Yuque Mcp Server — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Yuque Mcp Server (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
MCP server for Yuque (语雀) — expose your knowledge base to AI assistants through the Model Context Protocol.
🌐 [Website](https://yuque.github.io/yuque-ecosystem/) · 📖 API Docs · 中文文档
Visit Yuque Developer Settings to create a personal access token.
Use the built-in CLI to auto-configure your MCP client in one command:
npx yuque-mcp install --token=YOUR_TOKEN --client=cursorSupported clients: claude-desktop, vscode, cursor, windsurf, cline, trae, qoder, opencode
Or use the interactive setup wizard:
npx yuque-mcp setupThe CLI will automatically find the correct config file for your OS, merge with any existing configuration (without overwriting other servers), and print a success message.
<details> <summary>Prefer to configure manually? Click to expand all client configs.</summary>
Choose your preferred client below:
<details open> <summary><b>Claude Code</b></summary>
claude mcp add yuque-mcp -- npx -y yuque-mcp --token=YOUR_TOKENOr using environment variables:
export YUQUE_PERSONAL_TOKEN=YOUR_TOKEN
claude mcp add yuque-mcp -- npx -y yuque-mcp</details>
<details> <summary><b>Claude Desktop</b></summary>
Add to your claude_desktop_config.json:
~/Library/Application Support/Claude/claude_desktop_config.json%APPDATA%\Claude\claude_desktop_config.json{
"mcpServers": {
"yuque": {
"command": "npx",
"args": ["-y", "yuque-mcp"],
"env": {
"YUQUE_PERSONAL_TOKEN": "YOUR_TOKEN"
}
}
}
}</details>
<details> <summary><b>VS Code (GitHub Copilot)</b></summary>
Add to .vscode/mcp.json in your workspace:
{
"servers": {
"yuque": {
"command": "npx",
"args": ["-y", "yuque-mcp"],
"env": {
"YUQUE_PERSONAL_TOKEN": "YOUR_TOKEN"
}
}
}
}Then enable Agent mode in GitHub Copilot Chat.
</details>
<details> <summary><b>Cursor</b></summary>
Add to your Cursor MCP configuration (~/.cursor/mcp.json):
{
"mcpServers": {
"yuque": {
"command": "npx",
"args": ["-y", "yuque-mcp"],
"env": {
"YUQUE_PERSONAL_TOKEN": "YOUR_TOKEN"
}
}
}
}</details>
<details> <summary><b>Windsurf</b></summary>
Add to your Windsurf MCP configuration (~/.windsurf/mcp.json):
{
"mcpServers": {
"yuque": {
"command": "npx",
"args": ["-y", "yuque-mcp"],
"env": {
"YUQUE_PERSONAL_TOKEN": "YOUR_TOKEN"
}
}
}
}</details>
<details> <summary><b>Cline (VS Code)</b></summary>
Add to your Cline MCP settings (~/Library/Application Support/Code/User/globalStorage/saoudrizwan.claude-dev/settings/cline_mcp_settings.json):
{
"mcpServers": {
"yuque": {
"command": "npx",
"args": ["-y", "yuque-mcp"],
"env": {
"YUQUE_PERSONAL_TOKEN": "YOUR_TOKEN"
}
}
}
}</details>
<details> <summary><b>Trae</b></summary>
In Trae, open Settings and navigate to the MCP section, then add a new stdio-type MCP Server with the following configuration:
npx-y yuque-mcpYUQUE_PERSONAL_TOKEN=YOUR_TOKENSee Trae MCP documentation for detailed instructions.
</details>
More clients: Any MCP-compatible client that supports stdio transport can use yuque-mcp. The general pattern is: command =npx, args =["-y", "yuque-mcp"], env =YUQUE_PERSONAL_TOKEN.
</details>
Ask your AI assistant to search your Yuque docs, create documents, or manage books.
The server supports multiple ways to provide your Yuque API token:
| Method | Environment Variable / Flag | Description |
|---|---|---|
| Personal Token (recommended) | YUQUE_PERSONAL_TOKEN | For accessing your personal Yuque account |
| CLI Argument | --token=YOUR_TOKEN | Pass directly as a command-line argument |
Priority order: YUQUE_PERSONAL_TOKEN > --token
For privately deployed Yuque instances, set the YUQUE_BASE_URL environment variable or use the --base-url CLI argument:
# Environment variable
export YUQUE_BASE_URL=https://yuque.example.com/api/v2
# CLI argument
npx yuque-mcp --token=YOUR_TOKEN --base-url=https://yuque.example.com/api/v2
# Install with custom base URL
npx yuque-mcp install --token=YOUR_TOKEN --client=cursor --base-url=https://yuque.example.com/api/v2When not set, the default is https://www.yuque.com/api/v2.
| Category | Tools |
|---|---|
| User | yuque_get_user |
| Search | yuque_search |
| Books | yuque_list_books, yuque_get_book, yuque_create_book, yuque_update_book |
| Docs | yuque_list_docs, yuque_get_doc, yuque_create_doc, yuque_update_doc |
| Resources | yuque_get_resource, yuque_create_resource, yuque_update_resource |
| TOC | yuque_get_toc, yuque_update_toc |
| Notes | yuque_list_notes, yuque_get_note, yuque_create_note, yuque_update_note |
| Error | Solution |
|---|---|
YUQUE_PERSONAL_TOKEN is required | Set the environment variable YUQUE_PERSONAL_TOKEN or pass --token=YOUR_TOKEN |
401 Unauthorized | Token is invalid or expired — regenerate at Yuque Settings |
429 Rate Limited | Too many requests — wait a moment and retry |
410 Gone | The resource has been permanently deleted or the API endpoint is deprecated — verify the target document/repo still exists |
| Tool not found | Update to the latest version: npx -y yuque-mcp@latest |
npx command not found | Install Node.js (v18 or later) |
git clone https://github.com/yuque/yuque-mcp-server.git
cd yuque-mcp-server
npm install
npm test # run tests
npm run build # compile TypeScript
npm run dev # dev mode with hot reload~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.