Atlas / MCP servers / shinzo-labs / CoinMarketCap

CoinMarketCapSAFE

mcp/shinzo-labs/coinmarketcap

MCP Implementation for CoinMarketCap

Verdict
SAFE
Grade
B
Trust score
89 /100
Exposed tools
51 50r · 1w · 0d
Transport
stdio
License
MIT
Stars
51
01

Overview

From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.

CoinMarketCap MCP Server

A Model Context Protocol (MCP) server implementation for the CoinMarketCap API, providing a standardized interface for accessing cryptocurrency market data, exchange information, and other blockchain-related metrics.

Features

  • Complete coverage of the CoinMarketCap API
  • Fetch data on the latest crypto trends, market movements, and global market metrics
  • Access to detailed OHLCV data with Standard subscription or higher
  • Type-safe parameter validation with Zod

Prerequisites

If you don't have an API key, first sign up to receive a free Basic key here.

Client Configuration

There are several options to configure your MCP client with the server. For hosted/remote server s

Read from source at commit e095c42138c1OBSERVED · 2026-10-08
02

Connect

Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control. Replace the environment placeholders with a token scoped to the least it needs.

claude-code
claude mcp add coinmarketcap-mcp --env COINMARKETCAP_API_KEY=${COINMARKETCAP_API_KEY} -- npx -y @shinzolabs/[email protected]
claude-desktop
{
  "mcpServers": {
    "coinmarketcap-mcp": {
      "command": "npx",
      "args": [
        "-y",
        "@shinzolabs/[email protected]"
      ],
      "env": {
        "COINMARKETCAP_API_KEY": "${COINMARKETCAP_API_KEY}"
      }
    }
  }
}
03

Exposed tools (51)

50 read · 1 write · 0 destructive.

ToolRiskDescription
allCryptocurrencyListingsreadReturns a paginated list of all active cryptocurrencies with latest market data.
blockchainStatisticsLatestreadReturns the latest statistics for one or more blockchains.
cmc100IndexHistoricalreadReturns an interval of historic CoinMarketCap 100 Index values based on the interval parameter.
cmc100IndexLatestreadReturns the lastest CoinMarketCap 100 Index value, constituents, and constituent weights.
communityTrendingTokenreadReturns community trending tokens.
communityTrendingTopicreadReturns community trending topics.
contentLatestreadReturns latest cryptocurrency news and Alexandria articles.
contentPostsCommentswriteReturns comments for a specific post.
contentPostsLatestreadReturns latest cryptocurrency posts.
contentPostsTopreadReturns top cryptocurrency posts.
cryptoAirdropreadReturns information about a single airdrop on CoinMarketCap.
cryptoAirdropsreadReturns a list of past, present, or future airdrops on CoinMarketCap.
cryptoCategoriesreadReturns information about all coin categories available on CoinMarketCap.
cryptoCategoryreadReturns information about a single coin category on CoinMarketCap.
cryptoCurrencyMapreadReturns a mapping of all cryptocurrencies to unique CoinMarketCap IDs.
cryptoMarketPairsLatestreadReturns all market pairs for the specified cryptocurrency with associated stats.
cryptoOhlcvHistoricalreadReturns historical OHLCV market values for one or more cryptocurrencies.
cryptoOhlcvLatestreadReturns the latest OHLCV (Open, High, Low, Close, Volume) market values for one or more cryptocurrencies.
cryptoPricePerformanceStatsLatestreadReturns price performance statistics for one or more cryptocurrencies including ROI and ATH stats.
cryptoQuotesHistoricalreadReturns an interval of historical market quotes for any cryptocurrency.
cryptoQuotesHistoricalV3readReturns an interval of historic market quotes for any cryptocurrency based on time and interval parameters.
cryptoQuotesLatestreadReturns the latest market quote for one or more cryptocurrencies.
cryptoTrendingGainersLosersreadReturns the biggest gainers and losers in a given time period.
cryptoTrendingLatestreadReturns the top cryptocurrencies by search volume in a given time period.
cryptoTrendingMostVisitedreadReturns the most visited cryptocurrencies on CoinMarketCap in a given time period.
dexInforeadReturns all static metadata for one or more decentralised exchanges.
dexListingsLatestreadReturns a paginated list of all decentralised cryptocurrency exchanges including the latest aggregate market data.
dexNetworksListreadReturns a list of all networks to unique CoinMarketCap ids.
dexPairsOhlcvHistoricalreadReturns historical OHLCV data along with market cap for any spot pairs using time interval parameters.
dexPairsOhlcvLatestreadReturns the latest OHLCV market values for one or more spot pairs for the current UTC day.
dexPairsQuotesLatestreadReturns the latest market quote for 1 or more spot pairs.
dexPairsTradeLatestreadReturns up to the latest 100 trades for 1 spot pair.
dexSpotPairsLatestreadReturns a paginated list of all active dex spot pairs with latest market data.
exchangeAssetsreadReturns the assets/token holdings of an exchange.
exchangeInforeadReturns metadata for one or more exchanges.
exchangeListingsLatestreadReturns a paginated list of all exchanges with latest market data.
exchangeMapreadReturns a mapping of all exchanges to unique CoinMarketCap IDs.
exchangeMarketPairsLatestreadReturns all market pairs for the specified exchange with associated stats.
exchangeQuotesHistoricalreadReturns an interval of historic quotes for any exchange based on time and interval parameters.
exchangeQuotesLatestreadReturns the latest market quotes for one or more exchanges.
fearAndGreedHistoricalreadReturns historical CMC Crypto Fear and Greed Index values.
fearAndGreedLatestreadReturns the latest CMC Crypto Fear and Greed Index value.
fiatMapreadReturns a mapping of all supported fiat currencies to unique CoinMarketCap IDs.
getCryptoMetadatareadReturns all static metadata for one or more cryptocurrencies including logo, description, and website URLs.
getPostmanCollectionreadReturns a Postman collection for the CoinMarketCap API.
globalMetricsHistoricalreadReturns historical global cryptocurrency market metrics.
globalMetricsLatestreadReturns the latest global cryptocurrency market metrics.
historicalCryptocurrencyListingsreadReturns a ranked and sorted list of all cryptocurrencies for a historical point in time.
keyInforeadReturns API key details and usage stats.
newCryptocurrencyListingsreadReturns a paginated list of most recently added cryptocurrencies.
priceConversionreadConvert an amount of one cryptocurrency or fiat currency into one or more different currencies.
04

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codePASS
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
declared (1 observation(s))
Shell
none-observed
Dependencies
not all pinned
Secrets in source
none-found

Findings (1)

LOWSupply chain · supply.unpinned · CWE-829, CWE-1357
package.json
@shinzolabs/instrumentation-mcp
Why it matters. 1 dependency range(s) float
Fix. pin exact versions or ship a lockfile

Gates applied: no_behavioural_pass.

Audited 2026-10-08 · audit v0.4.1 · source sha e095c42138c1full audit observations/trust-audit/mcp-server/shinzo-labs__coinmarketcap.json · Report an issue / request a re-scan
05

Audit history

Every audit this server has had. A grade with a past is a grade somebody is still checking.

DateSourceVerdictGradeScoreChange
2026-10-08e095c42138c1SAFEB89first audit
06

Questions

What is the CoinMarketCap MCP server?

MCP Implementation for CoinMarketCap

What tools does CoinMarketCap expose?

51 in total: 50 read-only, 1 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.

Is CoinMarketCap safe to connect to an agent?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.

What credentials does CoinMarketCap need?

It reads COINMARKETCAP_API_KEY from the environment. Give it a token scoped to the least it needs — an agent that can be talked into calling a tool can be talked into calling it with your credentials.

How does CoinMarketCap run?

It speaks stdio, so it runs as a local process your client starts. It is published on npm as @shinzolabs/coinmarketcap-mcp at 1.4.5.

How current is this page?

The grade is for one exact copy of the source (e095c42138c1), read on 2026-10-08. The repository is watched and re-audited when it changes.

Advertisement