A-ShareSAFE
None
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
<img src="https://img.shields.io/badge/A股数据-MCP%20工具-E6162D?style=for-the-badge&logo=data:image/svg+xml;base64,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">
[](https://opensource.org/licenses/MIT) [](https://www.python.org/downloads/) [](https://github.com/astral-sh/uv) [
41 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
get_adjust_factor_data | read | |
get_all_stock | read | |
get_balance_data | read | Quarterly balance sheet data. |
get_cash_flow_data | read | Quarterly cash flow data. |
get_deposit_rate_data | read | Benchmark deposit rates. |
get_dividend_data | read | |
get_dupont_data | read | Quarterly Dupont analysis data. |
get_fina_indicator | read | |
get_forecast_report | read | Earnings forecast report within date range. |
get_growth_data | read | Quarterly growth capability data. |
get_historical_k_data | read | |
get_hs300_stocks | read | CSI 300 constituents. |
get_index_constituents | read | Generic index constituent fetch (hs300/sz50/zz500). |
get_industry_members | read | Get all stocks in a given industry on a date. |
get_last_n_trading_days | read | Return the last N trading dates. |
get_latest_trading_date | read | Get the latest trading date up to today. |
get_loan_rate_data | read | Benchmark loan rates. |
get_market_analysis_timeframe | read | Return a human-friendly timeframe label. |
get_money_supply_data_month | read | Monthly money supply data. |
get_money_supply_data_year | read | Yearly money supply data. |
get_month_end_trading_dates | read | Return month-end trading dates for a given year. |
get_operation_data | read | Quarterly operation capability data. |
get_performance_express_report | read | Performance express report within date range. |
get_profit_data | read | Quarterly profitability data. |
get_recent_trading_range | read | Return a date range string covering the recent N trading days. |
get_required_reserve_ratio_data | read | Required reserve ratio data. |
get_stock_analysis | read | |
get_stock_basic_info | read | |
get_stock_industry | read | Get industry classification for a specific stock or all stocks on a date. |
get_suspensions | read | |
get_sz50_stocks | read | SZSE 50 constituents. |
get_trade_dates | read | |
get_zz500_stocks | read | CSI 500 constituents. |
is_trading_day | read | Check if a specific date is a trading day. |
list_industries | read | List distinct industries for a given date. |
list_tool_constants | read | |
next_trading_day | read | Get the next trading day after the given date. |
normalize_index_code | read | Normalize common index codes to Baostock format. |
normalize_stock_code | read | Normalize a stock code to Baostock format. |
previous_trading_day | read | Get the previous trading day before the given date. |
search_stocks | read |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (3)
<img src="https://img.shields.io/badge/A股数据-MCP%20工具-E6162D?style=for-the-badge&logo=data:image/svg+xml;base64,PHN2ZyB2ZXJzaW9uPSIxLjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgd2lkdGg9IjI0IiBoZ
[. Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does A-Share need?
No credential environment variables were found in its source, so it appears to need none.
How does A-Share run?
It speaks stdio, so it runs as a local process your client starts. It is published on PyPI as a-share-mcp.
How current is this page?
The grade is for one exact copy of the source (86a4afb0f335), read on 2026-09-28. The repository is watched and re-audited when it changes.