Selectel balance MCP server
Selectel MCP Server
A Selectel billing MCP server: balance and spend predictions via a service user, with automatic token refresh and an audit log
Medium risk
We rate an entry medium when the tool runs code, makes network calls or reads project files. Check what exactly it does before installing.
Why this level
- It stores the Selectel service user password in its own database
- It reads the account's financial data, though it does not change payments itself
Install
Manual install
docker compose up --buildRunning via Docker Compose after configuring .env; migrations apply automatically.
This is third-party code. Review the repository files before installing.
What it does
The server provides three tools: connecting a Selectel account via a service user, getting the current balance, and getting the spend prediction. Credentials are entered once via .env, the REST API or the connect_selectel_account tool, after which a FastAPI application with PostgreSQL stores them and refreshes the Selectel access token every 24 hours with no user involvement. Every MCP tool call is written to an audit log. There is a separate stdio entry point for Hermes Agent and a regular HTTP mode via docker compose.
Who it is for. For those who want an agent to watch their Selectel balance and spend forecast without manually refreshing a token.
Good fit when
- You only need the Selectel balance and spend forecast, not resource management
- You need the Selectel token refreshed automatically once a day
- You need an audit log of all tool calls
Not a fit when
- You need to manage Selectel servers, networks or storage: this covers only billing
- You are not ready to run PostgreSQL to store tokens and credentials
Example request
Check the Selectel balance and tell me if the funds will last until the end of the month based on the spend forecastLimitations
The README explicitly calls the project an MVP. Functionality is limited to the balance and spend forecast; there is no Selectel resource management. Storing credentials and the token needs PostgreSQL, though a local SQLite option exists for running without Docker. It requires a Selectel service user with a password that is stored in the server's database.
How to disable. Stop docker compose or the server process and remove it from your MCP client configuration.
MCP
- Transport
- stdio, http
- Authentication
- API key
| Environment variables | |
|---|---|
| SELECTEL_ACCOUNT_ID required | The Selectel account ID. |
| SELECTEL_SERVICE_USER_NAME required | The Selectel service user name. |
| SELECTEL_SERVICE_USER_PASSWORD required, secret | The Selectel service user password. |
| DATABASE_URL required, secret | The PostgreSQL or sqlite connection string used to store the token and audit log. |
Security check
- It stores the Selectel service user password in its own database
- It reads the account's financial data, though it does not change payments itself
README in short
The Russian README describes an MVP MCP server for getting the Selectel balance via a service user: connecting the account once, automatic token refresh, three MCP tools and a call audit log. It gives the stack (FastAPI, PostgreSQL, SQLAlchemy 2.x, Alembic, Docker), the project structure, and three run paths: docker compose, running locally without Docker, and .env configuration.
FAQ
Do I need to refresh the Selectel token manually?
No, the server refreshes the token itself every 24 hours after the account is first connected.
Can it run without Docker?
Yes, locally via venv and pip, but you need a separately running PostgreSQL or sqlite for storage.
Related
A set of investment research skills for Claude Code and Codex built on four investors' methodologies. It is a research tool, not investment advice
Stripe's official MCP server, plugins and skills: the agent searches the API and docs, reads and changes account data
Alpaca's official MCP server: orders for stocks, ETFs, crypto and options, position management and market data in plain language
inn-check-ru: counterparty risk traffic light
inn-check-ru
An open-source skill that checks a Russian company by tax ID across EGRUL, bailiffs, courts, bankruptcy and sanctions, and returns a dated risk verdict