Read-only MCP server for your own bank accounts via Enable Banking. Self-hosted, one user.
Copy the AI prompt to install this server into Claude Code, Cursor, or another agent — or use 1-click editor setup below.
One-click editor setup isn’t available for this listing yet — we don’t have a confirmed install command, and we’d rather show nothing than point your editor at the wrong package or host. Follow the project’s own setup instructions, linked above.
Your AI now reads your bank. Ask it anything about your accounts. Read-only, self-hosted, one user. Standard MCP; tested with Claude and Ollama.
BankMCP™ is not a bank. It is a small open-source server you host yourself
(npm package bankmcp). It connects to your banks
through Enable Banking, which wraps 2,700+
European banks in one PSD2 API, and exposes them to any MCP client as a
connector. Read-only, no payments, no third party holding your data.
"Has the invoice from Acme been paid?" · "What did we spend on groceries in August?" · "Which subscriptions am I paying for, and what do they cost per year?" · "Tell me when my balance drops below 5,000."
Two ways to run it. Both need a free Enable Banking account and about ten minutes.
The server and its state live on your computer, and no AI vendor or app maker sees your data. The bank connection is not on your computer: it goes through Enable Banking, as described above.
Requires Node 24 or newer. Add BankMCP™ to your client:
Claude Code:
Claude Desktop: download
bankmcp.mcpb
and open it; Claude Desktop installs it as an extension. Or add it by hand in
claude_desktop_config.json:
Cursor and others: the same command, npx -y bankmcp, as a stdio server.
Then ask your assistant anything about your bank. It will answer with a localhost address. Open it: the setup page lists the values to register an application at Enable Banking, then takes the application id and the key file. Your browser will warn once about the certificate on localhost, which the server made for itself because Enable Banking requires https for the bank redirect. Continue past it. Say "connect my bank" and log in at your bank.
To avoid the warning altogether, use a certificate your browser already
trusts: mkcert makes one with
mkcert localhost 127.0.0.1; point TLS_CERT_PATH and TLS_KEY_PATH at the
two files and the server uses them instead of generating its own. BankMCP™
itself does not touch your system's trust store.
State lives in ~/.bankmcp. Delete the folder to forget everything.
Any container host works. The server needs a persistent volume at /data
and a public https address; it asks you for everything else in the browser.
A prebuilt image is published on every release:
ghcr.io/noskillish/bankmcp (built by GitHub Actions
from the tagged source, linux/amd64 and linux/arm64).
Railway:
deploys the published image with a volume at
/data and a domain, nothing
to fill in. Or by hand: New Project, Deploy from GitHub repo, pick this
repo, add a volume mounted at /data and generate a domain (Settings,
Networking, port 8080). The server learns its own address from Railway.
Fly.io: three commands from a checkout, using fly.toml:
Render:
uses render.yaml. Render's persistent disks need a paid
instance.
Docker on your own box:
or docker compose up -d with compose.yaml. Then put a TLS
terminator in front (Caddy needs two lines:
YOUR-HOST { reverse_proxy localhost:8080 }) and set BASE_URL to the
public address.
Open the address. A fresh server shows a setup page.
The setup page can do this for you. Enter the email of your Enable Banking account (or the one you want to create it with) and press Send me the sign-in link. Enable Banking emails you a one-time link; paste it on the next page. Your server signs in with it once, creates the application with the right redirect and policy addresses, generates the key pair and stores the id and the key. The sign-in is not kept. On a local server the click on the link does the same without pasting.
Or by hand: the setup page lists the exact values Enable Banking's form asks
for, with Copy buttons. At https://enablebanking.com/cp/applications create
an application with them, keep generate private key selected, and save. A
.pem file downloads once; that is the key. Paste the application id and
choose the .pem file on the setup page. Before anything is stored, the id
and key are checked against Enable Banking.
Either way: Production for your real accounts, Sandbox for test data. A production application for your own accounts is activated once in the Control Panel with Activate by linking accounts; see Going live below.
Choose a password of twelve characters or more. A Ready page then shows what was checked: the application, whether its redirect URL is registered and whether it is active, and the connector address to copy.
Prefer configuration by environment? Set these and the setup page does not appear:
In claude.ai (or the desktop app): Settings → Connectors → Add custom
connector. Name it BankMCP™, paste https://YOUR-HOST/mcp, save, then click
Connect. Your server shows a password page; enter the admin password. That
is the only login you will do.
In Claude Code:
then run /mcp inside Claude Code to sign in.
Other MCP clients (ChatGPT, Mistral Le Chat, Cursor, VS Code) work the same
way: add the URL as a remote MCP server, sign in with the password. Tested
with Claude, Claude Code and Ollama; the others follow the same standard.
A client whose domain is not in ALLOWED_REDIRECT_HOSTS needs adding there.
In your assistant, say "connect my bank" (or use the connect-bank prompt). It
looks up your bank, gives you a link, you log in at the bank and approve, and
the accounts appear. Consents last up to 180 days; you are told when one
is about to expire and the same conversation renews it.
Give accounts labels ("Everyday", "Joint expenses", "Mortgage") when it suggests them. Every tool accepts labels instead of ids.
Enable Banking's production environment normally requires a contract, but it has a restricted mode for accessing your own accounts, explicitly allowed for individual non-commercial use. After registering a Production application:
Read the Restriction of Use section of Enable Banking's Terms of Service before you rely on it: restricted mode is for your own accounts, not for offering a service to others. This project does not change those terms.
Tools (all read-only):
| Tool | What it does |
|---|---|
list_banks, start_consent, consent_status, disconnect_bank | connect and manage banks |
list_accounts, set_account_label | accounts with booked balances; your own names for them |
get_balances | booked and available balance for one account |
get_transactions | signed amounts, one counterparty, one description; paginated |
create_watch, list_watches, delete_watch, check_watches | background rules with webhook notifications |
Prompts: connect-bank, monthly-summary, build-budget,
savings-scan, subscription-audit, unusual-transactions.
Watches run on the server. Rules: balance below or above an amount, a
single debit over an amount, an incoming or outgoing payment matching a name,
and "tell me if this payment has not arrived by this date". Accounts are
checked at most four times a day, the PSD2 limit for unattended access.
Notifications go to NOTIFY_WEBHOOK_URL as a Slack message or a JSON POST.
Enable Banking's own webhooks cover payment initiation only, so account data is polled. There is no way around that under PSD2.
No reviews yet — be the first to share how this listing worked for you.
Showcase your server listing on GitHub or your project documentation. Embed this dynamic SVG badge to highlight official listing status and live engagement.
[](https://allmcps.com/mcp/bankmcp)<a href="https://allmcps.com/mcp/bankmcp"><img src="https://allmcps.com/api/badge/bankmcp?style=directory" alt="BankMCP™ on AllMCPs" /></a>