clawdcursor

MCPcommunauté
v1.5.10Amr DabbasMITMis à jour il y a 1 jnpmGitHub

Local MCP server that gives any AI agent safe cross-OS desktop control — the fallback execution layer for when APIs, CLIs, and direct integrations aren't available. Works with any tool-calling model (Claude, GPT, Gemini, Llama) on Windows, macOS, and Linu

Fonctionne dans
ClaudeCursorCopilotGemini

Déduit des transports déclarés par cette annonce (stdio). Un client absent de cette liste n’est pas écarté pour autant — c’est simplement quelque chose que Forge ne peut pas confirmer.

Indexé automatiquement depuis des sources publiques. Pas encore vérifié par son développeur sur Forge.Revendiquer cette annonce →
31Téléch./sem.
402Étoiles GitHub
59Forks
il y a 1 jDernière mise à jour
Paquet
AuteurAmr Dabbas
LicenceMIT
Version1.5.10
Sourcenpm+mcp-registry
Statut de confiance
B
60/100Bon
✓Listé dans l’index Forge+10/10
—Identité de l’éditeur vérifiée+0/20
→ Éditeur : exécutez `forge publish` depuis le dépôt du paquet pour revendiquer la propriété
—Signature de publication Ed25519+0/5
→ Incluse automatiquement quand l’éditeur exécute `forge publish`
—Vérification de domaine+0/5
→ Éditeur : hébergez /.well-known/forge.json sur la page d’accueil du paquet avec { "publisher": "<github-login>" }
—npm Trusted Publishing (Sigstore)+0/5
→ Publiez depuis GitHub Actions avec --provenance pour que l’attestation lie ce paquet à ce dépôt
—Correspondance de mainteneur npm+0/5
→ Acquis dès que votre identité est vérifiée ci-dessus et que ce login est mainteneur npm de ce paquet
✓Analyse CVE · propre+30/30
✓Analyse statique · propre+20/20
Collez-le dans Claude Code, Cursor ou tout assistant d’IA pour combler toutes les lacunes
StatutIndexé par la communauté
ÉditeurNon vérifié
SignatureNon signé
Domaine—
Provenance—
Dépendances✓ 60 résolues+ · aucune vulnérable
Surface d’outils40 outils · 1 privilégiés
Analyse de sécurité✓ Proprev1.5.10 · aujourd’huiQuelle est l’efficacité de cette analyse ?
ÉvaluationsAucune
Indexé28 sept. 2026

La vérification confirme l’identité de l’éditeur (la propriété du dépôt), pas la sûreté du code. L’analyse de sécurité couvre les CVE connues et les scripts d’installation suspects.

Outils

40 outils · 1 privilégiés
Extrait statiquement du paquet publiév1.5.10 · 16h ago

Lu dans le code que npm livre réellement, au moment de l’analyse. Le paquet n’a jamais été exécuté. Les outils enregistrés dynamiquement à l’exécution, ou cachés dans du code empaqueté ou minifié, peuvent passer inaperçus — c’est donc un plancher de la surface d’outils, pas un recensement complet.

a11y_expandExpand a tree node, combo box, or disclosure element by accessibility name.

Expand a tree node, combo box, or disclosure element by accessibility name.

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_collapseCollapse a tree node, combo box, or disclosure element by accessibility name.

Collapse a tree node, combo box, or disclosure element by accessibility name.

Aucun schéma d’entrée n’a été publié pour cet outil.

set_field_valueSet the value of a named text field directly via accessibility — more

Set the value of a named text field directly via accessibility — more

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_toggleToggle a checkbox, switch, or toggle-button by accessibility name.

Toggle a checkbox, switch, or toggle-button by accessibility name.

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_selectSelect a list item, tab, or radio button by accessibility name.

Select a list item, tab, or radio button by accessibility name.

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_get_elementFetch a single element by accessibility name — returns name, role,

Fetch a single element by accessibility name — returns name, role,

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_get_valueRead the current value of a named text field, slider, or editable element

Read the current value of a named text field, slider, or editable element

Aucun schéma d’entrée n’a été publié pour cet outil.

get_element_stateReturn only the state flags of a named element (focused, enabled/disabled,

Return only the state flags of a named element (focused, enabled/disabled,

Aucun schéma d’entrée n’a été publié pour cet outil.

a11y_list_childrenList a11y elements geometrically contained within a named parent element.

List a11y elements geometrically contained within a named parent element.

Aucun schéma d’entrée n’a été publié pour cet outil.

read_screenSTART HERE — cheapest perception. Read the accessibility tree of the screen: returns WINDOWS, FOCUSED WINDOW UI TREE (buttons, inputs, text elements with coordinates), and FOCUSED ELEMENT. If the focused window is a browser with CDP attached, also appends a BROWSER DOM section for canvas/SPA conten…

START HERE — cheapest perception. Read the accessibility tree of the screen: returns WINDOWS, FOCUSED WINDOW UI TREE (buttons, inputs, text elements with coordinates), and FOCUSED ELEMENT. If the focused window is a browser with CDP attached, also appends a BROWSER DOM section for canvas/SPA conten…

Aucun schéma d’entrée n’a été publié pour cet outil.

get_windowsList all visible windows with their title, process name, PID, and bounds.

List all visible windows with their title, process name, PID, and bounds.

Aucun schéma d’entrée n’a été publié pour cet outil.

get_active_windowGet the currently focused/foreground window.

Get the currently focused/foreground window.

Aucun schéma d’entrée n’a été publié pour cet outil.

get_focused_elementGet the currently focused UI element (keyboard focus). Returns name, control type, value, bounds, and process ID.

Get the currently focused UI element (keyboard focus). Returns name, control type, value, bounds, and process ID.

Aucun schéma d’entrée n’a été publié pour cet outil.

focus_windowBring a window to the foreground. Matches by process name, PID, or title substring. Verifies focus after attempt.

Bring a window to the foreground. Matches by process name, PID, or title substring. Verifies focus after attempt.

Aucun schéma d’entrée n’a été publié pour cet outil.

find_elementSearch for UI elements by name, control type, or automation ID within a process. Returns matching elements with bounds. For browser windows with CDP attached, falls back to a DOM query when UIA returns empty so canvas / SPA content is reachable too (results are flagged with a "via CDP DOM" header a…

Search for UI elements by name, control type, or automation ID within a process. Returns matching elements with bounds. For browser windows with CDP attached, falls back to a DOM query when UIA returns empty so canvas / SPA content is reachable too (results are flagged with a "via CDP DOM" header a…

Aucun schéma d’entrée n’a été publié pour cet outil.

read_clipboardRead the current text content of the OS clipboard.

Read the current text content of the OS clipboard.

Aucun schéma d’entrée n’a été publié pour cet outil.

write_clipboardprivilégiéWrite text to the OS clipboard. Tier 2 (mutation): overwrites the user's clipboard, which can hijack subsequent copy/paste flows. Reversibility is via a fresh user-initiated copy, not by the agent.

Write text to the OS clipboard. Tier 2 (mutation): overwrites the user's clipboard, which can hijack subsequent copy/paste flows. Reversibility is via a fresh user-initiated copy, not by the agent.

Aucun schéma d’entrée n’a été publié pour cet outil.

minimize_windowMinimize a window. Matches by process name, PID, or title. Cross-platform: Windows (ShowWindow), macOS (miniaturize), Linux (wmctrl/xdotool).

Minimize a window. Matches by process name, PID, or title. Cross-platform: Windows (ShowWindow), macOS (miniaturize), Linux (wmctrl/xdotool).

Aucun schéma d’entrée n’a été publié pour cet outil.

submit_taskSubmit a natural-language task to the autonomous agent. The agent

Submit a natural-language task to the autonomous agent. The agent

Aucun schéma d’entrée n’a été publié pour cet outil.

abort_taskSignal the running task to abort. The pipeline checks `isAborted()`

Signal the running task to abort. The pipeline checks `isAborted()`

Aucun schéma d’entrée n’a été publié pour cet outil.

agent_statusReturn the autonomous agent's current state: status (idle | thinking |

Return the autonomous agent's current state: status (idle | thinking |

Aucun schéma d’entrée n’a été publié pour cet outil.

screenshot_fullCapture the full primary display. Returns base64 image bytes plus a

Capture the full primary display. Returns base64 image bytes plus a

Aucun schéma d’entrée n’a été publié pour cet outil.

task_logs_listList the last 50 task summaries from the daemon's structured log.

List the last 50 task summaries from the daemon's structured log.

Aucun schéma d’entrée n’a été publié pour cet outil.

task_logs_currentReturn the structured log entries for the currently-executing task

Return the structured log entries for the currently-executing task

Aucun schéma d’entrée n’a été publié pour cet outil.

batchRun SEVERAL known next actions in ONE call instead of one per turn (saves round-trips).

Run SEVERAL known next actions in ONE call instead of one per turn (saves round-trips).

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_connectAucune description publiée

Cet outil n’a publié aucune description. Forge n’en invente pas.

cdp_page_contextGet a structured list of interactive elements on the current browser page (inputs, buttons, links with selectors and positions).

Get a structured list of interactive elements on the current browser page (inputs, buttons, links with selectors and positions).

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_read_textRead text content from a DOM element. Useful for extracting information from web pages.

Read text content from a DOM element. Useful for extracting information from web pages.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_clickClick a DOM element by CSS selector or by visible text content.

Click a DOM element by CSS selector or by visible text content.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_typeType text into a DOM input field by CSS selector or by associated label text.

Type text into a DOM input field by CSS selector or by associated label text.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_select_optionSelect an option in a <select> dropdown by value or visible text.

Select an option in a <select> dropdown by value or visible text.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_evaluateExecute JavaScript in the browser page context. Returns the result.

Execute JavaScript in the browser page context. Returns the result.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_wait_for_selectorWait for a DOM element matching a CSS selector to appear and become visible.

Wait for a DOM element matching a CSS selector to appear and become visible.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_list_tabsList all open browser tabs with their URLs and titles.

List all open browser tabs with their URLs and titles.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_switch_tabSwitch CDP connection to a different browser tab by URL or title substring.

Switch CDP connection to a different browser tab by URL or title substring.

Aucun schéma d’entrée n’a été publié pour cet outil.

cdp_scrollScroll the browser page via DOM (window.scrollBy). Works regardless of mouse position — use for reliable page scrolling.

Scroll the browser page via DOM (window.scrollBy). Works regardless of mouse position — use for reliable page scrolling.

Aucun schéma d’entrée n’a été publié pour cet outil.

computerDirect mouse/keyboard/screenshot control (Anthropic Computer-Use style).

Direct mouse/keyboard/screenshot control (Anthropic Computer-Use style).

Aucun schéma d’entrée n’a été publié pour cet outil.

accessibilityInteract with the OS accessibility tree — read element names, find by name/role, invoke, toggle, expand/collapse, set value, query state.

Interact with the OS accessibility tree — read element names, find by name/role, invoke, toggle, expand/collapse, set value, query state.

Aucun schéma d’entrée n’a été publié pour cet outil.

windowWindow, app, and display management. Open/focus/maximize/minimize/restore/close/resize windows; enumerate displays; switch browser tabs at the OS level; open apps/files/URLs.

Window, app, and display management. Open/focus/maximize/minimize/restore/close/resize windows; enumerate displays; switch browser tabs at the OS level; open apps/files/URLs.

Aucun schéma d’entrée n’a été publié pour cet outil.

systemSystem integration — clipboard read/write, system time, OCR screen-reading, undo shortcut, named shortcuts registry, delegate to a sub-agent.

System integration — clipboard read/write, system time, OCR screen-reading, undo shortcut, named shortcuts registry, delegate to a sub-agent.

Aucun schéma d’entrée n’a été publié pour cet outil.

39 outils sur 40 ont publié une description.

Les noms et descriptions d’outils sont écrits par l’éditeur et affichés tels quels, comme du texte inerte. Ce sont les chaînes qu’un client MCP transmet à un modèle, alors Forge y recherche des motifs d’injection de prompt — tout constat apparaît avec l’analyse de sécurité ci-dessus. « Privilégié » est une correspondance de mot-clé sur le nom de l’outil, pas un audit de ce qu’il fait : un nom anodin peut tout de même tout faire.

À propos

Local MCP server that gives any AI agent safe cross-OS desktop control — the fallback execution layer for when APIs, CLIs, and direct integrations aren't available. Works with any tool-calling model (Claude, GPT, Gemini, Llama) on Windows, macOS, and Linu

Mots-clés
agentai-agentmcpmcp-servermodel-context-protocoldesktop-automationcomputer-usegui-automationaccessibilityclaudegptopenaianthropicskillcli
Alternatives
Comparaison des surfaces d’outils…

Arbre de dépendances

Ce qu'une analyse Forge a résolu à partir des métadonnées npm le 2026-09-28 — résolution observée, et non une déclaration de l'éditeur.

60 paquets résolus · 11 directs · aucun porteur d'avis de sécurité La résolution s'arrête à la profondeur 4 et à 60 paquets.

L'exploration s'est arrêtée à la limite de 60 paquets. Le reste de l'arbre n'a jamais été résolu.

36 autres paquets résolus ne sont pas dessinés ici (limite d'affichage : 24). Toute dépendance porteuse d'un avis de sécurité est dessinée quelle que soit la limite. Inventaire complet (SBOM CycloneDX)

Déclarées mais non résolues

82 dépendances déclarées ne sont jamais arrivées dans l'arbre. Elles manquent à la résolution de Forge, pas au paquet.

+70 de plus non listées. Les comptes par motif ci-dessus les couvrent toutes.

Non suivies : peerDependencies, optionalDependencies. Cet arbre ne couvre que les dépendances d'exécution ; ce qu'elles entraînent n'a jamais été résolu.