← Back to directory
COMPARE UP TO 4 SERVERS

Compare MCP servers

Compare scores, permissions, risks, and fit in one decision-focused table.

DimensionMCP Fiscal BrasilMCP server for Brazilian tax: CNPJ, NF-e, SPED, eSocial and the 2026 tax reform (IBS/CBS) — no signup, offline tables.Hevy MCPManage your Hevy workout data from AI assistants via MCP.Firecrawl MCP ServerFirecrawl's official MCP server for web search, scraping, and structured extraction for AI agents
FMRS67 / 100 · C77 / 100 · B75 / 100 · B
Reliability11 / 2012 / 2013 / 20
Security and permissions14 / 2016 / 2012 / 20
Maintenance14 / 2016 / 2016 / 20
Documentation13 / 2018 / 2017 / 20
Setup experience15 / 2015 / 2017 / 20
Best for
  • Accounting, ERP, CRM and finance-automation teams serving the Brazilian market.
  • Developers who want local, offline NF-e/SPED processing without uploading XML to third parties.
  • Users of MCP clients such as Claude or Cursor who want to query Brazilian tax data in natural language.
  • Anyone needing offline reference tables such as NCM/CFOP/CST/CEST/ICMS and BCB indexers.
  • Hevy PRO users who want AI assistants to directly access their workout data
  • People who prefer using MCP clients like Claude, Cursor, Codex for fitness tracking
  • Anyone needing summaries and insights from their training data
  • Scenarios needing clean, structured web context fed to an AI assistant
  • Users already on the Firecrawl platform who want to call its scraping capability directly via MCP
Not for
  • Users needing US or other non-Brazilian tax capabilities.
  • Those expecting official government backing or an official MCP project (this server is maintained by DeHor-Labs, not officially).
  • Anyone wanting SEFAZ real-time status, distribution or manifestation without configuring an A1 certificate.
  • Large-scale CNPJ lookup by company name, which is experimental with limited coverage.
  • Users without a Hevy PRO subscription (API key required)
  • Users who want to use the server without an API key
  • Those needing delete workflows (Hevy API does not expose delete endpoints)
  • Simple static-page scraping where you don't want to depend on a third-party API and incur call costs
  • Sites that explicitly disallow automated access (robots.txt)
Required permissions
  • Runs locally as an MCP server over stdio; no account or API key required.
  • Network access: calls BrasilAPI (cnpj, nfe, and more) plus an optional ReceitaWS fallback.
  • Optional A1 digital certificate: requires reading a local .pfx/.p12 file and its password for SEFAZ mTLS and XMLDSig signing.
  • Optional environment variables: MCP_FISCAL_LOG_LEVEL, BRASILAPI_BASE_URL, HTTP_TIMEOUT, and NFE_CERTIFICADO_PATH, NFE_CERTIFICADO_SENHA, NFE_EMITENTE_CNPJ, NFE_AMBIENTE.
  • Requires HEVY_API_KEY environment variable for Hevy API authentication
  • Can create, update, and replace workouts, routines, folders, templates, and body measurements via tools
  • Read operations can fetch workouts, routines, folders, templates, history, and user info
  • Requires a Firecrawl API key to call; cost and quota are governed by the Firecrawl account
  • firecrawl_agent/firecrawl_interact perform automated browser interaction, which may trigger login or form-submission flows on the target site
Risks and side effects
  • Third-party sources (BrasilAPI, ReceitaWS, SEFAZ) can be unstable or change, making results stale or failing.
  • With an A1 certificate enabled, the certificate file and password are sensitive local assets: inject them via a secrets manager as documented and never commit plaintext passwords.
  • Tool outputs and advice (such as risk scores or regime comparisons) are informative and do not replace a professional accountant or legal advice.
  • consultar_status_sefaz raises FiscalConfigurationError when no certificate is configured and the HTTP endpoint returns 503; distinguish this from an actual SEFAZ outage.
  • The experimental listar_cnpjs_por_nome tool has limited coverage and may return unexpected results.
  • API key can be misused if leaked; do not expose in URLs, logs, or screenshots
  • Create operations may produce duplicates on retry; update operations replace existing records
  • The server sends data to the Hevy API and may send telemetry to external services unless disabled
  • Bulk crawl/map tools can generate significant request volume against a target site — respect the site's rate limits and terms of service
  • firecrawl_agent's interactive action chain is longer — define task boundaries clearly before running it to avoid accidentally triggering actions on a sensitive site
Supported clientsClaude Desktop, Claude Code, Cursor, VS Code + ContinueClaude Desktop, Cursor, Codex, Google AntigravityClaude Desktop, VS Code, Cursor, Windsurf, Zed, Amp
Tools252611