Back to Browse

Spendtron MCP Server

Developer ToolsLow Risk10.0MCP RegistryRemote
Free

Server data from the Official MCP Registry

Rank your GitHub org's Actions workflows by real compute cost. Read-only audit via GitHub App.

About

Rank your GitHub org's Actions workflows by real compute cost. Read-only audit via GitHub App.

Remote endpoints: streamable-http: https://spendtron.com/mcp

Security Report

10.0
Low Risk10.0Low Risk

Valid MCP server (2 strong, 2 medium validity signals). 1 known CVE in dependencies Imported from the Official MCP Registry. Trust signals: 3 highly-trusted packages.

1 tool verified · Open access · 1 issue found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

env_vars

Check that this permission is expected for this type of plugin.

file_system

Check that this permission is expected for this type of plugin.

HTTP Network Access

Connects to external APIs or services over the internet.

How to Connect

Remote Plugin

No local installation needed. Your AI client connects to the remote endpoint directly.

Add this to your MCP configuration to connect:

{
  "mcpServers": {
    "io-github-swantron-spendtron": {
      "url": "https://spendtron.com/mcp"
    }
  }
}

Documentation

View on GitHub

From the project's GitHub README.

spendtron

A read-only tool that finds which GitHub Actions workflow is eating your CI bill and ranks workflows and repos by real compute cost.

Delivered as an MCP server — call check_actions_cost from Claude, ChatGPT, or any MCP-compatible client, no dashboard required. Auth is a GitHub App (read-only: Actions + Metadata) plus a spendtron API key, passed as a bearer token. One free audit per connected org, then $99/mo via Stripe.

The underlying audit logic started as ~/code/ci-audit/actions-teardown.sh (bash + gh api) — lib/auditActions.js is the same algorithm, ported to run per-installation against many customers' orgs instead of one local gh-authenticated user.

Status

Real product, not a waitlist — see HANDOFF.md/FINDINGS.md/CARRD.md in ~/code/ci-audit for the history of how this got here (an earlier waitlist-and-post-to-Reddit attempt correctly got abandoned; the audit logic itself was always real).

The GitHub App must be public (GitHub → spendtron-app → Advanced → Make this GitHub App public) so anyone can hit Connect GitHub. That toggle lives in the GitHub UI, not this repo.

Setup

  1. Copy .env.example to .env.local (or set these in Cloud Run's Secret Manager for prod).
  2. Create a GitHub App at github.com/settings/apps/new — slug spendtron-app, permissions: Actions: Read-only, Metadata: Read-only. Callback URL: <your deployed host>/github/callback. Make the App public before sending customers to /github/install.
  3. Create a Neon Postgres database, run db/schema.sql against it.
  4. Create a Stripe Price for $99/mo; put its ID in STRIPE_PRICE_ID. Enable the Customer Portal. Point a Stripe webhook at /stripe/webhook for checkout.session.completed and customer.subscription.*.
  5. Map both spendtron.com and www.spendtron.com to the Cloud Run service (www should CNAME to ghs.googlehosted.com at Squarespace). The app 301s www → apex.
  6. Privacy / terms for Stripe: https://spendtron.com/privacy and https://spendtron.com/terms.
  7. npm install && npm start.

Test

npm test — covers the cost-math port (must match actions-teardown.sh's bash/awk exactly) and API-key auth, against a mocked GitHub client (no live credentials needed for these).

Reviews

No reviews yet

Be the first to review this server!