Local isolated multi-session browser runtime for external MCP clients
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
browser_runtime_infoReport bounded, read-only BrowserMesh version, launch state, effective configuration, and session counts without launching Chromium. Use this to diagnose setup and capacity safely; it never returns paths, launch arguments, environment values, browser state, or raw errors.Report bounded, read-only BrowserMesh version, launch state, effective configuration, and session counts without launching Chromium. Use this to diagnose setup and capacity safely; it never returns paths, launch arguments, environment values, browser state, or raw errors.
No input schema was published for this tool.
browser_session_createNo description publishedThis tool published no description. Forge does not invent one.
browser_session_listList every browser session with its explicit sessionId, lifecycle status, name, and neutral workflow metadata. Use this to recover the correct session for each role/account; there is no global active session.List every browser session with its explicit sessionId, lifecycle status, name, and neutral workflow metadata. Use this to recover the correct session for each role/account; there is no global active session.
No input schema was published for this tool.
browser_session_getInspect one explicitly addressed browser session. Session names and metadata are workflow labels, not internal AI agents or owners.Inspect one explicitly addressed browser session. Session names and metadata are workflow labels, not internal AI agents or owners.
No input schema was published for this tool.
browser_session_closeClose one explicitly addressed session and release all of its pages and isolated browser context. Close each role/account session when its workflow is complete.Close one explicitly addressed session and release all of its pages and isolated browser context. Close each role/account session when its workflow is complete.
No input schema was published for this tool.
browser_page_createCreate an additional page inside one explicitly addressed session. Use it for another tab that must share that session's cookies and storage; use a separate session instead when identity or authentication must be isolated.Create an additional page inside one explicitly addressed session. Use it for another tab that must share that session's cookies and storage; use a separate session instead when identity or authentication must be isolated.
No input schema was published for this tool.
browser_page_listList pages belonging only to the addressed session. Session creation already returns the initial pageId; use this tool to rediscover or inspect all pages in that session.List pages belonging only to the addressed session. Session creation already returns the initial pageId; use this tool to rediscover or inspect all pages in that session.
No input schema was published for this tool.
browser_page_closeClose one explicitly addressed page in its owning session. Supply both IDs because BrowserMesh has no global current session or page.Close one explicitly addressed page in its owning session. Supply both IDs because BrowserMesh has no global current session or page.
No input schema was published for this tool.
browser_navigateNavigate one explicitly addressed page to an absolute HTTP(S) URL. Keep using the sessionId/pageId pair for the intended account or role; navigation never changes a global active page.Navigate one explicitly addressed page to an absolute HTTP(S) URL. Keep using the sessionId/pageId pair for the intended account or role; navigation never changes a global active page.
No input schema was published for this tool.
browser_backNavigate backward in the history of one explicitly addressed page without affecting pages or sessions used by other roles.Navigate backward in the history of one explicitly addressed page without affecting pages or sessions used by other roles.
No input schema was published for this tool.
browser_forwardNavigate forward in the history of one explicitly addressed page without affecting other isolated sessions.Navigate forward in the history of one explicitly addressed page without affecting other isolated sessions.
No input schema was published for this tool.
browser_reloadReload one explicitly addressed page in its existing isolated session and authentication state.Reload one explicitly addressed page in its existing isolated session and authentication state.
No input schema was published for this tool.
browser_get_urlRead the current URL of one explicitly addressed page. Use the IDs returned for the intended session; there is no global current page.Read the current URL of one explicitly addressed page. Use the IDs returned for the intended session; there is no global current page.
No input schema was published for this tool.
browser_get_titleRead the title of one explicitly addressed page in its owning isolated session.Read the title of one explicitly addressed page in its owning isolated session.
No input schema was published for this tool.
browser_snapshotNo description publishedThis tool published no description. Forge does not invent one.
browser_visible_textRead visible text from a semantic or CSS locator on one explicitly addressed page. A locator may select the top document or a bounded outer-to-inner semantic iframe chain; the lookup remains confined to that page and session.Read visible text from a semantic or CSS locator on one explicitly addressed page. A locator may select the top document or a bounded outer-to-inner semantic iframe chain; the lookup remains confined to that page and session.
No input schema was published for this tool.
browser_observeNo description publishedThis tool published no description. Forge does not invent one.
browser_clickClick exactly one semantic/CSS locator or short-lived snapshot ref on one explicitly addressed page. A locator may select the top document or a bounded outer-to-inner semantic iframe chain. Role locator names match exactly by default and every iframe-chain selector must resolve exactly; ambiguous l…Click exactly one semantic/CSS locator or short-lived snapshot ref on one explicitly addressed page. A locator may select the top document or a bounded outer-to-inner semantic iframe chain. Role locator names match exactly by default and every iframe-chain selector must resolve exactly; ambiguous l…
No input schema was published for this tool.
browser_double_clickDouble-click a semantic or CSS locator on one explicitly addressed page. Use this only when the application assigns distinct double-click behavior; the action is serialized with all browser work in that session and an ambiguous locator returns LOCATOR_AMBIGUOUS.Double-click a semantic or CSS locator on one explicitly addressed page. Use this only when the application assigns distinct double-click behavior; the action is serialized with all browser work in that session and an ambiguous locator returns LOCATOR_AMBIGUOUS.
No input schema was published for this tool.
browser_hoverMove the pointer over a semantic or CSS locator on one explicitly addressed page. Use this to reveal hover-driven controls or state before inspecting or interacting; BrowserMesh preserves same-session accepted order.Move the pointer over a semantic or CSS locator on one explicitly addressed page. Use this to reveal hover-driven controls or state before inspecting or interacting; BrowserMesh preserves same-session accepted order.
No input schema was published for this tool.
browser_focusFocus a semantic or CSS locator on one explicitly addressed page without entering a value. Use this for focus-driven UI state or before a separate key action; the locator remains scoped to the supplied sessionId and pageId.Focus a semantic or CSS locator on one explicitly addressed page without entering a value. Use this for focus-driven UI state or before a separate key action; the locator remains scoped to the supplied sessionId and pageId.
No input schema was published for this tool.
browser_checkEnsure a checkbox or radio located semantically or by CSS is checked on one explicitly addressed page. The operation is idempotent, bounded by timeoutMs, and isolated to the supplied session.Ensure a checkbox or radio located semantically or by CSS is checked on one explicitly addressed page. The operation is idempotent, bounded by timeoutMs, and isolated to the supplied session.
No input schema was published for this tool.
browser_uncheckEnsure a checkbox located semantically or by CSS is unchecked on one explicitly addressed page. The operation is idempotent, bounded by timeoutMs, and isolated to the supplied session.Ensure a checkbox located semantically or by CSS is unchecked on one explicitly addressed page. The operation is idempotent, bounded by timeoutMs, and isolated to the supplied session.
No input schema was published for this tool.
browser_scroll_into_viewScroll one semantic or CSS locator into the viewport of an explicitly addressed page. Use this before inspection or interaction when an off-screen target must become visible; it never accepts arbitrary JavaScript or coordinates.Scroll one semantic or CSS locator into the viewport of an explicitly addressed page. Use this before inspection or interaction when an off-screen target must become visible; it never accepts arbitrary JavaScript or coordinates.
No input schema was published for this tool.
browser_scrollScroll an explicitly addressed page by bounded integer pixel deltas. Use deltaX for horizontal and deltaY for vertical movement; this typed operation exposes no arbitrary JavaScript and remains serialized within the session.Scroll an explicitly addressed page by bounded integer pixel deltas. Use deltaX for horizontal and deltaY for vertical movement; this typed operation exposes no arbitrary JavaScript and remains serialized within the session.
No input schema was published for this tool.
browser_drag_and_dropprivilegedDrag one semantic or CSS-located element onto another on one explicitly addressed page. Source and target are resolved in the same page and session, with bounded timeout and strict ambiguity errors.Drag one semantic or CSS-located element onto another on one explicitly addressed page. Source and target are resolved in the same page and session, with bounded timeout and strict ambiguity errors.
No input schema was published for this tool.
browser_fillFill a form field located on one explicitly addressed page. The value is entered only in that session; use separate sessions for different identities.Fill a form field located on one explicitly addressed page. The value is entered only in that session; use separate sessions for different identities.
No input schema was published for this tool.
browser_pressPress a key on a locator within one explicitly addressed page, preserving deterministic ordering with other operations in that session. A missing or unsuitable element returns OPERATION_TIMEOUT within timeoutMs (10 seconds by default) without closing MCP or browser sessions.Press a key on a locator within one explicitly addressed page, preserving deterministic ordering with other operations in that session. A missing or unsuitable element returns OPERATION_TIMEOUT within timeoutMs (10 seconds by default) without closing MCP or browser sessions.
No input schema was published for this tool.
browser_select_optionSelect an option on one explicitly addressed page using a semantic or CSS locator. A missing or unsuitable select returns OPERATION_TIMEOUT within timeoutMs (10 seconds by default), and the supplied session plus all other sessions remain usable.Select an option on one explicitly addressed page using a semantic or CSS locator. A missing or unsuitable select returns OPERATION_TIMEOUT within timeoutMs (10 seconds by default), and the supplied session plus all other sessions remain usable.
No input schema was published for this tool.
browser_screenshotCapture a bounded in-memory PNG screenshot of one explicitly addressed page, either as the viewport/full page or one semantic element optionally reached through a bounded iframe chain. Full-page and element capture use an immutable measured CSS-pixel clip plus encoded-byte validation. BrowserMesh r…Capture a bounded in-memory PNG screenshot of one explicitly addressed page, either as the viewport/full page or one semantic element optionally reached through a bounded iframe chain. Full-page and element capture use an immutable measured CSS-pixel clip plus encoded-byte validation. BrowserMesh r…
No input schema was published for this tool.
browser_waitWait for one deterministic passive condition on an explicitly addressed page: an exact/safe-glob URL, domcontentloaded/load state, locator state (optionally through a bounded semantic iframe chain), or case-sensitive top-document text presence/absence. The wait occupies that session queue, is bound…Wait for one deterministic passive condition on an explicitly addressed page: an exact/safe-glob URL, domcontentloaded/load state, locator state (optionally through a bounded semantic iframe chain), or case-sensitive top-document text presence/absence. The wait occupies that session queue, is bound…
No input schema was published for this tool.
browser_action_and_waitNo description publishedThis tool published no description. Forge does not invent one.
browser_state_saveSave cookies and supported storage from one explicitly addressed session under a safe logical stateId. Use this only when a later new isolated session should restore that authentication state.Save cookies and supported storage from one explicitly addressed session under a safe logical stateId. Use this only when a later new isolated session should restore that authentication state.
No input schema was published for this tool.
browser_state_listList logical saved-state IDs available for optional restoration when creating a new isolated session; state contents and secrets are not returned.List logical saved-state IDs available for optional restoration when creating a new isolated session; state contents and secrets are not returned.
No input schema was published for this tool.
browser_state_removeprivilegedNo description publishedThis tool published no description. Forge does not invent one.
30 of 35 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Local isolated multi-session browser runtime for external MCP clients
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
The crawl stopped at the 60-package limit. The rest of the tree was never resolved.
36 more resolved packages are not drawn here (display cap: 24). Every dependency carrying an advisory is drawn regardless of the cap. Full inventory (CycloneDX SBOM)
56 declared dependencies never landed in the tree. They are missing from Forge's resolution, not from the package.
+44 more not listed. The counts by reason above cover all of them.
Not followed: optionalDependencies, peerDependencies. This tree covers runtime dependencies only, so anything those pull in was never resolved.