T-Bank Invest MCP server in Go
TBANK INVEST MCP SERVER
A compact Go MCP server for the T-Bank Invest API: accounts, portfolio, shares and bonds, requiring the Russian Ministry of Digital Development root certificate
High risk
We rate an entry high when the tool writes to external systems, handles money, production databases or secrets, or runs arbitrary commands. The CLI installs it only with your consent.
Why this level
- Brokerage services are always flagged high risk in this catalog due to the sensitivity of financial data
- The token grants access to real accounts and a portfolio, and disabling TLS certificate verification weakens connection security
Install
Manual install
go install github.com/pvragov/tinvest-mcp/cmd/tinvest-mcp@latestRequires Go 1.26+; the Ministry of Digital Development certificate is needed after installing.
This is third-party code. Review the repository files before installing.
What it does
A Go server connects to the T-Bank Invest gRPC API and provides tools to read accounts, portfolio, bonds, shares and instruments, with no trading operations. It runs over stdin. A notable detail: accessing the Invest API requires the Russian Ministry of Digital Development root certificate, downloadable from Gosuslugi or taken from the repo's own certs/tbank_ca.pem and pointed to via TBANK_INVEST_MCP_TLS_CA_CERT_PATH. Certificate verification can be disabled with TBANK_INVEST_MCP_TLS_SKIP_VERIFY, but the README explicitly calls that strongly discouraged.
Who it is for. For T-Bank investors who want a lightweight Go server to read their portfolio without Python or Node in the environment.
Good fit when
- You want a minimal binary with no Python or Node runtime to read your T-Bank Invest portfolio
- You are ready to install the Russian Ministry of Digital Development root certificate for API access
- Accounts, portfolio, bonds and shares are enough, no trading needed
Not a fit when
- You cannot install or point to the Ministry of Digital Development root certificate: without it, or without TLS_SKIP_VERIFY, the connection fails
- You need market data, candles, order book, dividends or technical analysis: this server does not provide them
Example request
Show my T-Bank Invest accounts and portfolio with current positionsLimitations
The repository has no license. Functionality is limited to accounts, portfolio, bonds and shares, with no market data, dividends, technical analysis or order listing that fuller read-only alternatives provide. It requires installing the Russian Ministry of Digital Development root certificate; disabling verification is explicitly discouraged by the README.
How to disable. Remove the tinvest entry from your MCP client config and delete the TBANK_INVEST_MCP_API_TOKEN from your environment.
MCP
- Transport
- stdio
- Authentication
- API key
| Environment variables | |
|---|---|
| TBANK_INVEST_MCP_API_TOKEN required, secret | T-Bank Invest API token |
| TBANK_INVEST_MCP_TLS_CA_CERT_PATH | Absolute path to the Ministry of Digital Development root certificate for TLS verification |
| TBANK_INVEST_MCP_TLS_SKIP_VERIFY | Skips server certificate verification; the README calls this strongly discouraged |
Security check
- Brokerage services are always flagged high risk in this catalog due to the sensitivity of financial data
- The token grants access to real accounts and a portfolio, and disabling TLS certificate verification weakens connection security
README in short
A short Russian README describes installing via go install, four environment variables for the token and TLS certificate, running over stdin with a config check via an echoed JSON-RPC initialize call, and a ready JSON config for AI agents.
FAQ
Why is the Ministry of Digital Development certificate needed?
The T-Bank Invest API validates the server's TLS certificate through the Russian root certification authority; without it, or without disabling verification, the connection fails.
Can I skip installing the certificate?
Yes, with TBANK_INVEST_MCP_TLS_SKIP_VERIFY=true, but the README explicitly calls that strongly discouraged.
Related
A set of investment research skills for Claude Code and Codex built on four investors' methodologies. It is a research tool, not investment advice
Stripe's official MCP server, plugins and skills: the agent searches the API and docs, reads and changes account data
Alpaca's official MCP server: orders for stocks, ETFs, crypto and options, position management and market data in plain language
inn-check-ru: counterparty risk traffic light
inn-check-ru
An open-source skill that checks a Russian company by tax ID across EGRUL, bailiffs, courts, bankruptcy and sanctions, and returns a dated risk verdict