Hyperliquid InfoSAFE
An MCP server that provides real-time data and insights from the Hyperliquid perp DEX for use in bots, dashboards, and analytics.
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
An MCP server that provides real-time data and insights from the Hyperliquid perp DEX for use in bots, dashboards, and analytics.
Features
- User Data Queries:
get_user_state: Fetch user positions, margin, and withdrawable balance for perpetuals or spot markets.get_user_open_orders: Retrieve all open orders for a user account.get_user_trade_history: Get trade fill history with details like symbol, size, and price.get_user_funding_history: Query funding payment history with customizable time ranges.get_user_fees: Fetch user-specific fee structures (maker/taker rates).get_user_staking_summary&get_user_staking_rewards: Access staking details and rewards.get_user_order_by_oid&get_user_order_by_cloid: Retrieve specific order details by order ID or client order ID.get_user_sub_accounts: List sub-accounts associated with a main account.
- Market Data Tools:
get_all_mids: Get mid prices for all trading pairs.get_l2_snapshot: Fetch Level 2 order book snapshots for a specific coin.get_candles_snapshot: Retrieve candlestick data with customizable intervals and time ranges.get_coin_funding_history: Query funding rate history for a specific coin.get_perp_dexs: Fetch metadata about perpetual markets (usingmeta).get_perp_metadata&get_spot_metadata: Get detailed metadata for perpetual and spot markets, with optional asset contexts.
- Analysis Prompt:
analyze_positions: A guided prompt to analyze user trading activity using relevant tools.
- ISO 8601 Support: Time-based queries (
get_candles_snapshot,get_coin_funding_history,get_user_funding_history) accept ISO 8601 time strings for preci
25f0d54b0ef7OBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add hyperliquid-info-mcp -- uvx hyperliquid-info-mcp
{
"mcpServers": {
"hyperliquid-info-mcp": {
"command": "uvx",
"args": [
"hyperliquid-info-mcp"
]
}
}
}Exposed tools (17)
15 read · 2 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
get_all_mids | read | |
get_candles_snapshot | read | |
get_coin_funding_history | read | |
get_l2_snapshot | read | |
get_perp_dexs | read | |
get_perp_metadata | read | |
get_spot_metadata | read | |
get_user_fees | read | |
get_user_funding_history | read | |
get_user_open_orders | read | |
get_user_order_by_cloid | write | |
get_user_order_by_oid | write | |
get_user_staking_rewards | read | |
get_user_staking_summary | read | |
get_user_state | read | |
get_user_sub_accounts | read | |
get_user_trade_history | read |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
25f0d54b0ef7full audit observations/trust-audit/mcp-server/kukapay__hyperliquid-info.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | 25f0d54b0ef7 | SAFE | B | 89 | first audit |
Questions
What is the Hyperliquid Info MCP server?
An MCP server that provides real-time data and insights from the Hyperliquid perp DEX for use in bots, dashboards, and analytics.
What tools does Hyperliquid Info expose?
17 in total: 15 read-only, 2 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Hyperliquid Info safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Hyperliquid Info need?
No credential environment variables were found in its source, so it appears to need none.
How current is this page?
The grade is for one exact copy of the source (25f0d54b0ef7), read on 2026-10-08. The repository is watched and re-audited when it changes.