Comparison · Brokerage & Trade Execution

Brokerage MCP servers compared: what the agent is allowed to do

Fourteen servers in this directory connect an AI assistant to a brokerage account. The useful question is not which one has the best tools. It is what the agent is permitted to do once connected, and what stops it from doing more. That varies more than anything else on this page, and it is set by the broker rather than by you.

Six are compared below. The rest are left off for reasons worth stating. Binance and Coinbase are crypto venues and belong in their own comparison. Dukascopy is a CFD and leverage business whose integration was demo-only at announcement. Leverate points at broker back-office data rather than execution. Connect Trade is B2B infrastructure a platform embeds rather than something a firm connects. Trading 212, Robinhood and Zerodha are retail community builds outside the US advisory context.

At a glance

ServerStatusAuthHostingCovers
Webull CloudVendorOAuthRemoteFully managed cloud MCP service hosted by Webull. Connect a Webull brokerage account through OAuth and give AI assistants read-only access to account balances, positions, order history, watchlists and real-time market data for stocks, ETFs, options, futures and crypto. No local installation or API-key management required.
MONEX MCP ServerVendorOAuthRemoteLets Monex Securities clients query their own brokerage account through ChatGPT and Claude: holdings, deposit and withdrawal history, order status and mutual fund information, without opening the Monex site or app. Information retrieval only; no trade execution through AI. Reported as the first major Japanese brokerage with an MCP server cleared through OpenAI's review process.
TradeStation MCPVendorOAuthRemoteConnects an existing TradeStation brokerage account to AI tools so clients can analyse positions, plan strategies and place trades in plain language. Every order requires explicit confirmation and runs inside the account's existing permissions and risk limits. Claude first, more platforms planned; requires a $10,000 minimum balance and an active Claude Pro subscription.
AlpacaOfficialAPI keyLocalTrading and brokerage account access through Alpaca's API, covering positions, orders and market data. Alpaca's paper-trading environment makes it the most practical option here for watching how an agent behaves before pointing it at real money.
Charles Schwab BrokerageCommunityOAuthLocalCommunity-built integrations against Schwab's brokerage API, covering account positions, balances and, in some implementations, order placement. There is no official Schwab MCP server, and implementations vary in scope and maintenance.
Interactive BrokersCommunityOAuthLocalCommunity-built integrations against the Interactive Brokers API, typically covering positions, balances, market data and order entry through the IBKR gateway. No official Interactive Brokers MCP server exists.

Status, auth, hosting and coverage are reproduced from each server's directory listing, which reflects publisher documentation at the last review. Vendor claims are labelled as such and are not independently verified.

Where each one is the better answer

Webull Cloud

Best for

The safest connection on this page. Webull hosts the server itself, the OAuth connection is read-only by design, and there is no local install or API key to manage. Balances, positions, order history, watchlists and real-time market data across stocks, ETFs, options, futures and crypto.

Watch for

Read-only means read-only. If your workflow needs to place an order, this is not the server for it. Webull is also a retail brokerage rather than an advisory custodian, so it answers questions about a Webull account, not about a book of client households.

Listing and connection details →

MONEX MCP Server

Best for

Information retrieval only, with no trade execution through AI at all, and notable for having cleared OpenAI's review process. Holdings, deposit and withdrawal history, order status and mutual fund information, queried without opening the Monex site or app.

Watch for

Monex Securities is a Japanese brokerage. Unless you or your clients hold Monex accounts, this is a reference point rather than a tool. Its value here is as evidence that a major brokerage looked at agentic trading and shipped read-only instead.

Listing and connection details →

TradeStation MCP

Best for

The most carefully built trading connection here. It places orders, but every order requires explicit confirmation and runs inside the account's existing permissions and risk limits, so the broker's own controls stay in force rather than being bypassed.

Watch for

Gated. It requires a $10,000 minimum balance and an active Claude Pro subscription, and Claude is the only supported client today. Per-order confirmation is a real control, but it becomes confirmation fatigue if you let an agent propose many orders in a session.

Listing and connection details →

Alpaca

Best for

The best place to learn how an agent actually behaves before it touches real money. Alpaca's paper-trading environment is the only sandbox on this page, and order placement is a first-class capability rather than an afterthought.

Watch for

Order placement being core means a live key is a loaded instrument. API keys are also long-lived credentials you store and rotate yourself, unlike the OAuth connections elsewhere here.

Listing and connection details →

Charles Schwab Brokerage

Best for

The highest-demand custodial name in this directory, and the only route to Schwab brokerage data through MCP today.

Watch for

Unofficial. Not written, reviewed or supported by Schwab. Implementations vary, some can place orders, and nothing commits any author to tracking Schwab API changes. Connecting brokerage credentials to third-party software may also conflict with your account agreement, which is worth checking before rather than after.

Listing and connection details →

Interactive Brokers

Best for

The deepest instrument coverage reachable here, and a familiar shape for anyone who has built against the IBKR API before.

Watch for

Unofficial and unsupported, and most implementations include order entry. It also needs a running local gateway or TWS session, so this is not a hands-off remote connection, and that session becomes one more thing to secure.

Listing and connection details →

Endpoints and install commands are not repeated here, take them verbatim from each server's listing page, which is the version we keep current.

By advisor task

Letting an assistant read a brokerage account with no chance of it trading
Webull Cloud. Read-only by design and hosted by the broker, so the guarantee does not depend on how you configure it. MONEX if the account is Japanese.
Finding out how an agent behaves before real money is involved
Alpaca paper trading. The only sandbox on this page, and worth using even if you intend to connect a different broker later.
Placing trades with a control that actually holds
TradeStation. Per-order confirmation inside the account's existing permissions is a stronger control than a promise in documentation.
Reaching Schwab or Interactive Brokers data
Community builds only. Read the unofficial caveats first, and treat the connection as capable of trading unless you have confirmed otherwise.
Embedding brokerage access in a platform you are building
Connect Trade, which is B2B infrastructure a platform integrates server-side rather than something a firm connects. Not compared here for that reason.

Before you connect any of them

  • The guardrail is the broker's choice, not yours. Webull and MONEX are read-only by design. TradeStation confirms every order. Binance blocks withdrawals to external addresses. The community builds state no guardrail at all. Read that line on a listing before you read its tool list.
  • An agent with trading access fails differently from one with data access. The failure mode is not a wrong answer, it is an executed order.
  • Community brokerage servers ask for credentials to a funded account. Check your account agreement before connecting one, and assume any implementation can trade unless its documentation says plainly that it cannot.
  • None of these are advisory custodians. They answer questions about an account, not about a book of client households. Discretionary trading in client accounts is a different regulatory question and nothing here addresses it.
  • Listings in this directory are informational. They are not endorsements, security reviews, or investment advice.