfiliate.list_affiliate_programsList Affiliate Programs
- tapfiliate.list_program_affiliatesList program affiliates
- tapfiliate.list_program_mlm_levelsList program MLM levels
- tapfiliate.list_affiliate_meta_dataList Affiliate Meta Data
- tapfiliate.list_affiliate_prospectsList Affiliate Prospects
write
16Create and change things. Allow, or ask the user first.
- tapfiliate.create_affiliateCreate an Affiliate
- tapfiliate.create_affiliate_noteCreate Affiliate Note
- tapfiliate.create_affiliate_groupCreate Affiliate Group
- tapfiliate.update_affiliate_groupUpdate Affiliate Group
- tapfiliate.create_affiliate_prospectCreate Affiliate Prospect
- tapfiliate.set_affiliate_groupSet Affiliate Group
- tapfiliate.set_affiliate_parentSet Affiliate Parent
- tapfiliate.set_affiliate_meta_dataSet Affiliate Meta Data
- tapfiliate.payments_create_a_paymentCreate a Payment
- tapfiliate.payments_list_all_paymentsList all payments
- tapfiliate.programs_list_all_programsList all programs
- tapfiliate.payments_retrieve_a_paymentRetrieve a Payment
- tapfiliate.set_affiliate_meta_data_by_keySet Affiliate Metadata by Key
- tapfiliate.affiliates_retrieve_an_affiliateRetrieve an Affiliate
- tapfiliate.commissions_list_all_commissionsList all commissions
- tapfiliate.payout_methods_list_all_payout_methodsList all payout methods
destructive
5Delete, cancel or archive. Ask first, or deny outright.
- tapfiliate.cancel_paymentCancel a Payment
- tapfiliate.delete_an_affiliateDelete an affiliate
- tapfiliate.remove_affiliate_groupRemove affiliate group from affiliate
- tapfiliate.delete_affiliate_prospectDelete an affiliate prospect
- tapfiliate.delete_affiliate_meta_dataDelete affiliate meta data
Tapfiliate in three steps.
- 01Your users connect TapfiliateThey add their Tapfiliate api key on Arc0 Connect, under your brand. It goes straight into the vault.
- 02You set the rulesReads run, writes like “create an Affiliate” can wait for the user, and “delete an affiliate” can be denied outright.
- 03Any agent can actYour agent calls Tapfiliate through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
await arc0.policies.set('tapfiliate', { read: 'allow', write: 'ask', // create_affiliate destructive: 'deny', // delete_an_affiliate }) # Claude Code: the same connection, one URL $ claude mcp add --transport http arc0 \ https://mcp.arc0.ai/u/u_8f2
How Tapfiliate connects.
Users add their Tapfiliate api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
The same Tapfiliate connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →
- AUTH
- API key
- CREDENTIALS
- Per-tenant encrypted vault
- MODEL SEES
- Results only, never credentials
- AUDIT LOG
- Every call, on every plan
Use Tapfiliate from any agent.
Tapfiliate and Arc0, answered.
Can I use Tapfiliate with Claude, ChatGPT or Cursor?
Yes. Connect Tapfiliate to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Tapfiliate actions you allow.
How do users connect Tapfiliate?
Users add their Tapfiliate api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.
Which Tapfiliate actions can my agent take?
40 in total: 19 read, 16 write and 5 destructive, such as “create an Affiliate”. Your policies decide which of them each agent may call.
Can I stop my agent from deleting things in Tapfiliate?
Yes. Actions like “delete an affiliate” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.
Can my own backend call Tapfiliate too?
Yes. The same Tapfiliate connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.
Plug Tapfiliate into your agent.
Your users connect Tapfiliate once, under your brand. Your agent gets 40 actions behind your policies, with every call on the record.
Free to build · MCP + REST · Audit log on every plan