| FMRS | 41 / 100 · D | 74 / 100 · B | 72 / 100 · B |
| Reliability | 5 / 20 | 11 / 20 | 10 / 20 |
|---|
| Security and permissions | 8 / 20 | 15 / 20 | 15 / 20 |
|---|
| Maintenance | 7 / 20 | 17 / 20 | 16 / 20 |
|---|
| Documentation | 9 / 20 | 17 / 20 | 17 / 20 |
|---|
| Setup experience | 12 / 20 | 14 / 20 | 14 / 20 |
| Best for | - Individuals using LunchMoney to manage finances and wanting to automate queries and operations via AI assistants
- Developers integrating financial data with AI workflows
- Users who want quick setup and use of an MCP server
| - Developers needing quick, API-key-free web search capabilities
- Privacy-conscious users who prefer local search execution
- AI application development with Claude Desktop or Claude Code
| - Privacy-conscious developers who want local data storage.
- Researchers who need AI-assisted management of large note collections.
- Users of Markdown editors like Obsidian.
|
| Not for | - Users without a LunchMoney account or API token
- Scenarios requiring multi-user or centralized server-side management (current config is single-user)
- Users needing HTTP transport without self-deployment (can use Cloudflare Worker or self-hosted option)
| - Enterprise applications requiring high-scale, reliable search APIs
- Users needing advanced search features like custom ranking or filters
- Accessing sites blocked by TLS fingerprinting without installing the optional browser backend
| - Users needing cloud sync and mobile access (unless using the paid cloud service).
- Minimalists who want zero configuration.
- Scenarios requiring large-scale vector databases and complex retrieval (local SQLite may be insufficient).
|
| Required permissions | - Requires LunchMoney API token; permissions depend on token scope, may include read/write access to transactions, accounts, budgets, etc.
- Can access the filesystem (only for attach_file_to_transaction, restricted to JPEG/PNG/HEIC/HEIF/PDF types)
- Can make network requests to LunchMoney API
| - Outbound network access to DuckDuckGo and other websites
- Reads environment variables for SafeSearch, region, and CA certificates
- Optionally reads a CA certificate file (for TLS-intercepting proxies)
| - Read and write to the local filesystem (default: ~/basic-memory).
- Perform file and directory operations (create, edit, delete).
- Access local SQLite database (or Postgres/Milvus if configured).
|
| Risks and side effects | - API token compromise could lead to unauthorized access and modification of financial data
- Tools can delete transactions, accounts, balance history; accidental use may cause data loss
- When deployed over HTTP remotely without LUNCHMONEY_ATTACHMENTS_DIR set, there is a risk of arbitrary file reads
- Uses v2 API (alpha), subject to changes
| - Search endpoints may occasionally return empty results or errors, especially when blocked
- Content fetching may be subject to SSRF protection, blocking private or loopback addresses by default
- Misuse could lead to rate limiting or IP blocking
| - Tools have write operations that may unintentionally modify or delete notes.
- Edit operations may overwrite existing content, though there are protections.
- Semantic search and reranking features may require model downloads, adding latency.
- Local data backups are the user's responsibility.
|
| Supported clients | Claude Desktop, Claude Code, Codex CLI | Claude Desktop, Claude Code | Claude Desktop, Claude Code, Codex CLI, Cursor, VS Code, ChatGPT, Obsidian |
| Tools | 59 | 2 | 21 |