apitap — security grade SAFE, quality 75/100

Security audit verdict: SAFE · quality 75/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by n1byn1kt · MCP Server · ★ 126

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is apitap safe to install? View the security audit →

About apitap

ApiTap The CLI, MCP server, and npm library that turns any website into an API — no docs, no SDK, no browser. ApiTap is a CLI, MCP server, and npm library that lets AI agents (and you) browse the web through APIs instead of browsers. It ships with 6,400+ pre-mapped endpoints across 280+ APIs (Stripe, GitHub, Twilio, Slack, Spotify, and more) — ready to query on install. For sites not in the database, it captures API traffic from any website, generates reusable "skill files," and replays them directly with . No DOM, no selectors, no flaky waits. Token costs drop 20-100x compared to browser automation. The web was built for human eyes; ApiTap makes it native to machines. bash Import 280+ APIs instantly — no browser needed apitap import --from apis-guru --limit 100 Done: 87 imported, 3 failed, 10 skipped 1,847 endpoints added across 87 APIs Replay any imported endpoint immediately apitap replay api.stripe.com get-listcharges limit=5 Or capture a site's private API apitap capture https://polymarket.com apitap replay gamma-api.polymarket.com get-events Or read content directly apitap read https://en.wikipedia.org/wiki/Node.js ✓ Wikipedia decoder:

ai-agentapibrowser-automationmcpmcp-serverplaywrightskill-fileweb-scraping

Quick Facts

Stars126
Forks10
LanguageTypeScript
CategoryMCP Server
LicenseApache-2.0
Quality Score74.77427498066/100
Open Issues1
Last Updated2026-09-29
Created2026-02-14
Platformsbrowser, cli, mcp, node
Est. Tokens~21k

apitap alternative? Top 6 similar tools

Looking for a apitap alternative? If you're comparing apitap with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • camofox-mcp by redf0x1 · ⭐ 99

    Anti-detection browser MCP server for AI agents — navigate, interact, and automate the web without getting blo

  • web-agent-protocol by OTA-Tech-AI · ⭐ 509

    🌐Web Agent Protocol (WAP) - Record and replay user interactions in the browser with MCP support

  • XActions by nirholas · ⭐ 559

    ⚡ The Complete X/Twitter Automation Toolkit — Scrapers, MCP server for AI agents (Claude/GPT), CLI, browser sc

  • Mantic.sh by marcoaapfortes · ⭐ 555

    A structural code search engine for Al agents.

  • anytype-mcp by anyproto · ⭐ 525

    An MCP server enabling AI assistants to interact with Anytype - your encrypted, local and collaborative wiki -

  • mcp-google-map by cablate · ⭐ 466

    18 Google Maps tools and 3 Agent Skills for place search, routes, travel planning, and local SEO—via MCP or st

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is apitap?

apitap is CLI, MCP server, and npm library that turns any website into an API — no docs, no SDK, no browser.. It is categorized as a MCP Server with 126 GitHub stars.

What programming language is apitap written in?

apitap is primarily written in TypeScript. It covers topics such as ai-agent, api, browser-automation.

How do I install or use apitap?

You can find installation instructions and usage details in the apitap GitHub repository at github.com/n1byn1kt/apitap. The project has 126 stars and 10 forks, indicating an active community.

What license does apitap use?

apitap is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to apitap?

The top alternatives to apitap on Agent Skills Hub include camofox-mcp, web-agent-protocol, XActions. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools