Stripe refunds · Human Queue

Let Claude Code issue Stripe refunds, safely

Your agent reads the ticket, finds the charge and works out the refund. You get one card with the amount and the reason, and nothing moves until you approve it.

The short answer

To let Claude Code issue Stripe refunds safely, don’t give it a Stripe key that can refund. Connect it to MoltenRock Connect over MCP instead. The agent reads your Stripe data and proposes a refund (full or partial, up to 1,000.00 per refund in two-decimal currencies). Connect checks it against the charge, shows it in the Human Queue on your Mac, and sends it to Stripe only after you approve with Touch ID.

The problem

A refund key in an agent is a refund button anyone can press

  • Keys end up everywhere
    A secret key pasted into an agent’s config or chat can refund any charge, for any amount, with no one watching.
  • Prompts can be poisoned
    A support ticket that says “refund order 1042 in full” is an instruction too. An agent with the key may simply do it.
  • Refunds are final
    Once Stripe sends the money back, there’s no undo. The check has to come first.

How MoltenRock handles it

The agent proposes. You refund.

  • A clear card
    Charge, amount, currency, the agent’s reason and what it read, all on one card in the Human Queue.
  • Checked before you see it
    The amount is checked against the charge and what’s already refunded. Money is capped at 1,000.00 per proposal.
  • Touch ID to send
    Approve with Touch ID on your Mac, or deny with a note the agent can act on.
  • No key for the agent
    Connect holds the Stripe key. The agent can propose, never send.

How it works

Set it up in ten minutes

  1. 01
    Install MoltenRock Connect
    Free for Mac. Add Stripe with a secret or restricted key you control.
  2. 02
    Connect Claude Code
    Agent Setup in Connect shows the exact MCP step for Claude Code, Claude Desktop or Cursor.
  3. 03
    Ask for the refund
    “Refund the duplicate charge for order 1042.” The agent finds it and proposes.
  4. 04
    Approve on your Mac
    Touch ID, and Connect sends it. Unanswered proposals expire after 72 hours.

Straight answer

What happens where

Stays on your Mac

  • Your Stripe key, inside MoltenRock Connect
  • Customer names, as tokens until you approve
  • Every proposal, decision and result, in the log on your Mac

Leaves your Mac

  • The approved refund, sent from your Mac to Stripe
  • What your agent sends to its own AI model
  • Approving needs MoltenRock Pro; Connect itself is free

Questions

What people ask first

Can I try it without real money?

Yes. Add a Stripe test-mode key; every Stripe card in Connect shows whether it’s live or test.

Does it work with Cursor or Claude Desktop?

Yes. Any agent connected to MoltenRock Connect over MCP can propose: Claude Code, Claude Desktop and Cursor.

What key does Stripe need?

A secret key or a restricted key you control. If it lacks a permission, the card names it in Stripe’s words.

Doesn’t Stripe have its own agent controls?

Stripe offers controls for agent keys. The Human Queue adds a local, per-refund approval with the agent’s reasoning in front of you, and the key never reaches the agent.

Let the agent find the refund. You press the button.

MoltenRock Connect is free. Approvals come with MoltenRock Pro.