Square Connector
Connector implementation
Build the Square integration
Customers, orders, payments, catalog, and loyalty signals for syncing commerce events into Brevo.
Implementation Overview
Implement a Square connector that authenticates to the vendor surface, normalizes source records in Tajo, and activates eligible data in Brevo.
Treat this as an implementation guide. Build and validate the auth, mapping, sync, and operations paths before production use.
mcp.squareup.com/sse
| Property | Value |
|---|---|
| Integration surface | API + MCP |
| Implementation status | Implementation required |
| Category | Payments |
| Setup complexity | medium |
| Vendor documentation | developer.squareup.com/reference/square |
| Allowed host | Not recorded |
| Base URL | Not recorded |
| OpenAPI schema | Not recorded |
| MCP server | mcp.squareup.com/sse |
| Last researched | 2026-08-07 |
Useful for customer, order, and purchase-event syncs to Brevo. The MCP endpoint was verified by handshake on 2026-08-07: 401 with RFC 9728 metadata; it is its own authorization server and supports dynamic client registration.
Authentication
-
OAuth 2.0 (MCP mode).
- Authorize: mcp.squareup.com/authorize
- Token: mcp.squareup.com/token
- The authorization server publishes no scope list.
-
Validate the MCP server endpoint at mcp.squareup.com/sse and document required headers, auth grants, and tool availability.
-
Keep developer.squareup.com/reference/square linked from the connector runbook so operators can confirm vendor behavior during incidents.
-
Store credentials per Tajo workspace and keep tenant-specific secrets out of connector configuration files.
-
Add a credential smoke test that verifies read access to a harmless resource before running backfills or enabling webhooks.
Data To Sync
Start with these inferred data domains, then confirm exact vendor resources and permissions from the source documentation:
- Contact and identity records
- Commerce, payment, or subscription objects
- Events, webhooks, and behavioral activity
The connector should make source records idempotent by keeping a stable key such as a vendor object ID, email address, event ID, ticket ID, order ID, or campaign ID. If the vendor only exposes list APIs, Tajo should store the cursor strategy and replay policy explicitly.
Sync Shape
No typed contract exists for Square, so the direction of each resource and its conflict handling are not recorded. Direction is declared per resource on a connector contract; see the connector catalog for how contracts are promoted.
Mapping To Tajo/Brevo
No Brevo projection is recorded for Square. A projection is declared on a typed connector contract, and Square does not have one yet, so this page will not state a mapping it cannot source.
The conventions that apply to every connector — stable external IDs, normalization, backfill and sync strategy, error handling, and the builder checklist — are documented once under “Applies to every connector” on the connector catalog.