xt-tradekit
v0.1.4
Published
XT.COM AI TradeKit — native Node MCP server. Spot & USDT-M perpetual trading, market data, aggregated derivatives/sentiment/on-chain data, and news for AI agents. No Python required.
Maintainers
Readme
xt-tradekit
XT.COM AI TradeKit — native Node MCP server. Gives AI agents (Claude Code, Cursor, and any MCP client) direct access to the XT.COM exchange: spot & USDT-M perpetual trading, market data, aggregated derivatives/sentiment/on-chain data, and news — with no Python required.
Install
npm i -g xt-tradekitRegister with Claude Code:
claude mcp add xt-tradekit -- xt-tradekitOr run zero-install (always latest):
claude mcp add xt-tradekit -- npx -y xt-tradekitRestart your session to activate. Market data / analysis / news work out of the box (no key needed).
API key (trading only)
Credentials are read from environment variables or a local file — never from the AI conversation.
- Environment:
XT_ACCESS_KEY/XT_SECRET_KEY - File (mode
600):~/.xt-tradekit/credentials.json(legacy~/.xt-exchange/credentials.jsonis also supported)
{ "access_key": "…", "secret_key": "…" }Least privilege: enable only Read + Trade; do not enable Withdraw for AI-agent trading; bind an IP allowlist. Never paste your keys into an AI chat — the assistant checks status via xt_credentials_status (masked only). If a key is ever exposed, rotate it.
Tools (39)
| Group | Tools | |-------|-------| | Spot market | ticker · top movers · depth · klines · symbol info | | Futures market | ticker · depth · klines · funding rate (current+history) · contract info | | Aggregated data | open interest · long/short ratio · taker volume · liquidations · fear & greed · global overview · coin profile · token security · sentiment snapshot | | News | XT announcements (10 locales) · announcement search · aggregated crypto news | | Spot trading | balances · open orders · history · place · cancel · cancel-all | | Futures trading | account · positions · orders · place · cancel · history | | Assets | transfer · withdraw · deposit/withdraw chains | | Credentials | status (masked) |
Safety
- Keys never enter the conversation — read only inside the server process for HMAC request signing; never returned, logged, or included in errors.
- Mandatory confirmation — place/cancel order, transfer and withdraw tools require showing parameters to the user first; withdrawals require a second confirmation (irreversible).
- Read-only mode —
XT_TRADEKIT_READONLY=1disables all write operations at the server level. - Minimal dependencies — only
@modelcontextprotocol/sdkandzod; nativefetch/crypto/fs, nopostinstallscripts.
License
MIT — output is data analysis, not investment advice. Crypto trading carries extreme risk.
