Atlas / MCP servers / mtwn105 / Zerodha

ZerodhaSAFE

mcp/mtwn105/zerodha-1

Zerodha MCP Server & Client - AI Agent (w/Agno & w/Google ADK)

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
12 7r · 5w · 0d
Transport
—
License
Apache-2.0
Stars
32
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

A Python-based trading assistant that connects to a Zerodha MCP server to help users manage their trading account.

Features

  • Account Management: Manage Zerodha trading account, orders, and positions
  • Interactive Chat Interface: Natural language interface for trading operations
  • MCP Integration: Built on the Model Context Protocol for standardized communication
  • Zerodha API Integration: Uses Zerodha's API to interact with the trading platform
  • Agno Agent: Uses Agno Agent to interact with the trading platform
  • Google ADK Agent: Uses Google ADK Agent to interact with the trading platform

Tech Stack

Tools

  • Place Orders: Place orders in the trading platform
  • Modify Orders: Modify orders in the trading platform
  • Cancel Orders: Cancel orders in the trading platform
  • Get Orders: Get orders in the trading platform
  • Get Order History: Get order history in the trading platform
  • Get Order Trades: Get order trades in the trading platform
  • Get Margins: Get margins in the trading platform
  • Get Holdings: Get holdings in the trading platform
  • Get Positions: Get positions in the trading platform
  • Get User Profile: Get user profile in the trading platform

Prerequisites

  • Python
  • Zerodha trading account with Personal API access from here
  • Zerodha API key and secret
  • OpenAI API key (for Agno Agent)
  • Gemini API key or Application Default Credentials (for Google ADK Agent)

Installation

  1. Clone the repository:
git clone https://github.com/mtwn105/zerodha-mcp-server-client.git
cd zerodha-
Read from source at commit 523490168d80OBSERVED · 2026-10-08
02

Exposed tools (12)

7 read · 5 write · 0 destructive.

ToolRiskDescription
cancel_orderwriteCancel an order.
get_access_tokenreadGet the access token for the user.
get_holdingsreadGet the user
get_login_urlreadGet the login URL for the user. Use this to get the login URL for the user and then redirect the user to the login URL to get the request token.
get_marginsreadGet the user
get_order_historywriteGet history of an order.
get_order_tradeswriteGet trades generated by an order.
get_ordersreadGet all orders placed for the day.
get_positionsreadGet the user
get_user_profilereadGet the authenticated user
modify_orderwriteModify an existing order.
place_orderwritePlace a new order on Zerodha.
03

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (1)

LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
requirements.txt
agno, mcp, python-dotenv, kiteconnect, starlette, uvicorn, rich, google-adk
Why it matters. 8 requirement(s) not pinned with ==
Fix. pin exact versions

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha 523490168d80full audit observations/trust-audit/mcp-server/mtwn105__zerodha-1.json · Report an issue / request a re-scan
04

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-08523490168d80SAFEB89first audit
05

Questions

What is the Zerodha MCP server?

Zerodha MCP Server & Client - AI Agent (w/Agno & w/Google ADK)

What tools does Zerodha expose?

12 in total: 7 read-only, 5 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is Zerodha safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does Zerodha need?

It reads ZERODHA_API_KEY and ZERODHA_API_SECRET from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.

How current is this page?

The grade is for one exact copy of the source (523490168d80), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement