Atlas / MCP servers / dragon1086 / kospi-kosdaq-stock-server

kospi-kosdaq-stock-serverSAFE

mcp/dragon1086/kospi-kosdaq-stock-data

An MCP server that provides KOSPI/KOSDAQ stock data using FastMCP

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
7 7r · 0w · 0d
Transport
—
License
MIT
Stars
73
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

[](https://mseep.ai/app/dragon1086-kospi-kosdaq-stock-server)

[](https://badge.fury.io/py/kospi-kosdaq-stock-server) [](https://smithery.ai/server/@dragon1086/kospi-kosdaq-stock-server)

An MCP server that provides KOSPI/KOSDAQ stock data from KRX Data Marketplace.

What's New in v0.3.0

Since December 27, 2024, KRX Data Marketplace requires Kakao/Naver login for data access. This version implements:

  • Direct KRX API integration with Kakao OAuth login
  • Playwright-based headless browser for authentication
  • Automatic session management with 4-hour timeout and auto re-login
  • No more pykrx dependency for core functionality

Features

  • Lookup KOSPI/KOSDAQ ticker symbols and names
  • Retrieve OHLCV (Open/High/Low/Close/Volume) data for stocks
  • Retrieve market capitalization data
  • Retrieve fundamental data (PER/PBR/Dividend Yield)
  • Retrieve trading volume by investor type (institutional, foreign, individual)
  • Retrieve index OHLCV data (KOSPI, KOSDAQ indices)

Requirements

  • Python 3.10+
  • Kakao account (2FA must be disabled)
  • Playwright Chromium browser

Environment Variables

# Required: Kakao login credentials
KAKAO_ID=your_kakao_id
KAKAO_PW=your_kakao_password
Important: Your Kakao account must have 2-step verification (2FA) disabled. On first login, you may need to approve the login request via KakaoTalk.

Installation

Prerequisites

# Install Playwright and Chromium browser
pip install playwright
playwright install chromium

Installing via Smithery

Read from source at commit 088621b2e0deOBSERVED · 2026-10-07
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.

claude-code
claude mcp add kospi-kosdaq-stock-server -- uvx kospi-kosdaq-stock-server
claude-desktop
{
  "mcpServers": {
    "kospi-kosdaq-stock-server": {
      "command": "uvx",
      "args": [
        "kospi-kosdaq-stock-server"
      ]
    }
  }
}
03

Exposed tools (7)

7 read · 0 write · 0 destructive.

ToolRiskDescription
get_index_ohlcvreadRetrieves OHLCV data for a specific index.
get_sector_inforeadRetrieves sector/industry classification for all stocks in a market.
get_stock_fundamentalreadRetrieves fundamental data (PER/PBR/Dividend Yield) for a specific stock.
get_stock_market_capreadRetrieves market capitalization data for a specific stock.
get_stock_ohlcvreadRetrieves OHLCV (Open/High/Low/Close/Volume) data for a specific stock.
get_stock_trading_volumereadRetrieves trading volume by investor type for a specific stock.
load_all_tickersreadLoads all ticker symbols and names for KOSPI and KOSDAQ into memory.
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryWARN
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (3)

MEDIUMInventory / provenance · inv.binary · CWE-1104
.DS_Store
.DS_Store
Why it matters. a compiled or binary member cannot be reviewed from source
Fix. ship source, or explain the binary in the README
LOWInventory / provenance · inv.hidden_file · CWE-1104
.DS_Store
.DS_Store
Why it matters. hidden member outside the usual dotfiles
Fix. review its purpose
LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
requirements.txt
requests, pandas, mcp, playwright, nest-asyncio, holidays
Why it matters. 6 requirement(s) not pinned with ==
Fix. pin exact versions

Gates applied: no_behavioural_pass.

Audited 2026-10-07 · audit v0.4.1 · source sha 088621b2e0defull audit observations/trust-audit/mcp-server/dragon1086__kospi-kosdaq-stock-data.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-07088621b2e0deSAFEB89first audit
06

Questions

What is the KOSPI/KOSDAQ Stock Data MCP server?

An MCP server that provides KOSPI/KOSDAQ stock data using FastMCP

What tools does KOSPI/KOSDAQ Stock Data expose?

7 in total: 7 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is KOSPI/KOSDAQ Stock Data safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does KOSPI/KOSDAQ Stock Data need?

No credential environment variables were found in its source, so it appears to need none.

How current is this page?

The grade is for one exact copy of the source (088621b2e0de), read on 2026-10-07. The repository is watched and re-audited when it changes.

Advertisement