Legal

Privacy Policy

Last updated: August 17, 2026

1. Overview

wealthmcp.ai (the “Site”) is a free, public directory of Model Context Protocol (MCP) servers for wealth management, operated by WealthMCP.ai LLC, a Texas limited liability company (“we”, “us”). This policy explains what data the Site collects and what we do with it.

No account is required to browse the directory, search it, rate a listing, submit a server, or use our MCP endpoint. The only accounts that exist are private operator accounts used by our own reviewers to moderate submissions.

2. Server submissions

When you submit a listing, we store the listing details you provide — server name, vendor, URL, category, and summary — all of which are required. You may optionally provide your first name, last name, firm, and email address.

Submitter contact details are never published.

The query that serves approved community listings to the public selects only the listing id, name, vendor, URL, category, and summary. Contact fields are excluded server-side and are never sent to a visitor’s browser. We use them only to contact you about your own submission and to send the confirmation and decision emails described below.

3. Ratings

Ratings are numeric only: a whole-star score from 1 to 5. There is no free-text review field anywhere on the Site, so no review text is collected or stored.

Each rating record stores three things: the listing’s slug, the score, and a voter key. The voter key is a random UUID generated in your own browser the first time you rate something and stored in your browser’s localStorage under the key wealthmcp:voter-key. It is not an account, not an IP address, and not derived from one. It exists only so a visitor counts once per listing and can change or clear their own score. Ratings are not linked to any identity we hold.

Voter keys are never sent back to the browser. Rating rows are aggregated on the server, which returns only the average, the number of votes, and — matched against the voter key your browser supplies — your own score. Clicking the same star again deletes your rating row for that listing.

4. Email

We send transactional email only. There are exactly three messages: an alert to us when a listing is submitted, a confirmation to the submitter (only if an email address was provided), and an approval or rejection notice when a submission is reviewed.

Email is sent through Lovable’s managed email service from the sending domain notify.wealthmcp.ai. This means a submitter’s email address, and the submission details included in the message, are transmitted to and processed by that provider on our behalf.

We send no marketing email and operate no newsletter or mailing list.

5. Browser storage

The Site stores two values in your browser’s localStorage: your light or dark theme preference (key wealthmcp-theme) and, if you have rated a listing, your voter key (key wealthmcp:voter-key). The theme toggle is the only display setting that persists; the Site does not store any other appearance or font customization.

There are no advertising cookies, no analytics cookies, and no cross-site tracking technologies on the Site.

Operator sign-in for our internal review pages uses a session stored in the browser by our authentication provider. It applies only to our own reviewer accounts, not to visitors.

6. Operator accounts and audit log

Reviewer accounts are managed through Supabase Auth, and reviewer permissions are held in a separate user_roles table. When a submission is approved or rejected, the change is recorded in an internal submission_audit_log that stores the reviewing operator’s user id and email address, the action taken, the previous status, and a timestamp.

This is internal accountability data about our own staff. It contains no information about visitors to the Site.

7. The MCP endpoint

The Site exposes its own MCP server, which serves public directory metadata only: listings, categories, and Practice Stacks. It holds no client, account, portfolio, or custodial data, and it does not accept any.

Do not send confidential, personal, or client information to the MCP endpoint.

8. What we do not do

We do not sell or rent personal information. We run no advertising, do no behavioral profiling, build no visitor profiles, and perform no cross-site tracking.

9. Third parties

We use a small number of service providers that process data on our behalf, under our instructions: Supabase (database and operator authentication), Lovable (hosting and the managed transactional email service), and the content delivery network used to serve the Site’s pages and assets. We do not share submission data with anyone else.

10. Retention and deletion

We retain a submission and any contact details you provided with it for as long as the submission is under review or the listing remains in the directory, and for our internal moderation record afterward. Ratings persist until the visitor who created them clears them.

We do not operate an automated deletion schedule. Removal is handled manually: email info@wealthmcp.ai to have your submission, your contact details, or a rating removed, and we will action the request within a reasonable time.

11. Your choices and rights

You can ask us to access, correct, or delete the information you gave us by emailing info@wealthmcp.ai. Because submissions are the only place we collect identifying details, that request is usually straightforward to fulfill.

You can also clear your browser storage at any time. Doing so removes your theme preference and your voter key — which means a rating you previously submitted can no longer be matched to you, so the Site will no longer show it as yours and you will not be able to clear it yourself. Contact us if you need such a rating removed.

12. Children

The Site is intended for financial professionals and is not directed to anyone under 18. We do not knowingly collect information from children.

13. Changes

We may update this policy from time to time. Any update will be posted on this page with a revised “Last updated” date.

14. Contact

Privacy questions, access requests, and deletion requests should be sent to info@wealthmcp.ai.