How To CookSAFE
基于Anduin2017 / HowToCook (程序员在家做饭指南)的mcp server
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
English | 简体中文
本项目 CDN 加速及安全防护由 Tencent EdgeOne 赞助
亚洲最佳 CDN、边缘和安全解决方案 - Tencent EdgeOne
让 AI 助手变身私人大厨,为你的一日三餐出谋划策!
基于Anduin2017/HowToCook打造的 MCP(Model Context Protocol)服务器,让 AI 助手能够为你推荐菜谱、规划膳食,解决"今天吃什么"的世纪难题!
数据来源:Anduin2017/HowToCook ⭐ 没有 star 的同学快去点个星星吧!
🎉 想直接使用当前 MCP?立即体验 https://howtocookmcp.weilei.site/
🎉 同时,我们也提供了 DXT(Desktop Extensions)供大家体验,一键安装到 Claude Desktop
如下:请确保你已经安装了最新版的 Claude Desktop, 当前 MCP 的 DXT 文件已上传代码库,可以自行下载或者 Fork 本仓库自行构建
本地开发如何打包成 DXT?
1.运行 npm install -g @anthropic-ai/dxt
2.在包含本地 MCP 服务器的文件夹中,运行 dxt init。也就是您 MCP 的根目录,此命令将引导您创建manifest.json
3.运行dxt pack创建 dxt 文件
现在,任何支持 DXT 的应用都可以运行您的本地 MCP 服务器。例如,使用适用于 macOS 和 Windows 的 Claude 打开该文件即可显示安装对话框
具体参阅:anthropics/dxt
📸 效果预览
🔌 支持的 MCP 客户端
本服务器适用于所有支持 MCP 协议的 AI 助手和客户端,包括但不限于:
- 🤖 Claude 桌面应用
- 📝 Cursor
- 💼 其他支持 MCP 的客户端
✨ 美味功能
该 MCP 服务器提供以下美食工具:
- 📚 查询全部菜谱 - 获取所有可用菜谱数据,做菜百科全书 -- 慎用这个--上下文太大
- 🔍 根据分类查询菜谱 - 按照分类筛选菜谱,想吃水产?早餐?荤菜?主食?一键搞定!
- 📖 查询指定菜谱 - 根据菜谱名称查询特定菜谱的完整详情,包括食材、步骤等
- 🧩 智能推荐膳食 - 根据你的忌口、过敏原和用餐人数,为你规划整整一周的美味佳肴
- 🎲 不知道吃什么 - 选择困难症福音!根据人数直接推荐今日菜单,再也不用纠结了
🚀 快速上手
📋 先决条件
- Node.js 16.0.0+ 🟢
- npm 或 yarn 📦
💻 安装步骤
- 克隆美食仓库
git clone https://github.com/worryzyy/howtocook-mcp.git cd howtocook-mcp
- 安装依赖(就像准备食材一样简单!)
npm install
- 编译代码(烹饪过程...)
npm run build
🎯 命令行参数
服务器支持以下命令行参数:
- `--transport
8c434cbf1101OBSERVED · 2026-09-27Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add howtocook-mcp -- npx -y [email protected]
{
"mcpServers": {
"howtocook-mcp": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (5)
5 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
mcp_howtocook_getAllRecipes | read | 获取所有菜谱 |
mcp_howtocook_getRecipeById | read | 根据菜谱名称或ID查询指定菜谱的完整详情,包括食材、步骤等 |
mcp_howtocook_getRecipesByCategory | read | 根据分类查询菜谱,可选分类有: ${categories.join( |
mcp_howtocook_recommendMeals | read | 根据用户的忌口、过敏原、人数智能推荐菜谱,创建一周的膳食计划以及大致的购物清单 |
mcp_howtocook_whatToEat | read | 不知道吃什么?根据人数直接推荐适合的菜品组合 |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (1 observation(s))
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (5)
const LOCAL_RECIPES_PATH = join(__dirname, '../../all_recipes.json')
@modelcontextprotocol/sdk, @types/express, commander, express, zod, @types/node, typescript
HowToCook-mcp.dxt
all_recipes.json
Gates applied: no_behavioural_pass, no_license.
8c434cbf1101full audit observations/trust-audit/mcp-server/worryzyy__how-to-cook.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-09-27 | 8c434cbf1101 | SAFE | B | 89 | first audit |
Questions
What is the How To Cook MCP server?
基于Anduin2017 / HowToCook (程序员在家做饭指南)的mcp server
What tools does How To Cook expose?
5 in total: 5 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is How To Cook safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does How To Cook need?
No credential environment variables were found in its source, so it appears to need none.
How does How To Cook run?
It speaks sse, stdio and streamable-http, so it runs as a local process your client starts. It is published on npm as howtocook-mcp at 0.2.2.
How current is this page?
The grade is for one exact copy of the source (8c434cbf1101), read on 2026-09-27. The repository is watched and re-audited when it changes.