free Docker image · read-only by default · Infor M3

Let AI work with M3.
Keep control.

Codicent M3 MCP gives approved AI assistants governed access to live Infor M3 business data — so your team can find answers and prepare work without another export or reporting silo.

read session
YouWhich open quotes does this customer have, and is the requested item in stock?
AssistantI found two current quotes and checked the live warehouse balance. I can summarize the options and flag what needs a person to confirm.
M3 access approved · no ERP write performed
Live M3
Answers from current ERP data
Read-first
Write tools excluded by default
MCP
A standard interface for AI clients
Your access
Tenant permissions stay authoritative
Practical capability

Turn M3 lookups into conversations.

Give people a faster way to understand customers, orders and operations while M3 remains the system of record.

01

Customers & contacts

Find customer records, contact details and delivery addresses without navigating several M3 views.

02

Orders, quotes & invoices

Review headers, lines, status and recent history to answer customer questions with current context.

03

Items, prices & stock

Look up products, agreements, price context and warehouse availability for informed follow-up.

04

Service & purchasing

Bring relevant service-order and purchase-order information into the same assisted workflow.

05

AI-ready workflows

Use the same governed M3 capability from compatible assistants and agent experiences your team already uses.

06

Tenant-aware delivery

Start from the MI programs and permissions actually available in your M3 environment, not a generic demo dataset.

How it works

A controlled bridge, not a second ERP.

The MCP server translates approved AI requests into bounded M3 operations. Data is retrieved when needed; this public site contains no server code or connection details.

1 · Ask

Your AI assistant

A user asks a business question in natural language from an approved MCP-compatible client.

2 · Govern

Codicent M3 MCP

A curated tool surface validates input and controls which M3 capabilities the assistant can use.

3 · Retrieve

Your Infor M3

Infor ION and M3 permissions determine what the configured service identity is allowed to return.

Safety boundary

Useful by default. Powerful by decision.

Production access should begin with the smallest useful scope and expand only after the tenant, use case and approval path are understood.

Read-oriented from the start

ERP write tools are not exposed in the default read-only configuration.
M3 credentials stay server-side and are never placed in the AI conversation.
Inbound access is authenticated and served over HTTPS for deployed environments.
The M3 service identity and tenant permissions remain the final authorization boundary.

No automatic telemetry

The image never phones home. A built-in register_usage tool can register your organization only after the assistant asks and you explicitly approve.

Registration sends only
organization · MCP version · read-only status

Never sent
M3 URLs · credentials · calls · responses · business data
Docker Hub

Run it in your environment.

Bring your own Infor ION credentials. The container starts read-only and should be kept behind authenticated, HTTPS access for anything beyond local use.

docker pull izaxon/mcp-m3:1.8.0

docker run -d --name codicent-m3 \
  --restart unless-stopped \
  -p 127.0.0.1:8000:8000 \
  --env-file ./m3.env \
  -e M3_API_KEY=replace-with-a-long-random-key \
  -e M3_READONLY=true \
  izaxon/mcp-m3:1.8.0

Store the required Infor ION connection values in a restricted m3.env file or secrets manager. Do not commit credentials.

What is free

Pull and run the image yourself. Read-oriented M3 tools are available without a Codicent subscription.

When you want help

Buy verified launch, tenant-specific assurance and supported workflow packs when you need a production-grade rollout.

Open Docker Hub →

Production support

Start free. Add assurance when it matters.

Tell us which tenant, business question and AI client you want to support. We can verify the available M3 programs, harden the deployment and package a controlled workflow.

Contact Johan →