Skip to content
verify mcp Beta VerifyMCP is currently in beta. If you notice any issues, get in touch and we’ll put it right.

io.github.SheldonZhuang/stock-sentinel

NPM · STOCK-SENTINEL-MCP · SCANNED SEP 29

US stock attack/defense macro signals: 4-dimension framework, 26-year backtested. Research only.

Available components

+3 this week 85 Trust /100
Trust breakdown (7 categories)

How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →

Supply Chain Security98
  • No malware found by supply-chain analysis.Pass
  • No known CVEs affecting this package version or its production dependencies.Pass
  • No install/post-install scripts declared.Pass
  • 31 of 92 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency45
Schema Quality & AI Usability80
  • AI-judged instruction clarity (excellent).Pass
  • Tool/resource definitions use about 645 tokens (~107/item across 6 items; 6 tools + 0 resources), lean.Pass
  • Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management100
  • No destabilizing schema changes in the last 30 days.Pass
Tool Coverage100
  • 100% of tools have a non-trivial description (not blank, and not just the tool's name).Pass
  • 100% of tool parameters carry a description.Pass
Tool Safety100
  • No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
  • We read all 6 captured tool definition(s), and no name or description among them implies an irreversible operation.Pass
  • An AI judge read all 6 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
  • Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
Install

How do I install the io.github.SheldonZhuang/stock-sentinel MCP server?

io.github.SheldonZhuang/stock-sentinel runs locally as an npm package, launched with npx -y stock-sentinel-mcp. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.

npm · stock-sentinel-mcp

# add to Claude Code
claude mcp add sheldonzhuang-stock-sentinel -- npx -y stock-sentinel-mcp
// .cursor/mcp.json
{
  "mcpServers": {
    "sheldonzhuang-stock-sentinel": {
      "command": "npx",
      "args": [
        "-y",
        "stock-sentinel-mcp"
      ]
    }
  }
}
// .vscode/mcp.json
{
  "servers": {
    "sheldonzhuang-stock-sentinel": {
      "command": "npx",
      "args": [
        "-y",
        "stock-sentinel-mcp"
      ]
    }
  }
}
# add to Codex CLI
codex mcp add sheldonzhuang-stock-sentinel -- npx -y stock-sentinel-mcp
// opencode.json
{
  "$schema": "https://opencode.ai/config.json",
  "mcp": {
    "sheldonzhuang-stock-sentinel": {
      "type": "local",
      "command": [
        "npx",
        "-y",
        "stock-sentinel-mcp"
      ],
      "enabled": true
    }
  }
}
# add to OpenClaw
openclaw mcp add sheldonzhuang-stock-sentinel --command npx --arg -y --arg stock-sentinel-mcp
# ~/.hermes/config.yaml
mcp_servers:
  sheldonzhuang-stock-sentinel:
    command: "npx"
    args: ["-y", "stock-sentinel-mcp"]
// ~/.netclaw/config/netclaw.json
{
  "McpServers": {
    "sheldonzhuang-stock-sentinel": {
      "Transport": "stdio",
      "Command": "npx",
      "Arguments": [
        "-y",
        "stock-sentinel-mcp"
      ]
    }
  }
}
# add to Vellum
assistant mcp add sheldonzhuang-stock-sentinel -t stdio -c npx -a -y stock-sentinel-mcp
// mcp.json
{
  "mcpServers": {
    "sheldonzhuang-stock-sentinel": {
      "command": "npx",
      "args": [
        "-y",
        "stock-sentinel-mcp"
      ]
    }
  }
}
Changelog

Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.

  • 29 Sept 26 +1
    • Stability: 0.97 → pass security
  • 28 Sept 26 0
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 27 Sept 26 +1
    • Security disclosure: unverified → fail ▼ functional
  • 26 Sept 26 0
    • Security disclosure: fail → unverified ▼ functional
  • 25 Sept 26 +1
    • We updated how we score, so this day's move reflects our rubric, not a change to the server See what changed → functional
  • 22 Sept 26 −3
    • Security disclosure: unverified → fail ▼ functional
    • Stability: pass → 0.77 functional
  • 21 Sept 26 +1
    • Stability: 0.97 → pass security
  • 19 Sept 26 +1

    No change was recorded against any check on this day. Stability & Change Management went from 90 to 93. That category is still filling its 30-day observation window: 27 days of observed history at the previous scan, 28 at this one. The score rises as the window fills, whether or not the server changes.

Diagnostics

Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.

Captured 29 Sept 2026 · Analysed npm/stock-sentinel-mcp@1.0.3

Provenance No attestation

The registry publishes no build provenance for this version, so there is nothing to verify.

Result No attestation
Ecosystem npm

Background: How many MCP packages publish verified provenance →

Dependencies 92 packages
Packages resolved 92
Stale 31
Tree resolution Complete

Background: SBOMs and build attestations, explained →

MCP tools · 6 exposed · ~645 tokens

The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →

Tool Tokens
get_ai_chain ~104

获取AI产业链资金流向状态:六个环节(AI大模型→云厂商→AI芯片→存储/光模块→设备封装→电力)按30天相对SPY强弱的排名、当前市场隐含的卡点环节、以及泡沫监测三指标(模型调用量趋势/云厂商资本开支/半导体产出同比,按现金流向排序)。

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

get_backtest_summary ~112

获取信号系统的历史回测核心结论:26年月度重放,覆盖6场危机(2000互联网泡沫/2008金融危机/2020新冠/2022加息熊/2025关税战/2026美伊战争)的捕获情况与8段大规模上涨期的捕获率,以及"仅全面防守离场"策略与买入持有的全期对比(年化/最大回撤)。

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

get_current_signal ~169

获取美股当前进攻/防守信号。返回四档最终信号(attack进攻/neutral观望/reduce减仓观望/defense全面防守)、四个维度(AI供需/货币/财政/行政)各自的宽松/中性/收紧状态、以及全部参考指标(联邦基金利率、萨姆规则、联邦支出、WTI油价、EPU不确定性指数、AI模型调用量等)。判定规则:进攻=四维全宽松且无锁;仅单维收紧=减仓观望;双维以上收紧或衰退锁激活=全面防守。仅供研究参考,不构成投资建议。

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

get_daily_report ~48

获取AI生成的每日信号解读(中英双语):今日档位、由哪些维度和数据驱动、距离进攻/防守的条件差距。

Input schema present but exposes no named parameters.

No output schema declared.

No examples provided.

get_signal_history ~67

获取信号历史存档(公开可验证的 track record):每日的最终档位与四维状态,按日期倒序。可用于回看信号在近期市场事件中的表现。

NameTypeReqDescription
limitinteger–返回天数,默认90,最大365

No output schema declared.

No examples provided.

get_stock_percentile ~145

查询个股或ETF:当前价格在历史区间中的百分位(≥80%高位/≤20%低位)、真实市盈率P/E与市销率P/S(SEC EDGAR财报口径)。支持指数别名:US10Y(10年美债收益率)、VIX、SPX、NDX。

NameTypeReqDescription
endDatestring–区间终点 YYYY-MM-DD,默认今天
startDatestring–区间起点 YYYY-MM-DD,默认3年前
symbolstringyes股票代码,如 NVDA、AAPL、QQQ、US10Y

No output schema declared.

No examples provided.

Common questions

What is the io.github.SheldonZhuang/stock-sentinel MCP server?

io.github.SheldonZhuang/stock-sentinel is an MCP server listed in the public MCP registry as io.github.SheldonZhuang/stock-sentinel. US stock attack/defense macro signals: 4-dimension framework, 26-year backtested. Research only. This page covers its npm package (stock-sentinel-mcp).

Is the io.github.SheldonZhuang/stock-sentinel MCP server safe to use?

io.github.SheldonZhuang/stock-sentinel scores 85 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 29 September 2026. It declares no install or post-install scripts. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.

What tools does the io.github.SheldonZhuang/stock-sentinel MCP server expose?

io.github.SheldonZhuang/stock-sentinel exposes 6 tools: get_current_signal, get_signal_history, get_ai_chain, get_stock_percentile, get_backtest_summary, get_daily_report. Their descriptions and schemas cost roughly 645 tokens of context every time the server is loaded.

Is the io.github.SheldonZhuang/stock-sentinel MCP server still maintained?

io.github.SheldonZhuang/stock-sentinel is still listed as active in the MCP registry. We last reached this channel on 29 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.

What licence is the io.github.SheldonZhuang/stock-sentinel MCP server under?

io.github.SheldonZhuang/stock-sentinel declares the MIT licence, which is OSI-approved. That covers the source only, and says nothing about the cost of any service it calls.