No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by UHolli · MCP Server · ★ 85
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is browser-mcp safe to install? View the security audit →
Browser MCP Server A production-ready Model Context Protocol (MCP) server that bridges AI assistants to your local browser through a Chrome extension. Control navigation, interaction, snapshots, and screenshots from Cursor, Claude Desktop, VS Code, Windsurf, and any MCP-compatible client — without launching a separate browser instance. Table of Contents Overview Architecture Features Requirements Installation Configuration Development Testing Project Structure Troubleshooting Contributing FAQ License Overview Browser MCP connects an AI client (via stdio MCP transport) to a Chrome extension (via local WebSocket). The extension operates on your existing browser profile, preserving login sessions and reducing bot-detection friction compared to headless automation. mermaid flowchart TB subgraph Client["AI Client"] MCP["MCP Host\n(Cursor / Claude / VS Code)"] end subgraph Server["MCP Server (this repo)"] STDIO["Stdio Transport"] CORE["Tool Handler"] WS["WebSocket Bridge :9009"] REDIS[("Redis\n(optional)")] end subgraph Browser["User Browser"] EXT["Chrome Extension"] TAB["Active Tab"] end MCP |JSON-RP
| Stars | 85 |
| Forks | 979 |
| Language | TypeScript |
| Category | MCP Server |
| License | Apache-2.0 |
| Quality Score | 79.783836610872/100 |
| Last Updated | 2026-09-14 |
| Created | 2026-06-22 |
| Platforms | browser, mcp, node |
| Est. Tokens | ~16k |
These tools work well together with browser-mcp for enhanced workflows:
Looking for a browser-mcp alternative? If you're comparing browser-mcp with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Context-Engine MCP - Agentic Context Compression Suite
AI-powered E2E testing for 10 platforms. 253 MCP tools. Zero config. Works with Claude, Cursor, Windsurf, Copi
Google Analytics 4 data to AI agents, agentic workflows, and MCP clients. Give agents analysis-ready access to
MCP Server & Config Manager for 14 AI Clients — Cursor, VS Code, Claude Code, Gemini CLI, Windsurf, Zed, TRAE,
MCP server for free Google AI Mode search with citations. Query optimization, CAPTCHA handling, multi-agent su
MCP server for Claude Code/VSCode/Cursor/Windsurf to use editor self functionality. ⚡ Get real-time LSP diagno
Explore other popular mcp server tools:
browser-mcp is Browse MCP for the web, directly from Cursor etc that bridges AI assistants to your local browser through a Chrome extension | MCP helper | MCP assistant | MCP browser. It is categorized as a MCP Server with 85 GitHub stars.
browser-mcp is primarily written in TypeScript. It covers topics such as browser-mcp, cursor, mcp.
You can find installation instructions and usage details in the browser-mcp GitHub repository at github.com/UHolli/browser-mcp. The project has 85 stars and 979 forks, indicating an active community.
browser-mcp is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to browser-mcp on Agent Skills Hub include Context-Engine, flutter-skill, google-analytics-mcp. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: