Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market, Avito
PYPI · MARKETPLACES-MCP-RU · 3 COMPONENTS · SCANNED SEP 20
Wildberries, Ozon, Yandex Market & Avito seller APIs for AI assistants: schema-driven, safety-gated.
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security50
- Malware scan not yet available for this package.Unverified
- No known CVEs affecting this package version or its production dependencies.Pass
- Runs setuptools.build_meta at install time, a recognised native-build step with no shell scripting around it. View diagnostics → Pass
- 0 of 30 dependencies flagged as unhealthy. View diagnostics → Pass
Provenance & Transparency35
- Source repository is publicly reachable at the declared URL. View diagnostics → Pass
- Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
- License check failed: no license is declared. See how to fix → Fail
- Actively maintained (last published 5 days ago).Pass
- Publishes a security disclosure policy (SECURITY.md).Pass
Schema Quality & AI Usability70
- AI-judged instruction clarity (good).Pass
- Context-footprint check failed: tool/resource definitions use about 15018 tokens (~119/item across 126 items; 126 tools + 0 resources), over budget; trim descriptions and params. See how to fix → Fail
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management39
- Stability check failed: the tool surface changed between 0.5.2 and 0.6.1: 5 tool removals, 0 breaking changes, 25 additions. See how to fix → Fail
Tool Coverage71
- 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
- 0% of tool parameters carry a description.Fail
- Structured output schemas are declared (100% of tools); any adoption earns full credit.Pass
Tool Safety95
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- 20 of 25 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation; "wb_call_method" implies "execute" and declares readOnlyHint instead, contradicting what its own name says it does. See how to fix → Partial
- An AI judge read all 126 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… server?
Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… runs locally as a PyPI package, launched with uvx marketplaces-mcp-ru. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
pypi · marketplaces-mcp-ru
claude mcp add ilyautov-marketplaces-mcp-ru -- uvx marketplaces-mcp-ru
{
"mcpServers": {
"ilyautov-marketplaces-mcp-ru": {
"command": "uvx",
"args": [
"marketplaces-mcp-ru"
]
}
}
} {
"servers": {
"ilyautov-marketplaces-mcp-ru": {
"command": "uvx",
"args": [
"marketplaces-mcp-ru"
]
}
}
} codex mcp add ilyautov-marketplaces-mcp-ru -- uvx marketplaces-mcp-ru
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"ilyautov-marketplaces-mcp-ru": {
"type": "local",
"command": [
"uvx",
"marketplaces-mcp-ru"
],
"enabled": true
}
}
} openclaw mcp add ilyautov-marketplaces-mcp-ru --command uvx --arg marketplaces-mcp-ru
mcp_servers:
ilyautov-marketplaces-mcp-ru:
command: "uvx"
args: ["marketplaces-mcp-ru"] {
"McpServers": {
"ilyautov-marketplaces-mcp-ru": {
"Transport": "stdio",
"Command": "uvx",
"Arguments": [
"marketplaces-mcp-ru"
]
}
}
} assistant mcp add ilyautov-marketplaces-mcp-ru -t stdio -c uvx -a marketplaces-mcp-ru
{
"mcpServers": {
"ilyautov-marketplaces-mcp-ru": {
"command": "uvx",
"args": [
"marketplaces-mcp-ru"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 20 Sept 26 0
- Package version: 0.3.3 → 0.6.1 functional
- 19 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 32 to 35.
- 18 Sept 26 −15
- Malware scan: pass → unverified ▼ security
- 17 Sept 26 +16
- Malware scan: unverified → pass ▲ security
- 14 Sept 26 −16
- Malware scan: pass → unverified ▼ security
- Stability: 0.20 → fail ▼ security
- Schema quality: 11727 → 15018 ▼ functional
- Schema quality: excellent → good functional
- Destructive annotations: 20 of 25 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation; "wb_call_method" implies "execute" and declares readOnlyHint instead, contradicting what its own name says it does. functional
- Package version: 0.5.3 → 0.6.1 functional
- Package version: 0.5.3 → 0.6.0 functional
- 12 Sept 26 +16
- Malware scan: unverified → pass ▲ security
- 11 Sept 26 −13
- Malware scan: pass → unverified ▼ security
- Stability: unverified → 0.13 ▲ functional
- Package version: 0.5.2 → 0.5.3 functional
- 7 Sept 26 +29
- Malware scan: pass → unverified ▼ security
- Injection markers: unverified → pass ▲ security
- First check of Judged manipulation: pass security
- Stability: Stability not yet verified: not enough scan history yet (needs a 30-day window). security
- Tool coverage: unverified → 100 ▲ functional
- MCP protocol: unverified → pass ▲ functional
- First check of Destructive annotations: 100 functional
- First check of Tool coverage: 0 functional
- First check of Schema quality: fail functional
- First check of Schema quality: excellent functional
- First check of Schema quality: fail functional
- First check of Tool coverage: 100 functional
- Package version: 0.3.3 → 0.5.2 functional
- Package version: 0.3.3 → 0.5.1 functional
- Package version: 0.3.3 → 0.4.0 functional
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Analysed pypi/marketplaces-mcp-ru@0.6.1
Provenance No attestation
The registry publishes no build provenance for this version, so there is nothing to verify.
| Result | No attestation |
|---|---|
| Ecosystem | pypi |
Background: How many MCP packages publish verified provenance →
Install scripts 1 script
| Hook | Tier | Command |
|---|---|---|
| build_backend | allowlisted | setuptools.build_meta |
Background: Why install scripts are a supply-chain risk →
Dependencies 30 packages
| Packages resolved | 30 |
|---|---|
| Tree resolution | Complete |
Background: SBOMs and build attestations, explained →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
avito_add_cabinet ~219
Add or update a cabinet (a named set of API credentials), from chat. ⚠️ This puts the key into the chat transcript — requires i_understand_key_goes_to_chat=true. The terminal-free safe alternative is the installer (install.py / double-click), where the key never enters chat. Args: credentials: dict with the required fields for this service ({fields}). For Ozon: {{"client_id": "...", "api_key": "..."}}; for WB: {{"token": "..."}}. name: optional label. If omitted, the cabinet is named after the real shop name fetched from the marketplace (falls back to "main"). i_understand_key_goes_to_chat: must be true to proceed. Saved to ~/.marketplace-mcp/cabinets.json (local, chmod 600), never echoed.
| Name | Type | Req | Description |
|---|---|---|---|
| credentials | object | yes | – |
| i_understand_key_goes_to_chat | boolean | – | – |
| name | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_call_method ~160
Execute one READ endpoint from the catalog by operation_id. Target API: https://developers.avito.ru/api-catalog. Reads only: nothing here changes data, so it runs without confirmation. To change data use avito_write_method, to delete use avito_delete_method. Args: operation_id: id from the catalog (see avito_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body (a few read endpoints take one). Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_check_auth ~55
Check whether the required credentials are present in the environment. Does NOT reveal secret values — only reports which variables are set. Returns JSON: {"ready": bool, "missing": [str], "required": [str]}.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_delete_method ~191
Execute one DESTRUCTIVE endpoint: deletes or irreversibly changes data. Target API: https://developers.avito.ru/api-catalog. Both confirm_write=true and i_understand_this_modifies_data=true are required; nothing is sent without both. Args: operation_id: id from the catalog (see avito_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body. confirm_write: must be true. i_understand_this_modifies_data: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| i_understand_this_modifies_data | boolean | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_delete_raw ~190
Delete data at ANY path, including paths not in the catalog. Target API: https://developers.avito.ru/api-catalog. DELETE only. Both confirm_write=true and i_understand_this_modifies_data=true are required. Args: path: full path beginning with '/'. method: DELETE. host: host override; defaults to the service's default host. query: query-string parameters. body: JSON request body. confirm_write: must be true. i_understand_this_modifies_data: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| host | – | – | – |
| i_understand_this_modifies_data | boolean | – | – |
| method | string | – | – |
| path | string | yes | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_describe_method ~50
Return the full catalog record for one endpoint: method, host, path, scope, safety level, pagination style, rate limit, params and doc URL.
| Name | Type | Req | Description |
|---|---|---|---|
| operation_id | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_fetch_all ~196
Auto-paginate a read endpoint and return every row in one response. Handles offset, last_id, cursor (Ozon v4/v5), page and WB lastChangeDate styles. The array path is taken from the catalog automatically. Args: operation_id: a read endpoint from the catalog. query / body / path_values: base parameters (cursor fields are managed). items_path: override the array path (default: the endpoint's own). limit: page size to request. max_items: hard cap to protect context (default 10000). Returns JSON: {"ok", "items", "total_fetched", "pages_fetched", "truncated"}.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| items_path | – | – | – |
| limit | integer | – | – |
| max_items | integer | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_balance ~52
Wallet balance: real money and bonuses (GET /core/v1/accounts/{user_id}/balance/). Returns JSON: {"ok": true, "data": {"real": ..., "bonus": ...}}.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_chats ~149
Buyer chats (GET /messenger/v2/accounts/{user_id}/chats). Requires the Messenger API to be enabled on the seller's Avito plan. Args: unread_only: only chats with unread messages. item_ids: comma-separated listing ids to filter chats by. limit: page size (<=100). offset: pagination offset (<=1000). Returns JSON: {"ok": true, "data": {"chats": [{"id", "context", "last_message", "users"}]}}.
| Name | Type | Req | Description |
|---|---|---|---|
| item_ids | string | – | – |
| limit | integer | – | – |
| offset | integer | – | – |
| unread_only | boolean | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_item_stats ~141
Views / contacts / favorites per listing per period (POST /stats/v1/accounts/{user_id}/items). Up to 200 ids, 270 days deep. Args: item_ids: comma-separated listing ids. date_from: YYYY-MM-DD (inclusive). date_to: YYYY-MM-DD (inclusive). period_grouping: day | week | month. Returns JSON with result.items[].stats[] {date, uniqViews, uniqContacts, uniqFavorites}.
| Name | Type | Req | Description |
|---|---|---|---|
| date_from | string | yes | – |
| date_to | string | yes | – |
| item_ids | string | yes | – |
| period_grouping | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_items ~179
List the seller's listings (объявления): status, category, url (GET /core/v1/items). Max 25 requests/min. Args: status: active | removed | old | blocked | rejected (comma-separated ok). category: Avito category id filter, 0 = all. updated_from: YYYY-MM-DD lower bound on the listing update date. page: 1-based page number. per_page: page size (<100). Returns JSON: {"ok": true, "data": {"meta": {...}, "resources": [...]}}. For all pages use avito_fetch_all with avito_get_items_info.
| Name | Type | Req | Description |
|---|---|---|---|
| category | integer | – | – |
| page | integer | – | – |
| per_page | integer | – | – |
| status | string | – | – |
| updated_from | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_orders ~182
Orders placed with Авито Доставка (GET /order-management/1/orders). Business (B2C) sellers only. Args: statuses: comma-separated filter: on_confirmation, ready_to_ship, in_transit, canceled, delivered, on_return, in_dispute, closed. date_from: unix timestamp — only orders created after it. page: 1-based page number. limit: page size (<=20). Returns JSON: {"ok": true, "data": {"orders": [...], "hasMore": bool}}. Each order has availableActions (confirm / reject / setTrackNumber …) and schedules (deadlines such as confirmTill, shipTill).
| Name | Type | Req | Description |
|---|---|---|---|
| date_from | integer | – | – |
| limit | integer | – | – |
| page | integer | – | – |
| statuses | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_raw ~178
Read ANY endpoint by path, including ones missing from the catalog. Target API: https://developers.avito.ru/api-catalog. Safe verbs only (GET, HEAD, OPTIONS). To change data use avito_write_raw, to delete use avito_delete_raw. Args: path: full path beginning with '/', e.g. "/core/v1/items". method: safe verb, GET by default. host: host override; defaults to the service's default host. query: query-string parameters. body: JSON request body (rare on reads; some APIs want one). Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| host | – | – | – |
| method | string | – | – |
| path | string | yes | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_reviews ~110
Published reviews on the seller with score, text, deal stage and the seller's answer (GET /ratings/v1/reviews). Use avito_get_ratings_info_v1 via avito_call_method for the aggregate rating. Args: offset: pagination offset. limit: page size (<=50). Returns JSON: {"ok": true, "data": {"total": n, "reviews": [...]}}.
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | – |
| offset | integer | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_section ~60
List all endpoints in one section. Args: section: section name (see avito_list_sections), e.g. "statistics". Returns JSON list of {operation_id, method, path, safety, summary}.
| Name | Type | Req | Description |
|---|---|---|---|
| section | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_stocks ~88
Stock per listing (POST /stock-management/1/info): quantity, is_unlimited, is_out_of_stock. Up to 500 ids per call. Args: item_ids: comma-separated Avito listing ids. Returns JSON: {"ok": true, "data": {"stocks": [{"item_id", "quantity", ...}]}}.
| Name | Type | Req | Description |
|---|---|---|---|
| item_ids | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_get_workflow ~66
Return the full plan for one workflow: ordered steps (each naming a catalog operation_id and why), interpretation guidance, and common mistakes to avoid. Args: name: workflow name (see {svc}_list_workflows).
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_list_cabinets ~54
List configured cabinets for this marketplace and which one is active. Returns JSON: {"active": str|null, "cabinets": [names], "fields_needed": [...]}. Secret values are never returned.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_list_sections ~21
List API sections and how many catalog endpoints each contains.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_list_workflows ~55
List ready-made analytical workflows (recipes) for this marketplace. Returns JSON: [{name, category, when_to_use}]. Use {svc}_get_workflow to fetch the full step-by-step plan for one.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_map ~82
The big picture: business entities this API covers and the go-to methods for each. Call with no args to see the whole map ("you are here"); pass entity="reviews" (or stocks/prices/orders/…) to list every method of one entity. Use this before guessing — it orients you fast.
| Name | Type | Req | Description |
|---|---|---|---|
| entity | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_remove_cabinet ~43
Delete a stored cabinet. If it was active, another becomes active. Args: name: the cabinet to remove.
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_search_methods ~79
Search the endpoint catalog by keyword (works in Russian and English). Args: query: free text, e.g. "остатки", "stocks", "update price". limit: max results (1-50). Returns JSON list of matching endpoints (best first).
| Name | Type | Req | Description |
|---|---|---|---|
| limit | integer | – | – |
| query | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_set_key ~222
Change / rotate the API key from chat (e.g. the old one expired or leaked). ⚠️ The key goes into the chat transcript — requires i_understand_key_goes_to_chat=true. The safe, terminal-free alternative is the installer, where the key never enters chat. Use a scoped key and rotate it in the seller cabinet if it was exposed. Args: credentials: dict with the required fields ({fields}). cabinet: which cabinet to update. Default: the active one (so "my key expired" just works). If there is none, the cabinet is named from the marketplace's shop name, else "main". i_understand_key_goes_to_chat: must be true to proceed. On success the key is validated against the marketplace and the shop name is reported. Saved locally (chmod 600), never echoed back.
| Name | Type | Req | Description |
|---|---|---|---|
| cabinet | string | – | – |
| credentials | object | yes | – |
| i_understand_key_goes_to_chat | boolean | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_update_price ~130
Set the price of ONE listing (POST /core/v1/items/{item_id}/update_price). WRITE. Requires confirm_write=true. Goods, spare parts, cars, real estate only; max 150 requests/min. Args: item_id: Avito listing id. price: new price in roubles (integer). confirm_write: must be true to send. Returns JSON: {"ok": true, "data": {"result": {"success": true}}}.
| Name | Type | Req | Description |
|---|---|---|---|
| confirm_write | boolean | – | – |
| item_id | integer | yes | – |
| price | integer | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_update_stock ~128
Set the available quantity of ONE listing (PUT /stock-management/1/stocks). WRITE. Requires confirm_write=true. quantity 0 hides the "buy with delivery" button. Args: item_id: Avito listing id. quantity: units available (0..999999). confirm_write: must be true to send. Returns JSON: {"ok": true, "data": {"stocks": [{"item_id", "success", "errors"}]}}.
| Name | Type | Req | Description |
|---|---|---|---|
| confirm_write | boolean | – | – |
| item_id | integer | yes | – |
| quantity | integer | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_use_cabinet ~50
Switch the active cabinet. Subsequent API calls use its credentials. Args: name: the cabinet to activate (see avito_list_cabinets).
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_whoami ~66
Authorized Avito account: id (needed as user_id in many methods), name, email, phone, profile_url. Also the cheapest way to verify the credentials. Returns JSON: {"ok": true, "data": {"id": ..., "name": ..., ...}}.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_write_method ~170
Execute one WRITE endpoint from the catalog: create or update data. Target API: https://developers.avito.ru/api-catalog. Requires confirm_write=true; nothing is sent without it. Irreversible operations live in avito_delete_method, reads in avito_call_method. Args: operation_id: id from the catalog (see avito_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body. confirm_write: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
avito_write_raw ~162
Create or update data at ANY path, including paths not in the catalog. Target API: https://developers.avito.ru/api-catalog. POST, PUT and PATCH only; requires confirm_write=true. Args: method: POST, PUT or PATCH. path: full path beginning with '/'. host: host override; defaults to the service's default host. query: query-string parameters. body: JSON request body. confirm_write: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| host | – | – | – |
| method | string | yes | – |
| path | string | yes | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_add_cabinet ~219
Add or update a cabinet (a named set of API credentials), from chat. ⚠️ This puts the key into the chat transcript — requires i_understand_key_goes_to_chat=true. The terminal-free safe alternative is the installer (install.py / double-click), where the key never enters chat. Args: credentials: dict with the required fields for this service ({fields}). For Ozon: {{"client_id": "...", "api_key": "..."}}; for WB: {{"token": "..."}}. name: optional label. If omitted, the cabinet is named after the real shop name fetched from the marketplace (falls back to "main"). i_understand_key_goes_to_chat: must be true to proceed. Saved to ~/.marketplace-mcp/cabinets.json (local, chmod 600), never echoed.
| Name | Type | Req | Description |
|---|---|---|---|
| credentials | object | yes | – |
| i_understand_key_goes_to_chat | boolean | – | – |
| name | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_call_method ~161
Execute one READ endpoint from the catalog by operation_id. Target API: https://docs.ozon.ru/api/seller/. Reads only: nothing here changes data, so it runs without confirmation. To change data use ozon_write_method, to delete use ozon_delete_method. Args: operation_id: id from the catalog (see ozon_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body (a few read endpoints take one). Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_check_auth ~55
Check whether the required credentials are present in the environment. Does NOT reveal secret values — only reports which variables are set. Returns JSON: {"ready": bool, "missing": [str], "required": [str]}.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_delete_method ~192
Execute one DESTRUCTIVE endpoint: deletes or irreversibly changes data. Target API: https://docs.ozon.ru/api/seller/. Both confirm_write=true and i_understand_this_modifies_data=true are required; nothing is sent without both. Args: operation_id: id from the catalog (see ozon_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body. confirm_write: must be true. i_understand_this_modifies_data: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| i_understand_this_modifies_data | boolean | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_delete_raw ~191
Delete data at ANY path, including paths not in the catalog. Target API: https://docs.ozon.ru/api/seller/. DELETE only. Both confirm_write=true and i_understand_this_modifies_data=true are required. Args: path: full path beginning with '/'. method: DELETE. host: host override; defaults to the service's default host. query: query-string parameters. body: JSON request body. confirm_write: must be true. i_understand_this_modifies_data: must be true. Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| confirm_write | boolean | – | – |
| host | – | – | – |
| i_understand_this_modifies_data | boolean | – | – |
| method | string | – | – |
| path | string | yes | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_describe_method ~50
Return the full catalog record for one endpoint: method, host, path, scope, safety level, pagination style, rate limit, params and doc URL.
| Name | Type | Req | Description |
|---|---|---|---|
| operation_id | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_fetch_all ~196
Auto-paginate a read endpoint and return every row in one response. Handles offset, last_id, cursor (Ozon v4/v5), page and WB lastChangeDate styles. The array path is taken from the catalog automatically. Args: operation_id: a read endpoint from the catalog. query / body / path_values: base parameters (cursor fields are managed). items_path: override the array path (default: the endpoint's own). limit: page size to request. max_items: hard cap to protect context (default 10000). Returns JSON: {"ok", "items", "total_fetched", "pages_fetched", "truncated"}.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| items_path | – | – | – |
| limit | integer | – | – |
| max_items | integer | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_fbs_unfulfilled ~125
List new/unprocessed FBS shipments awaiting assembly. Args: cutoff_from: ISO datetime lower bound, e.g. "2026-06-01T00:00:00Z". cutoff_to: ISO datetime upper bound. limit: page size. offset: pagination offset. Returns JSON: {"ok": true, "data": {"result": {"postings": [...]}}}.
| Name | Type | Req | Description |
|---|---|---|---|
| cutoff_from | string | yes | – |
| cutoff_to | string | yes | – |
| limit | integer | – | – |
| offset | integer | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_prices ~98
Get prices, commissions and price indexes per product (v5/product/info/prices). Args: visibility: product visibility filter (default ALL). limit: page size (<=1000). cursor: pagination cursor from a previous response. Returns JSON with price, marketing_seller_price, min_price, commissions, price_indexes.
| Name | Type | Req | Description |
|---|---|---|---|
| cursor | string | – | – |
| limit | integer | – | – |
| visibility | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_products ~128
List Ozon products (one page). Args: visibility: ALL | VISIBLE | INVISIBLE | ARCHIVED | IN_SALE ... limit: page size (<=1000). last_id: cursor from a previous page (empty for first page). Returns JSON: {"ok": true, "data": {"result": {"items": [...], "last_id": "..."}}}. For every product across pages use ozon_fetch_all with ozon_product_list.
| Name | Type | Req | Description |
|---|---|---|---|
| last_id | string | – | – |
| limit | integer | – | – |
| visibility | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_raw ~178
Read ANY endpoint by path, including ones missing from the catalog. Target API: https://docs.ozon.ru/api/seller/. Safe verbs only (GET, HEAD, OPTIONS). To change data use ozon_write_raw, to delete use ozon_delete_raw. Args: path: full path beginning with '/', e.g. "/v1/actions". method: safe verb, GET by default. host: host override; defaults to the service's default host. query: query-string parameters. body: JSON request body (rare on reads; some APIs want one). Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| host | – | – | – |
| method | string | – | – |
| path | string | yes | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_section ~60
List all endpoints in one section. Args: section: section name (see ozon_list_sections), e.g. "statistics". Returns JSON list of {operation_id, method, path, safety, summary}.
| Name | Type | Req | Description |
|---|---|---|---|
| section | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_stocks ~93
Get available + reserved stock per product (v4/product/info/stocks). Args: visibility: product visibility filter (default ALL). limit: page size (<=1000). last_id: cursor for pagination. Returns JSON with stock per product (present, reserved) per warehouse type.
| Name | Type | Req | Description |
|---|---|---|---|
| last_id | string | – | – |
| limit | integer | – | – |
| visibility | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_get_workflow ~66
Return the full plan for one workflow: ordered steps (each naming a catalog operation_id and why), interpretation guidance, and common mistakes to avoid. Args: name: workflow name (see {svc}_list_workflows).
| Name | Type | Req | Description |
|---|---|---|---|
| name | string | yes | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_list_cabinets ~54
List configured cabinets for this marketplace and which one is active. Returns JSON: {"active": str|null, "cabinets": [names], "fields_needed": [...]}. Secret values are never returned.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_list_sections ~21
List API sections and how many catalog endpoints each contains.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_list_workflows ~55
List ready-made analytical workflows (recipes) for this marketplace. Returns JSON: [{name, category, when_to_use}]. Use {svc}_get_workflow to fetch the full step-by-step plan for one.
Input schema present but exposes no named parameters.
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_map ~82
The big picture: business entities this API covers and the go-to methods for each. Call with no args to see the whole map ("you are here"); pass entity="reviews" (or stocks/prices/orders/…) to list every method of one entity. Use this before guessing — it orients you fast.
| Name | Type | Req | Description |
|---|---|---|---|
| entity | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_perf_add_cabinet ~220
Add or update a cabinet (a named set of API credentials), from chat. ⚠️ This puts the key into the chat transcript — requires i_understand_key_goes_to_chat=true. The terminal-free safe alternative is the installer (install.py / double-click), where the key never enters chat. Args: credentials: dict with the required fields for this service ({fields}). For Ozon: {{"client_id": "...", "api_key": "..."}}; for WB: {{"token": "..."}}. name: optional label. If omitted, the cabinet is named after the real shop name fetched from the marketplace (falls back to "main"). i_understand_key_goes_to_chat: must be true to proceed. Saved to ~/.marketplace-mcp/cabinets.json (local, chmod 600), never echoed.
| Name | Type | Req | Description |
|---|---|---|---|
| credentials | object | yes | – |
| i_understand_key_goes_to_chat | boolean | – | – |
| name | string | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
ozon_perf_call_method ~165
Execute one READ endpoint from the catalog by operation_id. Target API: https://docs.ozon.ru/api/performance/. Reads only: nothing here changes data, so it runs without confirmation. To change data use ozon_perf_write_method, to delete use ozon_perf_delete_method. Args: operation_id: id from the catalog (see ozon_perf_search_methods). path_values: values for {placeholders} in the path. query: query-string parameters. body: JSON request body (a few read endpoints take one). Returns JSON: {"ok": true, "status", "data"} or the error envelope.
| Name | Type | Req | Description |
|---|---|---|---|
| body | – | – | – |
| operation_id | string | yes | – |
| path_values | – | – | – |
| query | – | – | – |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
What is the Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… server?
Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… is listed in the public MCP registry as io.github.ilyautov/marketplaces-mcp-ru. Wildberries, Ozon, Yandex Market & Avito seller APIs for AI assistants: schema-driven, safety-gated. This page covers its PyPI package (marketplaces-mcp-ru).
Is the Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… server safe to use?
Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… scores 55 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 20 September 2026. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… server expose?
Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… exposes 126 tools: wb_check_auth, wb_list_sections, wb_get_section, wb_search_methods, wb_map, and 121 more. Their descriptions and schemas cost roughly 15,018 tokens of context every time the server is loaded.
Is the Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… server still maintained?
Marketplaces MCP (RU) — Wildberries, Ozon, Yandex Market… is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.