Meta shipped a WhatsApp Business MCP server on September 15, and it lets AI coding agents such as Claude, Cursor, Codex and ChatGPT create WhatsApp Business accounts, verify phone numbers, write message templates and test webhooks directly, without you bouncing between the Developer Console, Business Manager and the API docs for every single number. It doesn't remove human approval. It removes the tab-switching.
At WebEpex we build WhatsApp automation for clients across the GCC, Europe, USA, Canada and Indian SMB markets, so anything that changes how a WhatsApp Business account gets set up is our problem before it's anyone else's headline.
What Is Meta's WhatsApp Business MCP Server?#
It's a Model Context Protocol server: the same connector standard Stripe, GitHub, Slack, Microsoft and Salesforce have all shipped this year, built to give an AI agent structured tools instead of a chat window. Point Claude or Cursor at it, and the agent can create the account, register Cloud API access, draft and edit templates, and fire test messages against real webhooks, in one conversation.
TechCrunch reported the launch on September 15, noting the old process meant developers moving between the Developer Console, Business Manager, the API reference and their code editor for every number they set up. Meta's own documentation lists the tool set: account creation, phone verification, Cloud API registration, template management, message and webhook testing, plus monitoring for Terms of Service, payment method and Business Verification issues. It sits next to the existing Meta Social Technologies MCP, which handles API discovery. No pricing or fixed rollout date has been disclosed.
Does This Change Anything If You Already Run WhatsApp Business API?#
If your numbers are live, your templates are approved and your webhooks are wired up, nothing here touches that. This is a setup accelerator, not a new API version.
If you're about to onboard your third, tenth or fiftieth client number this quarter, the math changes. We're talking about the agency or founder who's done the phone-verification dance by hand often enough to recite it, badly. An agent that files the template and flags a lapsed Business Verification before you notice saves real hours.
If you run one or two WhatsApp numbers a year, or you've already outsourced setup entirely, this changes very little for you today.
The Honest Trade-offs#
The upside is real: fewer browser tabs, fewer copy-paste mistakes between the console and your code, and an agent that can catch a lapsed payment method before a client's messages quietly stop sending. We've seen that exact failure before: a client's outbound WhatsApp messages went dark for two days because nobody was watching Business Verification status.
The catch is that the real checkpoints stay put, and they should. Phone verification still needs a one-time code by SMS or call, so an agent can't fully self-serve a new number. Template content still has to clear WhatsApp's compliance review, no matter who drafted it. One early third-party analysis of the launch flags something worth sitting with: state-changing actions need your authenticated approval, not just an API key, so a compromised agent session is still a real attack surface, just a narrower one. It's also in gradual rollout, so access is inconsistent right now. My read: a genuine time-saver, not yet a hands-off pipeline.
How We're Using It In Our Own Builds#
We already run Claude Code for a chunk of our own development work, including the DevOps side of a crypto trading platform client, so pointing it at a fresh MCP server the day it shipped wasn't a stretch. At WebEpex we ran Meta's new MCP server against Claude Code this week against a sandbox WhatsApp Business account, to see how much of the setup loop it actually shortens before trusting it on a live client number.
Early verdict: it's faster for the boring seventy percent (account creation, template drafting, webhook pings) and exactly as cautious as it should be about the last thirty (phone verification and anything Meta flags as a compliance risk). We're still checking every template by hand before submission on client work. That's not a gap in the tool. That's just how we'd treat any agent with write access to a client's messaging channel.
It isn't the first WhatsApp-adjacent AI move from Meta this quarter. It follows the Business Agent AI upgrade we covered a few days ago, and it echoes the same connector pattern we flagged in Meta's Ads AI connectors: check what an agent can touch before handing it the keys. For teams weighing this against a Salesforce-style packaged agent, the setup layer just got faster on both sides.
What I'd Tell A Client Asking About This#
If you're already live on WhatsApp Business API, leave it alone. Nothing here breaks your current setup.
If you're about to onboard a new number, ask whoever's building it (us included) whether they're using the MCP server yet, and ask what they still check by hand. The answer should never be "nothing."
If you're weighing building WhatsApp automation in-house against hiring it out, this narrows the skill gap slightly. Account verification and template compliance are still where most DIY setups lose weeks, not the coding part.
Read our WhatsApp lead-response build if you want to see what actually happens after the account exists.
If you want a second pair of eyes on your own WhatsApp Business setup before you touch any of this, send me what you're running and I'll tell you straight. Two minutes, no pitch. [cal.com/webepex/growth-review]