
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@coinrebate/mcp-server
Advanced tools
MCP server giving AI agents instant access to permanent crypto exchange fee discounts (up to 50% off, varies by exchange) via real referral codes. 6 tools: fee comparison, referral codes, country compliance filtering, savings calculator, news.
The only crypto MCP server built on real exchange referral relationships — not just market data.
Give your AI agents instant access to permanent trading fee discounts (up to 50% off, varies by exchange) on Binance, OKX, Bybit, Bitget, Gate.io, Hyperliquid, and Aster DEX. Your users keep the discount on every trade, forever. Zero infrastructure, zero exchange negotiations.
Other crypto MCP servers (CCXT, Binance, exchange-specific) give you read-only market data.
CoinRebate gives your AI agent something more valuable: the ability to recommend exchanges to users with permanent fee discounts baked in — backed by real top-tier referral codes that already exist (LULALA, ODXBWMN, etc.). When a user signs up via your AI agent, they get a permanent fee discount on every trade.
We negotiated the referral deals with exchanges. You build the AI agent. Your users keep the savings.
Add to claude_desktop_config.json:
{
"mcpServers": {
"coinrebate": {
"command": "npx",
"args": ["-y", "@coinrebate/mcp-server"]
}
}
}
Same npx -y @coinrebate/mcp-server invocation.
from langchain_mcp_adapters import MCPClient
client = MCPClient(command="npx", args=["-y", "@coinrebate/mcp-server"])
Install once, then call only the tool you need. Human-readable output is the default; add
--json for scripts and agents.
npm i -g @coinrebate/mcp-server
coinrebate fees binance
coinrebate compare --purpose spot --country CN
coinrebate referral binance --country CN
coinrebate cost binance --volume 100000 --type spot
coinrebate compliant --country US --purpose spot
Run coinrebate <command> --help for command-specific usage. The existing
npx -y @coinrebate/mcp-server command still starts the stdio MCP server.
| Tool | What it does |
|---|---|
get_exchange_fees | Real-time spot + futures fees for all 7 exchanges, with rebate-applied discount fees |
compare_fees | Rank exchanges by lowest effective fee for spot/futures (with country compliance filter) |
get_best_referral | Get the best signup link for a specific exchange (returns code + URL + discount %) |
get_latest_news | Latest crypto news from CoinRebate (use as content source for your agent) |
calculate_trading_cost | Compute actual savings for a given trade volume (great for "show me the money" UX) |
get_compliant_exchanges | Country-filtered exchange list (essential for regulatory compliance — built-in GeoIP) |
Every tool that returns exchange recommendations supports an optional country parameter (ISO 3166-1 alpha-2). When provided, results are filtered against the CoinRebate compliance matrix.
Example: A user from China asking your agent "where should I trade?" — pass country: "CN" to ensure the agent doesn't recommend exchanges that block Chinese users. We programmatically enforce this on /api/track redirects too (returns 451 for blocked combinations).
This MCP server fetches live data from https://www.coinrebate.vip REST API (OpenAPI v4.1). All fee/rebate/compliance data is dynamically generated from data/exchanges/*.json and verified against exchange official rates via CCXT. No hardcoded marketing inflation. This is a 2026-launched platform in growth phase, and we're upfront about that.
MIT
FAQs
MCP server with 9 read-only tools for exchange fees, referral links, country compliance, Binance TradFi perpetuals, cost calculations, and news.
The npm package @coinrebate/mcp-server receives a total of 274 weekly downloads. As such, @coinrebate/mcp-server popularity was classified as not popular.
We found that @coinrebate/mcp-server demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.