trade-mcp (Techie03/trade-mcp) is an MCP server listed on the M8ven Trust Index. It scores 51 out of 100, grade D. It declares 29 tools. No publisher has claimed this listing.

D
Caution
51/100

trade-mcp

An advanced MCP server for real-time worldwide stock market data, technical indicators, financials, news, and Python sandboxing with AI models, supporting US and Indian markets.

Caution. Specific findings reduced this grade. They are listed on the page. Grades reflect the full trust pyramid: code, verification depth, and reputation. New projects cap at C until adoption is earned.

How we verified

Code Verified⚡ Live Monitored: not connected

Verified is a snapshot. Live keeps it current, and builds your track record.

⚡ Connect GitHub → continuous verification on every pushwhy connect →

Who stands behind it

Techie03

Source: Glama

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find. Or connect your repo for our deepest verification, Live Monitored: read-only, revoke anytime. What we access →

Install from

The grade above is for the source repository. Registries can serve a different version, so we mark the ones we were not able to read.

// key findings
🚨
Secret credentials may flow to a network call
2 flows detected: ALPHA_VANTAGE_KEY, FINNHUB_KEY. We can’t prove the destination matches the brand the credential belongs to.
⚠️
Known vulnerabilities in dependencies: 2 high
Affects packages this MCP installs at runtime. Upgrade or remove the affected dependency.
🔐
You'll be asked for 5 credentials: ALPHA_VANTAGE_KEY, FINNHUB_KEY, GROQ_API_KEY, NVIDIA_API_KEY, TAVILY_API_KEY
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// tools this server exposes29 tools

These names and descriptions are the publisher's own, read from the source code. We print them as written. Our assessment is the findings above, not this list.

analyze_sentiment

AI-powered sentiment analysis of news text or recent news for a ticker. Returns: Bullish/Bearish/Neutral/Mixed with a 0-100 score and key factors. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

get_stock_insight

Full AI analysis combining price data, fundamentals, recent news, and technical indicators. Returns: sentiment, signal (Buy/Hold/Sell), key positives, key risks, target range. Best tool for a comprehensive view of any stock. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

summarize_news

AI-powered concise briefing of the latest news for a stock. Returns: overall sentiment, key themes, narrative summary, upcoming catalysts, risk events. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

analyze_earnings

AI analysis of earnings history: trend, EPS surprise quality, forward outlook. Returns: trend assessment, average surprise %, earnings quality rating, key insights. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

compare_stocks

Side-by-side AI comparison of 2-5 stocks with pros, cons, and recommendation. Returns a ranked comparison with a clear winner and reasoning. Mix US and Indian stocks freely (e.g. ["AAPL", "RELIANCE.NS", "TCS.NS"]). Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

get_trade_signal

AI-generated trade signal based on technical analysis + fundamentals. Returns: Buy/Hold/Sell signal with confidence %, support/resistance levels, stop loss, target. NOT financial advice — for educational and analytical purposes only. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

analyze_portfolio

AI portfolio health check for a list of stocks. Returns: overall sentiment, diversification score, risk level, sector exposure, and recommendations. Mix US and Indian stocks freely. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

explain_indicator

Plain-English AI explanation of any technical indicator value. Tells you what the reading means, if it's bullish/bearish, and what traders typically do. Great for learning or explaining technical analysis to non-experts. Uses Groq (LLaMA 3.3-70B) with NVIDIA NIM fallback.

get_forex

Get currency exchange rates for any currency pair. Common pairs: USD/INR, EUR/USD, GBP/INR, JPY/USD, USD/SGD, AUD/USD. Data from Alpha Vantage (counts toward 25 req/day free quota).

get_crypto_quote

Get cryptocurrency price quotes in USD. Supported coins: BTC, ETH, DOGE, SOL, XRP, ADA, MATIC, DOT, AVAX, LINK, and many more. Data from Finnhub via Binance USDT pairs.

get_company_overview

Get comprehensive company fundamentals: P/E ratio, EPS, market cap, sector, industry, 52-week range, beta, dividend yield, profit margins, ROE, analyst target price, and more. Best for US stocks. For Indian stocks, some fields may be limited.

get_financials

Get financial statements: income statement, balance sheet, or cash flow statement. Returns annual or quarterly data with up to 5 years of history. Data from Alpha Vantage (counts toward 25 req/day free quota).

get_earnings

Get earnings history with EPS actuals, estimates, surprise amounts and percentages. Also returns the next scheduled earnings date and consensus estimate. Data from Finnhub (free tier: 60 req/min).

get_historical

Get OHLCV historical price data for any stock or index globally. Supports US stocks (AAPL), NSE stocks (RELIANCE.NS), BSE stocks (HDFCBANK.BO), and indices (^NSEI, ^GSPC). Range: 1d, 5d, 1mo, 3mo, 6mo, 1y, 2y, 5y, 10y, ytd, max Interval: 1m, 5m, 15m, 30m, 1h, 1d, 1wk, 1mo

get_nse_historical

Get NSE India End-of-Day (EOD) historical data from the official NSE Bhavcopy files (CSV/ZIP format). This fetches the official CM-UDiFF Bhavcopy archive from nsearchives.nseindia.com. Returns full EOD data for all ~2000 NSE equity stocks for a given date. If no symbol is provided, retur

get_nse_quote

Get live NSE India quote with exchange-specific data not available elsewhere: - VWAP (Volume Weighted Average Price) - Circuit breaker limits (Upper/Lower Circuit Price) - Delivery quantity and delivery-to-traded ratio - Face value and market lot Uses the official NSE India REST

get_nse_indices

Get live data for all NSE India indices including: NIFTY 50, BANKNIFTY, NIFTY IT, NIFTY PHARMA, NIFTY AUTO, NIFTY FMCG, NIFTY MIDCAP 150, NIFTY SMALLCAP 250, NIFTY NEXT 50, INDIA VIX, and more. Returns open, high, low, last price, change, and advance/decline counts. Data from the off

get_nse_option_chain

Get the full F&O option chain for NSE stocks and indices. Returns all strike prices with Call (CE) and Put (PE) data: - Open Interest and Change in OI - Implied Volatility - Last Traded Price, Bid/Ask - Volume Works for: NIFTY, BANKNIFTY, FINNIFTY, MIDCPNIFTY, and individual

get_bse_quote

Get BSE (Bombay Stock Exchange) stock quote. Use the .BO suffix for BSE stocks (e.g. RELIANCE.BO, TATASTEEL.BO). If you only have the company name, try the NSE symbol with .BO suffix. Data via Yahoo Finance.

get_nse_corporate_actions

Get NSE India corporate actions including: - Dividends (ex-date, record date, amount) - Bonus issues (ratio) - Stock splits (ratio) - Rights issues - Board meeting dates - AGM / EGM notices Data sourced from NSE India JSON API with XML/RSS fallback.

get_news

Get latest news articles for a specific stock or ticker. Returns headlines, summaries, URLs, and publication timestamps. Covers US stocks, Indian companies (use their NSE symbol), global equities. Data from Finnhub (free tier).

get_market_news

Get general market news feed by category. Categories: general (all markets), forex (currency), crypto (digital assets), merger (M&A deals). Returns top 20 articles with headlines, summaries, and URLs.

run_python_analysis

Execute dynamic Python code for financial analysis, quantitative backtesting, calculations, or generating charts/plots. The code will be executed in a dedicated 'analysis' folder inside the project. Standard libraries like pandas, numpy, and matplotlib are fully supported. Any files gene

get_quote

Get live/delayed stock quote for any symbol worldwide. - US stocks: AAPL, TSLA, MSFT - NSE India: RELIANCE.NS, TCS.NS, INFY.NS - BSE India: TATASTEEL.BO, HDFCBANK.BO - Indices: ^NSEI (NIFTY), ^BSESN (SENSEX), ^GSPC (S&P 500)

get_market_summary

Get a snapshot of major world indices including NIFTY50, SENSEX, BANKNIFTY, S&P500, NASDAQ, DOW, FTSE, Nikkei, Hang Seng, and DAX. Optionally filter by region: India, US, UK, Japan, HongKong, Germany

search_symbol

Search for stock symbols by company name or keyword. Returns matching symbols with exchange and type information. Useful for finding: - Indian companies (e.g. search "Reliance" → RELIANCE.NS, RELIANCE.BO) - US companies (e.g. search "Apple" → AAPL) - ETFs, mutual funds, indices

search_web

Perform a financial or general web search using the Tavily search engine. Optimized for LLM context, returning concise and relevant web snippets. Useful for looking up: - Real-time stock news and breaking corporate announcements - Earnings releases, financial consensus, and company r

get_technical_indicators

Calculate technical indicators for any stock. Available indicators: - RSI: Relative Strength Index (overbought >70, oversold <30) - MACD: Moving Average Convergence Divergence (trend/momentum) - SMA: Simple Moving Average - EMA: Exponential Moving Average - BBANDS: Bollinger

get_sector_performance

Get real-time performance of US market sectors. Returns percentage change for sectors like Technology, Financials, Energy, Healthcare, Consumer Discretionary, Industrials, Materials, Real Estate, Utilities, Communication Services. Data from Alpha Vantage Sector Performance API.

// known CVEs in dependencies2 high9 medium

Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.

highadm-zip@0.5.17GHSA-xcpc-8h2w-3j85

adm-zip: Crafted ZIP file triggers 4GB memory allocation

highaxios@1.17.0GHSA-gcfj-64vw-6mp9

Axios Node HTTP adapter can use an inherited proxy after interceptor config cloning

mediumaxios@1.17.0GHSA-42h9-826w-cgv3

Axios: Excessive recursion in formDataToJSON can cause denial of service

mediumaxios@1.17.0GHSA-7q8q-rj6j-mhjq

Axios: Nested axios option objects can consume polluted prototype values

mediumaxios@1.17.0GHSA-f4gw-2p7v-4548

Axios: NO_PROXY bypass for 0.0.0.0 local addresses in axios

Depend on this server? Get alerted when its CVEs change.Watch this server free →
// environment variables
To run this server yourself, you supply these values. They go in your own MCP client configuration and stay on your machine. The secret label means the value is sensitive, not that the server mishandles it.
🔐 secretALPHA_VANTAGE_KEY3. Configure your API keys (, FINNHUB_KEY, GROQ_API_KEY, NVIDIA_API_KEY, TAVILY_API_KEY) securely as environment variables/secrets.
🔐 secretFINNHUB_KEY3. Configure your API keys (ALPHA_VANTAGE_KEY, , GROQ_API_KEY, NVIDIA_API_KEY, TAVILY_API_KEY) securely as environment variables/secrets.
🔐 secretGROQ_API_KEY3. Configure your API keys (ALPHA_VANTAGE_KEY, FINNHUB_KEY, , NVIDIA_API_KEY, TAVILY_API_KEY) securely as environment variables/secrets.
configGROQ_MODEL
configMCP_TRANSPORT
🔐 secretNVIDIA_API_KEY3. Configure your API keys (ALPHA_VANTAGE_KEY, FINNHUB_KEY, GROQ_API_KEY, , TAVILY_API_KEY) securely as environment variables/secrets.
configNVIDIA_MODEL
🔐 secretTAVILY_API_KEY3. Configure your API keys (ALPHA_VANTAGE_KEY, FINNHUB_KEY, GROQ_API_KEY, NVIDIA_API_KEY, ) securely as environment variables/secrets.
Deployment configuration, supplied by whoever hosts the server. Users are not asked for these.
deployPORT
// quality suggestions

Tool annotations

No tools have read-only/destructive annotations

Add readOnlyHint or destructiveHint annotations to every tool so hosts can warn users before invoking.

All four hints declared on every tool

29/29 tools missing one or more hints — analyze_sentiment (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); get_stock_insight (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint); summarize_news (missing: readOnlyHint, destructiveHint, idempotentHint, openWorldHint), +26 more. OpenAI's directory rejects tools where any of the four hints are missing or non-boolean.

For every tool, set all four hints (readOnlyHint, destructiveHint, idempotentHint, openWorldHint) to explicit true/false values that match the handler’s actual behaviour.

Destructive tools are labelled

1 tool perform destructive updates without destructiveHint — run_python_analysis deletes at line 170 (fs.unlinkSync(scriptPath))

Add destructiveHint:true to any tool whose handler calls .delete(), .upsert(), .update(), unlink, rm, DELETE, DROP, REPLACE INTO, or any operation that overwrites existing data.

License file

No license file

Add a LICENSE file (MIT, Apache-2.0, etc.).

Tests exist

No test files found

Add tests that exercise each declared tool.

Secrets not logged

2 secret values sent to error

Redact or omit secret values from log output.

Production dependencies are patched

0 critical, 2 high severity in production deps — adm-zip@0.5.17 (high), axios@1.17.0 (high)

Run npm audit fix, or upgrade the affected packages to a non-vulnerable version.

Dependency freshness

2/13 production deps stale: xml2js@2024-05-31 (2.3y), axios-retry@2024-08-02 (2.1y)

Claim the listing to review these findings one by one and send us a correction where you disagree, straight to the team. Claiming also means we tell you when the grade moves, and reach you first if we find anything urgent.

// full audit trail
The findings above are the summary. The full trail, every check we ran, each deduction, the network hosts observed and the dependency advisories, goes to verified publishers, along with an alert whenever a new one lands. Verified publishers can also review each finding and dispute it in one click. Publisher corrections have sharpened several of our checks this month, because the maintainer knows the codebase better than any scanner.
// improvement guidance — verified publishers only
We have 7 concrete improvements we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Verified](https://m8ven.ai/badge/mcp/techie03/trade-mcp?variant=verified)](https://m8ven.ai/mcp/techie03/trade-mcp)
Shows verification status without the grade. Want the grade badge instead? Remove ?variant=verified from the URL.
commit: 635895823ec2c795d9c99c19cc605f05b239ae4c
code hash: 318ed9567dd2dc55e81e043e502bf33ca71bf188246b710c2e33a59f9e62e786
view raw JSON →
Check MCPs from inside your assistant
Tool Check · MCP

Vetting this one by hand? Tool Check is an MCP that scores other MCPs. Add it once and ask Claude, ChatGPT, or any MCP client to grade a server, surface CVEs, check the publisher, and suggest safer alternatives — before you install.

https://m8ven.ai/api/mcp/tool-check
check_toolsearch_toolscompare_toolsrecommend_alternativescheck_publisherreport_concern
How to add it →Free · no account needed · works in any MCP client