MCP server for loading authenticated web pages using Chrome DevTools Protocol
⚠️ Security Notice: MCPBrowser extracts webpage content and provides it to your AI agent (e.g., GitHub Copilot, Claude, Kiro, Antigravity), which then sends it to the LLM provider it uses (e.g., Anthropic, OpenAI, GitHub) for processing. Make sure you trust both your agent and the LLM provider — especially when accessing pages with sensitive or private data. MCPBrowser combines private data…
Abgeleitet aus den Transporten, die dieser Eintrag deklariert (stdio). Ein Client, der hier nicht steht, ist damit nicht ausgeschlossen — Forge kann ihn nur nicht bestätigen.
Contained to critical — not scanned yet — tool surface unknown. Known so far: runs on your machine.
At worst: Arbitrary execution, or execution together with a live credential. A compromise here is a compromise of the host or the account.
Started as a local process by your MCP client, which means it runs as you: your shell, your environment variables, your filesystem, your network.
not scanned yet — tool surface unknown. Nothing is known about what this entry can do, which is not the same as it being able to do little.
No credential declaration found, from the publisher, the upstream registry, or the README. That is an absence of evidence, not evidence this entry needs nothing.
Never scanned, so neither the install-time scripts nor the size of the dependency tree behind this entry has been read.
Blast radius measures what this entry can reach, not how likely it is to misbehave — that is the trust score, and the two are deliberately separate axes. A high blast radius is not a defect: a filesystem server is supposed to write files. It never moves the trust grade in either direction. How this is calculated →
Die Verifizierung bestätigt die Identität des Publishers (die Inhaberschaft am Repo), nicht die Sicherheit des Codes. Der Sicherheits-Scan deckt bekannte CVEs und verdächtige Installationsskripte ab.
Forge hat zu diesem Eintrag keinen Scan verzeichnet und hat daher keine Beobachtung seiner Tool-Oberfläche. Das ist das Fehlen eines Belegs, nicht der Beleg, dass er keine Tools offenlegt.
⚠️ Security Notice: MCPBrowser extracts webpage content and provides it to your AI agent (e.g., GitHub Copilot, Claude, Kiro, Antigravity), which then sends it to the LLM provider it uses (e.g., Anthropic, OpenAI, GitHub) for processing. Make sure you trust both your agent and the LLM provider — especially when accessing pages with sensitive or private data. MCPBrowser combines private data access, untrusted content exposure, and external communication (the MCP "lethal trifecta") — all tool…
Dieses Paket wurde noch nicht gescannt, daher wurde kein Abhängigkeitsbaum aufgelöst.