
Company News
Socket Joins New OpenJS Program to Fund Node.js Security Work
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.
thegoldbarometer-mcp
Advanced tools
MCP server for The Gold Barometer: today's gold buying-conditions score, the published history, and what followed similar readings since 1971.
Gives AI assistants direct access to The Gold Barometer: a daily 0-100 score of gold buying conditions, compared with every trading day since 1971.
It measures conditions. It is not advice, and it does not predict the price.
| Tool | What it answers |
|---|---|
get_current_reading | Today's score, its zone, and the state of each measured part |
get_reading_history | Past readings, with or without the reconstructed month-end rows |
get_zone_record | What followed months in a given zone across the record since 1971 |
Runs on Node 18 or newer. Add to your MCP client configuration:
{
"mcpServers": {
"thegoldbarometer": {
"command": "npx",
"args": ["-y", "thegoldbarometer-mcp"]
}
}
}
No key, no signup. The server only reads public endpoints.
All figures come from the public API at thegoldbarometer.com/data and the archive at github.com/thegoldbarometer/data. Data licence: CC BY 4.0, credit "Source: The Gold Barometer, thegoldbarometer.com". Method, evidence and limits: thegoldbarometer.com/methodology.
Code licence: MIT.
FAQs
MCP server for The Gold Barometer: today's gold buying-conditions score, the published history, and what followed similar readings since 1971.
We found that thegoldbarometer-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Socket is joining the OpenJS Security Stewardship Program to fund Node.js vulnerability research, maintainer remediation, and security releases.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.