T-Bank Invest MCP server in Go

TBANK INVEST MCP SERVER

A compact Go MCP server for the T-Bank Invest API: accounts, portfolio, shares and bonds, requiring the Russian Ministry of Digital Development root certificate

MCP server

High risk

We rate an entry high when the tool writes to external systems, handles money, production databases or secrets, or runs arbitrary commands. The CLI installs it only with your consent.

Why this level

  • Brokerage services are always flagged high risk in this catalog due to the sensitivity of financial data
  • The token grants access to real accounts and a portfolio, and disabling TLS certificate verification weakens connection security
All reasons and checks
Russian stack

pvragov/tinvest-mcp

Install

Manual install

go install github.com/pvragov/tinvest-mcp/cmd/tinvest-mcp@latest

Requires Go 1.26+; the Ministry of Digital Development certificate is needed after installing.

This is third-party code. Review the repository files before installing.

What it does

A Go server connects to the T-Bank Invest gRPC API and provides tools to read accounts, portfolio, bonds, shares and instruments, with no trading operations. It runs over stdin. A notable detail: accessing the Invest API requires the Russian Ministry of Digital Development root certificate, downloadable from Gosuslugi or taken from the repo's own certs/tbank_ca.pem and pointed to via TBANK_INVEST_MCP_TLS_CA_CERT_PATH. Certificate verification can be disabled with TBANK_INVEST_MCP_TLS_SKIP_VERIFY, but the README explicitly calls that strongly discouraged.

Who it is for. For T-Bank investors who want a lightweight Go server to read their portfolio without Python or Node in the environment.

Good fit when

  • You want a minimal binary with no Python or Node runtime to read your T-Bank Invest portfolio
  • You are ready to install the Russian Ministry of Digital Development root certificate for API access
  • Accounts, portfolio, bonds and shares are enough, no trading needed

Not a fit when

  • You cannot install or point to the Ministry of Digital Development root certificate: without it, or without TLS_SKIP_VERIFY, the connection fails
  • You need market data, candles, order book, dividends or technical analysis: this server does not provide them

Example request

Show my T-Bank Invest accounts and portfolio with current positions

Limitations

The repository has no license. Functionality is limited to accounts, portfolio, bonds and shares, with no market data, dividends, technical analysis or order listing that fuller read-only alternatives provide. It requires installing the Russian Ministry of Digital Development root certificate; disabling verification is explicitly discouraged by the README.

How to disable. Remove the tinvest entry from your MCP client config and delete the TBANK_INVEST_MCP_API_TOKEN from your environment.

MCP

Transport
stdio
Authentication
API key
Environment variables
Environment variables
TBANK_INVEST_MCP_API_TOKEN
required, secret
T-Bank Invest API token
TBANK_INVEST_MCP_TLS_CA_CERT_PATH
Absolute path to the Ministry of Digital Development root certificate for TLS verification
TBANK_INVEST_MCP_TLS_SKIP_VERIFY
Skips server certificate verification; the README calls this strongly discouraged

Security check

  • Brokerage services are always flagged high risk in this catalog due to the sensitivity of financial data
  • The token grants access to real accounts and a portfolio, and disabling TLS certificate verification weakens connection security

README in short

A short Russian README describes installing via go install, four environment variables for the token and TLS certificate, running over stdin with a config check via an echoed JSON-RPC initialize call, and a ready JSON config for AI agents.

FAQ

Why is the Ministry of Digital Development certificate needed?

The T-Bank Invest API validates the server's TLS certificate through the Russian root certification authority; without it, or without disabling verification, the connection fails.

Can I skip installing the certificate?

Yes, with TBANK_INVEST_MCP_TLS_SKIP_VERIFY=true, but the README explicitly calls that strongly discouraged.

Editors’ pick

A set of investment research skills for Claude Code and Codex built on four investors' methodologies. It is a research tool, not investment advice

SkillMedium riskNo VPN needed16.6KRepository stars
Official

Stripe's official MCP server, plugins and skills: the agent searches the API and docs, reads and changes account data

MCP serverHigh riskNeeds a VPN1.8KRepository stars
Official

Alpaca's official MCP server: orders for stocks, ETFs, crypto and options, position management and market data in plain language

MCP serverHigh risk995Repository stars
Editors’ pick

An open-source skill that checks a Russian company by tax ID across EGRUL, bailiffs, courts, bankruptcy and sanctions, and returns a dated risk verdict

SkillLow riskRussian stackNo VPN needed4Repository stars
Foxx AIT-Bank Invest MCP server in Go

I am Foxx AI and I have already vetted this tool. Ask about install, setup or anything else, and I will keep it simple.