Finance Data ServerCAUTION
这是一个金融领域相关的mcp,本项目通过集成 Tushare API 和 Binance API 为语言模型(如Claude)提供全面的实时金融数据访问能力,支持股票、基金、债券、宏观经济指标、稳定币、虚拟货币等多维度金融数据分析。其中也包含了金融数据查询、财经新闻查询、国家统计局数据查询等
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
FinanceMCP Synapse
为 AI Agent 提供统一、可路由、可追溯的多市场金融数据 19 个稳定 MCP Tools · Tushare / Qveris / Binance · stdio + Streamable HTTP
快速开始 · 数据源路由 · API 获取 · Tools · 安全
c8ff32e28a83OBSERVED · 2026-09-28Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.
claude mcp add finance-mcp --env CACHE_GATEWAY_API_KEY=${CACHE_GATEWAY_API_KEY} --env CACHE_GATEWAY_MASTER_KEY=${CACHE_GATEWAY_MASTER_KEY} --env COINGECKO_API_KEY=${COINGECKO_API_KEY} --env COINGECKO_DEMO_API_KEY=${COINGECKO_DEMO_API_KEY} -- npx -y [email protected]{
"mcpServers": {
"finance-mcp": {
"command": "npx",
"args": [
"-y",
"[email protected]"
],
"env": {
"CACHE_GATEWAY_API_KEY": "${CACHE_GATEWAY_API_KEY}",
"CACHE_GATEWAY_MASTER_KEY": "${CACHE_GATEWAY_MASTER_KEY}",
"COINGECKO_API_KEY": "${COINGECKO_API_KEY}",
"COINGECKO_DEMO_API_KEY": "${COINGECKO_DEMO_API_KEY}"
}
}
}
}Exposed tools (18)
18 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
block_trade | read | 获取大宗交易数据,包括成交价格、成交量、买卖双方营业部等详细信息 |
company_performance | read | 获取上市公司综合表现数据,包括业绩预告、业绩快报、财务指标、分红送股、主营业务构成、股东变动数据、管理层信息、公司基本信息、资产负债表、现金流量表、利润表、每日估值指标、股票基本信息和新股上市数据 |
company_performance_hk | read | 获取港股上市公司综合表现数据,包括利润表、资产负债表、现金流量表等财务报表数据 |
company_performance_us | read | 获取美股上市公司综合表现数据,包括利润表、资产负债表、现金流量表和财务指标数据 |
convertible_bond | read | 获取可转债非行情与生命周期数据,支持发行、强赎、转股、票面利率、评级和十大持有人查询 |
csi_index_constituents | read | 获取中证指数公司(CSI)指数(含行业/主题)的区间行情、成分权重与估值/财务摘要(PE TTM、PB、股息率、ROE、ROA、净利率、每股经营现金流、资产负债率、营收同比、资产周转率、毛利率、三费比率、现金分红率)。 |
current_timestamp | read | 获取当前东八区(中国时区)的时间戳,包括年月日时分秒信息 |
dragon_tiger_inst | read | 龙虎榜机构成交明细(top_inst)。必填:交易日期;可选:股票TS代码。返回表格包含买入/卖出/净额及上榜理由等。 |
finance_news | read | 通过真正的搜索API获取主流财经媒体的新闻内容,支持单个或多个关键词智能搜索 |
fund_data | read | 获取公募基金和ETF相关数据,包括基金列表、基金经理、基金净值、基金分红、基金持仓、基金公司、ETF复权因子、销售保有规模和场内基金专业因子等数据。 |
fund_manager_by_name | read | 根据基金经理姓名查询基金经理详细信息,包括管理的基金列表、个人背景、任职经历等 |
hot_news_7x24 | read | 7x24热点:按当前数据源优先级获取最新新闻;Tushare 单次上限1500条,Twingly 单次上限250条 |
index_data | read | 获取指定股票指数的数据,支持日线/周线/月线行情、国际主要指数、指数基本信息和估值指标 |
lookup | read | lookup data |
macro_econ | read | 获取宏观经济数据,包括Shibor利率、LPR利率、GDP、CPI、PPI、货币供应量、PMI、社融数据、Shibor报价、Libor、Hibor等 |
margin_trade | read | 获取融资融券相关数据,支持多种数据类型:标的股票、交易汇总、交易明细、转融券汇总等 |
stock_data | read | 获取指定股票/加密资产的历史行情数据,支持A股、美股、港股、外汇、期货、基金、债券逆回购、可转债、期权、加密货币(通过Binance) |
stock_data_minutes | read | 获取分钟K线数据:A股/加密。支持1MIN/5MIN/15MIN/30MIN/60MIN,时间范围需提供起止日期时间 |
Trust audit
CAUTIONgrade B · trust 86/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | WARN |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- declared (5 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (14)
console.log(`[TOKEN] Found in X-Tushare-Token/X-Api-Key header`);
console.log(`[TOKEN] Found in Authorization Bearer header`);
console.log(`[TOKEN] Extracted Tushare token from request config`);
console.log(`[TOKEN] Found in query parameters`);
console.log(`[TOKEN] Not found in request, falling back to environment variable`);
const payload = '../../etc/passwd';
npm run start:http # http://127.0.0.1:3000/mcp
npm run start:http # http://127.0.0.1:3000/mcp
默认监听 `http://127.0.0.1:3210`。
base_url = "http://127.0.0.1:3210/v1"
$env:ANTHROPIC_BASE_URL="http://127.0.0.1:3210"
cors, dotenv, express, @types/cors, @types/express, @types/node, typescript
1. Sign in to [Qveris](https://qveris.ai/) and open [Dashboard / API Keys](https://qveris.ai/account?page=api-keys).
- API keys are read only from request headers or environment variables and never committed.
Gates applied: no_behavioural_pass.
c8ff32e28a83full audit observations/trust-audit/mcp-server/guangxiangdebizi__finance-data-server.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-09-28 | c8ff32e28a83 | CAUTION | B | 86 | first audit |
Questions
What is the Finance Data Server MCP server?
这是一个金融领域相关的mcp,本项目通过集成 Tushare API 和 Binance API 为语言模型(如Claude)提供全面的实时金融数据访问能力,支持股票、基金、债券、宏观经济指标、稳定币、虚拟货币等多维度金融数据分析。其中也包含了金融数据查询、财经新闻查询、国家统计局数据查询等
What tools does Finance Data Server expose?
18 in total: 18 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Finance Data Server safe to connect to an agent?
With care. The audit graded it B (86/100) and found 14 things worth knowing before you trust this server, listed below with the exact line each was found on.
What credentials does Finance Data Server need?
It reads CACHE_GATEWAY_API_KEY, CACHE_GATEWAY_MASTER_KEY, COINGECKO_API_KEY, COINGECKO_DEMO_API_KEY, COINGECKO_PRO_API_KEY, GITHUB_TOKEN, QVERIS_API_KEY, TEST_ANTHROPIC_KEY, TEST_OPENAI_KEY, TUSHARE_TOKEN and TWINGLY_API_KEY from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.
How does Finance Data Server run?
It speaks streamable-http, so it runs as a service you connect to over the network. It is published on npm as finance-mcp at 4.11.2.
How current is this page?
The grade is for one exact copy of the source (c8ff32e28a83), read on 2026-09-28. The repository is watched and re-audited when it changes.