
Research
/Security News
Popular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain Attack
Popular npm packages keyv and cacheable compromised.
@tickory/mcp
Advanced tools
Real-time crypto scanner alerts, delivered straight to your AI agent.
Tickory monitors Binance Futures markets using programmable CEL rules and sends alerts when conditions match. This MCP server lets any agent framework create scans, read alert events, and understand why alerts triggered — all through the Model Context Protocol.
You: "Create a scan that fires when RSI drops below 30 on any coin with volume over $100k"
Agent (via tickory_create_scan): Done — scan "Oversold Bounce" created.
You: "Run it now"
Agent (via tickory_run_scan): 3 matches found: ETHUSDT, SOLUSDT, DOGEUSDT.
You: "Why did ETH match?"
Agent (via tickory_explain_alert_event): RSI-14 was 24.7, below your threshold of 30.
Volume gate passed: $487k USDT > $100k minimum. CEL expression evaluated true.
npx @tickory/mcp
The npm package downloads the matching GitHub Release binary for macOS and Linux during install, so npx @tickory/mcp works without a separate build step.
go install github.com/tickory/tickory-mcp@latest
Download from GitHub Releases for Linux and macOS (amd64/arm64).
git clone https://github.com/tickory/tickory-mcp.git
cd tickory-mcp
go build -o tickory-mcp .
export TICKORY_API_BASE_URL=https://api.tickory.app
export TICKORY_API_KEY=tk_xxxxxxxx_yyyyyyyyyyyyyyyyyyyyyyyy
Add to your claude_desktop_config.json:
{
"mcpServers": {
"tickory": {
"command": "npx",
"args": ["@tickory/mcp"],
"env": {
"TICKORY_API_BASE_URL": "https://api.tickory.app",
"TICKORY_API_KEY": "tk_xxxxxxxx_yyyyyyyyyyyyyyyyyyyyyyyy"
}
}
}
}
Add to your .mcp.json:
{
"mcpServers": {
"tickory": {
"command": "npx",
"args": ["@tickory/mcp"],
"env": {
"TICKORY_API_BASE_URL": "https://api.tickory.app",
"TICKORY_API_KEY": "tk_xxxxxxxx_yyyyyyyyyyyyyyyyyyyyyyyy"
}
}
}
}
Point either to npx @tickory/mcp or to the standalone tickory-mcp binary with the environment variables above. The server uses stdio (newline-delimited JSON-RPC 2.0).
| Tool | Description |
|---|---|
tickory_list_scans | List scans visible to the API key owner |
tickory_get_scan | Fetch one scan by ID |
tickory_create_scan | Create a new scan with CEL expression and hard gates |
tickory_update_scan | Replace an existing scan definition |
tickory_run_scan | Trigger a scan run immediately |
tickory_describe_indicators | Describe available CEL variables, recommended guards, and example expressions |
tickory_list_alert_events | List alert events with cursor pagination |
tickory_get_alert_event | Fetch one alert event by UUID |
tickory_explain_alert_event | Explain why an alert triggered or was suppressed |
All tools return schema_version: "v1" for contract stability.
| Variable | Required | Default | Description |
|---|---|---|---|
TICKORY_API_BASE_URL | Yes | — | Tickory API base URL |
TICKORY_API_KEY | Yes | — | Scoped API key (tk_...) |
TICKORY_TIMEOUT_SECONDS | No | 15 | HTTP timeout for API requests |
CLI flags (--api-base-url, --api-key, --timeout) override environment variables.
Upstream HTTP errors are mapped to deterministic MCP error codes:
| HTTP Status | MCP Code | Retryable |
|---|---|---|
| 400 | invalid_request | No |
| 401 | unauthorized | No |
| 403 | forbidden | No |
| 404 | not_found | No |
| 409 | conflict | No |
| 429 | rate_limited | Yes |
| 5xx | upstream_unavailable | Yes |
| Scope | What it allows |
|---|---|
read_events | Read alert events, scan runs, activity |
manage_scans | Create/read/update/delete scans, execute scans |
manage_routing | Create/manage alert sources and routes |
Create keys with the minimum scopes needed. See the developer docs for details.
This server negotiates MCP protocol versions: 2024-11-05, 2025-03-26, 2025-06-18, 2025-11-05, and 2025-11-25.
MIT
FAQs
Tickory MCP server wrapper for saved scans, ad hoc scan execution, and relay routing
The npm package @tickory/mcp receives a total of 25 weekly downloads. As such, @tickory/mcp popularity was classified as not popular.
We found that @tickory/mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Popular npm packages keyv and cacheable compromised.

Security News
A misconfiguration gave three Anthropic models internet access, and one, believing it was in a simulation, shipped a credential-stealing package to PyPI.

Security News
/Company News
Socket has joined the new Composer and Packagist sponsorship program as a launch sponsor, supporting the team that keeps PHP's package ecosystem secure.