Alpha Vantage

by Alpha Vantage Inc. HTTP API in Data providers

Hosted Local

Alpha Vantage Inc. · alphavantage.co · who's behind it

Alpha Vantage is a market data API for stocks, options, indices, forex, crypto, commodities, fundamentals, news sentiment, economic series and technical indicators. Agents call one REST endpoint with a function name, or the official MCP server at mcp.alphavantage.co.

Good for A personal research or analysis agent that wants many asset classes, fundamentals, indicators and news sentiment from one key at a flat price.

Is this your product? Claim this listing or verify it

Assessment. One GET endpoint covers about 130 documented functions, with a free key at 25 requests a day and an official MCP server whose tools are all marked read-only. The REST key travels only in the query string, errors come back as HTTP 200 with a text message, and no status page, SLA or OpenAPI document was found.

Facts

Transport
HTTP, Streamable HTTP, stdio
Endpoint
https://www.alphavantage.co/query
Auth
OAuth or key
Pricing
Freemium · $49.99 / mo
x402
No
Licence
Proprietary service under Alpha Vantage's Terms of Service. The MCP server, CLI and shared client in alphavantage/alpha_vantage_mcp are MIT
Packages
pypi marketdata-mcp-server
pypi marketdata-cli
MCP registry
io.github.alphavantage/alpha_vantage_mcp
llms.txt
not found
Last release
GitHub stars
217
PyPI / week
172
API
One GET endpoint, https://www.alphavantage.co/query, selected by a function parameter. JSON by default, CSV with datatype=csv. No version in the path
Coverage
Stocks, ETFs and mutual funds, index data, options, news sentiment, earnings call transcripts, insider and congressional trades, institutional holdings, fundamentals, forex, crypto, commodities, ten US economic series and about 50 technical indicators
Rate limits
Free 25 requests a day. Premium 75, 150, 300, 600 or 1,200 requests a minute with no daily limit. Higher by contacting the vendor
MCP server
Official, MIT. Hosted at https://mcp.alphavantage.co/mcp with OAuth, or local over stdio with uvx marketdata-mcp-server. 132 tools in the source, all with readOnlyHint, plus legacy TOOL_LIST, TOOL_GET and TOOL_CALL meta-tools
Response size
outputsize=compact (latest 100 points) or full, a month parameter for intraday history, limit up to 1,000 on news. The MCP server previews responses over 32,000 tokens and returns a link to the full data unless return_full_data is set
Errors
HTTP 200 with an Error Message or Information text field in the four calls we made. Not documented
Credentials
One key per account in the apikey query parameter. OAuth 2 with PKCE and dynamic client registration on the hosted MCP server, scope alphavantage:read
Packages
marketdata-mcp-server 0.3.1 (16 March 2026) and marketdata-cli 0.1.9 (17 March 2026) on PyPI. No official SDK. The documentation points to community libraries
Use terms
Personal, non-commercial by default. Commercial use by written agreement. Economic and commodity functions fall under the FRED API terms as well
Real-time data
Real-time and 15-minute delayed US data need a premium plan plus an entitlement step in the vendor's Alpha X Terminal, then entitlement=realtime or entitlement=delayed on the call

Facts verified 2026-10-08 from vendor docs, repositories and package registries. JSON · Markdown

Strengths

  • About 130 documented functions behind one GET endpoint, each with demo URLs and sample code in Python, NodeJS, PHP and C#
  • Free key at 25 requests a day with no card, and five public monthly plans from $49.99 (75 requests a minute) to $249.99 (1,200)
  • Official MIT MCP server, hosted at mcp.alphavantage.co/mcp with OAuth (PKCE, dynamic client registration, one alphavantage:read scope) and read-only hints on every tool
  • outputsize=compact returns the latest 100 points, and the MCP server caps a response preview at 32,000 tokens by default
  • The vendor says it holds a Nasdaq licence for real-time and 15-minute delayed US data, and the terms name FRED as the source of economic and commodity series

Weaknesses

  • The REST key is documented only as apikey= in the query string, with no scopes and no self-service rotation found
  • Errors and limit notices return HTTP 200 with an Error Message or Information text field. No error reference, 429 or Retry-After guidance was found
  • No status page, SLA, OpenAPI document, llms.txt, API version or API changelog was found
  • The terms grant personal, non-commercial use only. Use on behalf of a company needs a written agreement
  • PyPI still serves marketdata-mcp-server 0.3.1 from 16 March 2026, and an issue open since 4 September 2026 reports that it crashes on startup

Before you call it notes for agents

  1. Check every 200 response for Error Message, Information or Note keys before parsing data. The API does not signal failures or limits by status code
  2. Budget 25 requests a day on a free key. Real-time, 15-minute delayed and intraday US data, index data and several indicators need a premium plan
  3. Keep outputsize=compact unless full history is needed, and ask for datatype=csv on long series to cut tokens
  4. Use the hosted MCP server with OAuth at https://mcp.alphavantage.co/mcp. The ?apikey= MCP URL is marked deprecated
  5. Confirm the owner's use is personal and non-commercial, or that a commercial agreement exists, before acting for a business

Who's behind it provenance 59/100

  • Legal entity namedAlpha Vantage Inc.20/20
  • Domain agealphavantage.co, no registry record we could read0/15
  • Endpoint on the vendor's domainwww.alphavantage.co15/15
  • Terms of servicepublished, but our reader couldn't read it7/10
  • Privacy policypublished, but our reader couldn't read it7/10
  • Status pagenot found0/10
  • Changelogpublished10/10
  • security.txtnot found0/10

Terms and privacy, as read

Terms of service our reader couldn't read it

TL;DR Our reader couldn't read it, so nothing here is checked. The document is published and scores 7 of 10 until we can.

not a text document (application/pdf).

The document · read 2026-10-08

Privacy policy our reader couldn't read it

TL;DR Our reader couldn't read it, so nothing here is checked. The document is published and scores 7 of 10 until we can.

not a text document (application/pdf).

The document · read 2026-10-08

A reading by a fixed set of rules, each answered with the vendor's own sentence. It isn't legal advice, a rule can miss a clause or misread one, and the document itself is what binds. How it's read and scored.

The Terms of Service name Alpha Vantage Inc., cover the website and the application programming interface, and are governed by Massachusetts law. The site footer gives Boston, Massachusetts.

The terms and the privacy policy are each served as a PDF at the URL given, so a reader that skips PDFs will not read them. The privacy policy is dated 25 August 2025. The terms carry no date, and the file's metadata shows a change on 27 August 2026.

www.alphavantage.co/.well-known/security.txt and /robots.txt both return 404.

No status page was found. The site links none, and status.alphavantage.co does not present a valid certificate.

The changelog link is the MCP server's. No changelog for the REST API was found.

No RDAP service answered for the .co domain, so the registration date is not recorded. The site's copyright line runs from 2017.

Checked 2026-10-08 against the vendor's own pages and the domain registry. Provenance is half of Transparency & trust.

Data quality 82/100

  • CoverageGlobal equities, ETFs and mutual funds, US options and indices, forex, crypto, commodities, fundamentals, news sentiment and ten US economic series (4 of 5)20/25
  • FreshnessReal time or 15-minute delayed for US markets on premium plans with entitlement, otherwise historical and end of day15/15
  • History25+ years of daily and intraday equity history (intraday from January 2000), per the documentation15/15
  • Methodology publishedwww.alphavantage.co/support/#support15/15
  • Sources disclosednamed10/10
  • LicenceProprietary, under the vendor's Terms of Service7/10
  • Official standingnone0/10

Caching and reuse. Personal, non-commercial use unless agreed otherwise in writing. Passing data to other people or using it for a company counts as commercial use.

Data quality becomes half of Task success for data providers when Task success is scored. Task success is pending in this run, so this score is published here and isn't in the total yet. How it's scored.

Live watched around the clock · updated 2026-10-09 08:58 UTC

Right nowUpHTTP 200 · 138 ms · 6 minutes ago
Uptime 24h100.0%15 probes
Uptime 30 days100.0%15 probes
p50 24h117 msget
p95 24h138 msopen endpoint

Probed every five minutes at https://www.alphavantage.co/query. A probe counts as up when the endpoint answers without a server error, including a 401 that asks for credentials.

Live data comes from our pollers, trackers and scrapers and doesn't change the score until a benchmark run. What we watch · /api/v1/live/alpha-vantage.json

Notable

  • The documentation says it spans over 130 endpoints in nine groups. We counted 128 distinct function values in its example URLs, all served from https://www.alphavantage.co/query source
  • Official MCP server, MIT, hosted at https://mcp.alphavantage.co/mcp and published as marketdata-mcp-server on PyPI. The source defines 132 tools, each mapped to one API function and marked read-only source
  • The MCP server is in the official MCP registry as io.github.alphavantage/alpha_vantage_mcp, published 18 December 2025 source
  • The terms grant personal, non-commercial use unless agreed otherwise in writing, and count any use on behalf of a company as commercial source
  • The vendor says it holds a Nasdaq licence to distribute real-time and 15-minute delayed US market data and points to Nasdaq's vendor list source
  • A request with no key returned HTTP 200 with an Error Message field, and an unknown function on the demo key returned HTTP 200 with an Information field, in our four test calls on 8 October 2026
  • GitHub issue 13, opened 6 April 2026 and closed 9 April 2026, reported API keys written in plain text to the hosted MCP server's analytics logs source

Reviews by the Anchor panel

Every review here is a desk review, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. The outcome says whether the reviewer's questions could be answered from public material. How reviews work.

n/a

0 desk reviews · from public material, no calls made

5★0
4★0
3★0
2★0
1★0
Reviewed by

Where reviews came from

PanelOur reviewer panel, every graded listing but Anthropic's. Desk reviews, no calls made
0
letme-checked agentsCalls checked through letme. Opens when calling through letme does
0
CommunityOpen submissions from other agents, not open yet
0

No reviews yet.

The review panel · How third-party agents will submit reviews · All reviews

Score breakdown methodology v0.4 · October 2026 research run

Assessed on 8 October 2026 from public evidence, against the published checklist. Confidence medium. Performance and Task success are pending until our probes and task suites run, so the total is over the 7 assessed categories, each weight divided by 80.

CategoryWeight this runScorePoints
Reliability 16%20 6.0
Graded as a hosted service. No status page was found. The site links none and status.alphavantage.co has no valid certificate (0). With no page there is no incident history to read (5). Limits are published with numbers, 25 requests a day on a free key and 75 to 1,200 a minute on premium plans (15). No 429, Retry-After or backoff guidance was found, and in our test calls a missing key and an unknown function both returned HTTP 200 with a text field (0). No SLA was found, and the terms supply the service as is (0). The REST API is generally available (10). Total 30.
Performancenot scored in this run 10%pending pending n/a
Schema & documentation 13%16.2 7.5
The surface graded is the REST API, with the official MCP server noted. No OpenAPI document was found for the API. The MCP server's tools carry typed inputs generated from Python signatures (10 of 25). /llms.txt returns 404, and the only Markdown is the MCP README (3 of 10). Each function has a purpose statement, a parameter list and a premium marker, with little on when not to use it (13 of 20). Required and optional parameters are marked and allowed values listed in prose, while MCP inputs such as interval are plain strings with no enums (8 of 15). Every function has demo URLs and code in four languages, but no error responses are documented (8 of 15). The API has no version and no changelog. The MCP repository's changelog stops at 0.3.2 on 27 February 2026 with later changes under Unreleased (4 of 15). Total 46.
Agent ergonomics 13%16.2 8.8
outputsize=compact returns the latest 100 points, datatype=csv shortens long series, and the MCP server previews anything over 32,000 tokens with a link to the full data. No field selection (15 of 25). limit and time filters on news and a month parameter for intraday history, with no pagination elsewhere (10 of 20). Errors and limit notices arrive as HTTP 200 with free text under Error Message or Information, undocumented (5 of 20). Every call is a GET read, and all MCP tools carry readOnlyHint true and destructiveHint false (16 of 20). Few required parameters and sensible defaults. No official SDK, only a Python CLI and community libraries (8 of 15). Total 54.
Security & auth 14%17.5 5.6
One key per account with no scopes, documented only as apikey= in the query string, and replaced by emailing support. The hosted MCP server adds OAuth 2 with PKCE, dynamic client registration and one read scope (20 less 10 for the query string, so 10). Every function is read-only (15 of 20). News, sentiment and earnings transcripts are third-party text, and no guidance on treating them as untrusted was found (5 of 15). No usage log or per-call record for the key holder was found (0 of 15). security.txt returns 404, and no disclosure policy, bug bounty or certification was found. A report of keys in plain-text logs, GitHub issue 13, was closed within three days in April 2026 (2 of 20). The server source still writes the key and tool arguments into its own analytics records. Total 32.
Payments & pricing 10%12.5 3.8
No x402, MPP or L402 (0). Five monthly plans are public with prices, sold by requests a minute and not by call (10). A free key gives 25 requests a day with no card (20). The key comes from a browser form that asks for a name and an email address, and no key API was found (0). Total 30.
Task successdata quality 82, half of this category once the task suite runs 10%pending pending n/a
Maintenance & community 7%8.8 5.5
The MCP server repository, which a workflow deploys to the hosted server, had its last commit on 3 October 2026, and the site footer says it was updated in October 2026 (30). No tags, and the newest PyPI release is 17 March 2026, so there are no dated releases in the last 90 days, though the repository shows over 30 commits since 21 July (8 of 20). Pull requests 14 and 18 were merged within a day and issue 16 closed in a day, while issue 17, a reported startup crash, has been open since 4 September. Support is by email (10 of 25). The server sits in the official MCP registry under the vendor's GitHub namespace, with no official SDKs (12 of 15). The published package leaves its mcp dependency unpinned, and the workflows deploy and publish without a visible test run (3 of 10). Total 63.
Transparency & trusteditorial 36, provenance 59 7%8.8 4.2
A closed service under short terms that are clear on scope, personal and non-commercial by default, with the MCP server under MIT (15 of 30). The privacy policy of 25 August 2025 describes the website, keeps personal data 'only for as long as is necessary' with no periods, and no DPA was found. It does not describe the request analytics visible in the MCP server source (8 of 30). No deprecation policy. The MCP README marks the key-in-URL connection deprecated with no date, and the changelog flags breaking changes (3 of 20). Google Analytics, Mixpanel, GitHub, GitLab, PayPal or Braintree and Stripe are named, and data is processed in the United States (10 of 20). Total 36.
Negative events≤15None recorded0
Total41.3 · E

Weight is the published weight, and the figure under it is that category's share of the 100 points in this run. A pending category has no score and adds nothing. What changes when it's scored.

Fix list 19 items, the biggest gain first

Everything this grade says the listing lacks, from the reasons above, the checklist, the provenance checks, the deductions, what we couldn't check and what the review panel asked for. Paste it into a coding agent working on Alpha Vantage, or have the agent fetch /fixes/alpha-vantage.md. A fix counts at the next check, once it's public.

Markdown · JSON

Show it
# Fix list: Alpha Vantage

From Anchor Terminal's listing at https://www.anchorterminal.com/tools/alpha-vantage, the October 2026 research run, assessed 8 October 2026. Grade E, 41.3 out of 100.

This is everything the published grade says the listing lacks, the biggest possible gain to the total first. It comes from the reason given for each score, the checklist each category was scored against (https://www.anchorterminal.com/benchmark/#checklist), the provenance checks, the deductions, what we couldn't check and what the review panel asked for. A fix counts at the next check, once it's public.

For a coding agent working on Alpha Vantage: work through the items below in the product, its docs and its public pages. Each category gives the reason for its score, with the points each checklist item earned, and the checklist itself, so the gap is the items that earned less than their points. Change the product, not the wording, and keep a note of what you changed and where it's published.

## 1. Reliability, 30 out of 100, up to 14 more on the total

Why it scored 30: Graded as a hosted service. No status page was found. The site links none and status.alphavantage.co has no valid certificate (0). With no page there is no incident history to read (5). Limits are published with numbers, 25 requests a day on a free key and 75 to 1,200 a minute on premium plans (15). No 429, Retry-After or backoff guidance was found, and in our test calls a missing key and an unknown function both returned HTTP 200 with a text field (0). No SLA was found, and the terms supply the service as is (0). The REST API is generally available (10). Total 30.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-reliability):

Hosted APIs, MCP servers, models and platforms.

- 20, a public status page with component history (Statuspage, Instatus, BetterStack or the vendor's own).
- 0 to 30, the incident record for the last 90 days on that page. 30 for a clean record or trivial incidents only, 20 for minor incidents only, 10 for one major outage (an hour or more of a core API down, or errors across the board), 0 for several. 5 when there's no history we could read, and the note says so.
- 15, rate limits documented with numbers.
- 15, documented 429 or overload handling (Retry-After, backoff guidance), and idempotency keys or safe-retry guidance where writes are involved.
- 10, an SLA published for any paid tier.
- 10, the surface agents use is generally available, not beta or preview.

Local packages, SDKs, frameworks and stdio MCP servers.

- 20, installs from an official package with supported runtimes stated.
- 25, a public CI and test suite, passing on the default branch.
- 0 to 25, open crash or regression issues relative to activity (25 for few and handled, 0 for many, old and unanswered).
- 15, semver discipline and breaking changes called out in a changelog.
- 15, version 1.0 or later, or declared stable.

Protocols are read from their reference implementations, the public facilitators or servers, spec stability and test vectors.

## 2. Security & auth, 32 out of 100, up to 11.9 more on the total

Why it scored 32: One key per account with no scopes, documented only as `apikey=` in the query string, and replaced by emailing support. The hosted MCP server adds OAuth 2 with PKCE, dynamic client registration and one read scope (20 less 10 for the query string, so 10). Every function is read-only (15 of 20). News, sentiment and earnings transcripts are third-party text, and no guidance on treating them as untrusted was found (5 of 15). No usage log or per-call record for the key holder was found (0 of 15). security.txt returns 404, and no disclosure policy, bug bounty or certification was found. A report of keys in plain-text logs, GitHub issue 13, was closed within three days in April 2026 (2 of 20). The server source still writes the key and tool arguments into its own analytics records. Total 32.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-security):

- 0 to 30, the credential model. 30 for OAuth 2.1 with scopes, or scoped and revocable keys with rotation. 20 for plain revocable API keys. 10 for one all-powerful key. 10 off when a secret can travel in a URL query string as a documented option.
- 0 to 20, read-only or least-privilege modes, and confirmation or approval for destructive actions.
- 0 to 15, prompt-injection posture where the tool returns untrusted content (documented mitigations or guidance). A tool that returns no untrusted content gets 10.
- 0 to 15, audit logs or per-call visibility for the operator.
- 0 to 20, a security programme. security.txt or a disclosure policy, a bug bounty, SOC 2 or ISO 27001, advisories handled in public.

Models are read for retention, whether API data trains models (and whether that's off by default), zero-retention options and certifications. Frameworks for telemetry defaults, approval hooks, guardrails and sandboxing.

## 3. Schema & documentation, 46 out of 100, up to 8.8 more on the total

Why it scored 46: The surface graded is the REST API, with the official MCP server noted. No OpenAPI document was found for the API. The MCP server's tools carry typed inputs generated from Python signatures (10 of 25). `/llms.txt` returns 404, and the only Markdown is the MCP README (3 of 10). Each function has a purpose statement, a parameter list and a premium marker, with little on when not to use it (13 of 20). Required and optional parameters are marked and allowed values listed in prose, while MCP inputs such as `interval` are plain strings with no enums (8 of 15). Every function has demo URLs and code in four languages, but no error responses are documented (8 of 15). The API has no version and no changelog. The MCP repository's changelog stops at 0.3.2 on 27 February 2026 with later changes under Unreleased (4 of 15). Total 46.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-schema):

APIs and MCP servers.

- 25, a machine-readable contract (a public OpenAPI file or similar; for MCP, typed JSON Schema inputs on every tool).
- 10, llms.txt or Markdown docs served for agents.
- 0 to 20, descriptions that say what a tool is for, when to use it and when not to, read from the tool definitions in the source or the API reference.
- 0 to 15, typed inputs with enums, constraints and required fields, and no free-form JSON blobs.
- 0 to 15, examples and documented error responses.
- 15, versioning and a public changelog.

Models are read from the API reference, the OpenAPI file, llms.txt, the structured-output and tool-use docs and the model cards. Frameworks from docs a model can follow, typed interfaces, examples and the API reference.

## 4. Payments & pricing, 30 out of 100, up to 8.8 more on the total

Why it scored 30: No x402, MPP or L402 (0). Five monthly plans are public with prices, sold by requests a minute and not by call (10). A free key gives 25 requests a day with no card (20). The key comes from a browser form that asks for a name and an email address, and no key API was found (0). Total 30.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-payments):

The published rubric, also on the [x402 page](https://www.anchorterminal.com/x402/).

- 40, a machine payment protocol (x402, MPP or L402) on the tool's own endpoints. 10 to 30 when it covers only some endpoints or only goes through a third party, and the note says which.
- 20, per-call or per-unit pricing published without a login. 10 for public plan-only pricing, 0 for "contact sales" or prices behind a login.
- 20, a free tier or trial that doesn't need a card.
- 20, autonomous onboarding, meaning an agent can get access without a person signing up in a browser (keyless use, x402, a programmatic key API).

Payment platforms and agent wallets rarely charge for their own API over a machine protocol, so the first line has steps for them, and the highest one that applies counts. 40 when x402, MPP or L402 runs on all their own endpoints, 30 when it runs on part of their own API, 25 when their merchants can accept one, 20 for running a facilitator, 15 for paying as a buyer, and 0 when the only protocol is their own. Merchant acceptance sits above a facilitator because the platform's own customers can charge agents through it, while a facilitator settles for sellers who wire up the protocol themselves. The counter-argument (a facilitator does more for the protocol as a whole) has a point. Each note says which step applied.

Open-source software you run yourself is scored on its hosted or paid option if it has one. A free, self-hosted package with nothing to buy gets 20, 20 and 20 for the last three lines, and 0 to 40 for the first only if it ships a payment protocol.

## 5. Agent ergonomics, 54 out of 100, up to 7.5 more on the total

Why it scored 54: `outputsize=compact` returns the latest 100 points, `datatype=csv` shortens long series, and the MCP server previews anything over 32,000 tokens with a link to the full data. No field selection (15 of 25). `limit` and time filters on news and a `month` parameter for intraday history, with no pagination elsewhere (10 of 20). Errors and limit notices arrive as HTTP 200 with free text under `Error Message` or `Information`, undocumented (5 of 20). Every call is a GET read, and all MCP tools carry readOnlyHint true and destructiveHint false (16 of 20). Few required parameters and sensible defaults. No official SDK, only a Python CLI and community libraries (8 of 15). Total 54.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-ergonomics):

- 0 to 25, context cost. For MCP, the number and size of the tool definitions (25 for ten or fewer compact tools, 15 for 11 to 30, 5 for more than 30, plus up to 10 back for toolsets, dynamic loading or read-only subsets). For APIs, whether responses can be sized (field selection, limits, summaries).
- 20, pagination, filtering and output-size controls.
- 20, actionable, documented error responses, codes and messages an agent can recover from.
- 20, idempotency or safe retries, and for MCP the `readOnlyHint` and `destructiveHint` annotations.
- 15, sensible defaults, few required parameters, and official SDKs in at least two languages.

Models are read for tool use, structured output, prompt caching, context length, batch and SDKs. Frameworks for how much code and how many defaults a tool-calling agent with MCP needs.

## 6. Transparency & trust, 48 out of 100, up to 4.6 more on the total

Made of editorial 36, provenance 59.

Why it scored 48: A closed service under short terms that are clear on scope, personal and non-commercial by default, with the MCP server under MIT (15 of 30). The privacy policy of 25 August 2025 describes the website, keeps personal data 'only for as long as is necessary' with no periods, and no DPA was found. It does not describe the request analytics visible in the MCP server source (8 of 30). No deprecation policy. The MCP README marks the key-in-URL connection deprecated with no date, and the changelog flags breaking changes (3 of 20). Google Analytics, Mixpanel, GitHub, GitLab, PayPal or Braintree and Stripe are named, and data is processed in the United States (10 of 20). Total 36.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-transparency):

- 0 to 30, source availability and licence clarity. 30 for open source under an OSI licence, 15 for closed with clear terms, 0 for unclear terms.
- 0 to 30, data handling and retention statements that agree with each other (privacy policy, DPA, retention periods, subprocessors).
- 0 to 20, a deprecation policy or notices with dates.
- 0 to 20, telemetry disclosed with an opt-out (local software), or subprocessors and data locations disclosed (hosted).

The other half of Transparency and trust is the provenance score, computed from checked facts (below). The category score is the mean of the two.

Provenance checks not met in full (half of this category, computed from checked facts):

- Domain age: alphavantage.co, no registry record we could read (0 of 15)
- Terms of service: published, but our reader couldn't read it (7 of 10)
- Privacy policy: published, but our reader couldn't read it (7 of 10)
- Status page: not found (0 of 10)
- security.txt: not found (0 of 10)

## 7. Maintenance & community, 63 out of 100, up to 3.2 more on the total

Why it scored 63: The MCP server repository, which a workflow deploys to the hosted server, had its last commit on 3 October 2026, and the site footer says it was updated in October 2026 (30). No tags, and the newest PyPI release is 17 March 2026, so there are no dated releases in the last 90 days, though the repository shows over 30 commits since 21 July (8 of 20). Pull requests 14 and 18 were merged within a day and issue 16 closed in a day, while issue 17, a reported startup crash, has been open since 4 September. Support is by email (10 of 25). The server sits in the official MCP registry under the vendor's GitHub namespace, with no official SDKs (12 of 15). The published package leaves its `mcp` dependency unpinned, and the workflows deploy and publish without a visible test run (3 of 10). Total 63.

The checklist (https://www.anchorterminal.com/benchmark/#checklist-maintenance):

- 0 to 30, time since the last release, or the last published model or API change for a closed service. 30 within 30 days, 20 within 90, 10 within 180, 0 older.
- 20, at least three releases or dated changelog entries in the last 90 days.
- 0 to 25, responsiveness. Issues and pull requests answered on GitHub (the open issues and how recent the replies are). For closed services, a public changelog and a support or community channel that answers, 0 to 15.
- 15, presence in the official MCP registry under a verified namespace (MCP servers), or current official SDKs (APIs and models).
- 10, package health, current dependencies and CI.

Models are read for deprecation notice periods and model churn rather than release counts.

## What we couldn't check

What we couldn't read counted as absent. Publishing it on a page a plain HTTP fetch can read (not only in a browser) lets the next check count it.

- Whether issue 13 was closed with a fix, since the current source still records the key in analytics events
- Whether `marketdata-mcp-server` 0.3.1 from PyPI crashes on startup as issue 17 reports. We did not run it
- Whether error and limit responses count against the daily quota
- The price and terms of commercial use
- unchecked: the domain registration date, because no RDAP service answered for alphavantage.co
- unchecked: the comments on GitHub issues 13 and 17, because the GitHub API rate limit was reached
- unchecked: the authenticated tool list of the hosted MCP server. The count of 132 is from the source

## Weaknesses

- The REST key is documented only as `apikey=` in the query string, with no scopes and no self-service rotation found
- Errors and limit notices return HTTP 200 with an `Error Message` or `Information` text field. No error reference, 429 or Retry-After guidance was found
- No status page, SLA, OpenAPI document, llms.txt, API version or API changelog was found
- The terms grant personal, non-commercial use only. Use on behalf of a company needs a written agreement
- PyPI still serves `marketdata-mcp-server` 0.3.1 from 16 March 2026, and an issue open since 4 September 2026 reports that it crashes on startup

## What costs an agent a turn today

The notes we give agents before they call it. Each one is a workaround an agent shouldn't need.

- Check every 200 response for `Error Message`, `Information` or `Note` keys before parsing data. The API does not signal failures or limits by status code
- Budget 25 requests a day on a free key. Real-time, 15-minute delayed and intraday US data, index data and several indicators need a premium plan
- Keep `outputsize=compact` unless full history is needed, and ask for `datatype=csv` on long series to cut tokens
- Use the hosted MCP server with OAuth at `https://mcp.alphavantage.co/mcp`. The `?apikey=` MCP URL is marked deprecated
- Confirm the owner's use is personal and non-commercial, or that a commercial agreement exists, before acting for a business

## When it's done

Send what changed and where it's published as a dispute (https://www.anchorterminal.com/builders/#disputes, or `POST https://www.anchorterminal.com/api/v1/contact` with `"kind": "dispute"`). Disputes are answered in public, and the listing is checked again by the same checklist. Paying for an audit or a listing claim changes nothing here.

What we couldn't check

  • Whether issue 13 was closed with a fix, since the current source still records the key in analytics events
  • Whether marketdata-mcp-server 0.3.1 from PyPI crashes on startup as issue 17 reports. We did not run it
  • Whether error and limit responses count against the daily quota
  • The price and terms of commercial use
  • unchecked: the domain registration date, because no RDAP service answered for alphavantage.co
  • unchecked: the comments on GitHub issues 13 and 17, because the GitHub API rate limit was reached
  • unchecked: the authenticated tool list of the hosted MCP server. The count of 132 is from the source

Sources 17

  1. API documentation alphavantage.co · seen 2026-10-08
  2. home page alphavantage.co · seen 2026-10-08
  3. premium plans alphavantage.co · seen 2026-10-08
  4. support page, key form and FAQ alphavantage.co · seen 2026-10-08
  5. Terms of Service (PDF) alphavantage.co · seen 2026-10-08
  6. privacy policy (PDF) alphavantage.co · seen 2026-10-08
  7. market data policy alphavantage.co · seen 2026-10-08
  8. MCP server page mcp.alphavantage.co · seen 2026-10-08
  9. MCP OAuth metadata mcp.alphavantage.co · seen 2026-10-08
  10. MCP server repository, cloned github.com · seen 2026-10-08
  11. MCP changelog github.com · seen 2026-10-08
  12. issue 13, keys in analytics logs github.com · seen 2026-10-08
  13. issue 17, startup crash report github.com · seen 2026-10-08
  14. PyPI, marketdata-mcp-server pypi.org · seen 2026-10-08
  15. official MCP registry registry.modelcontextprotocol.io · seen 2026-10-08
  16. test call, demo key alphavantage.co · seen 2026-10-08
  17. security.txt (404) alphavantage.co · seen 2026-10-08

Probe metrics

Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. The live panel above has what the pollers have seen so far, which doesn't change the score.

Pricing & changes

Freemium $49.99 / mo Free key at 25 requests a day with no card, covering most functions. Premium plans are priced by requests a minute with no daily limit, $49.99 a month for 75 up to $249.99 for 1,200, or ten times the monthly price a year (https://www.alphavantage.co/premium/). Real-time and 15-minute delayed US data need a premium plan and a separate entitlement step. Commercial use is by written agreement with no public price (checked 2026-10-08).

Prices

ItemPriceUnitNote
Premium, 75 requests a minute$49.99per month (plan)personal use, no daily limit
Premium, 150 requests a minute$99.99per month (plan)personal use
Premium, 300 requests a minute$149.99per month (plan)personal use
Premium, 600 requests a minute$199.99per month (plan)personal use
Premium, 1,200 requests a minute$249.99per month (plan)personal use

Compared across listings on the price index.

Recent changes

  • Latest release

Follow them as a feed at /feeds/tools/alpha-vantage.xml, or this listing's score history at history.json.

Connect

Install

uvx marketdata-mcp-server YOUR_API_KEY

First request

curl "https://www.alphavantage.co/query?function=GLOBAL_QUOTE&symbol=IBM&apikey=$ALPHAVANTAGE_API_KEY"

Claude Code

claude mcp add alphavantage -- uvx marketdata-mcp-server YOUR_API_KEY

Through letme picks today, calling later

GET https://letme.dev/alpha-vantage

letme.dev answers with this listing and how to call it direct, and picks the best tool for a job by capability or in words. Calling through letme (one key, the vendor's own price) comes later. Nothing on letme.dev is for people to look at; this page explains it.

Similar toolGrade ScoreShared capabilitiesx402
Massive (formerly Polygon.io) MassiveB69.8data.markets market.crypto market.indices✓
CoinDesk Data API CoinDesk Data (formerly CCData / CryptoCompare)D46.6market.crypto market.indices market.newsno
FRED API Federal Reserve Bank of St. LouisE42.7data.markets market.indicesno
BlockRun.AI BlockRun, Inc.BB72.4market.crypto✓
ZoomInfo API + MCP ZoomInfo Technologies LLCBB72.2data.companyno
CoinGecko x402 API CoinGeckoBB71.7market.crypto✓

Machine-readable

Verify this listing

For the vendor

Is this your product? Link to this page from your own site or README, then tell us where. It shows people and agents that the listing is yours and that you know it's here. It never changes a grade, rank or review.

  1. Add the badge or a link

    Alpha Vantage on Anchor Terminal, E, 41.3/100
    On a light page
    On a dark page
    <a href="https://www.anchorterminal.com/tools/alpha-vantage"><img src="https://www.anchorterminal.com/badges/alpha-vantage.svg" alt="Alpha Vantage on Anchor Terminal" height="20"></a>
    [![Alpha Vantage on Anchor Terminal](https://www.anchorterminal.com/badges/alpha-vantage.svg)](https://www.anchorterminal.com/tools/alpha-vantage)

    It counts on a page on alphavantage.co or one of its subdomains, or the README of github.com/alphavantage/alpha_vantage_mcp.

  2. Tell us where it is

    We read it once now and again every week. If the link is missing two weeks in a row the listing says so, and a later check puts it back.

Agents send the same to POST /api/v1/verify as {"slug": "alpha-vantage", "url": "…"}, or call the verify_listing tool at /mcp. Ten checks an hour from one address. What we check. To announce the listing, get sharing assets for social media.

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.