Quick overview: What is MCP – and how does it help me at Digistore24?
MCP (Model Context Protocol) is a standard that connects AI applications to external tools and data sources. Via MCP, your AI agent (e.g., Claude Desktop, Cursor, or Windsurf) can work directly in your Digistore24 account.
You give your AI agent an instruction in plain language – it carries it out in Digistore24. This works, for example, for products, order forms, payment plans, discount codes, e-tickets, orders, customer data, and reports. That saves you time on launches, campaigns, and support.
Examples of use
Once your AI agent is connected to the Digistore24 MCP server, you can use prompts like:
-
Duplicate an existing product and make small changes
Copy product 12345 as “Webinar October” and keep it deactivated for now. Change the payment plan to a one-time payment of €89.99. -
Create products
Create a product “Course XYZ”. Add the following description, sales page URL, and image: … -
Create discount codes
Create a discount code LAUNCH10 for products 12345 and 67890 with 10% off for 7 days. -
View reports
List the number of transactions in period X for product 12345 with billing type “subscription - yearly”.List the number of sales for product 67890 with billing status “payments in progress”.
Your AI agent will then perform these actions in your Digistore24 account. This is possible because, via MCP, the AI agent is connected to the Digistore24 API.
How to connect your AI agent to Digistore24
You set up the connection once. You need two things: a Digistore24 API key and a small entry in your AI agent’s config file. The config file is a text file where your AI agent stores its settings.
Technical background
- Digistore24 hosts a remote server at
https://mcp.digistore24.com/. You don’t need to install or host anything yourself. - Your API key acts as your access credential: the AI agent sends it with every request as a Bearer token (i.e., as proof of authorization in the request header).
Requirements
-
You need at least one Digistore24 API key.
How to create an API key: Create API key
Important:
- Read access is sufficient to retrieve data from Digistore24 (e.g., order details).
- Full access is required to change data in Digistore24 (e.g., to create a product).
- Recommendation: Use separate API keys for reading vs. writing.
- You need an MCP-capable AI agent (e.g., Claude Desktop, Cursor, Windsurf).
Connect your AI agent to Digistore24
-
Have your API key ready
Make sure you have your Digistore24 API key at hand. You’ll need it in the next step.
-
Add the MCP server to the config file
Where the config file is located and what the entry looks like depends on your AI agent. Open the section for your agent below.
Important: Does your config file already have content?
The config file may only contain one single JSON object – that is, only one pair of outer curly brackets
{ }. If you paste the code block at the end of the file as an extra copy, the file contains two objects. Your AI agent will then show an error message on the next start.Here’s what to do:
- The file is empty: Paste the complete code block. Done.
-
The file already contains a
"mcpServers"section: Add only the inner entry"digistore24": { … }to that section. Separate it from the previous entry with a comma. -
The file contains other content, but no
"mcpServers": Add the"mcpServers": { … }section inside the outer brackets. Separate it from the previous entry with a comma.
You’ll find a complete example in the instructions for your AI agent below.
Claude Desktop
Prerequisite (once): Install Node.js
Claude Desktop uses the program
npxfor the connection. It comes with Node.js. Install Node.js (LTS version): https://nodejs.org/en/downloadHow to add the MCP server
- In Claude Desktop, open Settings → Developer.
- Under Local MCP servers, click Edit Config. A window opens showing the file claude_desktop_config.json.
- Open this file with a text editor (Windows e.g. Notepad, macOS e.g. TextEdit).
-
Add this entry. Follow the note above if the file already has content:
{ "mcpServers": { "digistore24": { "command": "npx", "args": [ "mcp-remote", "https://mcp.digistore24.com/", "--header", "Authorization: Bearer YOUR_DIGISTORE24_API_KEY" ] } } } - Replace
YOUR_DIGISTORE24_API_KEYwith your Digistore24 API key. - Save the file.
Example: What the file looks like if another MCP server is already set up
The
"digistore24"entry sits inside the"mcpServers"section. A comma separates the two entries. The file still has only one pair of outer brackets:{ "mcpServers": { "other-server": { "command": "npx", "args": ["example-mcp-server"] }, "digistore24": { "command": "npx", "args": [ "mcp-remote", "https://mcp.digistore24.com/", "--header", "Authorization: Bearer YOUR_DIGISTORE24_API_KEY" ] } } }For advanced users: two API keys for read and write access
You add the MCP server twice – once with your read access key, once with your full access key:
{ "mcpServers": { "digistore24-read": { "command": "npx", "args": [ "mcp-remote", "https://mcp.digistore24.com/", "--header", "Authorization: Bearer YOUR_READONLY_API_KEY" ] }, "digistore24-write": { "command": "npx", "args": [ "mcp-remote", "https://mcp.digistore24.com/", "--header", "Authorization: Bearer YOUR_FULLACCESS_API_KEY" ] } } }- Replace
YOUR_READONLY_API_KEYwith your read access Digistore24 API key. - Replace
YOUR_FULLACCESS_API_KEYwith your full access Digistore24 API key.
Cursor and Windsurf
Where is the config file?
How to add the MCP server
-
Add this entry. Follow the note above if the file already has content:
{ "mcpServers": { "digistore24": { "type": "http", "url": "https://mcp.digistore24.com/", "headers": { "Authorization": "Bearer YOUR_DIGISTORE24_API_KEY" } } } } - Replace
YOUR_DIGISTORE24_API_KEYwith your Digistore24 API key. - Save the file.
For advanced users: two API keys for read and write access
You add the MCP server twice – once with your read access key, once with your full access key:
{ "mcpServers": { "digistore24-read": { "type": "http", "url": "https://mcp.digistore24.com/", "headers": { "Authorization": "Bearer YOUR_READONLY_API_KEY" } }, "digistore24-write": { "type": "http", "url": "https://mcp.digistore24.com/", "headers": { "Authorization": "Bearer YOUR_FULLACCESS_API_KEY" } } } }- Replace
YOUR_READONLY_API_KEYwith your read access Digistore24 API key. - Replace
YOUR_FULLACCESS_API_KEYwith your full access Digistore24 API key.
Using a different MCP-capable AI agent? You’ll find the location of its config file in its documentation. The entry itself is the same as for Cursor and Windsurf.
-
Verify the connection
- Restart your AI agent.
-
Open a new conversation and ask: “Which Digistore24 tools are available?”
Your AI agent should now list the available Digistore24 tools.
- Try a simple query, e.g., “List purchases from the last 24 hours” or “Show transactions from the last 7 days.”
If you use separate API keys for read and write access
- Open your agent’s tools/connections (often called “Tools” or “Connectors”).
- Enable
digistore24-writeand temporarily disabledigistore24-read. - Open a new conversation and use a prompt that requires write permissions (e.g., “Create a new product …”).
- In the confirmation dialog, check that it shows
digistore24-write. - Confirm the dialog.
After the test, re-enable
digistore24-readand disabledigistore24-write. Only usedigistore24-writewhen you really need it.
Troubleshooting
Error message when starting the AI agent (e.g., “App settings could not be loaded”):
- In most cases, the config file is not valid JSON. Most common cause: the code block was pasted at the end of the file as an extra copy instead of being merged into the existing content.
- Check that the file has only one pair of outer curly brackets
{ }. Follow the note “Does your config file already have content?” above. - Check that all entries are separated by commas and that every opened bracket is closed again.
Auth error (401/403):
- Check that you added the entry correctly and completely to the config file.
- Check that you inserted your Digistore24 API key correctly and completely.
- In Digistore24, verify that your API key is active.
- Check that the API key has the appropriate permissions (e.g., full access to change data in Digistore24).
Digistore24 tools do not appear:
- Save the config file and restart the AI agent.
Action is refused:
- Check whether your Digistore24 API key has the required permissions (e.g., full access to change data in Digistore24).
Use MCP safely and responsibly
Principle “least privilege”:
- Use read access whenever possible for reporting and queries.
- Perform write actions (e.g., create or change a product or discount code) only with an intentional switch to a separate full access API key.
Keep confirmation dialogs enabled:
- Always let the AI agent show a confirmation dialog for tool calls, especially for write actions.
Transparency and auditability:
- Record who is using the agent (team account vs. person).
- Log important actions (server/client logs).
API key hygiene:
- Never share your API keys.
- Rotate your API keys at reasonable intervals.
- Store your API keys securely, e.g., in a password manager.
Note on Data Privacy & AI Compliance
When using the MCP integration, you as the vendor are responsible for complying with the applicable requirements of the GDPR and the EU AI Act, as well as the additional accountability provisions in our Terms and Conditions.