# Actual Budget (io.github.henfrydls/actual-budget-mcp@0.8.2)

> Source: <https://mcpindex.ai/server/io-github-henfrydls-actual-budget-mcp>
> Published: 2026-09-01 01:17:42+00:00

[← Index](/leaderboard)

# Actual Budget

Spending analysis and safe writes for Actual Budget: every delete previews and asks first.

The current version, v0.8.2, was published to the official MCP registry on 2026-09-01. It is distributed as actual-budget-mcp on npm and as the Docker image ghcr.io/henfrydls/actual-budget-mcp:0.8.2, filed under Other by this index, and declares 6 environment variables. Removals and unreachable sources are measured across every server this index tracks, contract drift across the servers that answer in consecutive snapshots; [the index's current counts](/stats) put this record in context.

## Using Actual Budget in Claude, Cursor, Gemini CLI, Cline, or Zed?

MCP tool contracts can change remotely with no version bump. The mcpindex gate pins each contract and **HOLDs the call** when it drifts-before your agent acts. Zero credentials. This is not the package install for this server itself (use **Install this server** for that).

Rewrites your MCP host config so each server launches behind the gate. Inspect first: curl -fsSL https://mcpindex.ai/install.sh | less

```
uv tool install mcpindex-gate && mcpindex-config-wire
```

[method](/methodology)

Verdict not yet evaluated for this tool. The semantic screen takes adversarial cases first; coverage rolls out as the corpus expands (15/150 labels to graduation). The deterministic conformance probe is built but has not yet run on the public corpus, so a recorded verdict here is REVIEW or UNVERIFIED, never a clearing ALLOW. Until a verdict is recorded, an agent should treat this tool as not-yet-cleared and fall back to its own checks. Method: [the eval, four-state verdict, honest limits](/methodology).

Own this server? [Screen its description →](/screen)

## That verdict was true at screening time (snapshot 2026-09-01).

Contracts can change after screening, with no version bump. The gate pins Actual Budget’s tool contracts on first sight and holds any silent change before your agent acts - the check that keeps being true on Tuesday.

[See your first HOLD in 2 minutes →](/guides/install-the-gate-first-hold)

Related: [how to trust an MCP server](/guides/how-to-trust-an-mcp-server) · [screen before install](/guides/screen-mcp-server-before-install) · [silent contract drift](/guides/mcp-silent-contract-drift)

`ACTUAL_SERVER_URL`

URL of your Actual Budget server, for example http://localhost:5006

`ACTUAL_PASSWORD`

Password for your Actual Budget server

`ACTUAL_BUDGET_ID`

Your budget's Sync ID, found under Settings > Show advanced settings

`ACTUAL_ENCRYPTION_PASSWORD`

Only needed if your budget file is end-to-end encrypted

`ACTUAL_READ_ONLY`

Set to 1 to hide every write tool from the model, exposing only reads and analysis

`ACTUAL_DATA_DIR`

Directory for the local budget cache

`ACTUAL_SERVER_URL`

URL of your Actual Budget server. Inside the container localhost is the container, so use host.docker.internal

`ACTUAL_PASSWORD`

Password for your Actual Budget server

`ACTUAL_BUDGET_ID`

Your budget's Sync ID, found under Settings > Show advanced settings

`ACTUAL_READ_ONLY`

Set to 1 to hide every write tool from the model, exposing only reads and analysis

[methodology](/methodology)

[AgentRoamai.agentroam/agentroam](/server/ai-agentroam-agentroam)

Buy travel eSIMs, gift cards and mobile top-ups with crypto — user confirms before any order.

[Authoryzeai.authoryze/authoryze](/server/ai-authoryze-authoryze)

Give your AI agent a spending limit: approval controls and single-use virtual cards.

[io.github.hengkp/rtcfio.github.hengkp/rtcf](/server/io-github-hengkp-rtcf)

Turns rough requests into sharp Role/Task/Context/Format prompts. Thai and English.
