SumoSign MCP Server
Exposes the SumoSign signing API to AI agents, allowing document upload, envelope creation, and tracking, with signing always done by human recipients.
README
@sumosign/mcp
MCP server exposing the SumoSign signing API to AI agents (Claude, ChatGPT, Copilot, and any MCP-compatible client) over stdio.
The API key authenticates the agent, not a signer. It can never complete a signature — signing is always done by a human recipient through their emailed, one-time link, with consent capture and an append-only audit trail.
Install & run
No install step is required; run it directly with npx:
SUMOSIGN_API_KEY=ss_live_... npx @sumosign/mcp
Configuration
| Env var | Required | Default | Description |
|---|---|---|---|
SUMOSIGN_API_KEY |
yes | — | A scoped ss_live_... key from the SumoSign portal. |
SUMOSIGN_API_URL |
no | https://api.sumosign.app |
Override for self-hosted or staging APIs. |
Client config example
{
"mcpServers": {
"sumosign": {
"command": "npx",
"args": ["-y", "@sumosign/mcp"],
"env": { "SUMOSIGN_API_KEY": "ss_live_..." }
}
}
}
Tools
The server registers 15 tools:
Documents
upload_document— upload a local PDF; returns the document id used to create envelopes.analyze_document— analyze an uploaded PDF for field-placement suggestions (text extraction, no OCR).
Templates
create_template— create a reusable template from a PDF with text anchors like{{signature_1}}.list_templates— list the organization's reusable templates.seed_starter_templates— seed sample templates (test envelope, simple NDA, one-page agreement).
Envelopes — create
create_envelope— create a draft envelope from an uploaded document (inline fields) or a template.create_envelope_from_template— create a draft envelope from a template; fields are inherited.
Envelopes — verify & send
preview_envelope— download a placement preview (every field drawn as a dashed, labeled box) to a local path. No email is sent and no envelope is consumed — use it to confirm placement with a human before sending.send_envelope— send a draft envelope. Only humans can sign; this tool cannot complete a signature.
Envelopes — track
get_envelope— get envelope status including per-recipient progress.list_envelopes— list the most recent envelopes for the organization.void_envelope— void an envelope before completion; revokes outstanding signing links (audit-logged).get_audit_trail— get the append-only audit trail with actor attribution.
Downloads
download_signed_pdf— download the flattened, signed PDF of a completed envelope to a local path.download_certificate— download the Certificate of Completion to a local path.
Security
- Local filesystem access.
upload_documentreads a local PDF path you provide, andpreview_envelope,download_signed_pdf, anddownload_certificatewrite files to local paths you provide. The server can therefore read and write any file the host process can reach. Run it with least privilege and only point it at paths you intend to share. - Untrusted document content / prompt injection.
analyze_documentextracts text from PDFs and returns it to the agent. Document contents are untrusted input and may contain prompt-injection attempts. Treat extracted text as data, not instructions, and keep a human in the loop beforesend_envelope. - Least-privilege API keys. Issue a scoped key per agent from the SumoSign portal and grant
only the scopes that agent needs. Available scopes:
documents:create,documents:read,documents:send,documents:download,templates:read,templates:write,signers:manage,webhooks:write,audit_logs:read,branding:write,voice:trigger. Keys are hashed at rest and revocable, and can never complete a signature on a human's behalf.
About
SumoSign is developed by Cipher Projects.
License
MIT
Recommended Servers
playwright-mcp
A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.
Magic Component Platform (MCP)
An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.
Audiense Insights MCP Server
Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.
VeyraX MCP
Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.
graphlit-mcp-server
The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.
Kagi MCP Server
An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.
E2B
Using MCP to run code via e2b.
Neon Database
MCP server for interacting with Neon Management API and databases
Exa Search
A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.
Qdrant Server
This repository is an example of how to create a MCP server for Qdrant, a vector search engine.