mm-ibkr-mcp

mm-ibkr-mcp

MCP server for Interactive Brokers that enables account monitoring, order preview, trade execution, and basket trading with human-in-the-loop approval via Telegram and SQLite-backed audit.

Category
Visit Server

README

mm-ibkr-mcp

⚠️ LIVE CAPITAL AT RISK — USE AT YOUR OWN RISK

This project connects to Interactive Brokers and can place real, irreversible trades with real money. It is a proof-of-concept research implementation for agent-driven trading workflows. It is not financial advice, not a licensed trading system, and not production-ready.

Agent systems can and do make errors: misnamed parameters, hallucinated calculations, incorrect order quantities, and wrong order sides have all been observed in testing. The human-in-the-loop Telegram approval gate exists precisely because automated execution without oversight is dangerous.

You are solely responsible for any losses incurred through use of this software. If you do not understand the risks, do not use this project.

mm-ibkr-mcp is the canonical Interactive Brokers MCP repo for agent-driven account monitoring and trade execution.

It assumes the user already has IB Gateway or TWS running locally. This repo does not manage the broker process. Its job is to connect, inspect account state, preview orders, place trades, persist execution state, and gate submissions through Telegram when required.

The older mm-ibkr-gateway repo remains public for now and will later narrow into gateway deployment and maintenance tooling. This repo is the canonical monitoring and trading MCP surface.

Scope

Included:

  • account health, balances, P&L, positions, open orders
  • market data, contract resolution, options chain and snapshot tools
  • single-order preview and placement
  • durable basket execution through persisted trade intents
  • SQLite-backed audit, approvals, trade intents, execution state, and position snapshots
  • Telegram approval flow for single orders and baskets
  • compare-and-swap admin control over control.json

Not included as part of the canonical workflow:

  • starting or stopping IB Gateway
  • web UI or REST admin as a first-class interface
  • schedulers, signal ingestion, or separate OMS daemons

Safety model

Two layers control execution:

  1. control.json
    • orders_enabled
    • dry_run
    • block_reason
  2. MCP_ORDER_APPROVAL_MODE
    • telegram: order submission requires Telegram approval
    • yolo: no approval gate

Safe defaults are:

  • orders_enabled=false
  • dry_run=true
  • MCP_ORDER_APPROVAL_MODE=telegram

Configuration

On first start, uv run ibkr-mcp creates safe defaults for:

  • data/ibkr-mcp/config.json
  • data/ibkr-mcp/control.json

Edit config.json to match your local IB Gateway or TWS connection:

{
  "ibkr_host": "127.0.0.1",
  "ibkr_port": 4002,
  "ibkr_client_id": 1,
  "default_account_id": null
}

.env is optional. Copy .env.example to .env only if you want Telegram approval or explicit yolo mode:

MCP_ORDER_APPROVAL_MODE=telegram

If using Telegram approval mode, also set:

TELEGRAM_BOT_TOKEN=...
TELEGRAM_CHAT_ID=...

For monitoring only, you can leave .env empty and use the default approval posture.

Advanced-only environment overrides:

MM_IBKR_DATA_DIR=/path/to/data
MM_IBKR_CONFIG_PATH=/path/to/config.json
MM_IBKR_CONTROL_DIR=/path/to/control-dir
MCP_TRANSPORT=streamable-http
MCP_HOST=127.0.0.1
MCP_PORT=8001
MCP_AUTH_TOKEN=change-me
MCP_ENABLE_ADMIN_TOOLS=true
APPROVED_UNUSED_EXPIRY_SECONDS=600   # auto-expiry for approved-but-unused approvals (default 600 s)

Running

Install dependencies:

uv sync --group dev

Start the MCP server over stdio:

uv run ibkr-mcp

The default transport is local stdio, which is the lowest-friction MCP setup for Claude Code/Desktop style clients.

Run over HTTP only for advanced self-hosted setups:

export MCP_TRANSPORT=streamable-http
export MCP_HOST=127.0.0.1
export MCP_PORT=8001
export MCP_AUTH_TOKEN=change-me
uv run ibkr-mcp

Remote Execution Host

If IB Gateway runs on another machine, the recommended agent setup is to run mm-ibkr-mcp on that execution host and launch it over SSH stdio from the client machine.

Why this is preferred:

  • control.json, approvals, and audit state stay on the execution host
  • the MCP process connects to the gateway through that host's own 127.0.0.1:4001 / 127.0.0.1:4002
  • OpenCode or Claude does not need a separate local socket tunnel for the execution workflow

Use local SSH port forwarding only for other applications that require local gateway sockets on the client machine, such as a tracker or sync job that connects directly through ib_insync.

Canonical tools

Core monitoring and execution:

  • health
  • get_trading_status
  • get_schedule_status
  • get_account_summary
  • get_positions
  • get_pnl
  • list_open_orders
  • get_order_status
  • preview_order
  • place_order
  • cancel_order

Basket execution:

  • preview_order_basket
  • create_trade_intent
  • request_trade_intent_approval
  • submit_trade_intent
  • get_trade_intent
  • list_trade_intents
  • reconcile_trade_intent
  • cancel_trade_intent

Approval and safety:

  • request_trade_approval (Blocks until approved/denied/timeout)
  • request_trade_intent_approval (Blocks until approved/denied/timeout)
  • request_environment_change (Blocks until approved/denied/timeout)
  • execute_environment_change
  • check_approval_status
  • emergency_stop

Expected workflow

Single order:

  1. get_trading_status
  2. resolve_contract
  3. preview_order
  4. assess_order_impact
  5. validate_against_profile
  6. If MCP_ORDER_APPROVAL_MODE=telegram, request approval
  7. place_order

Basket:

  1. preview_order_basket
  2. create_trade_intent
  3. If MCP_ORDER_APPROVAL_MODE=telegram, request approval
  4. submit_trade_intent
  5. reconcile_trade_intent

Persistence

The MCP server uses one SQLite database for:

  • audit_log
  • order_history
  • approvals
  • trade_intent
  • intent_order
  • execution_state
  • position_snapshot

This gives the agent one durable source of truth for approvals, order submission, reconciliation, and audit.

Recommended Servers

playwright-mcp

playwright-mcp

A Model Context Protocol server that enables LLMs to interact with web pages through structured accessibility snapshots without requiring vision models or screenshots.

Official
Featured
TypeScript
Magic Component Platform (MCP)

Magic Component Platform (MCP)

An AI-powered tool that generates modern UI components from natural language descriptions, integrating with popular IDEs to streamline UI development workflow.

Official
Featured
Local
TypeScript
Audiense Insights MCP Server

Audiense Insights MCP Server

Enables interaction with Audiense Insights accounts via the Model Context Protocol, facilitating the extraction and analysis of marketing insights and audience data including demographics, behavior, and influencer engagement.

Official
Featured
Local
TypeScript
VeyraX MCP

VeyraX MCP

Single MCP tool to connect all your favorite tools: Gmail, Calendar and 40 more.

Official
Featured
Local
graphlit-mcp-server

graphlit-mcp-server

The Model Context Protocol (MCP) Server enables integration between MCP clients and the Graphlit service. Ingest anything from Slack to Gmail to podcast feeds, in addition to web crawling, into a Graphlit project - and then retrieve relevant contents from the MCP client.

Official
Featured
TypeScript
Kagi MCP Server

Kagi MCP Server

An MCP server that integrates Kagi search capabilities with Claude AI, enabling Claude to perform real-time web searches when answering questions that require up-to-date information.

Official
Featured
Python
E2B

E2B

Using MCP to run code via e2b.

Official
Featured
Neon Database

Neon Database

MCP server for interacting with Neon Management API and databases

Official
Featured
Exa Search

Exa Search

A Model Context Protocol (MCP) server lets AI assistants like Claude use the Exa AI Search API for web searches. This setup allows AI models to get real-time web information in a safe and controlled way.

Official
Featured
Qdrant Server

Qdrant Server

This repository is an example of how to create a MCP server for Qdrant, a vector search engine.

Official
Featured