mm-ibkr-mcp
MCP server for Interactive Brokers that enables account monitoring, order preview, trade execution, and basket trading with human-in-the-loop approval via Telegram and SQLite-backed audit.
README
mm-ibkr-mcp
⚠️ LIVE CAPITAL AT RISK — USE AT YOUR OWN RISK
This project connects to Interactive Brokers and can place real, irreversible trades with real money. It is a proof-of-concept research implementation for agent-driven trading workflows. It is not financial advice, not a licensed trading system, and not production-ready.
Agent systems can and do make errors: misnamed parameters, hallucinated calculations, incorrect order quantities, and wrong order sides have all been observed in testing. The human-in-the-loop Telegram approval gate exists precisely because automated execution without oversight is dangerous.
You are solely responsible for any losses incurred through use of this software. If you do not understand the risks, do not use this project.
mm-ibkr-mcp is the canonical Interactive Brokers MCP repo for agent-driven account monitoring and trade execution.
It assumes the user already has IB Gateway or TWS running locally. This repo does not manage the broker process. Its job is to connect, inspect account state, preview orders, place trades, persist execution state, and gate submissions through Telegram when required.
The older mm-ibkr-gateway repo remains public for now and will later narrow into gateway deployment and maintenance tooling. This repo is the canonical monitoring and trading MCP surface.
Scope
Included:
- account health, balances, P&L, positions, open orders
- market data, contract resolution, options chain and snapshot tools
- single-order preview and placement
- durable basket execution through persisted trade intents
- SQLite-backed audit, approvals, trade intents, execution state, and position snapshots
- Telegram approval flow for single orders and baskets
- compare-and-swap admin control over
control.json
Not included as part of the canonical workflow:
- starting or stopping IB Gateway
- web UI or REST admin as a first-class interface
- schedulers, signal ingestion, or separate OMS daemons
Safety model
Two layers control execution:
control.jsonorders_enableddry_runblock_reason
MCP_ORDER_APPROVAL_MODEtelegram: order submission requires Telegram approvalyolo: no approval gate
Safe defaults are:
orders_enabled=falsedry_run=trueMCP_ORDER_APPROVAL_MODE=telegram
Configuration
On first start, uv run ibkr-mcp creates safe defaults for:
data/ibkr-mcp/config.jsondata/ibkr-mcp/control.json
Edit config.json to match your local IB Gateway or TWS connection:
{
"ibkr_host": "127.0.0.1",
"ibkr_port": 4002,
"ibkr_client_id": 1,
"default_account_id": null
}
.env is optional. Copy .env.example to .env only if you want Telegram approval or explicit yolo mode:
MCP_ORDER_APPROVAL_MODE=telegram
If using Telegram approval mode, also set:
TELEGRAM_BOT_TOKEN=...
TELEGRAM_CHAT_ID=...
For monitoring only, you can leave .env empty and use the default approval posture.
Advanced-only environment overrides:
MM_IBKR_DATA_DIR=/path/to/data
MM_IBKR_CONFIG_PATH=/path/to/config.json
MM_IBKR_CONTROL_DIR=/path/to/control-dir
MCP_TRANSPORT=streamable-http
MCP_HOST=127.0.0.1
MCP_PORT=8001
MCP_AUTH_TOKEN=change-me
MCP_ENABLE_ADMIN_TOOLS=true
APPROVED_UNUSED_EXPIRY_SECONDS=600 # auto-expiry for approved-but-unused approvals (default 600 s)
Running
Install dependencies:
uv sync --group dev
Start the MCP server over stdio:
uv run ibkr-mcp
The default transport is local stdio, which is the lowest-friction MCP setup for Claude Code/Desktop style clients.
Run over HTTP only for advanced self-hosted setups:
export MCP_TRANSPORT=streamable-http
export MCP_HOST=127.0.0.1
export MCP_PORT=8001
export MCP_AUTH_TOKEN=change-me
uv run ibkr-mcp
Remote Execution Host
If IB Gateway runs on another machine, the recommended agent setup is to run mm-ibkr-mcp on that execution host and launch it over SSH stdio from the client machine.
Why this is preferred:
control.json, approvals, and audit state stay on the execution host- the MCP process connects to the gateway through that host's own
127.0.0.1:4001/127.0.0.1:4002 - OpenCode or Claude does not need a separate local socket tunnel for the execution workflow
Use local SSH port forwarding only for other applications that require local gateway sockets on the client machine, such as a tracker or sync job that connects directly through ib_insync.
Canonical tools
Core monitoring and execution:
healthget_trading_statusget_schedule_statusget_account_summaryget_positionsget_pnllist_open_ordersget_order_statuspreview_orderplace_ordercancel_order
Basket execution:
preview_order_basketcreate_trade_intentrequest_trade_intent_approvalsubmit_trade_intentget_trade_intentlist_trade_intentsreconcile_trade_intentcancel_trade_intent
Approval and safety:
request_trade_approval(Blocks until approved/denied/timeout)request_trade_intent_approval(Blocks until approved/denied/timeout)request_environment_change(Blocks until approved/denied/timeout)execute_environment_changecheck_approval_statusemergency_stop
Expected workflow
Single order:
get_trading_statusresolve_contractpreview_orderassess_order_impactvalidate_against_profile- If
MCP_ORDER_APPROVAL_MODE=telegram, request approval place_order
Basket:
preview_order_basketcreate_trade_intent- If
MCP_ORDER_APPROVAL_MODE=telegram, request approval submit_trade_intentreconcile_trade_intent
Persistence
The MCP server uses one SQLite database for:
audit_logorder_historyapprovalstrade_intentintent_orderexecution_stateposition_snapshot
This gives the agent one durable source of truth for approvals, order submission, reconciliation, and audit.
Recommended Servers
playwright-mcp
A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.
Magic Component Platform (MCP)
An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.
Audiense Insights MCP Server
Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.
VeyraX MCP
Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.
graphlit-mcp-server
The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.
Kagi MCP Server
An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.
E2B
Using MCP to run code via e2b.
Neon Database
MCP server for interacting with Neon Management API and databases
Exa Search
A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.
Qdrant Server
This repository is an example of how to create a MCP server for Qdrant, a vector search engine.