FinLab AIBLOCK
Your AI's shortcut to mass-produce alpha-generating quant strategies.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
Let AI discover your next alpha.
FinLab AI is an official product of FinLab. FinLab official website: https://finlab.finance
Installation
curl -sSf https://ai.finlab.finance/install.sh | sh
Auto-detects your CLI (Claude Code / Codex / Gemini), installs uv if needed, and sets up the skill.
MCP Server
A hosted, read-only MCP server (streamable HTTP) is available — no install required:
claude mcp add --transport http finlab https://mcp.finlab.finance/mcp
Tools: list_strategies, get_strategy (with Python code), get_stock_evidence, get_data_catalog, get_finlab_docs (this skill's docs, always in sync with main), how_to_start. Listed on the MCP Registry as io.github.koreal6803/finlab-ai (see server.json). The old finlab-ai.koreal6803.workers.dev endpoint is retired.
Documentation
Learn more
- Quant trading guide (量化交易): what quantitative trading is, a Taiwan-stock strategy backtester, and a platform comparison.
- Program trading guide (程式交易): how program trading works, three backtest-verified Taiwan-stock strategies, and an auto-trading walkthrough.
- Stock selection guide (股票選股): factor-based stock picking with real backtests, from single factors to multi-factor composites.
- Strategy research blog: backtest-verified
081c2a893037OBSERVED · 2026-10-01Trust audit
BLOCKgrade D · trust 69/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | NA |
| L2 | Instruction surface (what it tells the agent) | FAIL |
| L3 | Class-specific surface | WARN |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (11)
cat .env 2>/dev/null | grep FINLAB_API_TOKEN
load_dotenv() # Load FINLAB_API_TOKEN from .env
Use `sales_to_price = eps_sales / close` directly. Never use `reindex()` or `reindex_like()`, including on final positions. Set schedules through `sim(position, resample="M")` or `sim(position, resamp
uv --version || curl -LsSf https://astral.sh/uv/install.sh | sh
streamable-http
curl -sSf https://ai.finlab.finance/install.sh | sh
curl -sSf https://ai.finlab.finance/install.sh | sh
assets/banner.png
assets/demo.gif
Gates applied: instruction_override, no_behavioural_pass, no_license.
081c2a893037full audit observations/trust-audit/mcp-server/koreal6803__finlab-ai.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-01 | 081c2a893037 | BLOCK | D | 69 | first audit |
Questions
What is the FinLab AI MCP server?
Your AI's shortcut to mass-produce alpha-generating quant strategies.
Is FinLab AI safe to connect to an agent?
No — not without reading the findings first. The audit graded it D (69/100) and found 3 critical or high issues in the source. Each one is listed on this page with the file and line it is on.
What credentials does FinLab AI need?
No credential environment variables were found in its source, so it appears to need none.
How does FinLab AI run?
It speaks streamable-http, so it runs as a service you connect to over the network.
How current is this page?
The grade is for one exact copy of the source (081c2a893037), read on 2026-10-01. The repository is watched and re-audited when it changes.