EnCarAPI - Korean & Chinese used cars

io.github.ThatMojov1.0.1更新於 Oct 4, 2026

Live used car listings from South Korea (Encar, KB Chachacha, K Car) and China (Dongchedi, Che168).

已驗證Streamable HTTP可網頁執行Web Search & ScrapingBusiness & Commerce

概覽

AI 產生的概覽

讓助理搜尋韓國與中國的即時中古車車源,並取得詳細資料、檢測報告與事故紀錄。

功能
提供針對即時中古車市場的唯讀工具:search_korean_cars 與 search_chinese_cars 可依品牌、車型、年份、價格、里程、燃料、城市或是否可出口篩選車源,get_korean_car 與 get_chinese_car 會回傳完整紀錄,例如規格、配備、照片、價格歷史與賣方資訊。檢測報告與事故、過戶歷史由 get_korean_inspection、get_korean_accident_record 與 get_chinese_inspection 提供。輔助工具用於車型自動完成與有效篩選值查詢。
適用情境
適合讓助理瀏覽、比較或研究韓國與中國的中古車,例如尋找某價格以內且無事故的車型,或查看某筆車源的檢測與事故紀錄。不用於購車、出價或任何交易。
執行需求
需要 EnCarAPI 金鑰,可於 encarapi.com 取得(5 天試用)。中國資料需要 ChinaCarAPI 金鑰,或帶中國附加元件的 EnCarAPI 金鑰。託管方式為遠端 MCP 端點 OAuth 連線,或在 Authorization 標頭中送出金鑰(x-api-key 亦可);本機方式透過 npx 執行 npm 套件 encarapi-mcp,並以環境變數設定 ENCARAPI_KEY,可選 CHINACARAPI_KEY。需要網路存取。
安裝前請注意
EnCarAPI 金鑰是付費服務憑證:ENCARAPI_KEY、CHINACARAPI_KEY、Authorization 標頭與 x-china-key 標頭都是機密,把金鑰放在 URL 查詢參數中可能進入日誌,因此優先使用標頭。託管伺服器不儲存金鑰,而是將其加密進客戶端權杖,且單一權杖無法在伺服器端撤銷;輪換金鑰會切斷所有存取。自行託管 OAuth 需要 MCP_OAUTH_SECRET,變更它會讓所有客戶端登出。工具為唯讀,但車源資料來自第三方平台,本服務與這些平台無關。

安裝

在 SourceWeft 中

  1. 開啟 儀表板中的 EnCarAPI - Korean & Chinese used cars,將其新增到工作區。
  2. 為需要使用其工具的對話啟用該服務。

Web executable,透過 Streamable HTTP。 遠端服務在工作區中設定後即可從網頁執行環境執行。

其他 MCP 客戶端

把它新增到你客戶端的 mcpServers 設定中。

{
  "mcpServers": {
    "encarapi-mcp": {
      "type": "http",
      "url": "https://mcp.encarapi.com/mcp"
    }
  }
}

README

EnCarAPI MCP server: Korean and Chinese used car data for AI assistants

Model Context Protocol server for EnCarAPI. Lets Claude, Cursor, ChatGPT and other MCP clients search live used car listings from South Korea (Encar, KB Chachacha, K Car) and China (Dongchedi, Che168), and pull full details, inspection reports and accident records.

An API key is required. Get one (5-day trial) at encarapi.com. Chinese data works with a ChinaCarAPI key or an EnCarAPI key with the China add-on.

Tools

ToolWhat it does
search_korean_carsSearch Korean listings (brand, model, year, price in 10,000 KRW, mileage, fuel, accident-free, source: encar / kbc / kcar / all)
get_korean_carFull detail for one listing (specs, options, photos, price history, seller)
get_korean_inspectionOfficial Korean inspection report
get_korean_accident_recordInsurance accident history and ownership changes
find_korean_modelsModel name autocomplete across brands
korean_filter_valuesValid filter values
search_chinese_carsSearch Chinese listings (brand, model, year, price in CNY, mileage, city, export-ready)
get_chinese_carFull record for one Chinese listing
get_chinese_inspectionChinese inspection report (accident, flood, fire, EV battery)
chinese_modelsModels of a brand with listing counts

All tools are read-only.

Option 1: hosted (no install)

Add this URL as a remote MCP server:

https://mcp.encarapi.com/mcp

In clients with OAuth support the URL is all you need. On first use a browser window opens, you paste your EnCarAPI key once, and the client is connected:

  • Claude (claude.ai, desktop, mobile): Settings - Connectors - Add custom connector, paste the URL
  • ChatGPT (developer mode): Settings - Connectors - create a connector with the URL
  • Cursor: {"mcpServers": {"encarapi": {"url": "https://mcp.encarapi.com/mcp"}}} in .cursor/mcp.json
  • VS Code: "MCP: Add Server" - HTTP - paste the URL
  • Claude Code:
bash
claude mcp add --transport http encarapi https://mcp.encarapi.com/mcp

The key is checked once and is not stored on the server: it is encrypted into the token your client receives. To disconnect, remove the server in your client; to cut off access everywhere, rotate your key at encarapi.com.

Alternative: send the key yourself

Clients without OAuth support, scripts and gateways can send the key directly:

https://mcp.encarapi.com/mcpAuthorization: Bearer YOUR_ENCARAPI_KEY

Claude Code:

bash
claude mcp add --transport http encarapi https://mcp.encarapi.com/mcp \  --header "Authorization: Bearer YOUR_ENCARAPI_KEY"

The x-api-key: YOUR_ENCARAPI_KEY header works as well. Clients that only accept a URL and have no OAuth support can use https://mcp.encarapi.com/mcp?key=YOUR_ENCARAPI_KEY (a header is preferred, since URLs can end up in logs). A separate ChinaCarAPI key goes into the x-china-key header, or into the second field of the browser form.

Option 2: local (npx)

Claude Desktop (claude_desktop_config.json), Cursor (.cursor/mcp.json) and most other clients:

json
{  "mcpServers": {    "encarapi": {      "command": "npx",      "args": ["-y", "encarapi-mcp"],      "env": {        "ENCARAPI_KEY": "YOUR_ENCARAPI_KEY"      }    }  }}

Claude Code:

bash
claude mcp add encarapi -e ENCARAPI_KEY=YOUR_ENCARAPI_KEY -- npx -y encarapi-mcp

Optional: CHINACARAPI_KEY for a separate ChinaCarAPI key.

Example prompts

  • "Find accident-free Genesis GV80 from 2022 or newer under 50 million KRW and compare the mileage."
  • "Show the inspection report and accident record for Encar listing 41000001."
  • "What are the cheapest export-ready BYD Seal listings in China right now?"

Self-hosting the HTTP endpoint

bash
docker build -t encarapi-mcp .docker run -p 3000:3000 encarapi-mcp     # POST /mcp, GET /health

Stateless: every request carries its own key, nothing is stored.

To enable the OAuth flow ("connect by URL only"), set two environment variables:

VariableMeaning
MCP_OAUTH_SECRETAt least 32 random characters, e.g. openssl rand -base64 48. Enables OAuth; without it the server only accepts keys sent by the client.
MCP_PUBLIC_URLPublic origin of the server, e.g. https://mcp.example.com (default https://mcp.encarapi.com). Tokens are bound to <MCP_PUBLIC_URL>/mcp.
bash
docker run -p 3000:3000 -e MCP_OAUTH_SECRET="$(openssl rand -base64 48)" \  -e MCP_PUBLIC_URL=https://mcp.example.com encarapi-mcp

This adds /.well-known/oauth-protected-resource, /.well-known/oauth-authorization-server, /register, /authorize and /token (OAuth 2.1 with PKCE, dynamic client registration). There is still no database: client ids, authorization codes and tokens are encrypted, self-contained values (AES-256-GCM) that carry the key. Consequences:

  • Changing MCP_OAUTH_SECRET signs out all OAuth clients (they reconnect through the browser).
  • Access tokens last 1 hour, refresh tokens 90 days and are replaced on every use.
  • Single use of authorization codes and of replaced refresh tokens is tracked in memory, so it is best-effort: it does not survive a restart and is not shared between instances.
  • A single token cannot be revoked on the server. Rotating the EnCarAPI key cuts off all access.

Links

EnCarAPI is an independent service and not affiliated with Encar, KB Chachacha, K Car, Dongchedi or Che168.

License

MIT

來源:README.md,提交 e1d8c9f

工具

0
工具後設資料尚未被收錄。

版本歷史

1
  1. v1.0.1最新Oct 4, 2026