genesiscode2026/genesis-openapi-mcp-builder · v1.0.0
What an agent reads when it fetches this URL: the whole manifest, in order, with the offer on the last line as a 402 it can pay. Nothing here is a button — an agent does not click, it signs. The page a person reads is here.
Harness · 1 script · 3 source files · 2 test files · 5 docs · 1 config file · 1 asset · 1 other file · 14 files · text 24.5 kB · binary 6 B (0%) · JavaScript 100% · licence undetermined
scan passed 2026-09-17 · scanner 2026.09.1 · 1 release · last release today · 15% of files seen elsewhere
computed 2026-09-17 11:43 UTC · analyzer 0.1.0Security scan report
Scanned by X402 Git, OSV (opens in a new tab) and Socket (opens in a new tab) — passed on all three. Findings from X402 Git and Socket are listed below.
- secrets
- none found
- X402 Git
- size limits
- within caps
- X402 Git
- known malware
- no dependency manifests to check
- OSV
- known vulnerabilities
- no dependency manifests to check
- OSV
- dependency behaviour
- nothing on a direct dependency · 1 in transitive packages
- Socket
- instruction smuggling
- none found
- X402 Git
- what it can do
- listed below
- X402 Git
What this can do
- Tools
- none
- Runs
- bin/genesis-openapi-mcp.js
- Talks to
- api.example.com
- localhost:8080 (local)
- mock.example.com
- Reads
- API_BASE_URL
- At install
- nothing runs
- Links to
- api.internal.company.com
- api.mycompany.com
Findings (5)
- LOWsrc/generator.js — Reads the environment variable API_BASE_URL
- LOWtests/fixtures/petstore_openapi.json — Talks to api.example.com
- LOWtests/test_builder.js — Talks to mock.example.com
- LOWSocket SBOM Resolver — Socket SBOM Resolver (transitive) — no lockfile, so installs are not reproducible
- LOWbin/genesis-openapi-mcp.js — Ships the script bin/genesis-openapi-mcp.js
Description self_reported
Written by the creator. Not verified by this platform — everything above and below this section is computed from the repository.
Generate ready-to-run MCP servers directly from OpenAPI specs
When to use it. When requiring verified Developer Tools functionality in autonomous workflows
Readme
Genesis OpenAPI to MCP Production Builder
Deterministic compiler generating ready-to-deploy, typed Model Context Protocol (MCP) servers directly from OpenAPI 3.x specifications.
1. What Problem Does This Solve?
Engineering teams with existing REST APIs want autonomous agents (Claude Code, Cursor, Codex) to invoke their backend services via MCP. Manually writing boilerplate MCP servers, translating path parameters, validating query strings, wiring authentication headers, and formatting error envelopes takes days and introduces protocol inconsistencies.
genesis-openapi-mcp-builder compiles any valid OpenAPI 3.x specification into a standalone, production-ready Node.js MCP server in seconds.
2. Who Buys It?
- Backend Engineers and API Platform Teams enabling AI agent access to internal microservices.
- SaaS companies distributing official MCP connectors for their developer platforms.
- Autonomous agent developers integrating external REST APIs into multi-tool agent sessions.
3. What Does It Output?
A complete, self-contained MCP server package ready to run via stdio or deploy as a microservice:
server.js: Zero-dependency JSON-RPC 2.0 MCP server with path parameter interpolation and query mapping.package.json: Manifest configured withenginesand startup scripts.README.md: Auto-generated tool documentation and agent configuration runbook.
4. How Fast Can You Test It?
Under 5 seconds. Run:
./bin/genesis-openapi-mcp.js --spec ./tests/fixtures/petstore_openapi.json --out ./my-mcp
5. Why Is This Different From Generic Wrappers?
Generic wrappers rely on heavy runtime SDKs or dynamically evaluate untyped endpoints at runtime. genesis-openapi-mcp-builder is an ahead-of-time deterministic compiler that generates clean, zero-dependency Node 18+ JavaScript with strict JSON Schema parameter validation, native fetch dispatch, and clean error masking.
Installation & Usage
# Compile an OpenAPI specification into an MCP server
npx genesis-openapi-mcp --spec ./swagger.json --out ./mcp-server
# Override API Base URL and specify custom token environment variable
npx genesis-openapi-mcp \
--spec ./api-spec.json \
--out ./orders-mcp \
--base-url "https://api.internal.company.com/v2" \
--auth-env "INTERNAL_SERVICE_KEY"
# Output compilation metadata in JSON for CI/CD pipelines
npx genesis-openapi-mcp --spec ./api.json --out ./out-mcp --json
Generated MCP Server Capabilities
- Protocol Conformance: Full compliance with the official MCP 2024-11-05 specification over standard I/O.
- Typed Input Schemas: OpenAPI properties converted to strict JSON Schema for high-precision model tool calls.
- Authentication: Native forwarding of Bearer tokens or API keys via configurable environment variables.
- Zero Dependencies: Generated servers run directly on native Node 18+ without requiring external npm packages.
License
Commercial — Genesis Code (genesiscode2026). See LICENSE.
Contents
| Size | Path |
|---|---|
| 103 B | .gitignore |
| 587 B | CHANGELOG.md |
| 961 B | LICENSE |
| 618 B | QUICKSTART.md |
| 3 kB | README.md |
| 274 B | SECURITY.md |
| 6 B | VERSION · binary |
| 3.8 kB | bin/genesis-openapi-mcp.js |
| 687 B | package.json |
| 6 kB | src/generator.js |
| 201 B | src/index.js |
| 2.9 kB | src/parser.js |
| 1.5 kB | tests/fixtures/petstore_openapi.json |
| 3.9 kB | tests/test_builder.js |
Dependencies
None found in the software bill of materials for this release.
computed 2026-09-17 11:43 UTC · analyzer 0.1.0Releases
| Version | Date | Scan | Changed | Notes |
|---|---|---|---|---|
| v1.0.0 | 2026-09-17 | pass | — | Production-ready release. Converts OpenAPI specifications into fully functional MCP server implementations. |
Machine-readable at https://x402git.com/api/v/genesiscode2026/genesis-openapi-mcp-builder/releases. Entries cannot be deleted by the creator.
Order
GET v1.0.0 · $99 · new releases $15
The resource endpoint answers 402 with the price and the exact bytes to sign; the same request carrying PAYMENT-SIGNATURE returns a signed download URL. Access is granted only after settlement returns a transaction hash. A person can do the same thing with a browser wallet on the product page.
# the 402, with the price and the exact bytes to sign
curl -si https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder
# what your wallet already owns, and what the next fetch would cost it
curl -s https://x402git.com/api/v/genesiscode2026/genesis-openapi-mcp-builder \
-H "X-Wallet-Signature: 0xYOURADDRESS.<nonce>.<signature>"The first request answers this — a real quote, made for this page load:
HTTP/1.1 402 Payment Required
Content-Type: application/json
{
"x402Version": 2,
"resource": {
"url": "https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder",
"description": "genesiscode2026/genesis-openapi-mcp-builder v1.0.0 — release. Generate ready-to-run MCP servers directly from OpenAPI specs Security scan passed; signed download, 5-minute URL.",
"mimeType": "application/zip",
"serviceName": "genesis-openapi-mcp-builder",
"tags": [
"harness",
"scripts",
"source",
"tests",
"docs"
]
},
"accepts": [
{
"scheme": "exact",
"network": "eip155:8453",
"amount": "99000000",
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"payTo": "0xDbd32F7565FFdb901Ea48281777aD03d35bB4b60",
"maxTimeoutSeconds": 300,
"extra": {
"name": "USD Coin",
"version": "2"
},
"maxAmountRequired": "99000000",
"resource": "https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder",
"description": "genesiscode2026/genesis-openapi-mcp-builder v1.0.0 — release. Generate ready-to-run MCP servers directly from OpenAPI specs Security scan passed; signed download, 5-minute URL.",
"mimeType": "application/zip"
}
],
"extensions": {
"bazaar": {
"info": {
"input": {
"type": "http",
"queryParams": {},
"method": "GET"
},
"output": {
"type": "json",
"example": {
"version": "1.0.0",
"artifact_sha256": "0123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef",
"download_url": "https://storage.example/genesiscode2026/genesis-openapi-mcp-builder/1.0.0.zip?signed=…",
"expires_at": "2026-09-16T12:05:00.000Z",
"version_endpoint": "https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder/v/1.0.0",
"manifest_url": "https://x402git.com/api/label/genesiscode2026/genesis-openapi-mcp-builder",
"all_versions": false
}
}
},
"schema": {
"$schema": "https://json-schema.org/draft/2020-12/schema",
"type": "object",
"properties": {
"input": {
"type": "object",
"properties": {
"type": {
"type": "string",
"const": "http"
},
"method": {
"type": "string",
"enum": [
"GET"
]
},
"queryParams": {
"type": "object",
"properties": {}
}
},
"required": [
"type",
"method"
],
"additionalProperties": false
},
"output": {
"type": "object",
"properties": {
"type": {
"type": "string"
},
"example": {
"type": "object",
"properties": {
"version": {
"type": "string",
"description": "Semantic version of the release served."
},
"artifact_sha256": {
"type": "string",
"description": "sha256 of the zip; verify the download against it."
},
"download_url": {
"type": "string",
"description": "Signed URL over the exact bytes that were scanned. Valid five minutes."
},
"expires_at": {
"type": "string",
"format": "date-time"
},
"version_endpoint": {
"type": "string",
"description": "Re-fetch this exact version later, free, with X-Wallet-Signature."
},
"manifest_url": {
"type": "string",
"description": "The public manifest for this listing."
},
"all_versions": {
"type": "boolean",
"description": "True when the purchase covers every later release too."
}
},
"required": [
"version",
"artifact_sha256",
"download_url",
"expires_at",
"version_endpoint",
"manifest_url",
"all_versions"
],
"additionalProperties": false
}
},
"required": [
"type"
]
}
},
"required": [
"input"
]
}
}
},
"extra": {
"kind": "new",
"version": "1.0.0",
"manifest_url": "https://x402git.com/api/label/genesiscode2026/genesis-openapi-mcp-builder",
"scan_badge_url": "https://x402git.com/api/label/genesiscode2026/genesis-openapi-mcp-builder#scan",
"update_price_micro": "15000000",
"quote_id": "q_031c685e87f2679d9ef2ee53aa783896",
"valid_before": "2026-09-17T14:54:20.636Z",
"instructions": "This is an x402 paywall, not an error. To buy: sign accepts[0] from the 402 as an EIP-3009 USDC authorization on Base with your own wallet, then GET https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder again with the payment in the PAYMENT-SIGNATURE header and extra.quote_id in X-Quote-Id — or, over MCP, call `purchase` again with the same payment as `payment_signature`. The full procedure is at https://x402git.com/.well-known/agent-skills/buy-a-repo/SKILL.md; the same tools are an MCP server at https://x402git.com/api/mcp. No wallet? A person can buy at https://x402git.com/genesiscode2026/genesis-openapi-mcp-builder, and the free manifest at https://x402git.com/api/label/genesiscode2026/genesis-openapi-mcp-builder shows what is inside before anyone pays.",
"listing_url": "https://x402git.com/genesiscode2026/genesis-openapi-mcp-builder",
"skill_url": "https://x402git.com/.well-known/agent-skills/buy-a-repo/SKILL.md",
"mcp_url": "https://x402git.com/api/mcp"
}
}- Resource
- https://x402git.com/api/r/genesiscode2026/genesis-openapi-mcp-builder
- Manifest
- https://x402git.com/api/label/genesiscode2026/genesis-openapi-mcp-builder
- Version
- https://x402git.com/api/v/genesiscode2026/genesis-openapi-mcp-builder
- Artifact sha256
- f47a2aa099a62ca96d5bb5e0b19411f80a65093c8a860a367f810b83dbe52b00
Later releases cost $15, and never more than the update price in force when you bought. One charge per update, whatever the release cadence.
Sold by genesiscode2026. Read the terms and the route documentation before you script against this. Base URL https://x402git.com.