Finance · Local MCP server
Safe Kaggle MCP
Safety-first Kaggle MCP — confirm-gated destructive ops, submission budget, injection-fenced.
What the MCP Registry states
The entry as published to the official MCP Registry (read 2026-10-04), latest version.
- Registry name
io.github.parkseokjune/kaggle-mcp- Version
- 0.4.1
- Status
- Active
- Category
- finance
- Transport
- stdio (local process)
- Package
- PyPI
- Published
- 2026-06-16
- Updated
- 2026-06-16
- Publisher
- parkseokjune (GitHub)
- Repository
- github.com/parkseokjune/kaggle-mcp
- Source
- Registry API entry
Packages
| Registry | Package | Version | Transport |
|---|---|---|---|
| PyPI | safe-kaggle-mcp | 0.4.1 | stdio |
How to connect Safe Kaggle MCP
Safe Kaggle MCP runs locally from a Python package published to PyPI: safe-kaggle-mcp version 0.4.1. It speaks MCP over stdio, so the client starts it as a program and talks to it through standard input and output. It needs Python; clients usually start it with uvx (from uv) or after pip install — the usual command is uvx safe-kaggle-mcp. It reads these environment variables: KAGGLE_USERNAME, KAGGLE_KEY (secret), KAGGLE_API_TOKEN (secret), KAGGLE_MCP_ENABLE_DESTRUCTIVE, KAGGLE_MCP_ENABLE_PUBLISH and KAGGLE_MCP_SUBMISSION_CAP; set them in the client's configuration for this server.
In the mcpServers JSON format that many desktop and editor MCP clients read, the entry looks like this (placeholders in angle brackets):
{
"mcpServers": {
"kaggle-mcp": {
"command": "uvx",
"args": [
"safe-kaggle-mcp"
],
"env": {
"KAGGLE_USERNAME": "<value>",
"KAGGLE_KEY": "<secret>",
"KAGGLE_API_TOKEN": "<secret>",
"KAGGLE_MCP_ENABLE_DESTRUCTIVE": "<value>",
"KAGGLE_MCP_ENABLE_PUBLISH": "<value>",
"KAGGLE_MCP_SUBMISSION_CAP": "<value>"
}
}
}
}Derived from the registry entry, not tested here. What the server does, and on what terms, is set by its publisher; check its repository or website before giving it access to your accounts or files. How to add an MCP server to an assistant · Before you connect
More finance servers
| Server | Runs |
|---|---|
| Ryvo ProtocolMCP server for Ryvo Protocol state reads and prepare-only payment-channel actions. | Local · stdio |
| S+S AgenticDoors for AI agents: witness, letter, poison check, ghost check, wall. No account, no payment. | Remote · HTTP |
| saagarpatel.dev PortfolioAgent-native MCP server over the public saagarpatel.dev corpus. Read-only, stateless. | Remote & Local · HTTP, stdio |
| SACS.ai MCP — California School District Financial DataSACS California school finance: public district financial data, CDE filings, comparisons, briefings. | Remote · HTTP |
| Safe4Tests an AI agent's purchase against the task it was given. Paid per call in USDC via x402. | Remote · HTTP |
| SafeagentExactly-once execution guard for AI agents. Prevents duplicate payments and webhooks on retry. | Local · stdio |
| Safebot ChatEnd-to-end encrypted multi-agent chat rooms. Client-side crypto; zero chat logs. | Local · stdio |
| SafeRouteNoncustodial Base x402 payment control and seller settlement recovery. | Remote · HTTP |