What the Meridian Connector for QuickBooks connector does
The Meridian QuickBooks Connector is a free hosted MCP server from Pilot.com that lets Claude, ChatGPT, Codex and any MCP client read and write QuickBooks Online. Anthropic's directory lists 64 tools covering reports, transaction-level search, and creating, updating, voiding and deleting records. Each connected company carries its own read-only or read-write setting.
Anthropic states this reflects the level of review a connector received, not a security audit.
Meridian Connector for QuickBooks tools (64)
batch_entity_operations
create_attachment_upload
create_bill
create_bill_payment
create_customer
create_deposit
create_entity
create_expense
create_invoice
create_journal_entry
create_payload_upload
create_sales_receipt
create_tax_code_with_rates
create_vendor_credit
deactivate_customer
delete_attachment
delete_entity
delete_transaction
describe_entity
fetch_quickbooks_report
get_aged_payables
get_aged_receivables
get_attachment
get_balance_sheet
get_cash_flow
get_changed_entities
get_company_info
get_customer_balance
get_customer_sales
get_entity
get_general_ledger
get_invoice_pdf
get_profit_and_loss
get_transaction
get_trial_balance
get_vendor_balance
get_vendor_expenses
link_attachment
list_companies
list_tax_classifications
query
run_report
search_accounts
search_attachments
search_customers
search_dimensions
search_entities
search_items
search_transactions
search_vendors
set_entity_active
update_bill
update_customer
update_deposit
update_entity
update_expense
update_invoice
update_journal_entry
update_sales_receipt
update_vendor_credit
upload_attachment
void_entity
void_invoice
Tool names from Anthropic's directory listing. This server requires sign-in, so we could not read tool descriptions or parameter schemas.
Limits
Writes are immediate and unstaged. Pilot's terms state that write tools update read-write companies immediately when invoked, and that you are solely responsible for those updates. There is no preview, approval queue or dry-run step between the agent's decision and the ledger.
Intuit documents no API path back from a delete. Its Accounting API describes Delete as removing the object and is silent on recovery; the documented remedy lives in end-user support material and is manual re-entry from the audit log. Three tools in this listing delete.
qbo.write does not subdivide. No scope separates creating from deleting. The only read/write boundary the product offers is per company, set at connection time.
One user per client company. Pilot's FAQ states shared access to the same client is not supported yet, and directs firms needing it to email qbo-mcp@pilot.com.
No review or close workflow. Pilot describes this as intentionally a lightweight connector with no workflow management, review, or end-to-end close process, and points firms needing those at the full Meridian platform.
Provided as-is. Pilot's terms disclaim express and implied warranties and place responsibility for selecting the correct company, crafting inputs, reviewing output and verifying changes on the user. For a system of record holding a company's books, read that clause before granting read-write.
US business use only. Pilot's privacy policy states the Connector is intended for business rather than personal use by users in the United States.
We could not read tool schemas or safety annotations. The endpoint returned 401 to an anonymous request, so no parameter-level detail is published here and the read/write classification above is ours rather than the server's declaration.
Pilot publishes no tool list. The 64 names come from Anthropic's directory snapshot. Nothing on Pilot's site enumerates them, so the listing cannot be diffed against a vendor enumeration.
Whether an invoice write can email a customer is unresolved. No tool name carries a send verb and Pilot does not address it. We could not establish it either way.
Frequently asked questions
Can the Meridian QuickBooks connector delete a transaction?
Yes. Anthropic's directory lists delete_entity, delete_transaction and delete_attachment among the 64 tools. Intuit's Accounting API documents Delete as an endpoint that removes the object and says nothing about undoing it; its support material addresses recovery only as re-entering the transaction by hand from the audit log. Prefer voiding.
What is the difference between voiding and deleting in this connector?
Voiding is reversible bookkeeping; deleting is not. The connector exposes both, as void_entity and void_invoice alongside delete_entity and delete_transaction. Intuit documents them as separate operations: voiding leaves the transaction active with all amounts zeroed and Voided written into its private note, while deleting removes the object entirely.
How many QuickBooks operations can this connector actually reach?
More than 64. Nine of its tools take a QuickBooks entity type as an argument rather than naming one, so create_entity, update_entity, delete_entity, void_entity and set_entity_active reach every entity type Intuit's Accounting API supports. The tool count measures the interface, not the reach into your books.
Can I connect a QuickBooks company in read-only mode?
Yes, and it is per company. Pilot's FAQ states you choose read-only or read-write access separately for each company when you connect it, and that reconnecting a company changes its access level later. Pilot's terms add that read-only companies cannot be changed through the Connector, so the guard is server-side.
Do the OAuth scopes stop an agent from deleting my books?
No. The server's own descriptor advertised exactly qbo.read, qbo.write and offline_access on 2026-08-22. Write is one undivided grant, so any authorisation that lets an agent create an invoice also lets it delete a journal entry. The boundary that matters is the per-company read-only setting, not the scope list.
Does the Meridian QuickBooks connector move money or pay bills?
It records payments but does not send them. Pilot's terms state plainly that the Connector does not initiate payments or move money. Tools like create_bill_payment and create_deposit write the accounting record of a payment into QuickBooks; no funds transfer results from calling them.
Is this the same as Intuit's official QuickBooks connector for Claude?
No, and Pilot explains why it built a separate one. Pilot's FAQ states the official connector cannot read transaction-level details, only run reports, and cannot create journal entries or arbitrary other objects. Intuit's own MCP server is a different project again — self-hosted, 145 tools, one tool per entity per verb.
Does Pilot store or read my QuickBooks accounting data?
Pilot says it does not keep a copy of your books. Its FAQ states the connector processes QuickBooks data only to answer your requests, then sends the result onward and does not retain it. Pilot does retain encrypted QuickBooks credentials, company identifiers, your Intuit account details and limited operational logs.
Can two people at my firm use this connector on the same client?
Not yet. Pilot's FAQ states that only one user can access a given client company today and that shared access to the same client is not supported. Its launch announcement repeats the limit and points firms needing shared access, review and close workflow at the full Meridian product instead.
Live OAuth posture check: 401 with www-authenticate challenge at https://qbo-connector.meridian.pilot.com/mcp, RFC 9728 metadata at https://qbo-connector.meridian.pilot.com/.well-known/oauth-protected-resource/mcp, and authorization-server metadata at https://qbo-connector.meridian.pilot.com/.well-known/oauth-authorization-server (2026-08-22) · retrieved 2026-08-22
Product names and logos belong to their owners. Agentman is not affiliated with a connector's maker unless the page says the connector is built and run by Agentman.
Use it in an agent
Put Meridian Connector for QuickBooks to work.
Connect Meridian Connector for QuickBooks once and your agents call these tools on their own: on a schedule, in a workflow, with nobody at the keyboard.