Trading212 MCP Server
Trading 212 MCP Server
A Model Context Protocol server for the Trading 212 public API. It exposes account data, positions, orders, pies, instrument metadata, and account history. It also includes an account-currency-aware analysis prompt. It does not provide independent market feeds, investment recommendations, or real-time streaming.
Python 3.11–3.14 is supported. The current source package version is 0.2.0; see the changelog for upgrade details. The project uses the official MCP Python SDK 2.x.
Install and run
Install uv, then:
git clone https://github.com/RohanAnandPandit/trading212-mcp-server.git
cd trading212-mcp-server
uv sync --frozen
cp .env.example .env
# Edit .env with your own credentials.
uv run --frozen trading212-mcp-serverAlternatively, install the package from the checkout using pip install .,
then run trading212-mcp-server. For a locked pip installation, use
pip install --require-hashes -r requirements.txt followed by
pip install --no-deps ..
Generate credentials in your Trading 212 account's API settings. Set
TRADING212_API_KEY and, for Basic authentication, TRADING212_API_SECRET.
API-key-only authentication remains available for existing integrations, where
accepted by Trading 212. Use the demo environment for testing. Live credentials
and ENVIRONMENT=live enable operations on the real account.
The server reads .env in its working directory at startup. Existing process
environment variables take precedence. Imports and tool discovery do not make
Trading 212 requests. No credentials are required merely to import the server.
Desktop MCP configuration
Use this configuration in your MCP client's server settings:
{
"mcpServers": {
"trading212": {
"command": "uv",
"args": ["run", "--frozen", "--directory", "/absolute/path/to/trading212-mcp-server", "trading212-mcp-server"],
"env": {
"TRADING212_API_KEY": "YOUR_API_KEY",
"TRADING212_API_SECRET": "YOUR_API_SECRET",
"ENVIRONMENT": "demo"
}
}
}
}Existing configurations pointing to src/server.py continue to work after
uv sync --frozen. The script also remains the Inspector entry point:
uv run --frozen mcp dev src/server.pyInspector requires Node.js and npx. Tool calls in Inspector use the configured
account, including mutations when you invoke those tools.
Docker
docker build -t trading212-mcp-server .
docker run --rm -i --env-file .env trading212-mcp-serverFor a desktop client, pass both credential variables through Docker:
{
"mcpServers": {
"trading212": {
"command": "docker",
"args": ["run", "--rm", "-i", "-e", "TRADING212_API_KEY", "-e", "TRADING212_API_SECRET", "-e", "ENVIRONMENT", "trading212-mcp-server"],
"env": {
"TRADING212_API_KEY": "YOUR_API_KEY",
"TRADING212_API_SECRET": "YOUR_API_SECRET",
"ENVIRONMENT": "demo"
}
}
}
}The image runs as UID/GID 10001. Credentials, local caches, and development
files are excluded from the image. The default container cache is ephemeral;
mount a private directory writable by UID 10001 at /home/app/.cache if you
want persistence. Stdio does not require publishing a port.
Configuration
Variable | Default | Meaning |
| Required | Account API key |
| Unset | Secret for Basic authentication |
|
|
|
|
|
|
|
| Cache root; relative to working directory |
|
| Account, positions, orders, pies, export-status cache seconds |
|
| History cache seconds |
|
| Instrument and exchange cache seconds |
A TTL of zero disables caching for that category. Values must be finite and
non-negative. HTTP transports bind only to 127.0.0.1:8000, with explicit
Host/Origin restrictions. This is a local single-account server; hosted access,
public HTTP binding, and multi-user authentication are not provided. Do not
expose it through a public proxy or tunnel. Tool annotations describe effects;
they do not implement permissions. Use API permissions and your MCP client's
approval controls to govern account mutations.
Tools
All previous tool names are retained:
Area | Tools |
Account |
|
Positions |
|
Orders |
|
Pies |
|
Metadata |
|
History |
|
Positive order quantities buy; negative quantities sell. Zero/non-finite
quantities, non-positive prices, and empty tickers are rejected. Pie updates may
include any documented field independently; name is optional. Export dates
must include a timezone and be ordered. Pies are deprecated upstream, but their
tools are retained.
fetch_account_info aliases fetch_account_summary. The older position tools
remain compatibility aliases. Historical tools return a single page with
nextPagePath; pass its cursor and other query parameters to fetch the next
page. Limits retain their existing clamp to 1–50. Requests do not automatically
traverse all pages or follow export download links.
Resources and prompt
Resources retain their existing URIs:
trading212://account/summary,trading212://account/cashtrading212://positions,trading212://positions/{ticker}trading212://orders,trading212://orders/{order_id}trading212://pies,trading212://pies/{pie_id}trading212://instruments,trading212://exchangestrading212://history/exports
Compatibility URIs: trading212://account/info,
trading212://account/portfolio, trading212://account/positions,
trading212://account/portfolio/{ticker}, and
trading212://account/positions/{ticker}.
The analyse_trading212_data prompt includes account currency when available
and explains GBX/GBP units. If account retrieval fails, it still returns the
base prompt and writes a generic diagnostic to stderr.
Cache and request guarantees
Private data remains cached. Credential/base-URL fingerprints isolate SQLite storage across accounts, secret rotations, environments, and API versions. Authorization and cookies never enter the cache layer. Cache responses contain financial data in plaintext; private filesystem permissions are not encryption. Use a private local disk, not a shared or network-mounted cache directory.
Only successful GETs are cached, and expired responses are never served. Mutations are never cached or automatically retried. After any attempted mutation, private-cache generations advance, including when the outcome is uncertain. A cross-process file lock covers reads, writes, body consumption, and invalidation, preventing older in-flight reads from repopulating the current generation. Different credential namespaces remain independent; external trades or writes using another API key may remain invisible until the TTL expires.
MCP tool results and resource contents carry freshness details under
_meta["io.github.RohanAnandPandit.trading212/cache"]: an array of cacheHit,
retrievedAt (UTC), and ttlSeconds records. Existing data fields remain intact.
Transient GET failures may be retried twice within a 30-second retry budget,
respecting Retry-After and rate-reset headers. Individual HTTP operations have
explicit timeouts. Waiting for another process's cache lock is bounded separately
at 30 seconds. A failed mutation can have an unknown outcome: check the account
before deciding whether to issue it again.
Upgrading from 0.1.x
Stop older server processes, update the checkout, and run uv sync --frozen.
The new server never reads or migrates .cache/hishel or .cache/trading212-v2.
Those directories may contain private responses and Authorization headers.
After confirming the paths belong to this application, explicitly remove old
cache directories yourself. The upgrade does not delete user data. Rebuild
Docker images and replace any older images that may have included local files.
Development and security
See CONTRIBUTING.md for architecture and verification commands, SECURITY.md for private reporting, and the modernization validation report for checked behavior.
Keeping the Trading 212 schema in sync
Trading 212's live
OpenAPI description is the
authority. docs/api.json is the reviewable checked-in snapshot. Before making
API-facing changes or preparing a release, check it without account credentials:
uv run --with PyYAML python .agents/skills/trading212-api-sync/scripts/sync_api_schema.py --checkIf the command reports drift, refresh the snapshot:
uv run --with PyYAML python .agents/skills/trading212-api-sync/scripts/sync_api_schema.py --updateReview the resulting diff rather than treating regeneration as sufficient.
Update endpoints, parameters, request and response models, enums, deprecations,
tests, and documentation where relevant, then run the full verification suite.
The repository-local trading212-api-sync agent skill contains the complete
workflow. The schema check only downloads public documentation; it must never
make authenticated account requests or trading mutations.
This project is independently maintained and is not affiliated with or endorsed by Trading 212. Consult the provider's current documentation and terms. Licensed under MIT.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/RohanAnandPandit/trading212-mcp-server'
If you have feedback or need assistance with the MCP directory API, please join our Discord server