Budget Planner Ai MCP Server by MEOK AI Labs
This budget planning MCP server has moderate security concerns that should be addressed before production use. The primary issues are: (1) in-memory data storage with no persistence layer creates data loss risks, (2) rate limiting is per-process and not account-based, allowing bypass through multiple client connections, (3) misleading docstrings claim 'read-only' and 'no side effects' when tools actually modify budget state, and (4) the authentication middleware is incomplete (truncated file). While the server lacks malicious patterns and credentials are not hardcoded, the combination of weak rate limiting, stateful operations falsely documented as read-only, and incomplete auth implementation present real operational and security risks. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
5 files analyzed · 15 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-budget-planner-ai-mcp": {
"args": [
"-y",
"budget-planner-ai-mcp"
],
"command": "npx"
}
}
}Be the first to review this server!
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.
by mcp-marketplace · Developer Tools
Create, build, and publish Python MCP servers to PyPI — conversationally.
by Microsoft · Content & Media
Convert files (PDF, Word, Excel, images, audio) to Markdown for LLM consumption