12306BLOCK
12306 MCP Server 是一个基于 Model Context Protocol (MCP) 的高性能火车票查询后端系统。它通过标准化接口提供官方 12306 的实时数据服务,包括余票查询、车站信息、列车经停站、中转换乘方案等核心功能。
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
基于 Model Context Protocol (MCP) 的 12306 火车票查询服务
[](https://pypi.org/project/mcp-server-12306) [](https://pypi.org/project/mcp-server-12306) [](https://pypi.org/project/mcp-server-12306) [](https://hub.docker.com/r/drfccv/mcp-server-12306) [](https://github.com/drfccv/mcp-server-12306/blob/main/LICENSE) [](https://github.com/modelcontextprotocol/python-sdk) [](docs/) [](https://github.com/drfccv/mcp-server-12306)
支持 余票 / 票价 / 车站 / 经停 / 换乘 / 时间 六大查询能力,开箱即用,适配 AI 助手、自动化脚本、智能终端等场景。
📑 目录
- ✨ 功能特性
- 🚀 快速开始
- 环境要求
- 方式一:Stdio 模式(本地客户端推荐)
- 方式二:Streamable HTTP 模式(远程部署)
- 方式三:Docker 部署
- 🛠️ 工具一览
- [⚙️ 配
3ab3365ddc3eOBSERVED · 2026-10-02Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add mcp-server-12306 -- None mcp-server-12306==0.5.0.post20260930
Trust audit
BLOCKgrade D · trust 69/100 Do not install this without reading the findings. The audit found something that could harm you or your machine.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | FAIL |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- declared (7 observation(s))
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (3)
async with httpx.AsyncClient(verify=False) as client:
verify=False
Gates applied: no_behavioural_pass.
3ab3365ddc3efull audit observations/trust-audit/mcp-server/drfccv__12306-1.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-02 | 3ab3365ddc3e | BLOCK | D | 69 | first audit |
Questions
What is the 12306 MCP server?
12306 MCP Server 是一个基于 Model Context Protocol (MCP) 的高性能火车票查询后端系统。它通过标准化接口提供官方 12306 的实时数据服务,包括余票查询、车站信息、列车经停站、中转换乘方案等核心功能。
Is 12306 safe to connect to an agent?
No — not without reading the findings first. The audit graded it D (69/100) and found 2 critical or high issues in the source. Each one is listed on this page with the file and line it is on.
What credentials does 12306 need?
No credential environment variables were found in its source, so it appears to need none.
How does 12306 run?
It speaks stdio and streamable-http, so it runs as a local process your client starts. It is published on PyPI as mcp-server-12306.
How current is this page?
The grade is for one exact copy of the source (3ab3365ddc3e), read on 2026-10-02. The repository is watched and re-audited when it changes.