Holded integrationHolded logo

Holded integration for AI agents.

Holded integration for AI agents with secure authentication and server-side credential injection. Open Connector runs the OAuth, seals the token in an encrypted vault, and serves Holded tools to your agent over MCP or a typed API — credentials injected server-side, every call audited, nothing leaving your infrastructure. Open source (AGPL-3.0) and self-hostable.

What your agents can do

Real Holded actions, managed and audited.

Your user connects Holded once; your agent can then use Holded to manage invoicing contacts, products, invoices, and sales receipts — scoped to the OAuth permissions you grant and the tool allowlist you configure. Every action is least-privilege and written to a tamper-evident audit trail.

  1. 1

    Your user grants Holded access once (OAuth) — the token lands in the vault.

  2. 2

    Your agent calls a tool over MCP or the typed API; Open Connector injects the credential server-side.

  3. 3

    Every routed call appends a hash-chained audit record — nothing leaves your infra.

Tools & triggers

Supported Holded tools.

20 tools are generated from the published Holded catalog. Descriptions are plain text; each action remains subject to its configured authentication and tool allowlist.

Showing 20 tools. All published catalog entries are included in this page's server-rendered HTML.

Create a Holded contact
Create a Holded contact.
createcontact
Create a Holded invoice
Create a Holded invoice.
createinvoice
Create a Holded product
Create a Holded product.
createproduct
Create a Holded salesreceipt
Create a Holded salesreceipt.
createsalesreceipt
Delete a Holded contact
Delete a Holded contact.
deletecontact
Delete a Holded invoice
Delete a Holded invoice.
deleteinvoice
Delete a Holded product
Delete a Holded product.
deleteproduct
Delete a Holded salesreceipt
Delete a Holded salesreceipt.
deletesalesreceipt
Get a Holded contact
Retrieve a Holded contact by ID.
getcontact
Get a Holded invoice
Retrieve a Holded invoice by ID.
getinvoice
Get a Holded product
Retrieve a Holded product by ID.
getproduct
Get a Holded salesreceipt
Retrieve a Holded salesreceipt by ID.
getsalesreceipt
List Holded contacts
List Holded contacts.
listcontacts
List Holded invoices
List Holded invoices.
listinvoices
List Holded products
List Holded products.
listproducts
List Holded salesreceipts
List Holded salesreceipts.
listsalesreceipts
Update a Holded contact
Update a Holded contact.
updatecontact
Update a Holded invoice
Update a Holded invoice.
updateinvoice
Update a Holded product
Update a Holded product.
updateproduct
Update a Holded salesreceipt
Update a Holded salesreceipt.
updatesalesreceipt
FAQ

Holded integration, answered

How do AI agents use Holded through Open Connector?
Your user connects Holded once with one of its cataloged authentication methods. Open Connector stores the credential in an encrypted vault and exposes Holded tools to your agent over MCP or a typed API, with credentials injected server-side on each call.
Is this a Holded MCP server?
Yes. Open Connector can serve Holded as a named MCP server with a scoped allowlist and a per-user connection URL, so any MCP client can call Holded actions with credentials injected server-side.
Where do Holded credentials live?
In your own infrastructure. Open Connector keeps credentials in its own vault and injects them at call time, so they never leave your environment.

Give your agents Holded — keep the keys.

Open source, self-hostable, with Holded credentials that never leave your infrastructure. Run it from source today.